Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Disk na 100percent a pomale ntb

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
lukitko
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 24 lis 2012 13:45

Disk na 100percent a pomale ntb

#1 Příspěvek od lukitko »

zdravim, potreboval by som kontrolu logu, nakolko ntb ma stale vytazeni disk na 100 percent a seka.. Posielam log z FRST. dakujem
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-11-2021
Ran by User (administrator) on MIKULAS (Acer NC-E5-521G-63FG) (25-11-2021 18:14:46)
Running from C:\Users\User\Downloads
Loaded Profiles: User
Platform: Microsoft Windows 8.1 (Update) (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Disig a.s. -> Disig a.s.) C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Huawei Technologies Co., Ltd. -> ) C:\ProgramData\DatacardService\HWDeviceService64.exe
(Huawei Technologies Co., Ltd. -> ) C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(McAfee, Inc. -> McAfee, LLC.) C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.ServiceHelper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{FAEEF58E-DE8D-40A8-8135-23329812E9EE}\EDGEMITMP_503A6.tmp\setup.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{FAEEF58E-DE8D-40A8-8135-23329812E9EE}\MicrosoftEdge_X64_96.0.1054.34_96.0.1054.29.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Ministerstvo vnútra Slovenskej republiky -> Ministerstvo vnútra Slovenskej republiky) C:\Program Files (x86)\EAC MW klient\EAC_MW_klient.exe
(Pokki, Inc. -> Pokki) C:\Users\User\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe
(Qualcomm Atheros -> ) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Qualcomm Atheros -> Atheros Communications) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(WildTangent Inc -> WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672304 2014-03-21] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161728 2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" (No File)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-05-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-01-23] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4509184 2012-12-27] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [EAC_MW_klient] => C:\Program Files (x86)\EAC MW klient\EAC_MW_klient.exe [11819664 2021-07-20] (Ministerstvo vnútra Slovenskej republiky -> Ministerstvo vnútra Slovenskej republiky)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-02-26] (Qualcomm Atheros -> Atheros Communications) [File not signed]
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [BingSvc] => C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe [146312 2020-08-24] (Microsoft Corporation -> © 2015 Microsoft Corporation)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Zoom] => [X]
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\User\AppData\Local\Microsoft\Teams\Update.exe [2453728 2021-04-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Disig Web Signer] => C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe [254080 2021-02-04] (Disig a.s. -> Disig a.s.)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {06ec9cca-63f8-11e6-8283-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504be15a-0237-11e6-826c-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504bedf8-0237-11e6-826c-f0761c8361b3} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {739240cd-d40e-11e6-8298-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd4fc4-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd52ad-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {a3196251-356c-11e6-8278-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4da-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4ec-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {e6a33810-b01c-11e8-82b7-f0761cd21add} - "E:\HiSuiteDownLoader.exe"
HKLM\...\Print\Monitors\EPSON PGSTM 64Monitor86: C:\Windows\system32\E_L12086.DLL [120320 2011-04-19] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.45\Installer\chrmstp.exe [2021-11-20] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.CredentialProvider.dll [2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" "C:\Program Files\McAfee\TrueKey\McAfeeTrueKeyPasswordFilter"

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {012B6F7E-1495-4293-90E0-79732F44AF42} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-09] (Adobe Inc. -> Adobe)
Task: {0D8A891D-890C-4808-84D8-2F436AB14653} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {1274336E-AB06-46B6-A48C-0671C5557CC6} - \Microsoft\Windows\TaskScheduler\Maintenance Configurator -> No File <==== ATTENTION
Task: {15277EC1-DEF4-4703-B9CC-D9F353740472} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [324328 2014-06-26] (Acer Incorporated -> Acer Incorporate)
Task: {1687544D-7247-4F5A-965A-A6E920E55278} - \Microsoft\Windows\TaskScheduler\Manual Maintenance -> No File <==== ATTENTION
Task: {19F1E2AA-D21F-4666-8977-8117BE8841E7} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [439016 2014-06-10] (Acer Incorporated -> Acer Incorporate)
Task: {2B84CD10-20CC-4637-8685-78E21EEDE83D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {31B4BAE1-573B-4862-B52B-AA31B3887D7B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {4A61C759-06E2-4116-8008-CC463C851D02} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {4A872CA8-7957-4D4A-B755-19B0CDEEE7A1} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4665296 2018-09-11] (McAfee, Inc. -> McAfee, Inc.)
Task: {60555179-EBEA-4BD7-A7CA-2B03B841BC71} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DFBF9CB-9FFC-45EB-A04A-DF20ED9D7A71} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
Task: {6E576D73-B891-4986-A140-574AC323C550} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {6F02587F-8A2B-4552-97F6-DEEF229E335B} - \Microsoft\Windows\TaskScheduler\Idle Maintenance -> No File <==== ATTENTION
Task: {AA9F1F0F-147D-4013-A93A-B1C5D81C0680} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472928 2015-07-17] (Acer Incorporated -> Acer Incorporated)
Task: {AB5DBC95-BF6B-4E71-8589-B68261B2DB6C} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [682936 2021-11-08] (Mozilla Corporation -> Mozilla Foundation)
Task: {AF6D5A0D-3469-43FD-AA45-9B329DDB7862} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [324328 2014-06-26] (Acer Incorporated -> Acer Incorporate)
Task: {B192A731-9A8A-4DC8-B8E5-9A2690F54DE9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
Task: {B7992938-01F1-4F40-A0EC-0D23D2F0F152} - \Microsoft\Windows\TaskScheduler\Regular Maintenance -> No File <==== ATTENTION
Task: {C3B525E0-AF90-4431-985B-38004445DA3C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
Task: {C98AD713-E716-4213-8C29-59DFE3BD19BB} - System32\Tasks\SweetLabs App Platform => C:\Users\User\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe [8064232 2020-09-17] (Pokki, Inc. -> Pokki)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - \Microsoft\Windows\SettingSync\BackupTask -> No File <==== ATTENTION
Task: {E99D7046-1268-476B-8161-E5200A26970F} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [384232 2014-06-12] (Acer Incorporated -> Acer Incorporated)
Task: {F2116EEF-0712-418E-B62D-FD8D8C7AE618} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4C95C759-8E22-4535-9864-F9DF50395E6B}: [DhcpNameServer] 185.152.196.29 185.152.196.28
Tcpip\..\Interfaces\{A65A9BB7-E062-4CEC-B05F-E0F9163825BA}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2021-07-07]
Edge HomePage: Default -> hxxp://acer13.msn.com/?pc=ACJB

FireFox:
========
FF DefaultProfile: qixlgmrr.default
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default [2021-11-22]
FF Homepage: Mozilla\Firefox\Profiles\qixlgmrr.default -> hxxp://www.google.sk
FF Notifications: Mozilla\Firefox\Profiles\qixlgmrr.default -> hxxps://www.freefilm.to; hxxps://teams.microsoft.com
FF Extension: (Bing Search) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default\Extensions\bingsearch.full@microsoft.com.xpi [2016-03-08] [Legacy]
FF Extension: (FF Helper Tool) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default\Extensions\{01f409a5-d617-47be-a574-d54325fe05d1}.xpi [2017-12-17] [UpdateUrl:hxxps://helpertoolff.com/update.json]
FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default\searchplugins\bing-.xml [2016-03-08]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] (Foxit Corporation -> )
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] (Foxit Corporation -> )
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] (WildTangent Inc -> )
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: ditec.sk/DAsicFac -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/DitecZepDViewerFb -> C:\PROGRA~2\Ditec\DViewer\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigMessageContainer -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesExtender -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~3.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/XmlDataContainerFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)

Chrome:
=======
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2021-11-25]
CHR Notifications: Default -> hxxps://teams.microsoft.com
CHR Extension: (Prezentácie) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-06-04]
CHR Extension: (Dokumenty) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-06-04]
CHR Extension: (Disk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-03]
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-06-04]
CHR Extension: (Tabuľky) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-06-04]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-11-18]
CHR Extension: (Skype) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2020-06-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03]
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-26] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed]
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [3053312 2014-06-27] (Acer Incorporated -> Acer Incorporated)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2794224 2018-05-26] (ESET, spol. s r.o. -> ESET)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-06-12] (Acer Incorporated -> Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent Inc -> WildTangent)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] (Huawei Technologies Co., Ltd. -> )
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporated -> Acer Incorporate)
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> )
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-06-26] (Acer Incorporated -> Acer Incorporate)
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-06-26] (Acer Incorporated -> Acer Incorporate)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S2 TrueKey; C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.Service.exe [352688 2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
S2 TrueKeyScheduler; C:\Program Files\McAfee\TrueKey\McTkSchedulerService.exe [352688 2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
R2 TrueKeyServiceHelper; C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.ServiceHelper.exe [194168 2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [112144 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
S2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe -originalversion 4.4.127.0 [X]
S2 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [267304 2018-05-07] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15488 2016-09-01] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [200360 2018-05-07] (ESET, spol. s r.o. -> ESET)
R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [184184 2018-05-07] (ESET, spol. s r.o. -> ESET)
S3 ew_hwusbdev; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [109568 2013-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ew_usbenumfilter; C:\Windows\System32\drivers\ew_usbenumfilter.sys [14976 2012-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 GemCCID; C:\Windows\system32\DRIVERS\GemCCID.sys [137712 2016-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Gemalto)
R3 huawei_enumerator; C:\Windows\System32\drivers\ew_jubusenum.sys [91648 2013-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\Windows\system32\DRIVERS\ew_cdcacm.sys [125952 2014-07-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_wwanecm; C:\Windows\system32\DRIVERS\ew_wwanecm.sys [380672 2014-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated -> Acer Incorporated)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated -> Acer Incorporated)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 MpKslc775c470; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2EDBCF13-C2E9-4E62-A6B6-93E4224FF747}\MpKslDrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-11-25 18:14 - 2021-11-25 18:16 - 000025737 _____ C:\Users\User\Downloads\FRST.txt
2021-11-25 18:13 - 2021-11-25 18:16 - 000000000 ____D C:\FRST
2021-11-25 18:13 - 2021-11-25 18:13 - 002311680 _____ (Farbar) C:\Users\User\Downloads\FRST64 (1).exe
2021-11-25 18:12 - 2021-11-25 18:12 - 002311680 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe
2021-11-25 18:10 - 2021-11-25 18:11 - 008540344 _____ (Malwarebytes) C:\Users\User\Downloads\adwcleaner_8.3.1.exe
2021-11-22 19:47 - 2021-11-22 19:47 - 000841878 _____ C:\Users\User\Desktop\22.11.pdf
2021-11-22 19:44 - 2021-11-22 19:44 - 000733605 _____ C:\Users\User\Desktop\22.11a.pdf
2021-11-20 11:50 - 2021-11-20 11:51 - 000129780 _____ C:\Users\User\Downloads\VYZVA_Odpad_PO_2021.pdf
2021-11-20 11:46 - 2021-11-20 11:46 - 000094138 _____ C:\Users\User\Downloads\20210007578.pdf
2021-11-20 11:45 - 2021-11-20 11:45 - 000068574 _____ C:\Users\User\Downloads\20210007578.asice
2021-11-20 11:41 - 2021-11-20 11:41 - 000029133 _____ C:\Users\User\Downloads\VL 102021a (1).pdf
2021-11-20 11:38 - 2021-11-20 11:38 - 000904334 _____ C:\Users\User\Downloads\pasky 102021.pdf
2021-11-20 11:37 - 2021-11-20 11:38 - 000030719 _____ C:\Users\User\Downloads\VL 102021b.pdf
2021-11-20 11:36 - 2021-11-20 11:36 - 000029133 _____ C:\Users\User\Downloads\VL 102021a.pdf
2021-11-20 11:35 - 2021-11-20 11:35 - 000065263 _____ C:\Users\User\Downloads\fa plzensky prazdroj (1).pdf
2021-11-20 11:30 - 2021-11-20 11:30 - 000065263 _____ C:\Users\User\Downloads\fa plzensky prazdroj.pdf
2021-11-15 17:47 - 2021-11-15 17:47 - 000843751 _____ C:\Users\User\Desktop\15.11 new.pdf
2021-11-15 17:42 - 2021-11-15 17:42 - 000735928 _____ C:\Users\User\Desktop\15.11a.pdf
2021-11-08 17:39 - 2021-11-08 17:39 - 000841550 _____ C:\Users\User\Desktop\8.11 new.pdf
2021-11-08 17:39 - 2021-11-08 17:39 - 000733743 _____ C:\Users\User\Desktop\8.11a.pdf
2021-11-06 09:38 - 2021-11-06 09:38 - 000055776 _____ C:\Users\User\Downloads\urn uvci 01 SK 174CDF9D9D084818BCB4100B6F726273.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-11-25 18:14 - 2020-07-27 14:05 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-11-25 18:14 - 2020-07-27 14:05 - 000002212 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-11-25 18:14 - 2016-03-08 09:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Skype
2021-11-25 18:13 - 2020-06-04 09:20 - 000000000 ____D C:\Program Files (x86)\Google
2021-11-25 18:08 - 2016-03-06 19:33 - 000003596 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1523700424-2775466909-647613524-1001
2021-11-25 18:05 - 2016-03-06 19:26 - 000000000 ____D C:\Users\User\AppData\Local\SweetLabs App Platform
2021-11-24 22:08 - 2016-03-06 19:58 - 000000000 ____D C:\Users\User\AppData\Local\ClassicShell
2021-11-24 22:06 - 2018-10-03 10:02 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-11-24 22:05 - 2016-11-09 21:11 - 000000000 ____D C:\Program Files\McAfee
2021-11-24 22:05 - 2013-08-22 15:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-11-24 22:03 - 2014-07-25 22:26 - 000000000 ____D C:\Program Files\Acer
2021-11-24 22:03 - 2014-07-25 22:21 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2021-11-24 22:00 - 2014-07-25 22:28 - 000000000 ____D C:\ProgramData\McAfee
2021-11-24 21:41 - 2016-11-20 21:09 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla
2021-11-22 20:00 - 2019-02-06 18:53 - 000000000 ____D C:\ProgramData\Mozilla
2021-11-20 11:39 - 2020-06-04 09:22 - 000002260 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-11-20 11:39 - 2020-06-04 09:22 - 000002219 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-11-19 09:36 - 2016-03-06 20:05 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2021-11-19 09:22 - 2016-03-06 19:55 - 000003818 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{3BDEBC76-BF05-4E73-AC21-F17283BE6032}
2021-11-18 08:06 - 2020-07-27 14:04 - 000003476 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-11-18 08:06 - 2020-07-27 14:04 - 000003348 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-11-18 07:53 - 2013-08-22 15:44 - 000443016 _____ C:\Windows\system32\FNTCACHE.DAT
2021-11-18 07:53 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\Inf
2021-11-18 07:47 - 2016-03-07 15:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-11-16 11:13 - 2013-08-22 16:20 - 000000000 ____D C:\Windows\CbsTemp
2021-11-16 10:57 - 2016-03-15 00:46 - 000000000 ____D C:\Windows\system32\MRT
2021-11-16 10:46 - 2016-03-15 00:46 - 141529560 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-11-15 14:56 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\rescache
2021-11-08 16:49 - 2017-08-22 13:24 - 000017082 _____ C:\Windows\system32\perfh01B.dat
2021-11-08 16:49 - 2017-08-22 13:24 - 000006132 _____ C:\Windows\system32\perfc01B.dat
2021-11-08 16:49 - 2014-03-18 11:03 - 000870760 _____ C:\Windows\system32\PerfStringBackup.INI
2021-11-08 16:46 - 2021-10-18 12:45 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-11-08 16:45 - 2016-03-07 15:43 - 000001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-11-06 09:36 - 2017-01-18 19:16 - 000002083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-11-01 17:08 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\BBI

==================== Files in the root of some directories ========

2021-04-08 19:47 - 2021-04-08 19:47 - 000007667 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2021-11-15 14:49
==================== End of FRST.txt ========================



Addition log
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-11-2021
Ran by User (25-11-2021 18:21:13)
Running from C:\Users\User\Downloads
Microsoft Windows 8.1 (Update) (X64) (2016-03-06 18:25:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1523700424-2775466909-647613524-500 - Administrator - Disabled)
Guest (S-1-5-21-1523700424-2775466909-647613524-501 - Limited - Disabled)
User (S-1-5-21-1523700424-2775466909-647613524-1001 - Administrator - Enabled) => C:\Users\User

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET NOD32 Antivirus (Disabled - Out of date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET NOD32 Antivirus (Enabled - Out of date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8107 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8105 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3016.0 - Acer Incorporated)
Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2005.0 - Acer Incorporated)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.007.20099 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe)
Aloha TriPeaks (HKLM-x32\...\WTA-8cf191b2-a67c-435e-afef-755778855bd4) (Version: 2.2.0.98 - WildTangent) Hidden
AMD Catalyst Install Manager (HKLM\...\{E043161E-A691-B3C2-E60C-2FBBD8CFF720}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.01.2008.3 - Acer Incorporated)
Balík softvéru eID (HKLM-x32\...\{9bc5c8ce-4146-47e0-a067-d958a8522c54}) (Version: 1.0.0.0 - Ministerstvo vnútra Slovenskej republiky) Hidden
Balík softvéru eID (HKLM-x32\...\{ea81dcd3-f9f3-4959-8bee-0349fc294ae5}) (Version: 1.0.0.0 - Ministerstvo vnútra Slovenskej republiky) Hidden
Bejeweled 2 Deluxe (HKLM-x32\...\WTA-fc929f39-f1f8-40b7-a75b-59e9db6a5971) (Version: 2.2.0.95 - WildTangent) Hidden
Bit4id - miniLector (HKLM-x32\...\Bit4id - miniLector) (Version: 3.7 - Bit4id)
Brother MFL-Pro Suite DCP-1510 series (HKLM-x32\...\{90C24B16-9C28-44AB-8C63-BB9822218E18}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
Classic Shell (HKLM\...\{D4B3454F-7529-4F5F-851D-2C36933F7D64}) (Version: 4.2.5 - IvoSoft)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4609.02 - CyberLink Corp.)
D.Launcher (x86) (HKLM-x32\...\{89B7C4D5-23FB-448B-9E0A-683A4C842AC8}) (Version: 1.2.0.2 - DITEC, a.s.)
D.Signer/XAdES .NET so zásuvnými modulmi (x86) (HKLM-x32\...\{031978EA-8E98-4AC0-8588-B7AA96FA753D}) (Version: 4.0.23 - DITEC, a.s.)
D.Signer/XAdES .NET Tools (x86) (HKLM-x32\...\{1D5A92D5-3794-4D73-971F-0ED4B92D0999}) (Version: 4.0.17 - DITEC, a.s.)
D.Suite/eIDAS (x86) (HKLM-x32\...\{543e4ced-e4c8-4b5d-ae1d-2964a4ec5827}) (Version: 1.0.28 - DITEC, a.s.)
D.Viewer .NET (x86) (HKLM-x32\...\{59FF6B38-294E-4001-AB13-552A1C10E607}) (Version: 4.0.2033 - DITEC, a.s.)
Disig Web Signer (HKLM-x32\...\{41C0F02D-2389-4AB5-975C-C2363E7C554C}) (Version: 2.0.7 - Disig)
EAC MW klient (HKLM-x32\...\{E22CF5CA-5935-451D-9B9D-EAA79DE703BD}) (Version: 3.7.0 - Ministerstvo vnútra Slovenskej republiky)
EPSON AL-M300 Advanced Printer Uninstall (HKLM\...\EPSON AL-M300 Advanced) (Version: - SEIKO EPSON Corporation)
EPSON Status Monitor (HKLM\...\BSTMInst) (Version: - SEIKO EPSON Corporation)
EPSON Status Monitor Installer (HKLM\...\{B97913BC-EBE5-487D-8A3E-1533A4F4ECC0}) (Version: 1.02.0000 - Seiko Epson Corporation) Hidden
ESET NOD32 Antivirus (HKLM\...\{DC91B197-2D38-4659-9EF7-AF3A8F5A2E0B}) (Version: 9.0.374.1 - ESET, spol. s r.o.)
Farm to Fork Collector's Edition (HKLM-x32\...\WTA-3eb7a672-18b3-4cf4-9220-bbbe2d1b4241) (Version: 3.0.2.59 - WildTangent) Hidden
Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation)
Game Explorer Categories - genres (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 11.0.0.7 - WildTangent, Inc.)
Game Explorer Categories - main (HKLM-x32\...\WildTangentGameProvider-acer-main) (Version: 11.0.0.7 - WildTangent, Inc.)
GemPcCCID (HKLM\...\{C2C14C20-A217-4FCA-B668-89B6C70B6EFF}) (Version: 2.0.7 - Gemalto)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.45 - Google LLC)
Governor of Poker 2 Premium Edition (HKLM-x32\...\WTA-93f6ec6c-4ab5-4e4a-b9a0-4c465f5afda4) (Version: 3.0.2.59 - WildTangent) Hidden
Host App Service (HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\SweetLabs_AP) (Version: 0.269.9.177 - Pokki) <==== ATTENTION
Jewel Match 3 (HKLM-x32\...\WTA-0db80174-f49f-4e0d-b74b-010daab2c125) (Version: 3.0.2.59 - WildTangent) Hidden
King Oddball (HKLM-x32\...\WTA-afba9316-373f-48e3-9a55-cf9306ef9964) (Version: 3.0.2.48 - WildTangent) Hidden
LUXOR Evolved (HKLM-x32\...\WTA-7629c3e0-81c4-4331-8d48-fea6aa86a243) (Version: 2.2.0.98 - WildTangent) Hidden
Magic Academy (HKLM-x32\...\WTA-e59a4c10-1ee0-4663-ad29-985ed06aa136) (Version: 2.2.0.98 - WildTangent) Hidden
McAfee True Key (HKLM\...\TrueKey) (Version: 5.2.167.1 - McAfee, LLC)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.34 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Teams) (Version: 1.4.00.8872 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 23.015.11.01.85 - Huawei Technologies Co.,Ltd)
Mozilla Firefox (x64 sk) (HKLM\...\Mozilla Firefox 94.0.1 (x64 sk)) (Version: 94.0.1 - Mozilla)
OEM Application Profile (HKLM-x32\...\{C01EB132-6707-740E-6ED9-EAC3943918DB}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Peggle Nights (HKLM-x32\...\WTA-89083f96-439b-40b7-94dd-184399db681d) (Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (HKLM-x32\...\WTA-b7be7ebf-5b65-4415-80ff-723610ba3440) (Version: 3.0.2.59 - WildTangent) Hidden
Pokki Start Menu (HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\SweetLabs_Start_Menu) (Version: 0.269.9.177 - Pokki) <==== ATTENTION
Polar Bowler 1st Frame (HKLM-x32\...\WTA-9012a3af-2672-4f16-898d-6eb41a599dc0) (Version: 3.0.2.59 - WildTangent) Hidden
PSP Application (HKLM\...\{8DB698FB-2E57-A223-0169-911CA8736440}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.29 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21250 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7209 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.15.5 - TeamViewer)
The Chronicles of Emerland Solitaire (HKLM-x32\...\WTA-1f9302ba-ad6c-4d95-adb3-3d317c47f6b9) (Version: 3.0.2.51 - WildTangent) Hidden
Trinklit Supreme (HKLM-x32\...\WTA-36680bb4-a1ba-44ae-bc97-e8e69ef6d63f) (Version: 2.2.0.98 - WildTangent) Hidden
Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer) (Version: 4.0.11.13 - WildTangent) Hidden
Zoom (HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\ZoomUMX) (Version: 5.4.9 (59931.0110) - Zoom Video Communications, Inc.)
Zuma's Revenge (HKLM-x32\...\WTA-0513b71e-fc05-4f5d-b314-c3f66985b033) (Version: 2.2.0.97 - WildTangent) Hidden

Packages:
=========
- Games App - -> C:\Program Files\WindowsApps\WildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-08] (WildTangent Games)
AccuWeather for Windows 8 -> C:\Program Files\WindowsApps\AccuWeather.AccuWeatherforWindows8_4.1.0.31_x64__8zz2pj9h1h1d8 [2016-08-09] (AccuWeather)
Acer Explorer -> C:\Program Files\WindowsApps\AcerIncorporated.AcerExplorer_2.0.0.3002_neutral__48frkmn4z8aw4 [2016-03-08] (Acer Incorporated)
Booking.com Partner Edition -> C:\Program Files\WindowsApps\4AE8B7C2.Booking.comPartnerEdition_1.2.1.0_x64__6wqyppa9wfhnr [2016-03-06] (Booking.com B.V.)
eBay -> C:\Program Files\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw [2016-03-08] (eBay, Inc)
Evernote Touch -> C:\Program Files\WindowsApps\Evernote.Evernote_3.3.0.102_x86__q4d96b2w5wcc2 [2016-03-08] (Evernote)
Flipboard -> C:\Program Files\WindowsApps\Flipboard.Flipboard_2.1.3.0_neutral__3f5azkryzdbc4 [2017-07-19] (Flipboard)
Fresh Paint -> C:\Program Files\WindowsApps\Microsoft.FreshPaint_2.0.15133.0_x86__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation)
Hry -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2014-03-18] (Microsoft Corporation) [MS Ad]
Hudba -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
Kindle -> C:\Program Files\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp [2016-03-08] (AMZN Mobile LLC)
MSN Cestovanie -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
MSN Financie -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-05-20] (Microsoft Corporation) [MS Ad]
MSN Jedlá a nápoje -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
MSN Počasie -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-24] (Microsoft Corporation) [MS Ad]
MSN Správy -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-05-20] (Microsoft Corporation) [MS Ad]
MSN Šport -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-05-20] (Microsoft Corporation) [MS Ad]
MSN Zdravie a fitnes -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-08] (Skype) [MS Ad]
TuneIn Radio -> C:\Program Files\WindowsApps\TuneIn.TuneInRadio_1.1.0.0_neutral__6bhtb546zcxnj [2015-03-24] (TuneIn)
Video -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
Videomomentky -> C:\Program Files\WindowsApps\Microsoft.MovieMoments_6.3.9654.20464_x64__8wekyb3d8bbwe [2016-03-06] (Microsoft Corporation)
Zinio -> C:\Program Files\WindowsApps\ZinioLLC.Zinio_2.1.0.317_x64__0q6dqzpp40p2e [2015-03-24] (Zinio LLC)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20339.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvAppExt.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
ContextMenuHandlers1: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2018-05-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2014-05-14] (Foxit Corporation -> Foxit Corporation)
ContextMenuHandlers2: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2018-05-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ShellContextExt.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2014-05-22] (Advanced Micro Devices, Inc.) [File not signed]
ContextMenuHandlers6: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2018-05-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\Windows\system32\StartMenuHelper64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge (2).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2021-02-12 07:24 - 2021-02-12 07:24 - 000047104 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_date_time-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000114688 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_filesystem-vc140-mt-1_62.dll
2021-02-12 07:23 - 2021-02-12 07:23 - 000029184 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_chrono-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000605184 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_log-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000217088 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_serialization-vc140-mt-1_62.dll
2021-02-12 07:23 - 2021-02-12 07:23 - 000019456 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_system-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000089600 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_thread-vc140-mt-1_62.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000011264 _____ () [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2014-02-26 06:11 - 2014-02-26 06:11 - 000086016 _____ () [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2016-04-12 19:45 - 2009-06-23 03:42 - 000043008 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll
2016-04-12 19:45 - 2009-01-10 19:32 - 000011362 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll
2016-04-12 19:45 - 2013-08-31 06:44 - 002417152 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll
2016-04-12 19:45 - 2013-08-31 06:46 - 001148416 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll
2021-01-26 11:52 - 2021-01-26 11:52 - 001928192 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EAC MW klient\xerces-c_3_1.dll
2015-11-12 22:55 - 2015-11-12 22:55 - 000809920 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicExplorer64.dll
2015-11-12 22:55 - 2015-11-12 22:55 - 003528640 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000033408 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\CommApi.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000203392 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\FolderViewImpl.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000085632 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\GattI.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000126592 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\gatts.DLL
2014-02-26 06:18 - 2014-02-26 06:18 - 000083072 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Handsfree.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000034432 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ipc.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000063104 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ModuleManager.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 001067648 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\OutlookLib.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000027264 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\TCPConnection.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000115328 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\utils.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000308224 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\LE\LE.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000210432 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Audio\audio.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000162304 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\BasicPrintProfile\BPP.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000177152 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\BIP\BIP.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000018432 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\DID\DId.dll
2014-02-26 06:11 - 2014-02-26 06:11 - 000035840 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\FAX\Fax.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000421888 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\FileTransfer\FileTransfer.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000096256 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\GapSdp\GapSdp.dll
2014-02-26 06:09 - 2014-02-26 06:09 - 000097792 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\goep\goep.dll
2014-02-26 06:11 - 2014-02-26 06:11 - 000029696 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\HCRP\Hcrp.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000142848 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\HealthDevice\HDP.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000091136 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\L2capLib\l2caplib.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000066048 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\OppOperation\OppOperation.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000067072 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\pbap\pbap.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000063488 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\RfcommLib\rfcommlib.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000097280 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\sap\sap.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000087552 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\SesMgr\sesmgr.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000055296 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\spp\spp.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000064512 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Sync\Sync.dll
2021-04-26 12:52 - 2021-04-26 12:52 - 000409088 _____ (The curl library, hxxps://curl.se/) [File not signed] C:\Program Files (x86)\EAC MW klient\libcurl.dll
2021-04-26 11:09 - 2021-04-26 11:09 - 002551808 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files (x86)\EAC MW klient\libcrypto-1_1.dll
2021-04-26 11:10 - 2021-04-26 11:10 - 000536064 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files (x86)\EAC MW klient\libssl-1_1.dll
2021-02-17 21:05 - 2021-02-17 21:05 - 000025088 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\imageformats\qgif.dll
2021-02-17 21:05 - 2021-02-17 21:05 - 001021440 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\platforms\qwindows.dll
2021-02-17 20:44 - 2021-02-17 20:44 - 004689408 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Core_mw_x86_vc140.dll
2021-02-17 20:52 - 2021-02-17 20:52 - 005001728 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Gui_mw_x86_vc140.dll
2021-02-17 20:46 - 2021-02-17 20:46 - 000686592 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Network_mw_x86_vc140.dll
2021-02-17 21:15 - 2021-02-17 21:15 - 002572800 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Qml_mw_x86_vc140.dll
2021-02-17 21:22 - 2021-02-17 21:22 - 002727936 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Quick_mw_x86_vc140.dll
2021-02-17 20:59 - 2021-02-17 20:59 - 004505600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Widgets_mw_x86_vc140.dll
2021-02-17 20:46 - 2021-02-17 20:46 - 000151040 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Xml_mw_x86_vc140.dll
2021-02-17 21:27 - 2021-02-17 21:27 - 000013824 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\QtQuick.2\qtquick2plugin.dll
2021-03-01 17:57 - 2021-03-01 17:57 - 000097792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\scenegraph\softwarecontext.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com/?pc=ACJB
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKLM -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
BHO: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie64.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie64.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/SK/Core/Player/2020PlayerAX_IKEA_Win32.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2021-11-19 09:20 - 000000933 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\acer01.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "Web Signer.lnk"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKLM\...\StartupApproved\Run32: => "BrStsInd00"
HKLM\...\StartupApproved\Run32: => "ControlCenter4"
HKLM\...\StartupApproved\Run32: => "BrStsMon00"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\StartupApproved\Run: => "BingSvc"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{6B04AB04-A2A8-4C44-AD62-DFBE5F7C8CCA}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{2EA69E2E-4249-4721-9591-66DB1CB31741}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{05FB242C-6370-4FB6-8BA6-BD7354BF5106}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{3F14814A-6654-4502-BAE3-2DB1FEF910BF}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{2589C329-AB2F-46F6-8E8D-9248B56CE344}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{D6EF0449-6107-48A0-95A8-EF40668E33BC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{F464C4BB-0BDC-43B9-BFC5-5E6583599744}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{A887D22E-D816-4E22-9ED0-B28FE8F6AE12}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{80386162-F41D-4031-83F2-073C9E49FD26}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{1624C36E-444C-42D3-832D-31A4D3F3FB78}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{AA659CEF-6039-44D0-A694-99235435F035}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{243C89A4-2023-43BF-9B8A-6161F31B4326}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A30B253B-B694-4F13-B81F-B7059A868E90}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8AA2FC73-3F4D-4C0D-96C3-5B709B6481A6}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CA564F88-F7F0-455D-B24A-A5C69ADEF513}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{FA5C99F1-8E0E-4D16-89B0-E9F45E3B5B3C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe => No File
FirewallRules: [{D685CF94-3087-4FC0-9F8B-0F0791C7115F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe => No File
FirewallRules: [{5A85FAF8-EE7B-4896-B106-0F186BA22F43}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe => No File
FirewallRules: [{5BECE0E6-58B4-447E-A90F-256B40025D65}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{9EBEF17A-C21D-458B-AF4D-84A5EB700193}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{A5D9BBE3-B769-4672-8835-9DF7753D70E9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{D9E98378-2939-4FBA-B2C4-37E74E64F754}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{879BAFC7-A51D-4436-8144-BEDD4EB5D367}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{4C88FEF6-FD44-4129-8C0C-E2E21377C2FA}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{27A2B564-3AFF-4AD5-98C4-6D91D0E3E1C4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{6730E94D-B632-43AB-B7C0-0422EC47A3CF}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{105F8020-15AC-4B52-9074-38EF57BF2F0D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{ACFE6C23-9E7A-455B-8581-B5E9B52F5944}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{4C693CA6-34CA-467E-B312-D6A3D0D70070}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FBC1C46A-0458-4460-928B-A90529294F3A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{3062B330-ABBF-410D-9DB2-823BEEEAE653}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{2DF4822D-90B5-474E-AC3E-3AC9475C0E44}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{C7412481-07B9-490D-8284-281D9BBC1800}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{65711C62-4430-4818-AF40-80FBC6B6FD11}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{12FCC822-E2BE-4025-8E33-73919465812A}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{DBD16FA9-74A0-44A9-BF35-0304E40EBA9F}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{7DF7E3DC-D7E9-40FE-973F-317EAD50FD53}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{83CD82BC-7C5A-4FE0-8CC7-F61F602EC372}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{96E78D4F-CA0B-40EF-9783-83788342FB2F}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{E087B67C-6753-4F81-8252-276948609C57}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{0370C407-EDA6-4568-911A-44BF950A17D5}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{CF3D7B6A-322C-4ECF-AB84-91E5EE8DA638}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D20C0E71-E5C9-4D41-84D1-CACF0CAA3E70}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{422FE972-9B08-48D4-AC20-075D40FF6A33}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{3A340149-0737-44A0-893A-08C79697C6F6}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{F9BFC92C-B468-4C8B-A48D-8AD2085B910D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FF0E0B16-7C29-4CC9-84CE-0855B985FC2A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{AB46A64C-D38E-4E65-9F54-CD2AE6DE5A4B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FE914BCF-91B6-437B-AECA-AFE8A68BA9FE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{48E55D6F-1487-4C02-9B22-582E1994A12E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

25-10-2021 19:07:35 Windows Update
06-11-2021 09:23:46 Windows Update
15-11-2021 07:21:14 Windows Update
20-11-2021 11:28:47 Windows Update
24-11-2021 21:40:32 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/19/2021 09:36:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Názov chybujúceho modulu: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Kód výnimky: 0xc0000602
Odstup chyby: 0x0000000000167998
Identifikácia chybujúceho procesu: 0x115c
Čas spustenia chybujúcej aplikácie: 0x01d7dd203b53191e
Cesta chybujúcej aplikácie: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Cesta chybujúceho modulu: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Identifikácia hlásenia: c1b5ded2-4913-11ec-8345-f0761cd21add
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (11/19/2021 09:16:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Názov chybujúceho modulu: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Kód výnimky: 0xc0000602
Odstup chyby: 0x0000000000167998
Identifikácia chybujúceho procesu: 0x618
Čas spustenia chybujúcej aplikácie: 0x01d7dd1d82ccb06a
Cesta chybujúcej aplikácie: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Cesta chybujúceho modulu: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Identifikácia hlásenia: 0c96390e-4911-11ec-8344-f0761cd21add
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (11/06/2021 09:24:06 AM) (Source: MsiInstaller) (EventID: 1024) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech – Aktualizáciu Adobe Acrobat Reader DC
(21.007.20099) sa nepodarilo nainštalovať. Kód chyby je 1603. Inštalátor systému Windows umožňuje vytvárať denníky, ktoré vám môžu pomôcť pri odstraňovaní problémov s inštaláciou softvérových balíkov. Pokyny na zapnutie podpory zapisovania do denníka zobrazíte po kliknutí na nasledovné prepojenie: http://go.microsoft.com/fwlink/?LinkId=23127

Error: (11/06/2021 09:24:06 AM) (Source: MsiInstaller) (EventID: 11719) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech -- Chyba 1719.Windows Installer service could not be accessed. Contact your support personnel to verify that it is properly registered and enabled.

Error: (10/20/2021 04:52:54 PM) (Source: MsiInstaller) (EventID: 1024) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech – Aktualizáciu Adobe Acrobat Reader DC
(21.007.20099) sa nepodarilo nainštalovať. Kód chyby je 1603. Inštalátor systému Windows umožňuje vytvárať denníky, ktoré vám môžu pomôcť pri odstraňovaní problémov s inštaláciou softvérových balíkov. Pokyny na zapnutie podpory zapisovania do denníka zobrazíte po kliknutí na nasledovné prepojenie: http://go.microsoft.com/fwlink/?LinkId=23127

Error: (10/20/2021 04:52:54 PM) (Source: MsiInstaller) (EventID: 11719) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech -- Chyba 1719.Windows Installer service could not be accessed. Contact your support personnel to verify that it is properly registered and enabled.

Error: (09/13/2021 02:01:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program WINWORD.EXE version 12.0.4518.1014 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 18a8

Start Time: 01d7a89e9650a24a

Termination Time: 31

Application Path: C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE

Report Id: 9d22ecd1-1492-11ec-833d-f0761cd21add

Faulting package full name:

Faulting package-relative application ID:

Error: (09/10/2021 03:49:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Explorer.EXE version 6.3.9600.18460 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: a40

Start Time: 01d7a65065a41cb6

Termination Time: 0

Application Path: C:\Windows\Explorer.EXE

Report Id: 532ce78f-1245-11ec-833d-f0761cd21add

Faulting package full name:

Faulting package-relative application ID:


System errors:
=============
Error: (11/25/2021 06:26:39 PM) (Source: DCOM) (EventID: 10010) (User: mikulas)
Description: The server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} did not register with DCOM within the required timeout.

Error: (11/25/2021 06:24:39 PM) (Source: DCOM) (EventID: 10010) (User: mikulas)
Description: The server {1ECCA34C-E88A-44E3-8D6A-8921BDE9E452} did not register with DCOM within the required timeout.

Error: (11/25/2021 06:03:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Google Update (gupdate) zlyhalo kvôli nasledujúcej chybe:
Služba neodpovedala na riadiaci alebo spúšťací pokyn načas.

Error: (11/25/2021 06:03:52 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Google Update (gupdate) bol dosiahnutý časový limit (30000 ms).

Error: (11/24/2021 10:07:17 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: NT AUTHORITY)
Description: 0x8000002a45\??\C:\Windows\AppCompat\Programs\Amcache.hve

Error: (11/24/2021 10:07:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby McAfee True Key Scheduler zlyhalo kvôli nasledujúcej chybe:
Služba neodpovedala na riadiaci alebo spúšťací pokyn načas.

Error: (11/24/2021 10:07:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby McAfee True Key Scheduler bol dosiahnutý časový limit (30000 ms).

Error: (11/24/2021 10:06:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby McAfee True Key zlyhalo kvôli nasledujúcej chybe:
Služba neodpovedala na riadiaci alebo spúšťací pokyn načas.


Windows Defender:
================
Date: 2021-11-16 12:40:54.585
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-16 10:51:24.613
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-15 15:26:55.359
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-15 15:19:50.999
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-15 15:14:20.998
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]:

Date: 2021-11-16 07:59:36.813
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.353.1021.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.18700.4
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:36.812
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.353.1021.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.18700.4
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:24.493
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:
Update Source: User
Signature Type:
Update Type:
Current Engine Version:
Previous Engine Version:
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:24.468
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:
Update Source: User
Signature Type:
Update Type:
Current Engine Version:
Previous Engine Version:
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:00.778
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.353.1021.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.18700.4
Error code: 0x80240016
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.04 07/15/2015
Motherboard: Acer Larne
Processor: AMD A6-6310 APU with AMD Radeon R4 Graphics
Percentage of memory in use: 27%
Total physical RAM: 7128.23 MB
Available physical RAM: 5189.35 MB
Total Virtual: 8280.23 MB
Available Virtual: 6418.67 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:914.65 GB) (Free:729.68 GB) NTFS

\\?\Volume{c10df685-5d1e-4ebd-a3fc-0cfe990e53ae}\ (Recovery) (Fixed) (Total:0.59 GB) (Free:0.3 GB) NTFS
\\?\Volume{c372da78-ce73-4d57-93c4-8d0759b2327f}\ (Push Button Reset) (Fixed) (Total:15.86 GB) (Free:2.41 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 6021E6C0)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118243
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Disk na 100percent a pomale ntb

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukitko
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 24 lis 2012 13:45

Re: Disk na 100percent a pomale ntb

#3 Příspěvek od lukitko »

# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-11-18.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-25-2021
# Duration: 00:00:47
# OS: Windows 8.1
# Cleaned: 81
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files\Booking.com
Deleted C:\ProgramData\Pokki
Deleted C:\Users\Public\Pokki
Deleted C:\Users\User\AppData\Local\SweetLabs App Platform

***** [ Files ] *****

Deleted C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
Deleted C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
Deleted C:\Users\User\Favorites\Booking.com.url

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted C:\Windows\System32\Tasks\SWEETLABS APP PLATFORM

***** [ Registry ] *****

Deleted HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
Deleted HKCU\Software\Classes\Directory\shell\pokki
Deleted HKCU\Software\Classes\Drive\shell\pokki
Deleted HKCU\Software\Classes\lnkfile\shell\pokki
Deleted HKCU\Software\Classes\pokki
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu
Deleted HKCU\Software\SweetLabs App Platform
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C98AD713-E716-4213-8C29-59DFE3BD19BB}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SweetLabs App Platform
Deleted HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\TBDEn|SBOEM2

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.ACERAOPFramework Folder C:\Program Files (x86)\ACER\AOP FRAMEWORK
Deleted Preinstalled.ACERAOPFramework Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|BacKGround Agent
Deleted Preinstalled.ACERAOPFramework Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{4A37A114-702F-4055-A4B6-16571D4A5353}
Deleted Preinstalled.ACERClear.fiShellExtension Registry HKLM\Software\Classes\CLSID\{ED32C084-BABB-11E1-B491-D4D66088709B}
Deleted Preinstalled.AcerCareCenter Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}
Deleted Preinstalled.AcerExplorerAgent Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}
Deleted Preinstalled.AcerPowerManagement Folder C:\Program Files\ACER\ACER POWER MANAGEMENT
Deleted Preinstalled.AcerQuickAccess Folder C:\Program Files\ACER\ACER QUICK ACCESS
Deleted Preinstalled.AcerQuickAccess Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{15277EC1-DEF4-4703-B9CC-D9F353740472}
Deleted Preinstalled.AcerQuickAccess Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Quick Access
Deleted Preinstalled.AcerQuickAccess Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}
Deleted Preinstalled.AcerQuickAccess Task C:\Windows\System32\Tasks\QUICK ACCESS
Deleted Preinstalled.AcerUEIPFramework Folder C:\Program Files\ACER\USER EXPERIENCE IMPROVEMENT PROGRAM\PLUGIN\APPMONITOR
Deleted Preinstalled.AcerUEIPFramework Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{12A718F2-2357-4D41-9E1F-18583A4745F7}
Deleted Preinstalled.AcerUpdater Folder C:\ProgramData\ACER\ACER UPDATER
Deleted Preinstalled.GatewayPowerManagement Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E99D7046-1268-476B-8161-E5200A26970F}
Deleted Preinstalled.GatewayPowerManagement Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Power Management
Deleted Preinstalled.GatewayPowerManagement Task C:\Windows\System32\Tasks\POWER MANAGEMENT
Deleted Preinstalled.LenovoPowerDVD Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}
Deleted Preinstalled.LenovoPowerDVD Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}
Deleted Preinstalled.PackardBellPowerManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{91F52DE4-B789-42B0-9311-A349F10E5479}
Deleted Preinstalled.WildTangentGamesBundle File C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games App - acer.lnk
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\ALOHA TRIPEAKS
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\FARM TO FORK COLLECTORS EDITION
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\GOVERNOR OF POKER 2 PREMIUM EDITION
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\JEWEL MATCH 3
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\KING ODDBALL
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\LUXOR EVOLVED
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\MAGIC ACADEMY
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\PEGGLE NIGHTS
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\PLANTS VS ZOMBIES - GAME OF THE YEAR
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\POLAR BOWLER 1ST FRAME
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\TRINKLIT SUPREME
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDGAMES\ZUMAS REVENGE
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDTANGENT GAMES
Deleted Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDTANGENT GAMES\APP
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-0513b71e-fc05-4f5d-b314-c3f66985b033
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-0db80174-f49f-4e0d-b74b-010daab2c125
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-1f9302ba-ad6c-4d95-adb3-3d317c47f6b9
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-36680bb4-a1ba-44ae-bc97-e8e69ef6d63f
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-3eb7a672-18b3-4cf4-9220-bbbe2d1b4241
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-7629c3e0-81c4-4331-8d48-fea6aa86a243
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-89083f96-439b-40b7-94dd-184399db681d
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-8cf191b2-a67c-435e-afef-755778855bd4
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-9012a3af-2672-4f16-898d-6eb41a599dc0
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-93f6ec6c-4ab5-4e4a-b9a0-4c465f5afda4
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-afba9316-373f-48e3-9a55-cf9306ef9964
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-b7be7ebf-5b65-4415-80ff-723610ba3440
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-e59a4c10-1ee0-4663-ad29-985ed06aa136
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WTA-fc929f39-f1f8-40b7-a75b-59e9db6a5971
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WildTangent wildgames Master Uninstall
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WildTangentGameProvider-acer-genres
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WildTangentGameProvider-acer-main
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
Deleted Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer
Deleted Preinstalled.WildTangentGamesBundle Registry HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Deleted Preinstalled.WildTangentGamesBundle Registry HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Deleted Preinstalled.WildTangentGamesBundle Registry HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Deleted Preinstalled.WildTangentGamesBundle Registry HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [11297 octets] - [25/11/2021 19:23:14]
AdwCleaner[S01].txt - [11359 octets] - [25/11/2021 19:43:55]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118243
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Disk na 100percent a pomale ntb

#4 Příspěvek od Rudy »

Teď dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukitko
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 24 lis 2012 13:45

Re: Disk na 100percent a pomale ntb

#5 Příspěvek od lukitko »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-11-2021
Ran by User (administrator) on MIKULAS (Acer NC-E5-521G-63FG) (25-11-2021 19:59:06)
Running from C:\Users\User\Downloads
Loaded Profiles: User
Platform: Microsoft Windows 8.1 (Update) (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Disig a.s. -> Disig a.s.) C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Huawei Technologies Co., Ltd. -> ) C:\ProgramData\DatacardService\HWDeviceService64.exe
(Huawei Technologies Co., Ltd. -> ) C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(Huawei Technologies Co., Ltd. -> Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(McAfee, Inc. -> McAfee, LLC.) C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.ServiceHelper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.19991_none_fa0fb7959b4c8c91\TiWorker.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Ministerstvo vnútra Slovenskej republiky -> Ministerstvo vnútra Slovenskej republiky) C:\Program Files (x86)\EAC MW klient\EAC_MW_klient.exe
(Qualcomm Atheros -> ) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Qualcomm Atheros -> Atheros Communications) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Skype Software Sarl -> Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672304 2014-03-21] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161728 2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" (No File)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-05-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-01-23] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4509184 2012-12-27] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [EAC_MW_klient] => C:\Program Files (x86)\EAC MW klient\EAC_MW_klient.exe [11819664 2021-07-20] (Ministerstvo vnútra Slovenskej republiky -> Ministerstvo vnútra Slovenskej republiky)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-02-26] (Qualcomm Atheros -> Atheros Communications) [File not signed]
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [BingSvc] => C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe [146312 2020-08-24] (Microsoft Corporation -> © 2015 Microsoft Corporation)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Zoom] => [X]
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\User\AppData\Local\Microsoft\Teams\Update.exe [2453728 2021-04-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Disig Web Signer] => C:\Program Files (x86)\Disig\Web Signer\WebSignerTray.exe [254080 2021-02-04] (Disig a.s. -> Disig a.s.)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {06ec9cca-63f8-11e6-8283-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504be15a-0237-11e6-826c-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504bedf8-0237-11e6-826c-f0761c8361b3} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {739240cd-d40e-11e6-8298-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd4fc4-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd52ad-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {a3196251-356c-11e6-8278-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4da-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4ec-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {e6a33810-b01c-11e8-82b7-f0761cd21add} - "E:\HiSuiteDownLoader.exe"
HKLM\...\Print\Monitors\EPSON PGSTM 64Monitor86: C:\Windows\system32\E_L12086.DLL [120320 2011-04-19] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.45\Installer\chrmstp.exe [2021-11-20] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.CredentialProvider.dll [2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" "C:\Program Files\McAfee\TrueKey\McAfeeTrueKeyPasswordFilter"

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {012B6F7E-1495-4293-90E0-79732F44AF42} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-09] (Adobe Inc. -> Adobe)
Task: {0D8A891D-890C-4808-84D8-2F436AB14653} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {1274336E-AB06-46B6-A48C-0671C5557CC6} - \Microsoft\Windows\TaskScheduler\Maintenance Configurator -> No File <==== ATTENTION
Task: {1687544D-7247-4F5A-965A-A6E920E55278} - \Microsoft\Windows\TaskScheduler\Manual Maintenance -> No File <==== ATTENTION
Task: {19F1E2AA-D21F-4666-8977-8117BE8841E7} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [439016 2014-06-10] (Acer Incorporated -> Acer Incorporate)
Task: {2B84CD10-20CC-4637-8685-78E21EEDE83D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {31B4BAE1-573B-4862-B52B-AA31B3887D7B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {4A61C759-06E2-4116-8008-CC463C851D02} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {4A872CA8-7957-4D4A-B755-19B0CDEEE7A1} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4665296 2018-09-11] (McAfee, Inc. -> McAfee, Inc.)
Task: {60555179-EBEA-4BD7-A7CA-2B03B841BC71} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [356968 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DFBF9CB-9FFC-45EB-A04A-DF20ED9D7A71} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
Task: {6E576D73-B891-4986-A140-574AC323C550} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {6F02587F-8A2B-4552-97F6-DEEF229E335B} - \Microsoft\Windows\TaskScheduler\Idle Maintenance -> No File <==== ATTENTION
Task: {AA9F1F0F-147D-4013-A93A-B1C5D81C0680} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472928 2015-07-17] (Acer Incorporated -> Acer Incorporated)
Task: {AB5DBC95-BF6B-4E71-8589-B68261B2DB6C} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [682936 2021-11-08] (Mozilla Corporation -> Mozilla Foundation)
Task: {AF6D5A0D-3469-43FD-AA45-9B329DDB7862} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe -noui -normsvc (No File)
Task: {B192A731-9A8A-4DC8-B8E5-9A2690F54DE9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
Task: {B7992938-01F1-4F40-A0EC-0D23D2F0F152} - \Microsoft\Windows\TaskScheduler\Regular Maintenance -> No File <==== ATTENTION
Task: {C3B525E0-AF90-4431-985B-38004445DA3C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - \Microsoft\Windows\SettingSync\BackupTask -> No File <==== ATTENTION
Task: {F2116EEF-0712-418E-B62D-FD8D8C7AE618} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 195.146.128.62 195.146.132.58
Tcpip\..\Interfaces\{4C95C759-8E22-4535-9864-F9DF50395E6B}: [DhcpNameServer] 185.152.196.29 185.152.196.28
Tcpip\..\Interfaces\{A65A9BB7-E062-4CEC-B05F-E0F9163825BA}: [DhcpNameServer] 195.146.128.62 195.146.132.58

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2021-07-07]
Edge HomePage: Default -> hxxp://acer13.msn.com/?pc=ACJB

FireFox:
========
FF DefaultProfile: qixlgmrr.default
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default [2021-11-25]
FF Homepage: Mozilla\Firefox\Profiles\qixlgmrr.default -> hxxp://www.google.sk
FF Notifications: Mozilla\Firefox\Profiles\qixlgmrr.default -> hxxps://www.freefilm.to; hxxps://teams.microsoft.com
FF Extension: (Bing Search) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default\Extensions\bingsearch.full@microsoft.com.xpi [2016-03-08] [Legacy]
FF Extension: (FF Helper Tool) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default\Extensions\{01f409a5-d617-47be-a574-d54325fe05d1}.xpi [2017-12-17] [UpdateUrl:hxxps://helpertoolff.com/update.json]
FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\qixlgmrr.default\searchplugins\bing-.xml [2016-03-08]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] (Foxit Corporation -> )
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] (Foxit Corporation -> )
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: ditec.sk/DAsicFac -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/DitecZepDViewerFb -> C:\PROGRA~2\Ditec\DViewer\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigMessageContainer -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesExtender -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~3.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/XmlDataContainerFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)

Chrome:
=======
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2021-11-25]
CHR Notifications: Default -> hxxps://teams.microsoft.com
CHR Extension: (Prezentácie) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-06-04]
CHR Extension: (Dokumenty) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-06-04]
CHR Extension: (Disk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-03]
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-06-04]
CHR Extension: (Tabuľky) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-06-04]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-11-18]
CHR Extension: (Skype) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2020-06-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03]
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-26] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed]
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2794224 2018-05-26] (ESET, spol. s r.o. -> ESET)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] (Huawei Technologies Co., Ltd. -> )
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporated -> Acer Incorporate)
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S2 TrueKey; C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.Service.exe [352688 2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
S2 TrueKeyScheduler; C:\Program Files\McAfee\TrueKey\McTkSchedulerService.exe [352688 2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
R2 TrueKeyServiceHelper; C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.ServiceHelper.exe [194168 2018-11-27] (McAfee, Inc. -> McAfee, LLC.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [112144 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
S2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [X]
S3 ePowerSvc; "C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe" [X]
S2 GamesAppIntegrationService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe" [X]
S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X]
S2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe -originalversion 4.4.127.0 [X]
S2 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X]
S3 QASvc; "C:\Program Files\Acer\Acer Quick Access\QASvc.exe" [X]
S3 RMSvc; "C:\Program Files\Acer\Acer Quick Access\RMSvc.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [267304 2018-05-07] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15488 2016-09-01] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [200360 2018-05-07] (ESET, spol. s r.o. -> ESET)
R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [184184 2018-05-07] (ESET, spol. s r.o. -> ESET)
S3 ew_hwusbdev; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [109568 2013-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ew_usbenumfilter; C:\Windows\System32\drivers\ew_usbenumfilter.sys [14976 2012-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 GemCCID; C:\Windows\system32\DRIVERS\GemCCID.sys [137712 2016-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Gemalto)
R3 huawei_enumerator; C:\Windows\System32\drivers\ew_jubusenum.sys [91648 2013-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\Windows\system32\DRIVERS\ew_cdcacm.sys [125952 2014-07-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_wwanecm; C:\Windows\system32\DRIVERS\ew_wwanecm.sys [380672 2014-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated -> Acer Incorporated)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated -> Acer Incorporated)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 MpKsl5256ef33; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8AD0271-3BED-4EB6-9C90-DF11EE5CEE1A}\MpKslDrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-11-25 19:21 - 2021-11-25 19:45 - 000000000 ____D C:\AdwCleaner
2021-11-25 18:34 - 2021-11-25 20:02 - 000023732 _____ C:\Users\User\Downloads\FRST.txt
2021-11-25 18:21 - 2021-11-25 18:34 - 000052005 _____ C:\Users\User\Downloads\Addition.txt
2021-11-25 18:13 - 2021-11-25 20:01 - 000000000 ____D C:\FRST
2021-11-25 18:13 - 2021-11-25 18:13 - 002311680 _____ (Farbar) C:\Users\User\Downloads\FRST64 (1).exe
2021-11-25 18:12 - 2021-11-25 18:12 - 002311680 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe
2021-11-25 18:10 - 2021-11-25 18:11 - 008540344 _____ (Malwarebytes) C:\Users\User\Downloads\adwcleaner_8.3.1.exe
2021-11-22 19:47 - 2021-11-22 19:47 - 000841878 _____ C:\Users\User\Desktop\22.11.pdf
2021-11-22 19:44 - 2021-11-22 19:44 - 000733605 _____ C:\Users\User\Desktop\22.11a.pdf
2021-11-20 11:50 - 2021-11-20 11:51 - 000129780 _____ C:\Users\User\Downloads\VYZVA_Odpad_PO_2021.pdf
2021-11-20 11:46 - 2021-11-20 11:46 - 000094138 _____ C:\Users\User\Downloads\20210007578.pdf
2021-11-20 11:45 - 2021-11-20 11:45 - 000068574 _____ C:\Users\User\Downloads\20210007578.asice
2021-11-20 11:41 - 2021-11-20 11:41 - 000029133 _____ C:\Users\User\Downloads\VL 102021a (1).pdf
2021-11-20 11:38 - 2021-11-20 11:38 - 000904334 _____ C:\Users\User\Downloads\pasky 102021.pdf
2021-11-20 11:37 - 2021-11-20 11:38 - 000030719 _____ C:\Users\User\Downloads\VL 102021b.pdf
2021-11-20 11:36 - 2021-11-20 11:36 - 000029133 _____ C:\Users\User\Downloads\VL 102021a.pdf
2021-11-20 11:35 - 2021-11-20 11:35 - 000065263 _____ C:\Users\User\Downloads\fa plzensky prazdroj (1).pdf
2021-11-20 11:30 - 2021-11-20 11:30 - 000065263 _____ C:\Users\User\Downloads\fa plzensky prazdroj.pdf
2021-11-15 17:47 - 2021-11-15 17:47 - 000843751 _____ C:\Users\User\Desktop\15.11 new.pdf
2021-11-15 17:42 - 2021-11-15 17:42 - 000735928 _____ C:\Users\User\Desktop\15.11a.pdf
2021-11-08 17:39 - 2021-11-08 17:39 - 000841550 _____ C:\Users\User\Desktop\8.11 new.pdf
2021-11-08 17:39 - 2021-11-08 17:39 - 000733743 _____ C:\Users\User\Desktop\8.11a.pdf
2021-11-06 09:38 - 2021-11-06 09:38 - 000055776 _____ C:\Users\User\Downloads\urn uvci 01 SK 174CDF9D9D084818BCB4100B6F726273.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-11-25 19:58 - 2016-03-08 09:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Skype
2021-11-25 19:58 - 2016-03-06 19:33 - 000003596 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1523700424-2775466909-647613524-1001
2021-11-25 19:57 - 2016-11-20 21:09 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla
2021-11-25 19:56 - 2020-06-04 09:20 - 000000000 ____D C:\Program Files (x86)\Google
2021-11-25 19:56 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\Inf
2021-11-25 19:53 - 2018-10-03 10:02 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-11-25 19:53 - 2013-08-22 15:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-11-25 19:50 - 2019-02-06 18:53 - 000000000 ____D C:\ProgramData\Mozilla
2021-11-25 19:49 - 2016-03-06 19:58 - 000000000 ____D C:\Users\User\AppData\Local\ClassicShell
2021-11-25 19:46 - 2014-07-25 22:26 - 000000000 ____D C:\Program Files\Acer
2021-11-25 19:46 - 2014-07-25 22:20 - 000000000 ____D C:\ProgramData\acer
2021-11-25 19:46 - 2014-07-25 22:20 - 000000000 ____D C:\Program Files (x86)\Acer
2021-11-25 19:08 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\rescache
2021-11-25 18:14 - 2020-07-27 14:05 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-11-25 18:14 - 2020-07-27 14:05 - 000002212 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-11-24 22:05 - 2016-11-09 21:11 - 000000000 ____D C:\Program Files\McAfee
2021-11-24 22:03 - 2014-07-25 22:21 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2021-11-24 22:00 - 2014-07-25 22:28 - 000000000 ____D C:\ProgramData\McAfee
2021-11-20 11:39 - 2020-06-04 09:22 - 000002260 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-11-20 11:39 - 2020-06-04 09:22 - 000002219 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-11-19 09:36 - 2016-03-06 20:05 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2021-11-19 09:22 - 2016-03-06 19:55 - 000003818 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{3BDEBC76-BF05-4E73-AC21-F17283BE6032}
2021-11-18 08:06 - 2020-07-27 14:04 - 000003476 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-11-18 08:06 - 2020-07-27 14:04 - 000003348 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-11-18 07:53 - 2013-08-22 15:44 - 000443016 _____ C:\Windows\system32\FNTCACHE.DAT
2021-11-18 07:47 - 2016-03-07 15:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-11-16 11:13 - 2013-08-22 16:20 - 000000000 ____D C:\Windows\CbsTemp
2021-11-16 10:57 - 2016-03-15 00:46 - 000000000 ____D C:\Windows\system32\MRT
2021-11-16 10:46 - 2016-03-15 00:46 - 141529560 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-11-08 16:49 - 2017-08-22 13:24 - 000017082 _____ C:\Windows\system32\perfh01B.dat
2021-11-08 16:49 - 2017-08-22 13:24 - 000006132 _____ C:\Windows\system32\perfc01B.dat
2021-11-08 16:49 - 2014-03-18 11:03 - 000870760 _____ C:\Windows\system32\PerfStringBackup.INI
2021-11-08 16:46 - 2021-10-18 12:45 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-11-08 16:45 - 2016-03-07 15:43 - 000001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-11-06 09:36 - 2017-01-18 19:16 - 000002083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-11-01 17:08 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\BBI

==================== Files in the root of some directories ========

2021-04-08 19:47 - 2021-04-08 19:47 - 000007667 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2021-11-15 14:49
==================== End of FRST.txt ========================





Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-11-2021
Ran by User (25-11-2021 20:06:05)
Running from C:\Users\User\Downloads
Microsoft Windows 8.1 (Update) (X64) (2016-03-06 18:25:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1523700424-2775466909-647613524-500 - Administrator - Disabled)
Guest (S-1-5-21-1523700424-2775466909-647613524-501 - Limited - Disabled)
User (S-1-5-21-1523700424-2775466909-647613524-1001 - Administrator - Enabled) => C:\Users\User

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET NOD32 Antivirus (Disabled - Out of date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET NOD32 Antivirus (Enabled - Out of date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8107 - Acer Incorporated)
Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2005.0 - Acer Incorporated)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.007.20099 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe)
AMD Catalyst Install Manager (HKLM\...\{E043161E-A691-B3C2-E60C-2FBBD8CFF720}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Balík softvéru eID (HKLM-x32\...\{9bc5c8ce-4146-47e0-a067-d958a8522c54}) (Version: 1.0.0.0 - Ministerstvo vnútra Slovenskej republiky) Hidden
Balík softvéru eID (HKLM-x32\...\{ea81dcd3-f9f3-4959-8bee-0349fc294ae5}) (Version: 1.0.0.0 - Ministerstvo vnútra Slovenskej republiky) Hidden
Bit4id - miniLector (HKLM-x32\...\Bit4id - miniLector) (Version: 3.7 - Bit4id)
Brother MFL-Pro Suite DCP-1510 series (HKLM-x32\...\{90C24B16-9C28-44AB-8C63-BB9822218E18}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
Classic Shell (HKLM\...\{D4B3454F-7529-4F5F-851D-2C36933F7D64}) (Version: 4.2.5 - IvoSoft)
D.Launcher (x86) (HKLM-x32\...\{89B7C4D5-23FB-448B-9E0A-683A4C842AC8}) (Version: 1.2.0.2 - DITEC, a.s.)
D.Signer/XAdES .NET so zásuvnými modulmi (x86) (HKLM-x32\...\{031978EA-8E98-4AC0-8588-B7AA96FA753D}) (Version: 4.0.23 - DITEC, a.s.)
D.Signer/XAdES .NET Tools (x86) (HKLM-x32\...\{1D5A92D5-3794-4D73-971F-0ED4B92D0999}) (Version: 4.0.17 - DITEC, a.s.)
D.Suite/eIDAS (x86) (HKLM-x32\...\{543e4ced-e4c8-4b5d-ae1d-2964a4ec5827}) (Version: 1.0.28 - DITEC, a.s.)
D.Viewer .NET (x86) (HKLM-x32\...\{59FF6B38-294E-4001-AB13-552A1C10E607}) (Version: 4.0.2033 - DITEC, a.s.)
Disig Web Signer (HKLM-x32\...\{41C0F02D-2389-4AB5-975C-C2363E7C554C}) (Version: 2.0.7 - Disig)
EAC MW klient (HKLM-x32\...\{E22CF5CA-5935-451D-9B9D-EAA79DE703BD}) (Version: 3.7.0 - Ministerstvo vnútra Slovenskej republiky)
EPSON AL-M300 Advanced Printer Uninstall (HKLM\...\EPSON AL-M300 Advanced) (Version: - SEIKO EPSON Corporation)
EPSON Status Monitor (HKLM\...\BSTMInst) (Version: - SEIKO EPSON Corporation)
EPSON Status Monitor Installer (HKLM\...\{B97913BC-EBE5-487D-8A3E-1533A4F4ECC0}) (Version: 1.02.0000 - Seiko Epson Corporation) Hidden
ESET NOD32 Antivirus (HKLM\...\{DC91B197-2D38-4659-9EF7-AF3A8F5A2E0B}) (Version: 9.0.374.1 - ESET, spol. s r.o.)
Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation)
GemPcCCID (HKLM\...\{C2C14C20-A217-4FCA-B668-89B6C70B6EFF}) (Version: 2.0.7 - Gemalto)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.45 - Google LLC)
McAfee True Key (HKLM\...\TrueKey) (Version: 5.2.167.1 - McAfee, LLC)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.34 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Teams) (Version: 1.4.00.8872 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 23.015.11.01.85 - Huawei Technologies Co.,Ltd)
Mozilla Firefox (x64 sk) (HKLM\...\Mozilla Firefox 94.0.1 (x64 sk)) (Version: 94.0.1 - Mozilla)
OEM Application Profile (HKLM-x32\...\{C01EB132-6707-740E-6ED9-EAC3943918DB}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
PSP Application (HKLM\...\{8DB698FB-2E57-A223-0169-911CA8736440}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.29 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21250 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7209 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.15.5 - TeamViewer)
Zoom (HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\ZoomUMX) (Version: 5.4.9 (59931.0110) - Zoom Video Communications, Inc.)

Packages:
=========
- Games App - -> C:\Program Files\WindowsApps\WildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-08] (WildTangent Games)
AccuWeather for Windows 8 -> C:\Program Files\WindowsApps\AccuWeather.AccuWeatherforWindows8_4.1.0.31_x64__8zz2pj9h1h1d8 [2016-08-09] (AccuWeather)
Acer Explorer -> C:\Program Files\WindowsApps\AcerIncorporated.AcerExplorer_2.0.0.3002_neutral__48frkmn4z8aw4 [2016-03-08] (Acer Incorporated)
Booking.com Partner Edition -> C:\Program Files\WindowsApps\4AE8B7C2.Booking.comPartnerEdition_1.2.1.0_x64__6wqyppa9wfhnr [2016-03-06] (Booking.com B.V.)
eBay -> C:\Program Files\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw [2016-03-08] (eBay, Inc)
Evernote Touch -> C:\Program Files\WindowsApps\Evernote.Evernote_3.3.0.102_x86__q4d96b2w5wcc2 [2016-03-08] (Evernote)
Flipboard -> C:\Program Files\WindowsApps\Flipboard.Flipboard_2.1.3.0_neutral__3f5azkryzdbc4 [2017-07-19] (Flipboard)
Fresh Paint -> C:\Program Files\WindowsApps\Microsoft.FreshPaint_2.0.15133.0_x86__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation)
Hry -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2014-03-18] (Microsoft Corporation) [MS Ad]
Hudba -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
Kindle -> C:\Program Files\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp [2016-03-08] (AMZN Mobile LLC)
MSN Cestovanie -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
MSN Financie -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-05-20] (Microsoft Corporation) [MS Ad]
MSN Jedlá a nápoje -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
MSN Počasie -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-24] (Microsoft Corporation) [MS Ad]
MSN Správy -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-05-20] (Microsoft Corporation) [MS Ad]
MSN Šport -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-05-20] (Microsoft Corporation) [MS Ad]
MSN Zdravie a fitnes -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-08] (Skype) [MS Ad]
TuneIn Radio -> C:\Program Files\WindowsApps\TuneIn.TuneInRadio_1.1.0.0_neutral__6bhtb546zcxnj [2015-03-24] (TuneIn)
Video -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-08] (Microsoft Corporation) [MS Ad]
Videomomentky -> C:\Program Files\WindowsApps\Microsoft.MovieMoments_6.3.9654.20464_x64__8wekyb3d8bbwe [2016-03-06] (Microsoft Corporation)
Zinio -> C:\Program Files\WindowsApps\ZinioLLC.Zinio_2.1.0.317_x64__0q6dqzpp40p2e [2015-03-24] (Zinio LLC)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20339.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvAppExt.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
ContextMenuHandlers1: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2018-05-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2014-05-14] (Foxit Corporation -> Foxit Corporation)
ContextMenuHandlers2: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2018-05-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ShellContextExt.dll [2014-02-26] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2014-05-22] (Advanced Micro Devices, Inc.) [File not signed]
ContextMenuHandlers6: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2018-05-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\Windows\system32\StartMenuHelper64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge (2).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2021-02-12 07:24 - 2021-02-12 07:24 - 000047104 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_date_time-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000114688 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_filesystem-vc140-mt-1_62.dll
2021-02-12 07:23 - 2021-02-12 07:23 - 000029184 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_chrono-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000605184 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_log-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000217088 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_serialization-vc140-mt-1_62.dll
2021-02-12 07:23 - 2021-02-12 07:23 - 000019456 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_system-vc140-mt-1_62.dll
2021-02-12 07:24 - 2021-02-12 07:24 - 000089600 _____ () [File not signed] C:\Program Files (x86)\EAC MW klient\boost_thread-vc140-mt-1_62.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000011264 _____ () [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2014-02-26 06:11 - 2014-02-26 06:11 - 000086016 _____ () [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2016-04-12 19:45 - 2009-06-23 03:42 - 000043008 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll
2016-04-12 19:45 - 2009-01-10 19:32 - 000011362 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll
2016-04-12 19:45 - 2013-08-31 06:44 - 002417152 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll
2016-04-12 19:45 - 2013-08-31 06:46 - 001148416 _____ () [File not signed] C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll
2021-01-26 11:52 - 2021-01-26 11:52 - 001928192 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EAC MW klient\xerces-c_3_1.dll
2015-11-12 22:55 - 2015-11-12 22:55 - 000809920 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicExplorer64.dll
2015-11-12 22:55 - 2015-11-12 22:55 - 003528640 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000033408 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\CommApi.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000203392 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\FolderViewImpl.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000085632 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\GattI.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000126592 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\gatts.DLL
2014-02-26 06:18 - 2014-02-26 06:18 - 000083072 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Handsfree.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000034432 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ipc.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000063104 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ModuleManager.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 001067648 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\OutlookLib.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000027264 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\TCPConnection.dll
2014-02-26 06:18 - 2014-02-26 06:18 - 000115328 _____ (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\utils.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000308224 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\LE\LE.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000210432 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Audio\audio.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000162304 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\BasicPrintProfile\BPP.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000177152 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\BIP\BIP.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000018432 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\DID\DId.dll
2014-02-26 06:11 - 2014-02-26 06:11 - 000035840 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\FAX\Fax.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000421888 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\FileTransfer\FileTransfer.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000096256 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\GapSdp\GapSdp.dll
2014-02-26 06:09 - 2014-02-26 06:09 - 000097792 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\goep\goep.dll
2014-02-26 06:11 - 2014-02-26 06:11 - 000029696 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\HCRP\Hcrp.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000142848 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\HealthDevice\HDP.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000091136 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\L2capLib\l2caplib.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000066048 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\OppOperation\OppOperation.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000067072 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\pbap\pbap.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000063488 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\RfcommLib\rfcommlib.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000097280 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\sap\sap.dll
2014-02-26 06:14 - 2014-02-26 06:14 - 000087552 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\SesMgr\sesmgr.dll
2014-02-26 06:13 - 2014-02-26 06:13 - 000055296 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\spp\spp.dll
2014-02-26 06:12 - 2014-02-26 06:12 - 000064512 _____ (Qualcomm®Atheros®) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Sync\Sync.dll
2021-04-26 12:52 - 2021-04-26 12:52 - 000409088 _____ (The curl library, hxxps://curl.se/) [File not signed] C:\Program Files (x86)\EAC MW klient\libcurl.dll
2021-04-26 11:09 - 2021-04-26 11:09 - 002551808 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files (x86)\EAC MW klient\libcrypto-1_1.dll
2021-04-26 11:10 - 2021-04-26 11:10 - 000536064 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files (x86)\EAC MW klient\libssl-1_1.dll
2021-02-17 21:05 - 2021-02-17 21:05 - 000025088 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\imageformats\qgif.dll
2021-02-17 21:05 - 2021-02-17 21:05 - 001021440 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\platforms\qwindows.dll
2021-02-17 20:44 - 2021-02-17 20:44 - 004689408 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Core_mw_x86_vc140.dll
2021-02-17 20:52 - 2021-02-17 20:52 - 005001728 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Gui_mw_x86_vc140.dll
2021-02-17 20:46 - 2021-02-17 20:46 - 000686592 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Network_mw_x86_vc140.dll
2021-02-17 21:15 - 2021-02-17 21:15 - 002572800 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Qml_mw_x86_vc140.dll
2021-02-17 21:22 - 2021-02-17 21:22 - 002727936 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Quick_mw_x86_vc140.dll
2021-02-17 20:59 - 2021-02-17 20:59 - 004505600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Widgets_mw_x86_vc140.dll
2021-02-17 20:46 - 2021-02-17 20:46 - 000151040 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\Qt5Xml_mw_x86_vc140.dll
2021-02-17 21:27 - 2021-02-17 21:27 - 000013824 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\QtQuick.2\qtquick2plugin.dll
2021-03-01 17:57 - 2021-03-01 17:57 - 000097792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\EAC MW klient\scenegraph\softwarecontext.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com/?pc=ACJB
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKLM -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
BHO: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie64.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie64.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/SK/Core/Player/2020PlayerAX_IKEA_Win32.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2021-11-19 09:20 - 000000933 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\acer01.jpg
DNS Servers: 195.146.128.62 - 195.146.132.58
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "Web Signer.lnk"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKLM\...\StartupApproved\Run32: => "BrStsInd00"
HKLM\...\StartupApproved\Run32: => "ControlCenter4"
HKLM\...\StartupApproved\Run32: => "BrStsMon00"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\StartupApproved\Run: => "BingSvc"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{6B04AB04-A2A8-4C44-AD62-DFBE5F7C8CCA}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{2EA69E2E-4249-4721-9591-66DB1CB31741}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{05FB242C-6370-4FB6-8BA6-BD7354BF5106}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{3F14814A-6654-4502-BAE3-2DB1FEF910BF}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{2589C329-AB2F-46F6-8E8D-9248B56CE344}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{D6EF0449-6107-48A0-95A8-EF40668E33BC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{F464C4BB-0BDC-43B9-BFC5-5E6583599744}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{A887D22E-D816-4E22-9ED0-B28FE8F6AE12}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{80386162-F41D-4031-83F2-073C9E49FD26}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{1624C36E-444C-42D3-832D-31A4D3F3FB78}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{AA659CEF-6039-44D0-A694-99235435F035}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{243C89A4-2023-43BF-9B8A-6161F31B4326}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A30B253B-B694-4F13-B81F-B7059A868E90}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8AA2FC73-3F4D-4C0D-96C3-5B709B6481A6}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CA564F88-F7F0-455D-B24A-A5C69ADEF513}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{FA5C99F1-8E0E-4D16-89B0-E9F45E3B5B3C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe => No File
FirewallRules: [{D685CF94-3087-4FC0-9F8B-0F0791C7115F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe => No File
FirewallRules: [{5A85FAF8-EE7B-4896-B106-0F186BA22F43}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe => No File
FirewallRules: [{5BECE0E6-58B4-447E-A90F-256B40025D65}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{9EBEF17A-C21D-458B-AF4D-84A5EB700193}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{A5D9BBE3-B769-4672-8835-9DF7753D70E9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{D9E98378-2939-4FBA-B2C4-37E74E64F754}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{879BAFC7-A51D-4436-8144-BEDD4EB5D367}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{4C88FEF6-FD44-4129-8C0C-E2E21377C2FA}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{27A2B564-3AFF-4AD5-98C4-6D91D0E3E1C4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{6730E94D-B632-43AB-B7C0-0422EC47A3CF}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{105F8020-15AC-4B52-9074-38EF57BF2F0D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{ACFE6C23-9E7A-455B-8581-B5E9B52F5944}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{4C693CA6-34CA-467E-B312-D6A3D0D70070}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FBC1C46A-0458-4460-928B-A90529294F3A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{3062B330-ABBF-410D-9DB2-823BEEEAE653}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{2DF4822D-90B5-474E-AC3E-3AC9475C0E44}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{C7412481-07B9-490D-8284-281D9BBC1800}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{65711C62-4430-4818-AF40-80FBC6B6FD11}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{12FCC822-E2BE-4025-8E33-73919465812A}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{DBD16FA9-74A0-44A9-BF35-0304E40EBA9F}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{7DF7E3DC-D7E9-40FE-973F-317EAD50FD53}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{83CD82BC-7C5A-4FE0-8CC7-F61F602EC372}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{96E78D4F-CA0B-40EF-9783-83788342FB2F}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{E087B67C-6753-4F81-8252-276948609C57}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{0370C407-EDA6-4568-911A-44BF950A17D5}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{CF3D7B6A-322C-4ECF-AB84-91E5EE8DA638}C:\users\user\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\user\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D20C0E71-E5C9-4D41-84D1-CACF0CAA3E70}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{422FE972-9B08-48D4-AC20-075D40FF6A33}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{3A340149-0737-44A0-893A-08C79697C6F6}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{F9BFC92C-B468-4C8B-A48D-8AD2085B910D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FF0E0B16-7C29-4CC9-84CE-0855B985FC2A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{AB46A64C-D38E-4E65-9F54-CD2AE6DE5A4B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FE914BCF-91B6-437B-AECA-AFE8A68BA9FE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{48E55D6F-1487-4C02-9B22-582E1994A12E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

06-11-2021 09:23:46 Windows Update
15-11-2021 07:21:14 Windows Update
20-11-2021 11:28:47 Windows Update
24-11-2021 21:40:32 Windows Update
25-11-2021 19:44:30 AdwCleaner_BeforeCleaning_25/11/2021_19:44:29

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/19/2021 09:36:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Názov chybujúceho modulu: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Kód výnimky: 0xc0000602
Odstup chyby: 0x0000000000167998
Identifikácia chybujúceho procesu: 0x115c
Čas spustenia chybujúcej aplikácie: 0x01d7dd203b53191e
Cesta chybujúcej aplikácie: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Cesta chybujúceho modulu: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Identifikácia hlásenia: c1b5ded2-4913-11ec-8345-f0761cd21add
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (11/19/2021 09:16:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Názov chybujúceho modulu: Teams.exe, verzia: 1.4.0.8872, časová značka: 0x5e851aee
Kód výnimky: 0xc0000602
Odstup chyby: 0x0000000000167998
Identifikácia chybujúceho procesu: 0x618
Čas spustenia chybujúcej aplikácie: 0x01d7dd1d82ccb06a
Cesta chybujúcej aplikácie: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Cesta chybujúceho modulu: C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe
Identifikácia hlásenia: 0c96390e-4911-11ec-8344-f0761cd21add
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (11/06/2021 09:24:06 AM) (Source: MsiInstaller) (EventID: 1024) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech – Aktualizáciu Adobe Acrobat Reader DC
(21.007.20099) sa nepodarilo nainštalovať. Kód chyby je 1603. Inštalátor systému Windows umožňuje vytvárať denníky, ktoré vám môžu pomôcť pri odstraňovaní problémov s inštaláciou softvérových balíkov. Pokyny na zapnutie podpory zapisovania do denníka zobrazíte po kliknutí na nasledovné prepojenie: http://go.microsoft.com/fwlink/?LinkId=23127

Error: (11/06/2021 09:24:06 AM) (Source: MsiInstaller) (EventID: 11719) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech -- Chyba 1719.Windows Installer service could not be accessed. Contact your support personnel to verify that it is properly registered and enabled.

Error: (10/20/2021 04:52:54 PM) (Source: MsiInstaller) (EventID: 1024) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech – Aktualizáciu Adobe Acrobat Reader DC
(21.007.20099) sa nepodarilo nainštalovať. Kód chyby je 1603. Inštalátor systému Windows umožňuje vytvárať denníky, ktoré vám môžu pomôcť pri odstraňovaní problémov s inštaláciou softvérových balíkov. Pokyny na zapnutie podpory zapisovania do denníka zobrazíte po kliknutí na nasledovné prepojenie: http://go.microsoft.com/fwlink/?LinkId=23127

Error: (10/20/2021 04:52:54 PM) (Source: MsiInstaller) (EventID: 11719) (User: mikulas)
Description: Produkt: Adobe Acrobat Reader DC - Czech -- Chyba 1719.Windows Installer service could not be accessed. Contact your support personnel to verify that it is properly registered and enabled.

Error: (09/13/2021 02:01:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program WINWORD.EXE version 12.0.4518.1014 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 18a8

Start Time: 01d7a89e9650a24a

Termination Time: 31

Application Path: C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE

Report Id: 9d22ecd1-1492-11ec-833d-f0761cd21add

Faulting package full name:

Faulting package-relative application ID:

Error: (09/10/2021 03:49:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Explorer.EXE version 6.3.9600.18460 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: a40

Start Time: 01d7a65065a41cb6

Termination Time: 0

Application Path: C:\Windows\Explorer.EXE

Report Id: 532ce78f-1245-11ec-833d-f0761cd21add

Faulting package full name:

Faulting package-relative application ID:


System errors:
=============
Error: (11/25/2021 08:12:15 PM) (Source: DCOM) (EventID: 10010) (User: mikulas)
Description: The server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} did not register with DCOM within the required timeout.

Error: (11/25/2021 08:10:15 PM) (Source: DCOM) (EventID: 10010) (User: mikulas)
Description: The server {1ECCA34C-E88A-44E3-8D6A-8921BDE9E452} did not register with DCOM within the required timeout.

Error: (11/25/2021 07:56:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby GamesAppIntegrationService zlyhalo kvôli nasledujúcej chybe:
Systém nemôže nájsť zadaný súbor.

Error: (11/25/2021 07:54:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby McAfee True Key Scheduler zlyhalo kvôli nasledujúcej chybe:
Služba neodpovedala na riadiaci alebo spúšťací pokyn načas.

Error: (11/25/2021 07:54:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby McAfee True Key Scheduler bol dosiahnutý časový limit (30000 ms).

Error: (11/25/2021 07:54:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby McAfee True Key zlyhalo kvôli nasledujúcej chybe:
Služba neodpovedala na riadiaci alebo spúšťací pokyn načas.

Error: (11/25/2021 07:54:03 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby McAfee True Key bol dosiahnutý časový limit (30000 ms).

Error: (11/25/2021 07:53:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Mobile Partner. OUC zlyhalo kvôli nasledujúcej chybe:
Služba neodpovedala na riadiaci alebo spúšťací pokyn načas.


Windows Defender:
================
Date: 2021-11-25 19:41:32.440
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-25 19:20:09.859
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-25 19:09:40.218
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-25 19:02:59.661
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-11-16 12:40:54.585
Description:
Windows Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
?Event[0]:

Date: 2021-11-16 07:59:36.813
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.353.1021.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.18700.4
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:36.812
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.353.1021.0
Update Source: Microsoft Malware Protection Center
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.18700.4
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:24.493
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:
Update Source: User
Signature Type:
Update Type:
Current Engine Version:
Previous Engine Version:
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:24.468
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:
Update Source: User
Signature Type:
Update Type:
Current Engine Version:
Previous Engine Version:
Error code: 0x80070652
Error description: Práve prebieha iná inštalácia. Pred spustením novej inštalácie je nutné danú inštaláciu dokončiť.

Date: 2021-11-16 07:59:00.778
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.353.1021.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.18700.4
Error code: 0x80240016
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.04 07/15/2015
Motherboard: Acer Larne
Processor: AMD A6-6310 APU with AMD Radeon R4 Graphics
Percentage of memory in use: 24%
Total physical RAM: 7128.23 MB
Available physical RAM: 5360.11 MB
Total Virtual: 8280.23 MB
Available Virtual: 6623.15 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:914.65 GB) (Free:729.38 GB) NTFS

\\?\Volume{c10df685-5d1e-4ebd-a3fc-0cfe990e53ae}\ (Recovery) (Fixed) (Total:0.59 GB) (Free:0.3 GB) NTFS
\\?\Volume{c372da78-ce73-4d57-93c4-8d0759b2327f}\ (Push Button Reset) (Fixed) (Total:15.86 GB) (Free:2.41 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 6021E6C0)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118243
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Disk na 100percent a pomale ntb

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" (No File)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Zoom] => [X]
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {06ec9cca-63f8-11e6-8283-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504be15a-0237-11e6-826c-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504bedf8-0237-11e6-826c-f0761c8361b3} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {739240cd-d40e-11e6-8298-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd4fc4-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd52ad-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {a3196251-356c-11e6-8278-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4da-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4ec-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {e6a33810-b01c-11e8-82b7-f0761cd21add} - "E:\HiSuiteDownLoader.exe"
Task: {0D8A891D-890C-4808-84D8-2F436AB14653} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {1274336E-AB06-46B6-A48C-0671C5557CC6} - \Microsoft\Windows\TaskScheduler\Maintenance Configurator -> No File <==== ATTENTION
Task: {1687544D-7247-4F5A-965A-A6E920E55278} - \Microsoft\Windows\TaskScheduler\Manual Maintenance -> No File <==== ATTENTION
Task: {B192A731-9A8A-4DC8-B8E5-9A2690F54DE9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
Task: {B7992938-01F1-4F40-A0EC-0D23D2F0F152} - \Microsoft\Windows\TaskScheduler\Regular Maintenance -> No File <==== ATTENTION
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - \Microsoft\Windows\SettingSync\BackupTask -> No File <==== ATTENTION
Task: {6DFBF9CB-9FFC-45EB-A04A-DF20ED9D7A71} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [No File]
CustomCLSID: HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
earchScopes: HKLM -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
FirewallRules: [{6B04AB04-A2A8-4C44-AD62-DFBE5F7C8CCA}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{2EA69E2E-4249-4721-9591-66DB1CB31741}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{05FB242C-6370-4FB6-8BA6-BD7354BF5106}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{3F14814A-6654-4502-BAE3-2DB1FEF910BF}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{2589C329-AB2F-46F6-8E8D-9248B56CE344}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{D6EF0449-6107-48A0-95A8-EF40668E33BC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{F464C4BB-0BDC-43B9-BFC5-5E6583599744}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{A887D22E-D816-4E22-9ED0-B28FE8F6AE12}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{80386162-F41D-4031-83F2-073C9E49FD26}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{1624C36E-444C-42D3-832D-31A4D3F3FB78}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{FA5C99F1-8E0E-4D16-89B0-E9F45E3B5B3C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe => No File
FirewallRules: [{D685CF94-3087-4FC0-9F8B-0F0791C7115F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe => No File
FirewallRules: [{5A85FAF8-EE7B-4896-B106-0F186BA22F43}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe => No File
FirewallRules: [{A5D9BBE3-B769-4672-8835-9DF7753D70E9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{D9E98378-2939-4FBA-B2C4-37E74E64F754}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{879BAFC7-A51D-4436-8144-BEDD4EB5D367}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{4C88FEF6-FD44-4129-8C0C-E2E21377C2FA}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{27A2B564-3AFF-4AD5-98C4-6D91D0E3E1C4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{6730E94D-B632-43AB-B7C0-0422EC47A3CF}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{105F8020-15AC-4B52-9074-38EF57BF2F0D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{ACFE6C23-9E7A-455B-8581-B5E9B52F5944}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [TCP Query User{12FCC822-E2BE-4025-8E33-73919465812A}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{DBD16FA9-74A0-44A9-BF35-0304E40EBA9F}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{7DF7E3DC-D7E9-40FE-973F-317EAD50FD53}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{83CD82BC-7C5A-4FE0-8CC7-F61F602EC372}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [{422FE972-9B08-48D4-AC20-075D40FF6A33}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{3A340149-0737-44A0-893A-08C79697C6F6}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File

EmptyTemp:
End
Uložte do C:\Users\User\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukitko
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 24 lis 2012 13:45

Re: Disk na 100percent a pomale ntb

#7 Příspěvek od lukitko »

Fix result of Farbar Recovery Scan Tool (x64) Version: 24-11-2021
Ran by User (25-11-2021 21:15:26) Run:1
Running from C:\Users\User\Downloads
Loaded Profiles: User
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" (No File)
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\Run: [Zoom] => [X]
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {06ec9cca-63f8-11e6-8283-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504be15a-0237-11e6-826c-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {504bedf8-0237-11e6-826c-f0761c8361b3} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {739240cd-d40e-11e6-8298-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd4fc4-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {84dd52ad-ecf3-11e5-826a-f0761c8361b3} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {a3196251-356c-11e6-8278-f0761cd21add} - "E:\AutoRun.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4da-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {b394c4ec-ea40-11e5-8269-f0761c8361b3} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\...\MountPoints2: {e6a33810-b01c-11e8-82b7-f0761cd21add} - "E:\HiSuiteDownLoader.exe"
Task: {0D8A891D-890C-4808-84D8-2F436AB14653} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {1274336E-AB06-46B6-A48C-0671C5557CC6} - \Microsoft\Windows\TaskScheduler\Maintenance Configurator -> No File <==== ATTENTION
Task: {1687544D-7247-4F5A-965A-A6E920E55278} - \Microsoft\Windows\TaskScheduler\Manual Maintenance -> No File <==== ATTENTION
Task: {B192A731-9A8A-4DC8-B8E5-9A2690F54DE9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
Task: {B7992938-01F1-4F40-A0EC-0D23D2F0F152} - \Microsoft\Windows\TaskScheduler\Regular Maintenance -> No File <==== ATTENTION
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - \Microsoft\Windows\SettingSync\BackupTask -> No File <==== ATTENTION
Task: {6DFBF9CB-9FFC-45EB-A04A-DF20ED9D7A71} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-04] (Google LLC -> Google LLC)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [No File]
CustomCLSID: HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
earchScopes: HKLM -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
SearchScopes: HKU\S-1-5-21-1523700424-2775466909-647613524-1001 -> {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL =
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
FirewallRules: [{6B04AB04-A2A8-4C44-AD62-DFBE5F7C8CCA}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{2EA69E2E-4249-4721-9591-66DB1CB31741}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{05FB242C-6370-4FB6-8BA6-BD7354BF5106}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{3F14814A-6654-4502-BAE3-2DB1FEF910BF}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{2589C329-AB2F-46F6-8E8D-9248B56CE344}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{D6EF0449-6107-48A0-95A8-EF40668E33BC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => No File
FirewallRules: [{F464C4BB-0BDC-43B9-BFC5-5E6583599744}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{A887D22E-D816-4E22-9ED0-B28FE8F6AE12}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => No File
FirewallRules: [{80386162-F41D-4031-83F2-073C9E49FD26}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{1624C36E-444C-42D3-832D-31A4D3F3FB78}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe => No File
FirewallRules: [{FA5C99F1-8E0E-4D16-89B0-E9F45E3B5B3C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe => No File
FirewallRules: [{D685CF94-3087-4FC0-9F8B-0F0791C7115F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe => No File
FirewallRules: [{5A85FAF8-EE7B-4896-B106-0F186BA22F43}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe => No File
FirewallRules: [{A5D9BBE3-B769-4672-8835-9DF7753D70E9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{D9E98378-2939-4FBA-B2C4-37E74E64F754}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{879BAFC7-A51D-4436-8144-BEDD4EB5D367}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{4C88FEF6-FD44-4129-8C0C-E2E21377C2FA}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{27A2B564-3AFF-4AD5-98C4-6D91D0E3E1C4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{6730E94D-B632-43AB-B7C0-0422EC47A3CF}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => No File
FirewallRules: [{105F8020-15AC-4B52-9074-38EF57BF2F0D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [{ACFE6C23-9E7A-455B-8581-B5E9B52F5944}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => No File
FirewallRules: [TCP Query User{12FCC822-E2BE-4025-8E33-73919465812A}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{DBD16FA9-74A0-44A9-BF35-0304E40EBA9F}C:\program files (x86)\eid klient\eid_klient.exe] => (Allow) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{7DF7E3DC-D7E9-40FE-973F-317EAD50FD53}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{83CD82BC-7C5A-4FE0-8CC7-F61F602EC372}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [{422FE972-9B08-48D4-AC20-075D40FF6A33}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{3A340149-0737-44A0-893A-08C79697C6F6}] => (Allow) C:\Users\User\AppData\Roaming\Zoom\bin\airhost.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\WindowsDefender" => removed successfully
"HKU\S-1-5-21-1523700424-2775466909-647613524-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Zoom" => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{06ec9cca-63f8-11e6-8283-f0761cd21add} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{504be15a-0237-11e6-826c-f0761c8361b3} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{504bedf8-0237-11e6-826c-f0761c8361b3} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{739240cd-d40e-11e6-8298-f0761cd21add} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{84dd4fc4-ecf3-11e5-826a-f0761c8361b3} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{84dd52ad-ecf3-11e5-826a-f0761c8361b3} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a3196251-356c-11e6-8278-f0761cd21add} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b394c4da-ea40-11e5-8269-f0761c8361b3} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b394c4ec-ea40-11e5-8269-f0761c8361b3} => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6a33810-b01c-11e8-82b7-f0761cd21add} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0D8A891D-890C-4808-84D8-2F436AB14653}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0D8A891D-890C-4808-84D8-2F436AB14653}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\AitAgent" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1274336E-AB06-46B6-A48C-0671C5557CC6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1274336E-AB06-46B6-A48C-0671C5557CC6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TaskScheduler\Maintenance Configurator" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1687544D-7247-4F5A-965A-A6E920E55278}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1687544D-7247-4F5A-965A-A6E920E55278}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TaskScheduler\Manual Maintenance" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B192A731-9A8A-4DC8-B8E5-9A2690F54DE9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B192A731-9A8A-4DC8-B8E5-9A2690F54DE9}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B7992938-01F1-4F40-A0EC-0D23D2F0F152}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7992938-01F1-4F40-A0EC-0D23D2F0F152}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TaskScheduler\Regular Maintenance" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CFD7C21A-808B-487B-A6EC-8A10E44E8360}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFD7C21A-808B-487B-A6EC-8A10E44E8360}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SettingSync\BackupTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6DFBF9CB-9FFC-45EB-A04A-DF20ED9D7A71}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6DFBF9CB-9FFC-45EB-A04A-DF20ED9D7A71}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0 => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92} => removed successfully
earchScopes: HKLM -> DefaultScope {4D689DD7-2A21-47F3-81BA-F95EDD69537C} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... TR&pc=ACJB => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4D689DD7-2A21-47F3-81BA-F95EDD69537C} => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{4D689DD7-2A21-47F3-81BA-F95EDD69537C} => removed successfully
"HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
HKU\S-1-5-21-1523700424-2775466909-647613524-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4D689DD7-2A21-47F3-81BA-F95EDD69537C} => removed successfully
HKLM\Software\Classes\PROTOCOLS\Handler\dssrequest => removed successfully
HKLM\Software\Classes\CLSID\{5513F07E-936B-4E52-9B00-067394E91CC5} => removed successfully
HKLM\Software\Classes\PROTOCOLS\Handler\sacore => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6B04AB04-A2A8-4C44-AD62-DFBE5F7C8CCA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2EA69E2E-4249-4721-9591-66DB1CB31741}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{05FB242C-6370-4FB6-8BA6-BD7354BF5106}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3F14814A-6654-4502-BAE3-2DB1FEF910BF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2589C329-AB2F-46F6-8E8D-9248B56CE344}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D6EF0449-6107-48A0-95A8-EF40668E33BC}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F464C4BB-0BDC-43B9-BFC5-5E6583599744}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A887D22E-D816-4E22-9ED0-B28FE8F6AE12}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{80386162-F41D-4031-83F2-073C9E49FD26}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1624C36E-444C-42D3-832D-31A4D3F3FB78}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FA5C99F1-8E0E-4D16-89B0-E9F45E3B5B3C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D685CF94-3087-4FC0-9F8B-0F0791C7115F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5A85FAF8-EE7B-4896-B106-0F186BA22F43}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A5D9BBE3-B769-4672-8835-9DF7753D70E9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D9E98378-2939-4FBA-B2C4-37E74E64F754}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{879BAFC7-A51D-4436-8144-BEDD4EB5D367}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4C88FEF6-FD44-4129-8C0C-E2E21377C2FA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{27A2B564-3AFF-4AD5-98C4-6D91D0E3E1C4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6730E94D-B632-43AB-B7C0-0422EC47A3CF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{105F8020-15AC-4B52-9074-38EF57BF2F0D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ACFE6C23-9E7A-455B-8581-B5E9B52F5944}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{12FCC822-E2BE-4025-8E33-73919465812A}C:\program files (x86)\eid klient\eid_klient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{DBD16FA9-74A0-44A9-BF35-0304E40EBA9F}C:\program files (x86)\eid klient\eid_klient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7DF7E3DC-D7E9-40FE-973F-317EAD50FD53}C:\program files (x86)\eid klient\eid_klient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{83CD82BC-7C5A-4FE0-8CC7-F61F602EC372}C:\program files (x86)\eid klient\eid_klient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{422FE972-9B08-48D4-AC20-075D40FF6A33}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3A340149-0737-44A0-893A-08C79697C6F6}" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 30083957 B
Java, Flash, Steam htmlcache => 2178 B
Windows/system/drivers => 631918434 B
Edge => 0 B
Chrome => 381560758 B
Firefox => 1117268906 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 256 B
LocalService => 211492 B
NetworkService => 8021833 B
User => 3567070778 B

RecycleBin => 3217498 B
EmptyTemp: => 5.3 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:22:06 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118243
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Disk na 100percent a pomale ntb

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukitko
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 24 lis 2012 13:45

Re: Disk na 100percent a pomale ntb

#9 Příspěvek od lukitko »

zdravim, ano ntb ide trocha lepsie, pravdepodobne budem tam musiet vymenit hdd za ssd. Vdaka

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118243
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Disk na 100percent a pomale ntb

#10 Příspěvek od Rudy »

Disk ještě zkuste defragmentovat.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět