
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Poprosim o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Poprosim o kontrolu
Zdravim ludia moj pC sa zacal chovat nejak podivne , pozorujem znizenie vykonu u hrach
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by jadrokukudla (administrator) on JADROKUKUDLA-PC (19-03-2016 13:55:19)
Running from E:\Users\jadrokukudla\Desktop
Loaded Profiles: jadrokukudla (Available Profiles: jadrokukudla)
Platform: Windows 7 Home Premium (X64) Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(NVIDIA Corporation) E:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) E:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) E:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) E:\Windows\System32\nvvsvc.exe
(Intel Corporation) E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(ESET) E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Microsoft Corporation) E:\Windows\SysWOW64\rundll32.exe
(Intel Corporation) E:\Windows\System32\igfxtray.exe
(Intel Corporation) E:\Windows\System32\hkcmd.exe
(Intel Corporation) E:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) E:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) E:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) E:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) E:\Windows\AsScrPro.exe
(Oracle Corporation) E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(ALi) E:\Windows\WebCam\S6000\S6000Mnt.exe
(NVIDIA Corporation) E:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) E:\Users\jadrokukudla\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => E:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11369576 2010-08-10] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => E:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2120808 2010-08-10] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => E:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-01-16] (NVIDIA Corporation)
HKLM-x32\...\Run: [S6000Mnt] => E:\Windows\SysWOW64\Rundll32.exe S6000Rmv.dll,WinMainRmv /StartStillMnt
HKLM-x32\...\Run: [ASUS Screen Saver Protector] => E:\Windows\AsScrPro.exe
HKLM-x32\...\Run: [SunJavaUpdateSched] => E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation)
Winlogon\Notify\igfxcui: E:\Windows\SYSTEM32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-19\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {2a912c0c-ccb6-11e4-81e0-74f06dbc98ca} - H:\RunGame.exe
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {58316f41-dbae-11e4-98b0-74f06dbc98ca} - K:\autorun.exe
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {9edee2cc-9980-11e4-82d8-74f06dbc98ca} - J:\Setup.exe
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {f2a7ed93-8aa2-11e4-9d7d-74f06dbc98ca} - G:\RunGame.exe
AppInit_DLLs: E:\Windows\system32\nvinitx.dll => E:\Windows\system32\nvinitx.dll [177624 2015-02-05] (NVIDIA Corporation)
AppInit_DLLs-x32: E:\Windows\SysWOW64\nvinit.dll => E:\Windows\SysWOW64\nvinit.dll [164752 2015-02-05] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{53D7D6B3-9C5A-4FD7-9F93-CE145C13ED34}: [DhcpNameServer] 192.168.3.20
Tcpip\..\Interfaces\{63AB1E26-F504-414F-9078-868D2E8BD3C4}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{73B7CDE5-C582-45CB-8C10-3DA148919D48}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{75CD88A4-EFA6-4818-977C-18FC5337E921}: [NameServer] 94.242.222.66,8.8.8.8
Tcpip\..\Interfaces\{75CD88A4-EFA6-4818-977C-18FC5337E921}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{7826C0D3-F4AB-46B7-8210-B2606766A25E}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://q.search-simple.com/?affID=pr_8e3a5fcb-e7d0-4108-8437-7f3bfe8c31d2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> OldSearch URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://q.search-simple.com/?affID=pr_8e3a5fcb-e7d0-4108-8437-7f3bfe8c31d2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> {823F8AD6-2964-4A3A-8382-2FBEA38DFC30} URL = hxxp://q.search-simple.com/?affID=na&q={searchTerms}&r=869
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> E:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-03-19] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> E:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-19] (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> E:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> E:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> E:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_257.dll [2015-08-05] ()
FF Plugin: @java.com/DTPlugin,version=11.73.2 -> E:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.73.2 -> E:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-19] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> E:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll [2015-08-05] ()
FF Plugin-x32: @nvidia.com/3DVision -> E:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> E:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> E:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> E:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> E:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
Chrome:
=======
CHR Profile: E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-02]
CHR Extension: (Dokumenty Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-14]
CHR Extension: (Disk Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-26]
CHR Extension: (YouTube) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-28]
CHR Extension: (Vyhledávání Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Tabulky Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-02]
CHR Extension: (Dokumenty Google offline) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (IE Tab) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2016-03-19]
CHR Extension: (FromDocToPDF) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mallpejgeafdahhflmliiahjdpgbegpk [2016-02-11]
CHR Extension: (Platby Internetového obchodu Chrome) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-26]
CHR Extension: (Gmail) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-02]
Opera:
=======
OPR Extension: (No Name) - E:\Users\jadrokukudla\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2015-06-02]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2521440 2016-02-22] (ESET)
S2 ggbugreport; E:\Program Files (x86)\SearchesToYesbnd\bugreport.exe [1592888 2016-03-15] ()
R2 LMS; E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [262144 2009-09-30] (Intel Corporation) [File not signed]
R2 UNS; E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [File not signed]
R2 WinDefend; E:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S2 Winsere; E:\Program Files (x86)\Winsere\Winsere\Winsere.exe [306736 2016-03-15] ()
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 dtsoftbus01; E:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2014-12-23] (DT Soft Ltd)
R1 eamonm; E:\Windows\System32\DRIVERS\eamonm.sys [264552 2016-02-09] (ESET)
S3 ebdrv; E:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 ehdrv; E:\Windows\System32\DRIVERS\ehdrv.sys [186784 2016-02-09] (ESET)
R2 epfwwfpr; E:\Windows\system32\DRIVERS\epfwwfpr.sys [170792 2016-02-09] (ESET)
R3 kbfiltr; E:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 nvvad_WaveExtensible; E:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 S6000KNT; E:\Windows\System32\Drivers\S6000KNT.sys [190464 2010-05-13] (Windows (R) Win 7 DDK provider)
S3 btwaudio; system32\drivers\btwaudio.sys [X]
S3 btwavdt; system32\DRIVERS\btwavdt.sys [X]
S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [X]
S3 btwrchid; system32\DRIVERS\btwrchid.sys [X]
S3 WinRing0_1_2_0; \??\E:\Users\jadrokukudla\Desktop\realtemp\WinRing0x64.sys [X]
S1 {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64; system32\drivers\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64.sys [X]
S1 {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64; system32\drivers\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64.sys [X]
S1 {9e225977-4791-4356-911d-90b292281075}Gw64; system32\drivers\{9e225977-4791-4356-911d-90b292281075}Gw64.sys [X]
S1 {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64; system32\drivers\{abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64.sys [X]
S1 {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64; system32\drivers\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64.sys [X]
S1 {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64; system32\drivers\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64.sys [X]
S1 {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64; system32\drivers\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64.sys [X]
S1 {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64; system32\drivers\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64.sys [X]
S1 {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64; system32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys [X]
S1 {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64; system32\drivers\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64.sys [X]
S1 {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64; system32\drivers\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64.sys [X]
S1 {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64; system32\drivers\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-19 13:55 - 2016-03-19 13:55 - 00016235 _____ E:\Users\jadrokukudla\Desktop\FRST.txt
2016-03-19 13:54 - 2016-03-19 13:55 - 00000000 ____D E:\FRST
2016-03-19 13:52 - 2016-03-19 13:52 - 00112640 _____ (forum.viry.cz) E:\Users\jadrokukudla\Desktop\FRSTLauncher.exe
2016-03-19 12:48 - 2016-03-19 12:48 - 02374144 _____ (Farbar) E:\Users\jadrokukudla\Desktop\FRST64.exe
2016-03-19 12:32 - 2016-03-19 12:32 - 00000000 ____D E:\Users\jadrokukudla\AppData\Local\ESET
2016-03-19 12:30 - 2016-03-19 12:30 - 00000000 ____D E:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-03-19 12:30 - 2016-03-19 12:30 - 00000000 ____D E:\ProgramData\ESET
2016-03-19 12:30 - 2016-03-19 12:30 - 00000000 ____D E:\Program Files\ESET
2016-03-19 12:28 - 2016-03-19 12:28 - 02993312 _____ (ESET) E:\Users\jadrokukudla\Downloads\eset_nod32_antivirus_live_installer_.exe
2016-03-19 12:06 - 2016-03-19 12:06 - 00000000 ____D E:\Users\jadrokukudla\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-03-19 12:05 - 2016-03-19 12:05 - 00000000 ____D E:\Users\jadrokukudla\AppData\Roaming\Mozilla
2016-03-17 17:21 - 2016-03-19 12:34 - 00000000 ____D E:\Program Files (x86)\SearchesToYesbnd
2016-03-17 17:21 - 2016-03-19 12:06 - 00015208 _____ E:\Windows\System32\Tasks\WinTaske
2016-03-17 17:21 - 2016-03-17 17:21 - 00000000 ____D E:\Program Files (x86)\WinTaske
2016-03-17 17:21 - 2016-03-17 17:21 - 00000000 ____D E:\Program Files (x86)\Winsere
2016-03-17 17:21 - 2016-03-17 17:21 - 00000000 ____D E:\extensions
2016-03-17 17:20 - 2016-03-17 17:21 - 00000000 ____D E:\Users\Public\Documents\dmp
2016-03-17 17:19 - 2016-03-17 17:19 - 02025746 _____ ( ) E:\Users\jadrokukudla\Downloads\MK.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-19 13:52 - 2009-07-14 05:45 - 00014016 ____H E:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-19 13:52 - 2009-07-14 05:45 - 00014016 ____H E:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-19 13:45 - 2014-12-23 14:52 - 00000000 ____D E:\ProgramData\NVIDIA
2016-03-19 13:45 - 2009-07-14 06:08 - 00000006 ____H E:\Windows\Tasks\SA.DAT
2016-03-19 13:41 - 2015-02-04 20:12 - 00000000 ____D E:\ProgramData\EpicScale
2016-03-19 12:35 - 2014-12-23 20:44 - 00000936 _____ E:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-19 12:35 - 2014-12-23 20:44 - 00000932 _____ E:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-19 12:35 - 2014-12-23 13:10 - 00000000 ____D E:\Windows\Panther
2016-03-19 12:35 - 2009-07-14 16:18 - 00636906 _____ E:\Windows\system32\perfh005.dat
2016-03-19 12:35 - 2009-07-14 16:18 - 00131292 _____ E:\Windows\system32\perfc005.dat
2016-03-19 12:34 - 2009-07-14 04:20 - 00000000 ____D E:\Windows\inf
2016-03-19 12:33 - 2009-07-14 06:32 - 00000000 ___RD E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-03-19 12:33 - 2009-07-14 06:32 - 00000000 ____D E:\Program Files\Windows Sidebar
2016-03-19 12:32 - 2009-07-14 04:20 - 00000000 ____D E:\Windows\system32\spool
2016-03-19 12:32 - 2009-07-14 04:20 - 00000000 ____D E:\Windows\PolicyDefinitions
2016-03-19 12:06 - 2015-02-02 13:39 - 00003200 _____ E:\Windows\System32\Tasks\{57414793-99A3-4554-A0C2-BDEE2F054C61}
2016-03-19 12:06 - 2014-12-23 20:44 - 00003944 _____ E:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-03-19 12:06 - 2014-12-23 20:44 - 00003692 _____ E:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-03-19 12:06 - 2014-12-23 14:25 - 00003190 _____ E:\Windows\System32\Tasks\{2EE32C31-42F8-4101-BD54-4B058E958FC3}
2016-03-19 12:06 - 2014-12-23 14:05 - 00003156 _____ E:\Windows\System32\Tasks\{1DDFB0F9-F726-4662-9DE2-1068EE34F4FA}
2016-03-19 12:05 - 2014-12-23 20:44 - 00002068 _____ E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-19 12:02 - 2014-12-23 18:26 - 00000000 ____D E:\Program Files (x86)\Steam
2016-03-19 10:14 - 2014-12-23 16:11 - 00000000 ____D E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-19 10:14 - 2014-12-23 16:04 - 00000000 ____D E:\ProgramData\Oracle
2016-03-19 10:14 - 2014-12-23 16:04 - 00000000 ____D E:\Program Files\Java
2016-03-19 10:13 - 2016-01-31 10:05 - 00000000 ____D E:\Users\jadrokukudla\.oracle_jre_usage
2016-03-19 10:13 - 2014-12-23 16:11 - 00110176 _____ (Oracle Corporation) E:\Windows\system32\WindowsAccessBridge-64.dll
2016-02-29 10:48 - 2009-07-14 06:13 - 01575230 _____ E:\Windows\system32\PerfStringBackup.INI
2016-02-21 10:23 - 2009-07-14 06:08 - 00032606 _____ E:\Windows\Tasks\SCHEDLGU.TXT
2016-02-19 18:40 - 2015-02-19 23:09 - 00000000 ____D E:\Users\jadrokukudla\AppData\Local\Steam
==================== Files in the root of some directories =======
2014-12-23 20:05 - 2015-03-13 01:34 - 0007621 _____ () E:\Users\jadrokukudla\AppData\Local\Resmon.ResmonCfg
2015-04-13 15:38 - 2015-04-13 15:38 - 0004939 _____ () E:\ProgramData\flwjycbm.bab
Files to move or delete:
====================
E:\Users\jadrokukudla\a3dapi.dll
E:\Users\jadrokukudla\Core.dll
E:\Users\jadrokukudla\Counter-Strike 1.6.bat
E:\Users\jadrokukudla\crashhandler.dll
E:\Users\jadrokukudla\dbg.dll
E:\Users\jadrokukudla\DemoPlayer.dll
E:\Users\jadrokukudla\FileSystem_Stdio.dll
E:\Users\jadrokukudla\FileSystem_Steam.dll
E:\Users\jadrokukudla\hl.exe
E:\Users\jadrokukudla\hlds.exe
E:\Users\jadrokukudla\hltv.exe
E:\Users\jadrokukudla\hw.dll
E:\Users\jadrokukudla\hwpatcher.dll
E:\Users\jadrokukudla\Mss32.dll
E:\Users\jadrokukudla\msvcr100.dll
E:\Users\jadrokukudla\proxy.dll
E:\Users\jadrokukudla\revSrvBrowser.dll
E:\Users\jadrokukudla\safemode.bat
E:\Users\jadrokukudla\Steam.dll
E:\Users\jadrokukudla\steamclient.dll
E:\Users\jadrokukudla\steamclient_orig.dll
E:\Users\jadrokukudla\steam_api.dll
E:\Users\jadrokukudla\steam_api_c.dll
E:\Users\jadrokukudla\Steam_orig.dll
E:\Users\jadrokukudla\sw.dll
E:\Users\jadrokukudla\swds.dll
E:\Users\jadrokukudla\tier0.dll
E:\Users\jadrokukudla\tier0_s.dll
E:\Users\jadrokukudla\Uninstal.exe
E:\Users\jadrokukudla\upatch.dll
E:\Users\jadrokukudla\vgui.dll
E:\Users\jadrokukudla\vgui2.dll
E:\Users\jadrokukudla\voice_miles.dll
E:\Users\jadrokukudla\voice_speex.dll
E:\Users\jadrokukudla\vstdlib.dll
E:\Users\jadrokukudla\vstdlib_s.dll
Some files in TEMP:
====================
E:\Users\jadrokukudla\AppData\Local\Temp\jre-8u73-windows-au.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
E:\Windows\system32\winlogon.exe => File is digitally signed
E:\Windows\system32\wininit.exe => File is digitally signed
E:\Windows\SysWOW64\wininit.exe => File is digitally signed
E:\Windows\explorer.exe => File is digitally signed
E:\Windows\SysWOW64\explorer.exe => File is digitally signed
E:\Windows\system32\svchost.exe => File is digitally signed
E:\Windows\SysWOW64\svchost.exe => File is digitally signed
E:\Windows\system32\services.exe => File is digitally signed
E:\Windows\system32\User32.dll => File is digitally signed
E:\Windows\SysWOW64\User32.dll => File is digitally signed
E:\Windows\system32\userinit.exe => File is digitally signed
E:\Windows\SysWOW64\userinit.exe => File is digitally signed
E:\Windows\system32\rpcss.dll => File is digitally signed
E:\Windows\system32\dnsapi.dll => File is digitally signed
E:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
E:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-03-09 15:30
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:58.5 GB) (Free:57.14 GB) NTFS
Drive d: (Nový zväzok) (Fixed) (Total:292.97 GB) (Free:147.77 GB) NTFS
Drive e: () (Fixed) (Total:114.2 GB) (Free:53.25 GB) NTFS
Drive i: () (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
Available physical RAM: 2283.48 MB
Total physical RAM: 3884.49 MB
Percentage of memory in use: 41%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 02BBA1FC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=58.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=114.2 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: E:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => E:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: E:\Windows\Tasks\Adobe Flash Player Updater.job => E:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "E:\Users\jadrokukudla\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"E:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"E:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EpicScale
"E:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
E:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SonicMasterTray
"E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
Re�im ECHO je vypnut.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\E:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk
E:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by jadrokukudla (2016-03-19 13:55:54)
Running from E:\Users\jadrokukudla\Desktop
Windows 7 Home Premium (X64) (2014-12-23 12:37:42)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-787874068-2874100851-3053886824-500 - Administrator - Disabled)
Guest (S-1-5-21-787874068-2874100851-3053886824-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-787874068-2874100851-3053886824-1003 - Limited - Enabled)
jadrokukudla (S-1-5-21-787874068-2874100851-3053886824-1000 - Administrator - Enabled) => E:\Users\jadrokukudla
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.257 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader 9 - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM-x32\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.24 - Autodesk, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6) (Version: - )
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
ESET NOD32 Antivirus (HKLM\...\{DC91B197-2D38-4659-9EF7-AF3A8F5A2E0B}) (Version: 9.0.374.1 - ESET, spol. s r.o.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2189 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Java 8 Update 73 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA Ovladač 3D Vision 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
omiga-plus uninstall (HKLM-x32\...\omiga-plus uninstall) (Version: - omiga-plus) <==== ATTENTION
Ovládací panel NVIDIA 347.52 (Version: 347.52 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6176 - Realtek Semiconductor Corp.)
Shockwave (HKLM-x32\...\Shockwave) (Version: - )
SonicMaster (HKLM-x32\...\{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}) (Version: 1.00.0000 - Virage Logic, Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM-x32\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
USB2.0 2.0M UVC WebCam (HKLM-x32\...\{FC9B811E-39BC-4813-9E29-B83CCF700010}) (Version: 2.103.13.6 - ALi)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows Driver Package - Broadcom Bluetooth (07/17/2009 6.2.0.9403) (HKLM\...\F9FD5BBF579A4BFD40D38BE291F731666B27DC28) (Version: 07/17/2009 6.2.0.9403 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) (HKLM\...\2AA10AB519DC7432D599A0E860206A7DDCC27764) (Version: 07/29/2009 6.1.7100.0 - Broadcom)
Windows Driver Package - Broadcom HIDClass (06/11/2009 6.2.0.9500) (HKLM\...\0E74EB10C05C955C24243E6D3120CDC972FC5B1D) (Version: 06/11/2009 6.2.0.9500 - Broadcom)
WinRAR 5.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {113F50D0-2D5A-4C5C-BFD8-6AE1988A8845} - System32\Tasks\{1DDFB0F9-F726-4662-9DE2-1068EE34F4FA} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lig ... tError=404
Task: {20C68151-99EB-4B06-970E-1E88461927C5} - System32\Tasks\{57414793-99A3-4554-A0C2-BDEE2F054C61} => pcalua.exe -a E:\Users\jadrokukudla\Downloads\SetupPoker_af9569.exe -d E:\Users\jadrokukudla\Downloads
Task: {30181365-2D11-449B-9119-831936C6B7C0} - System32\Tasks\CCleanerSkipUAC => E:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {30C0A317-9444-4EFA-AFA6-83BA9FCAD084} - System32\Tasks\WinTaske => E:\Program Files (x86)\WinTaske\WinTaske\WinTaske.exe [2016-03-15] ()
Task: {4A8E9D01-594B-46C4-9604-19B77CCE0AF1} - System32\Tasks\Adobe Flash Player Updater => E:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-05] (Adobe Systems Incorporated)
Task: {6DB3839F-0FD8-4828-B9A3-F18BABAB19BC} - System32\Tasks\GoogleUpdateTaskMachineUA => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {A70B1852-034B-447C-A02C-097AC67D6584} - System32\Tasks\AVAST Software\Avast settings backup => E:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-03-05] (AVAST Software)
Task: {C19F15F6-3C06-4A2C-9711-1200FDDB38BF} - System32\Tasks\GoogleUpdateTaskMachineCore => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {C906B760-57C7-4A1F-AFD5-9245410BDAB2} - System32\Tasks\Adobe Flash Player PPAPI Notifier => E:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: {CF8DB582-3618-4ED9-83B1-F4A640DE44E4} - System32\Tasks\{2EE32C31-42F8-4101-BD54-4B058E958FC3} => pcalua.exe -a E:\Users\jadrokukudla\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=smt <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: E:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => E:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: E:\Windows\Tasks\Adobe Flash Player Updater.job => E:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2014-12-23 18:11 - 2015-02-05 22:01 - 00012104 _____ () E:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-12-23 18:16 - 2015-02-05 20:07 - 00117576 _____ () E:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-12-23 18:11 - 2015-02-05 22:01 - 00011920 _____ () E:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2014-12-23 15:03 - 2010-05-13 07:00 - 00424448 _____ () E:\Windows\system\S6000Dex.dll
2016-03-15 17:34 - 2016-03-08 03:48 - 01676440 _____ () E:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\libglesv2.dll
2016-03-15 17:34 - 2016-03-08 03:48 - 00086168 _____ () E:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A E:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: E:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => E:\Windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "E:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: CCleaner Monitoring => "E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: DAEMON Tools Lite => "E:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: EpicScale =>
MSCONFIG\startupreg: GrooveMonitor => "E:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: SonicMasterTray => E:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{3A6F5F0C-C50A-4E5C-9EC9-4393C5B2E527}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{8DEE21C6-68E3-4A36-899D-6894FAB778B7}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{3836849D-6563-43AC-8BC9-CB1911901889}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A5E3F00E-40C8-4FDA-A1DB-EB817C4AC8BC}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69253274-5B3C-402A-9EB1-72C932BA8C4D}] => (Allow) E:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{662CA738-9CD8-4F5A-9728-DE554F97BB86}] => (Allow) E:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{945DD918-7638-47F2-A069-2571CDB39BE6}E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [UDP Query User{36336D03-32AC-4B81-B391-08EBD75AEF47}E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{70544D8E-D62B-48ED-938F-35D926A1A3DF}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{ADE4FE9C-3CC7-4228-AF34-4CDA8463B760}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{1BBD5294-0252-42F2-B6C0-F3A7AEBD7A1D}E:\users\jadrokukudla\hl.exe] => (Allow) E:\users\jadrokukudla\hl.exe
FirewallRules: [UDP Query User{E4C6D19C-0E81-40B2-8FD1-EFD54D7EDB67}E:\users\jadrokukudla\hl.exe] => (Allow) E:\users\jadrokukudla\hl.exe
FirewallRules: [{6BCA6C40-DD9D-4F2D-AEF5-122A5F9857BF}] => (Allow) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{5510FF2B-9196-4AAC-A9AE-FAE38799D7D7}E:\program files (x86)\relevantknowledge\rlvknlg.exe] => (Block) E:\program files (x86)\relevantknowledge\rlvknlg.exe
FirewallRules: [UDP Query User{EEC424BF-FBAE-4848-AAE7-C79D4FEF3158}E:\program files (x86)\relevantknowledge\rlvknlg.exe] => (Block) E:\program files (x86)\relevantknowledge\rlvknlg.exe
==================== Restore Points =========================
08-03-2016 17:59:19 Naplánovaný kontrolní bod
19-03-2016 12:04:26 Removed Skype Click to Call
19-03-2016 12:21:13 Instalační služba modulů systému Windows
==================== Faulty Device Manager Devices =============
Name: {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Description: {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
Description: {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
Description: {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
Description: {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
Description: {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
Description: {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
Description: {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
Description: {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
Description: {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
Description: {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
Description: {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {9e225977-4791-4356-911d-90b292281075}Gw64
Description: {9e225977-4791-4356-911d-90b292281075}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {9e225977-4791-4356-911d-90b292281075}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (03/19/2016 01:44:18 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{524032E4-E071-44C8-9139-E99FC2697F44}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_DisplayUnlock
Error: (03/19/2016 12:32:45 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{5C70CD3A-8913-4D93-94F7-79182EF1B930}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_StopScreenSaver
Error: (03/14/2016 04:42:05 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/12/2016 02:39:26 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/11/2016 04:31:06 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to copy new service file to temp location
Error: (03/09/2016 03:30:44 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/08/2016 05:01:14 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/06/2016 12:35:35 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/04/2016 04:44:29 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/02/2016 05:36:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
System errors:
=============
Error: (03/19/2016 01:45:56 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
{9e225977-4791-4356-911d-90b292281075}Gw64
{abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Error: (03/19/2016 01:27:26 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:23 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:21 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:18 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:15 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:13 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:10 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:07 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:05 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU M 380 @ 2.53GHz
Percentage of memory in use: 41%
Total physical RAM: 3884.49 MB
Available physical RAM: 2283.48 MB
Total Virtual: 7767.13 MB
Available Virtual: 6096.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:58.5 GB) (Free:57.14 GB) NTFS
Drive d: (Nový zväzok) (Fixed) (Total:292.97 GB) (Free:147.77 GB) NTFS
Drive e: () (Fixed) (Total:114.2 GB) (Free:53.25 GB) NTFS
Drive i: () (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 02BBA1FC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=58.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=114.2 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by jadrokukudla (administrator) on JADROKUKUDLA-PC (19-03-2016 13:55:19)
Running from E:\Users\jadrokukudla\Desktop
Loaded Profiles: jadrokukudla (Available Profiles: jadrokukudla)
Platform: Windows 7 Home Premium (X64) Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(NVIDIA Corporation) E:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) E:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) E:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) E:\Windows\System32\nvvsvc.exe
(Intel Corporation) E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(ESET) E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Microsoft Corporation) E:\Windows\SysWOW64\rundll32.exe
(Intel Corporation) E:\Windows\System32\igfxtray.exe
(Intel Corporation) E:\Windows\System32\hkcmd.exe
(Intel Corporation) E:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) E:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) E:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) E:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) E:\Windows\AsScrPro.exe
(Oracle Corporation) E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(ALi) E:\Windows\WebCam\S6000\S6000Mnt.exe
(NVIDIA Corporation) E:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) E:\Users\jadrokukudla\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => E:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11369576 2010-08-10] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => E:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2120808 2010-08-10] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => E:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-01-16] (NVIDIA Corporation)
HKLM-x32\...\Run: [S6000Mnt] => E:\Windows\SysWOW64\Rundll32.exe S6000Rmv.dll,WinMainRmv /StartStillMnt
HKLM-x32\...\Run: [ASUS Screen Saver Protector] => E:\Windows\AsScrPro.exe
HKLM-x32\...\Run: [SunJavaUpdateSched] => E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation)
Winlogon\Notify\igfxcui: E:\Windows\SYSTEM32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-19\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {2a912c0c-ccb6-11e4-81e0-74f06dbc98ca} - H:\RunGame.exe
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {58316f41-dbae-11e4-98b0-74f06dbc98ca} - K:\autorun.exe
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {9edee2cc-9980-11e4-82d8-74f06dbc98ca} - J:\Setup.exe
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\...\MountPoints2: {f2a7ed93-8aa2-11e4-9d7d-74f06dbc98ca} - G:\RunGame.exe
AppInit_DLLs: E:\Windows\system32\nvinitx.dll => E:\Windows\system32\nvinitx.dll [177624 2015-02-05] (NVIDIA Corporation)
AppInit_DLLs-x32: E:\Windows\SysWOW64\nvinit.dll => E:\Windows\SysWOW64\nvinit.dll [164752 2015-02-05] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{53D7D6B3-9C5A-4FD7-9F93-CE145C13ED34}: [DhcpNameServer] 192.168.3.20
Tcpip\..\Interfaces\{63AB1E26-F504-414F-9078-868D2E8BD3C4}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{73B7CDE5-C582-45CB-8C10-3DA148919D48}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{75CD88A4-EFA6-4818-977C-18FC5337E921}: [NameServer] 94.242.222.66,8.8.8.8
Tcpip\..\Interfaces\{75CD88A4-EFA6-4818-977C-18FC5337E921}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{7826C0D3-F4AB-46B7-8210-B2606766A25E}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://q.search-simple.com/?affID=pr_8e3a5fcb-e7d0-4108-8437-7f3bfe8c31d2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> OldSearch URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419340181&from=smt&uid=ST9500420AS_5VJ9DMALXXXX5VJ9DMAL&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://q.search-simple.com/?affID=pr_8e3a5fcb-e7d0-4108-8437-7f3bfe8c31d2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-787874068-2874100851-3053886824-1000 -> {823F8AD6-2964-4A3A-8382-2FBEA38DFC30} URL = hxxp://q.search-simple.com/?affID=na&q={searchTerms}&r=869
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> E:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-03-19] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> E:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-19] (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> E:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> E:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> E:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_257.dll [2015-08-05] ()
FF Plugin: @java.com/DTPlugin,version=11.73.2 -> E:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.73.2 -> E:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-19] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> E:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll [2015-08-05] ()
FF Plugin-x32: @nvidia.com/3DVision -> E:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> E:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> E:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> E:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> E:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
Chrome:
=======
CHR Profile: E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-02]
CHR Extension: (Dokumenty Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-14]
CHR Extension: (Disk Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-26]
CHR Extension: (YouTube) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-28]
CHR Extension: (Vyhledávání Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Tabulky Google) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-02]
CHR Extension: (Dokumenty Google offline) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (IE Tab) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2016-03-19]
CHR Extension: (FromDocToPDF) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mallpejgeafdahhflmliiahjdpgbegpk [2016-02-11]
CHR Extension: (Platby Internetového obchodu Chrome) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-26]
CHR Extension: (Gmail) - E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-02]
Opera:
=======
OPR Extension: (No Name) - E:\Users\jadrokukudla\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2015-06-02]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2521440 2016-02-22] (ESET)
S2 ggbugreport; E:\Program Files (x86)\SearchesToYesbnd\bugreport.exe [1592888 2016-03-15] ()
R2 LMS; E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [262144 2009-09-30] (Intel Corporation) [File not signed]
R2 UNS; E:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [File not signed]
R2 WinDefend; E:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S2 Winsere; E:\Program Files (x86)\Winsere\Winsere\Winsere.exe [306736 2016-03-15] ()
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 dtsoftbus01; E:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2014-12-23] (DT Soft Ltd)
R1 eamonm; E:\Windows\System32\DRIVERS\eamonm.sys [264552 2016-02-09] (ESET)
S3 ebdrv; E:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 ehdrv; E:\Windows\System32\DRIVERS\ehdrv.sys [186784 2016-02-09] (ESET)
R2 epfwwfpr; E:\Windows\system32\DRIVERS\epfwwfpr.sys [170792 2016-02-09] (ESET)
R3 kbfiltr; E:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 nvvad_WaveExtensible; E:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 S6000KNT; E:\Windows\System32\Drivers\S6000KNT.sys [190464 2010-05-13] (Windows (R) Win 7 DDK provider)
S3 btwaudio; system32\drivers\btwaudio.sys [X]
S3 btwavdt; system32\DRIVERS\btwavdt.sys [X]
S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [X]
S3 btwrchid; system32\DRIVERS\btwrchid.sys [X]
S3 WinRing0_1_2_0; \??\E:\Users\jadrokukudla\Desktop\realtemp\WinRing0x64.sys [X]
S1 {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64; system32\drivers\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64.sys [X]
S1 {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64; system32\drivers\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64.sys [X]
S1 {9e225977-4791-4356-911d-90b292281075}Gw64; system32\drivers\{9e225977-4791-4356-911d-90b292281075}Gw64.sys [X]
S1 {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64; system32\drivers\{abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64.sys [X]
S1 {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64; system32\drivers\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64.sys [X]
S1 {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64; system32\drivers\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64.sys [X]
S1 {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64; system32\drivers\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64.sys [X]
S1 {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64; system32\drivers\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64.sys [X]
S1 {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64; system32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys [X]
S1 {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64; system32\drivers\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64.sys [X]
S1 {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64; system32\drivers\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64.sys [X]
S1 {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64; system32\drivers\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-19 13:55 - 2016-03-19 13:55 - 00016235 _____ E:\Users\jadrokukudla\Desktop\FRST.txt
2016-03-19 13:54 - 2016-03-19 13:55 - 00000000 ____D E:\FRST
2016-03-19 13:52 - 2016-03-19 13:52 - 00112640 _____ (forum.viry.cz) E:\Users\jadrokukudla\Desktop\FRSTLauncher.exe
2016-03-19 12:48 - 2016-03-19 12:48 - 02374144 _____ (Farbar) E:\Users\jadrokukudla\Desktop\FRST64.exe
2016-03-19 12:32 - 2016-03-19 12:32 - 00000000 ____D E:\Users\jadrokukudla\AppData\Local\ESET
2016-03-19 12:30 - 2016-03-19 12:30 - 00000000 ____D E:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-03-19 12:30 - 2016-03-19 12:30 - 00000000 ____D E:\ProgramData\ESET
2016-03-19 12:30 - 2016-03-19 12:30 - 00000000 ____D E:\Program Files\ESET
2016-03-19 12:28 - 2016-03-19 12:28 - 02993312 _____ (ESET) E:\Users\jadrokukudla\Downloads\eset_nod32_antivirus_live_installer_.exe
2016-03-19 12:06 - 2016-03-19 12:06 - 00000000 ____D E:\Users\jadrokukudla\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-03-19 12:05 - 2016-03-19 12:05 - 00000000 ____D E:\Users\jadrokukudla\AppData\Roaming\Mozilla
2016-03-17 17:21 - 2016-03-19 12:34 - 00000000 ____D E:\Program Files (x86)\SearchesToYesbnd
2016-03-17 17:21 - 2016-03-19 12:06 - 00015208 _____ E:\Windows\System32\Tasks\WinTaske
2016-03-17 17:21 - 2016-03-17 17:21 - 00000000 ____D E:\Program Files (x86)\WinTaske
2016-03-17 17:21 - 2016-03-17 17:21 - 00000000 ____D E:\Program Files (x86)\Winsere
2016-03-17 17:21 - 2016-03-17 17:21 - 00000000 ____D E:\extensions
2016-03-17 17:20 - 2016-03-17 17:21 - 00000000 ____D E:\Users\Public\Documents\dmp
2016-03-17 17:19 - 2016-03-17 17:19 - 02025746 _____ ( ) E:\Users\jadrokukudla\Downloads\MK.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-19 13:52 - 2009-07-14 05:45 - 00014016 ____H E:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-19 13:52 - 2009-07-14 05:45 - 00014016 ____H E:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-19 13:45 - 2014-12-23 14:52 - 00000000 ____D E:\ProgramData\NVIDIA
2016-03-19 13:45 - 2009-07-14 06:08 - 00000006 ____H E:\Windows\Tasks\SA.DAT
2016-03-19 13:41 - 2015-02-04 20:12 - 00000000 ____D E:\ProgramData\EpicScale
2016-03-19 12:35 - 2014-12-23 20:44 - 00000936 _____ E:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-19 12:35 - 2014-12-23 20:44 - 00000932 _____ E:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-19 12:35 - 2014-12-23 13:10 - 00000000 ____D E:\Windows\Panther
2016-03-19 12:35 - 2009-07-14 16:18 - 00636906 _____ E:\Windows\system32\perfh005.dat
2016-03-19 12:35 - 2009-07-14 16:18 - 00131292 _____ E:\Windows\system32\perfc005.dat
2016-03-19 12:34 - 2009-07-14 04:20 - 00000000 ____D E:\Windows\inf
2016-03-19 12:33 - 2009-07-14 06:32 - 00000000 ___RD E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-03-19 12:33 - 2009-07-14 06:32 - 00000000 ____D E:\Program Files\Windows Sidebar
2016-03-19 12:32 - 2009-07-14 04:20 - 00000000 ____D E:\Windows\system32\spool
2016-03-19 12:32 - 2009-07-14 04:20 - 00000000 ____D E:\Windows\PolicyDefinitions
2016-03-19 12:06 - 2015-02-02 13:39 - 00003200 _____ E:\Windows\System32\Tasks\{57414793-99A3-4554-A0C2-BDEE2F054C61}
2016-03-19 12:06 - 2014-12-23 20:44 - 00003944 _____ E:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-03-19 12:06 - 2014-12-23 20:44 - 00003692 _____ E:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-03-19 12:06 - 2014-12-23 14:25 - 00003190 _____ E:\Windows\System32\Tasks\{2EE32C31-42F8-4101-BD54-4B058E958FC3}
2016-03-19 12:06 - 2014-12-23 14:05 - 00003156 _____ E:\Windows\System32\Tasks\{1DDFB0F9-F726-4662-9DE2-1068EE34F4FA}
2016-03-19 12:05 - 2014-12-23 20:44 - 00002068 _____ E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-19 12:02 - 2014-12-23 18:26 - 00000000 ____D E:\Program Files (x86)\Steam
2016-03-19 10:14 - 2014-12-23 16:11 - 00000000 ____D E:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-19 10:14 - 2014-12-23 16:04 - 00000000 ____D E:\ProgramData\Oracle
2016-03-19 10:14 - 2014-12-23 16:04 - 00000000 ____D E:\Program Files\Java
2016-03-19 10:13 - 2016-01-31 10:05 - 00000000 ____D E:\Users\jadrokukudla\.oracle_jre_usage
2016-03-19 10:13 - 2014-12-23 16:11 - 00110176 _____ (Oracle Corporation) E:\Windows\system32\WindowsAccessBridge-64.dll
2016-02-29 10:48 - 2009-07-14 06:13 - 01575230 _____ E:\Windows\system32\PerfStringBackup.INI
2016-02-21 10:23 - 2009-07-14 06:08 - 00032606 _____ E:\Windows\Tasks\SCHEDLGU.TXT
2016-02-19 18:40 - 2015-02-19 23:09 - 00000000 ____D E:\Users\jadrokukudla\AppData\Local\Steam
==================== Files in the root of some directories =======
2014-12-23 20:05 - 2015-03-13 01:34 - 0007621 _____ () E:\Users\jadrokukudla\AppData\Local\Resmon.ResmonCfg
2015-04-13 15:38 - 2015-04-13 15:38 - 0004939 _____ () E:\ProgramData\flwjycbm.bab
Files to move or delete:
====================
E:\Users\jadrokukudla\a3dapi.dll
E:\Users\jadrokukudla\Core.dll
E:\Users\jadrokukudla\Counter-Strike 1.6.bat
E:\Users\jadrokukudla\crashhandler.dll
E:\Users\jadrokukudla\dbg.dll
E:\Users\jadrokukudla\DemoPlayer.dll
E:\Users\jadrokukudla\FileSystem_Stdio.dll
E:\Users\jadrokukudla\FileSystem_Steam.dll
E:\Users\jadrokukudla\hl.exe
E:\Users\jadrokukudla\hlds.exe
E:\Users\jadrokukudla\hltv.exe
E:\Users\jadrokukudla\hw.dll
E:\Users\jadrokukudla\hwpatcher.dll
E:\Users\jadrokukudla\Mss32.dll
E:\Users\jadrokukudla\msvcr100.dll
E:\Users\jadrokukudla\proxy.dll
E:\Users\jadrokukudla\revSrvBrowser.dll
E:\Users\jadrokukudla\safemode.bat
E:\Users\jadrokukudla\Steam.dll
E:\Users\jadrokukudla\steamclient.dll
E:\Users\jadrokukudla\steamclient_orig.dll
E:\Users\jadrokukudla\steam_api.dll
E:\Users\jadrokukudla\steam_api_c.dll
E:\Users\jadrokukudla\Steam_orig.dll
E:\Users\jadrokukudla\sw.dll
E:\Users\jadrokukudla\swds.dll
E:\Users\jadrokukudla\tier0.dll
E:\Users\jadrokukudla\tier0_s.dll
E:\Users\jadrokukudla\Uninstal.exe
E:\Users\jadrokukudla\upatch.dll
E:\Users\jadrokukudla\vgui.dll
E:\Users\jadrokukudla\vgui2.dll
E:\Users\jadrokukudla\voice_miles.dll
E:\Users\jadrokukudla\voice_speex.dll
E:\Users\jadrokukudla\vstdlib.dll
E:\Users\jadrokukudla\vstdlib_s.dll
Some files in TEMP:
====================
E:\Users\jadrokukudla\AppData\Local\Temp\jre-8u73-windows-au.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
E:\Windows\system32\winlogon.exe => File is digitally signed
E:\Windows\system32\wininit.exe => File is digitally signed
E:\Windows\SysWOW64\wininit.exe => File is digitally signed
E:\Windows\explorer.exe => File is digitally signed
E:\Windows\SysWOW64\explorer.exe => File is digitally signed
E:\Windows\system32\svchost.exe => File is digitally signed
E:\Windows\SysWOW64\svchost.exe => File is digitally signed
E:\Windows\system32\services.exe => File is digitally signed
E:\Windows\system32\User32.dll => File is digitally signed
E:\Windows\SysWOW64\User32.dll => File is digitally signed
E:\Windows\system32\userinit.exe => File is digitally signed
E:\Windows\SysWOW64\userinit.exe => File is digitally signed
E:\Windows\system32\rpcss.dll => File is digitally signed
E:\Windows\system32\dnsapi.dll => File is digitally signed
E:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
E:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-03-09 15:30
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:58.5 GB) (Free:57.14 GB) NTFS
Drive d: (Nový zväzok) (Fixed) (Total:292.97 GB) (Free:147.77 GB) NTFS
Drive e: () (Fixed) (Total:114.2 GB) (Free:53.25 GB) NTFS
Drive i: () (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
Available physical RAM: 2283.48 MB
Total physical RAM: 3884.49 MB
Percentage of memory in use: 41%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 02BBA1FC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=58.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=114.2 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: E:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => E:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: E:\Windows\Tasks\Adobe Flash Player Updater.job => E:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "E:\Users\jadrokukudla\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"E:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"E:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EpicScale
"E:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
E:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SonicMasterTray
"E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
Re�im ECHO je vypnut.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\E:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk
E:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by jadrokukudla (2016-03-19 13:55:54)
Running from E:\Users\jadrokukudla\Desktop
Windows 7 Home Premium (X64) (2014-12-23 12:37:42)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-787874068-2874100851-3053886824-500 - Administrator - Disabled)
Guest (S-1-5-21-787874068-2874100851-3053886824-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-787874068-2874100851-3053886824-1003 - Limited - Enabled)
jadrokukudla (S-1-5-21-787874068-2874100851-3053886824-1000 - Administrator - Enabled) => E:\Users\jadrokukudla
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.257 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader 9 - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM-x32\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.24 - Autodesk, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6) (Version: - )
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
ESET NOD32 Antivirus (HKLM\...\{DC91B197-2D38-4659-9EF7-AF3A8F5A2E0B}) (Version: 9.0.374.1 - ESET, spol. s r.o.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2189 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Java 8 Update 73 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA Ovladač 3D Vision 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
omiga-plus uninstall (HKLM-x32\...\omiga-plus uninstall) (Version: - omiga-plus) <==== ATTENTION
Ovládací panel NVIDIA 347.52 (Version: 347.52 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6176 - Realtek Semiconductor Corp.)
Shockwave (HKLM-x32\...\Shockwave) (Version: - )
SonicMaster (HKLM-x32\...\{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}) (Version: 1.00.0000 - Virage Logic, Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Total Commander 64-bit (Remove or Repair) (HKLM-x32\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
USB2.0 2.0M UVC WebCam (HKLM-x32\...\{FC9B811E-39BC-4813-9E29-B83CCF700010}) (Version: 2.103.13.6 - ALi)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows Driver Package - Broadcom Bluetooth (07/17/2009 6.2.0.9403) (HKLM\...\F9FD5BBF579A4BFD40D38BE291F731666B27DC28) (Version: 07/17/2009 6.2.0.9403 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) (HKLM\...\2AA10AB519DC7432D599A0E860206A7DDCC27764) (Version: 07/29/2009 6.1.7100.0 - Broadcom)
Windows Driver Package - Broadcom HIDClass (06/11/2009 6.2.0.9500) (HKLM\...\0E74EB10C05C955C24243E6D3120CDC972FC5B1D) (Version: 06/11/2009 6.2.0.9500 - Broadcom)
WinRAR 5.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {113F50D0-2D5A-4C5C-BFD8-6AE1988A8845} - System32\Tasks\{1DDFB0F9-F726-4662-9DE2-1068EE34F4FA} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lig ... tError=404
Task: {20C68151-99EB-4B06-970E-1E88461927C5} - System32\Tasks\{57414793-99A3-4554-A0C2-BDEE2F054C61} => pcalua.exe -a E:\Users\jadrokukudla\Downloads\SetupPoker_af9569.exe -d E:\Users\jadrokukudla\Downloads
Task: {30181365-2D11-449B-9119-831936C6B7C0} - System32\Tasks\CCleanerSkipUAC => E:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {30C0A317-9444-4EFA-AFA6-83BA9FCAD084} - System32\Tasks\WinTaske => E:\Program Files (x86)\WinTaske\WinTaske\WinTaske.exe [2016-03-15] ()
Task: {4A8E9D01-594B-46C4-9604-19B77CCE0AF1} - System32\Tasks\Adobe Flash Player Updater => E:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-05] (Adobe Systems Incorporated)
Task: {6DB3839F-0FD8-4828-B9A3-F18BABAB19BC} - System32\Tasks\GoogleUpdateTaskMachineUA => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {A70B1852-034B-447C-A02C-097AC67D6584} - System32\Tasks\AVAST Software\Avast settings backup => E:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-03-05] (AVAST Software)
Task: {C19F15F6-3C06-4A2C-9711-1200FDDB38BF} - System32\Tasks\GoogleUpdateTaskMachineCore => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {C906B760-57C7-4A1F-AFD5-9245410BDAB2} - System32\Tasks\Adobe Flash Player PPAPI Notifier => E:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: {CF8DB582-3618-4ED9-83B1-F4A640DE44E4} - System32\Tasks\{2EE32C31-42F8-4101-BD54-4B058E958FC3} => pcalua.exe -a E:\Users\jadrokukudla\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=smt <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: E:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => E:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: E:\Windows\Tasks\Adobe Flash Player Updater.job => E:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: E:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => E:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2014-12-23 18:11 - 2015-02-05 22:01 - 00012104 _____ () E:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-12-23 18:16 - 2015-02-05 20:07 - 00117576 _____ () E:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-12-23 18:11 - 2015-02-05 22:01 - 00011920 _____ () E:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2014-12-23 15:03 - 2010-05-13 07:00 - 00424448 _____ () E:\Windows\system\S6000Dex.dll
2016-03-15 17:34 - 2016-03-08 03:48 - 01676440 _____ () E:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\libglesv2.dll
2016-03-15 17:34 - 2016-03-08 03:48 - 00086168 _____ () E:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A E:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: E:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => E:\Windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "E:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: CCleaner Monitoring => "E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: DAEMON Tools Lite => "E:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: EpicScale =>
MSCONFIG\startupreg: GrooveMonitor => "E:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: SonicMasterTray => E:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "E:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{3A6F5F0C-C50A-4E5C-9EC9-4393C5B2E527}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{8DEE21C6-68E3-4A36-899D-6894FAB778B7}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{3836849D-6563-43AC-8BC9-CB1911901889}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A5E3F00E-40C8-4FDA-A1DB-EB817C4AC8BC}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69253274-5B3C-402A-9EB1-72C932BA8C4D}] => (Allow) E:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{662CA738-9CD8-4F5A-9728-DE554F97BB86}] => (Allow) E:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{945DD918-7638-47F2-A069-2571CDB39BE6}E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [UDP Query User{36336D03-32AC-4B81-B391-08EBD75AEF47}E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{70544D8E-D62B-48ED-938F-35D926A1A3DF}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{ADE4FE9C-3CC7-4228-AF34-4CDA8463B760}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{1BBD5294-0252-42F2-B6C0-F3A7AEBD7A1D}E:\users\jadrokukudla\hl.exe] => (Allow) E:\users\jadrokukudla\hl.exe
FirewallRules: [UDP Query User{E4C6D19C-0E81-40B2-8FD1-EFD54D7EDB67}E:\users\jadrokukudla\hl.exe] => (Allow) E:\users\jadrokukudla\hl.exe
FirewallRules: [{6BCA6C40-DD9D-4F2D-AEF5-122A5F9857BF}] => (Allow) E:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{5510FF2B-9196-4AAC-A9AE-FAE38799D7D7}E:\program files (x86)\relevantknowledge\rlvknlg.exe] => (Block) E:\program files (x86)\relevantknowledge\rlvknlg.exe
FirewallRules: [UDP Query User{EEC424BF-FBAE-4848-AAE7-C79D4FEF3158}E:\program files (x86)\relevantknowledge\rlvknlg.exe] => (Block) E:\program files (x86)\relevantknowledge\rlvknlg.exe
==================== Restore Points =========================
08-03-2016 17:59:19 Naplánovaný kontrolní bod
19-03-2016 12:04:26 Removed Skype Click to Call
19-03-2016 12:21:13 Instalační služba modulů systému Windows
==================== Faulty Device Manager Devices =============
Name: {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Description: {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
Description: {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
Description: {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
Description: {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
Description: {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
Description: {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
Description: {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
Description: {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
Description: {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
Description: {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
Description: {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: {9e225977-4791-4356-911d-90b292281075}Gw64
Description: {9e225977-4791-4356-911d-90b292281075}Gw64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {9e225977-4791-4356-911d-90b292281075}Gw64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (03/19/2016 01:44:18 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{524032E4-E071-44C8-9139-E99FC2697F44}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_DisplayUnlock
Error: (03/19/2016 12:32:45 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{5C70CD3A-8913-4D93-94F7-79182EF1B930}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_StopScreenSaver
Error: (03/14/2016 04:42:05 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/12/2016 02:39:26 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/11/2016 04:31:06 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to copy new service file to temp location
Error: (03/09/2016 03:30:44 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/08/2016 05:01:14 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/06/2016 12:35:35 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/04/2016 04:44:29 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
Error: (03/02/2016 05:36:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest2 na řádku E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: E:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest.
Součást 2: E:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest.
System errors:
=============
Error: (03/19/2016 01:45:56 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64
{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64
{9e225977-4791-4356-911d-90b292281075}Gw64
{abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64
{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64
{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64
{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64
{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64
{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64
{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64
{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64
{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64
Error: (03/19/2016 01:27:26 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:23 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:21 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:18 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:15 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:13 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:10 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:07 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
Error: (03/19/2016 01:27:05 PM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU M 380 @ 2.53GHz
Percentage of memory in use: 41%
Total physical RAM: 3884.49 MB
Available physical RAM: 2283.48 MB
Total Virtual: 7767.13 MB
Available Virtual: 6096.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:58.5 GB) (Free:57.14 GB) NTFS
Drive d: (Nový zväzok) (Fixed) (Total:292.97 GB) (Free:147.77 GB) NTFS
Drive e: () (Fixed) (Total:114.2 GB) (Free:53.25 GB) NTFS
Drive i: () (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 02BBA1FC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=58.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=114.2 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Re: Poprosim o kontrolu
Zdravím
stáhněte
http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusťte ho a v nabídce zvolte Kopírovat.
-Data ze schránky sem pak vložte pomocí Ctrl+V
Stáhněte AdwCleaner http://www.bleepingcomputer.com/download/adwcleaner/
-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.


http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusťte ho a v nabídce zvolte Kopírovat.
-Data ze schránky sem pak vložte pomocí Ctrl+V

-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Poprosim o kontrolu
----------------------------------------------------------------------------
CrystalDiskInfo 6.7.4 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium [6.1 Build 7600] (x64)
Date : 2016/03/20 18:40:10
-- Controller Map ----------------------------------------------------------
+ Intel(R) 5 Series/3400 Series Chipset Family 4 port Serial ATA Storage Controller - 3B28 [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Intel(R) 5 Series/3400 Series Chipset Family 2 port Serial ATA Storage Controller - 3B2D [ATA]
+ ATA Channel 0 (0)
- ST9500420AS ATA Device
+ ATA Channel 1 (1)
- HL-DT-ST DVDRAM GT32N ATA Device
-- Disk List ---------------------------------------------------------------
(1) ST9500420AS : 500,1 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9500420AS
----------------------------------------------------------------------------
Model : ST9500420AS
Firmware : 0003SDM1
Serial Number : 5VJ9DMAL
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : ---- | SATA/300
Power On Hours : 18460 hours
Power On Count : 5157 count
Temperature : 38 C (100 F)
Health Status : Caution
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : D000h [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 119 _86 __6 00000C7F511C Read Error Rate
03 _97 _97 _85 000000000000 Spin-Up Time
04 _95 _95 _20 00000000142D Start/Stop Count
05 100 100 _36 000000000001 Reallocated Sectors Count
07 _74 _60 _30 000F193D81FD Seek Error Rate
09 _79 _79 __0 00000000481C Power-On Hours
0A 100 100 _97 000000000000 Spin Retry Count
0C _95 _95 _20 000000001425 Power Cycle Count
B8 100 100 _99 000000000000 End-to-End Error
BB __1 __1 __0 0000000031F8 Reported Uncorrectable Errors
BC 100 _98 __0 00000000086D Command Timeout
BD 100 100 __0 000000000000 High Fly Writes
BE _62 _49 _45 000026160026 Airflow Temperature
BF 100 100 __0 0000000001CA G-Sense Error Rate
C0 100 100 __0 0000000000AA Power-off Retract Count
C1 _29 _29 __0 000000023041 Load/Unload Cycle Count
C2 _38 _51 __0 000900000026 Temperature
C3 _50 _43 __0 00000C7F511C Hardware ECC recovered
C5 100 100 __0 000000000005 Current Pending Sector Count
C6 100 100 __0 000000000005 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
F0 100 253 __0 BB870000463F Head Flying Hours
F1 100 253 __0 00005A3DE05F Total Host Writes
F2 100 253 __0 0000F8AF1709 Total Host Reads
FE 100 100 __0 000000000000 Free Fall Protection
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3556 4A39 444D 414C
020: 0000 8000 0004 3030 3033 5344 4D31 5354 3935 3030
030: 3432 3041 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0706 0000 0048 0000
080: 01F0 0029 746B 7F09 61E3 7469 BC09 61E3 407F 0033
090: 0033 8080 FFFE 0000 D000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 0000 0000 5000 C500
110: 2EDF 5410 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6030
130: 3A38 6030 3A38 2020 0002 0140 0100 5000 3C06 3C0A
140: 0000 0078 0000 0008 0000 0000 001F 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 3E00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 103F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 0FA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 77 56 1C 51 7F 0C 00 00 00 03 03
010: 00 61 61 00 00 00 00 00 00 00 04 32 00 5F 5F 2D
020: 14 00 00 00 00 00 05 33 00 64 64 01 00 00 00 00
030: 00 00 07 0F 00 4A 3C FD 81 3D 19 0F 00 00 09 32
040: 00 4F 4F 1C 48 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 5F 5F 25 14 00 00 00
060: 00 00 B8 32 00 64 64 00 00 00 00 00 00 00 BB 32
070: 00 01 01 F8 31 00 00 00 00 00 BC 32 00 64 62 6D
080: 08 00 00 00 00 00 BD 3A 00 64 64 00 00 00 00 00
090: 00 00 BE 22 00 3E 31 26 00 16 26 00 00 00 BF 32
0A0: 00 64 64 CA 01 00 00 00 00 00 C0 32 00 64 64 AA
0B0: 00 00 00 00 00 00 C1 32 00 1D 1D 41 30 02 00 00
0C0: 00 00 C2 22 00 26 33 26 00 00 00 09 00 00 C3 1A
0D0: 00 32 2B 1C 51 7F 0C 00 00 00 C5 12 00 64 64 05
0E0: 00 00 00 00 00 00 C6 10 00 64 64 05 00 00 00 00
0F0: 00 00 C7 3E 00 C8 C8 00 00 00 00 00 00 00 F0 00
100: 00 64 FD 3F 46 00 00 87 BB 01 F1 00 00 64 FD 5F
110: E0 3D 5A 00 00 00 F2 00 00 64 FD 09 17 AF F8 00
120: 00 00 FE 32 00 64 64 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 73
170: 03 00 01 00 02 6C 03 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 05 03 03 03 03 03 03 03
190: 03 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
1A0: 00 00 00 00 CA 01 00 00 ED 99 92 A6 73 3C 00 00
1B0: 00 00 00 00 01 00 FF FF 5F E0 3D 5A 3B 43 00 00
1C0: 09 17 AF F8 14 F6 00 00 00 00 00 00 9F 86 95 00
1D0: 00 00 00 00 00 00 00 00 12 12 00 00 6F 00 02 00
1E0: 00 00 00 00 03 18 00 00 00 00 00 00 00 00 00 37
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 92
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 01 06 00 00 00 00 00 00 00 00 00 00 03 55
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 B8 63 00 00 00 00 00 00 00 00 00 00 BB 00
070: 00 00 00 00 00 00 00 00 00 00 BC 00 00 00 00 00
080: 00 00 00 00 00 00 BD 00 00 00 00 00 00 00 00 00
090: 00 00 BE 2D 00 00 00 00 00 00 00 00 00 00 BF 00
0A0: 00 00 00 00 00 00 00 00 00 00 C0 00 00 00 00 00
0B0: 00 00 00 00 00 00 C1 00 00 00 00 00 00 00 00 00
0C0: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C3 00
0D0: 00 00 00 00 00 00 00 00 00 00 C5 00 00 00 00 00
0E0: 00 00 00 00 00 00 C6 00 00 00 00 00 00 00 00 00
0F0: 00 00 C7 00 00 00 00 00 00 00 00 00 00 00 F0 00
100: 00 00 00 00 00 00 00 00 00 00 F1 00 00 00 00 00
110: 00 00 00 00 00 00 F2 00 00 00 00 00 00 00 00 00
120: 00 00 FE 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 84
# AdwCleaner v5.102 - Logfile created 20/03/2016 at 18:45:39
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.6 [Server]
# Operating system : Windows 7 Home Premium (x64)
# Username : jadrokukudla - JADROKUKUDLA-PC
# Running from : E:\Users\jadrokukudla\Desktop\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : ggbugreport
[-] Service Deleted : Winsere
***** [ Folders ] *****
[#] Folder Deleted : E:\Program Files (x86)\SearchesToYesbnd
[#] Folder Deleted : E:\Program Files (x86)\Winsere
[#] Folder Deleted : E:\Program Files (x86)\WinTaske
[#] Folder Deleted : E:\ProgramData\epicscale
[#] Folder Deleted : E:\ProgramData\IePluginServices
[#] Folder Deleted : E:\ProgramData\WindowsMangerProtect
[#] Folder Deleted : E:\Users\jadrokukudla\AppData\Local\pay-by-ads
[#] Folder Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mallpejgeafdahhflmliiahjdpgbegpk
[#] Folder Deleted : E:\Users\jadrokukudla\AppData\Roaming\omiga-plus
[#] Folder Deleted : E:\Windows\SysNative\Tasks\WinTaske
***** [ Files ] *****
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idhbnjbbcnalphnliphggnfgjldpmnnj_0.localstorage
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idhbnjbbcnalphnliphggnfgjldpmnnj
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mallpejgeafdahhflmliiahjdpgbegpk_0.localstorage
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mallpejgeafdahhflmliiahjdpgbegpk_0.localstorage-journal
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : WinTaske
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9F7AB9C4-4DA3-440E-BA84-95903165F129}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9F7AB9C4-4DA3-440E-BA84-95903165F129}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
[-] Key Deleted : HKCU\Software\EpicScale
[-] Key Deleted : HKCU\Software\SupHpUISoft
[-] Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
[-] Key Deleted : HKLM\SOFTWARE\SupTab
[-] Key Deleted : HKLM\SOFTWARE\yessearchesSoftware
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omiga-plus uninstall
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-787874068-2874100851-3053886824-1000\Software\SourceApp
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [TCP Query User{5510FF2B-9196-4AAC-A9AE-FAE38799D7D7}E:\program files (x86)\relevantknowledge\rlvknlg.exe]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [UDP Query User{EEC424BF-FBAE-4848-AAE7-C79D4FEF3158}E:\program files (x86)\relevantknowledge\rlvknlg.exe]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\OldSearch
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{823F8AD6-2964-4A3A-8382-2FBEA38DFC30}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[#] Value Deleted : HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Data Restored : HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\EpicScale
[-] Key Deleted : HKCU\Software\Classes\keepmysearch
***** [ Web browsers ] *****
[-] [E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : mallpejgeafdahhflmliiahjdpgbegpk
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
E:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [5337 bytes] - [20/03/2016 18:45:39]
E:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [6014 bytes] - [20/03/2016 18:43:00]
########## EOF - E:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [5523 bytes] ##########
CrystalDiskInfo 6.7.4 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium [6.1 Build 7600] (x64)
Date : 2016/03/20 18:40:10
-- Controller Map ----------------------------------------------------------
+ Intel(R) 5 Series/3400 Series Chipset Family 4 port Serial ATA Storage Controller - 3B28 [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Intel(R) 5 Series/3400 Series Chipset Family 2 port Serial ATA Storage Controller - 3B2D [ATA]
+ ATA Channel 0 (0)
- ST9500420AS ATA Device
+ ATA Channel 1 (1)
- HL-DT-ST DVDRAM GT32N ATA Device
-- Disk List ---------------------------------------------------------------
(1) ST9500420AS : 500,1 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9500420AS
----------------------------------------------------------------------------
Model : ST9500420AS
Firmware : 0003SDM1
Serial Number : 5VJ9DMAL
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : ---- | SATA/300
Power On Hours : 18460 hours
Power On Count : 5157 count
Temperature : 38 C (100 F)
Health Status : Caution
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : D000h [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 119 _86 __6 00000C7F511C Read Error Rate
03 _97 _97 _85 000000000000 Spin-Up Time
04 _95 _95 _20 00000000142D Start/Stop Count
05 100 100 _36 000000000001 Reallocated Sectors Count
07 _74 _60 _30 000F193D81FD Seek Error Rate
09 _79 _79 __0 00000000481C Power-On Hours
0A 100 100 _97 000000000000 Spin Retry Count
0C _95 _95 _20 000000001425 Power Cycle Count
B8 100 100 _99 000000000000 End-to-End Error
BB __1 __1 __0 0000000031F8 Reported Uncorrectable Errors
BC 100 _98 __0 00000000086D Command Timeout
BD 100 100 __0 000000000000 High Fly Writes
BE _62 _49 _45 000026160026 Airflow Temperature
BF 100 100 __0 0000000001CA G-Sense Error Rate
C0 100 100 __0 0000000000AA Power-off Retract Count
C1 _29 _29 __0 000000023041 Load/Unload Cycle Count
C2 _38 _51 __0 000900000026 Temperature
C3 _50 _43 __0 00000C7F511C Hardware ECC recovered
C5 100 100 __0 000000000005 Current Pending Sector Count
C6 100 100 __0 000000000005 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
F0 100 253 __0 BB870000463F Head Flying Hours
F1 100 253 __0 00005A3DE05F Total Host Writes
F2 100 253 __0 0000F8AF1709 Total Host Reads
FE 100 100 __0 000000000000 Free Fall Protection
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3556 4A39 444D 414C
020: 0000 8000 0004 3030 3033 5344 4D31 5354 3935 3030
030: 3432 3041 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0706 0000 0048 0000
080: 01F0 0029 746B 7F09 61E3 7469 BC09 61E3 407F 0033
090: 0033 8080 FFFE 0000 D000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 0000 0000 5000 C500
110: 2EDF 5410 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6030
130: 3A38 6030 3A38 2020 0002 0140 0100 5000 3C06 3C0A
140: 0000 0078 0000 0008 0000 0000 001F 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 3E00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 103F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 0FA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 77 56 1C 51 7F 0C 00 00 00 03 03
010: 00 61 61 00 00 00 00 00 00 00 04 32 00 5F 5F 2D
020: 14 00 00 00 00 00 05 33 00 64 64 01 00 00 00 00
030: 00 00 07 0F 00 4A 3C FD 81 3D 19 0F 00 00 09 32
040: 00 4F 4F 1C 48 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 5F 5F 25 14 00 00 00
060: 00 00 B8 32 00 64 64 00 00 00 00 00 00 00 BB 32
070: 00 01 01 F8 31 00 00 00 00 00 BC 32 00 64 62 6D
080: 08 00 00 00 00 00 BD 3A 00 64 64 00 00 00 00 00
090: 00 00 BE 22 00 3E 31 26 00 16 26 00 00 00 BF 32
0A0: 00 64 64 CA 01 00 00 00 00 00 C0 32 00 64 64 AA
0B0: 00 00 00 00 00 00 C1 32 00 1D 1D 41 30 02 00 00
0C0: 00 00 C2 22 00 26 33 26 00 00 00 09 00 00 C3 1A
0D0: 00 32 2B 1C 51 7F 0C 00 00 00 C5 12 00 64 64 05
0E0: 00 00 00 00 00 00 C6 10 00 64 64 05 00 00 00 00
0F0: 00 00 C7 3E 00 C8 C8 00 00 00 00 00 00 00 F0 00
100: 00 64 FD 3F 46 00 00 87 BB 01 F1 00 00 64 FD 5F
110: E0 3D 5A 00 00 00 F2 00 00 64 FD 09 17 AF F8 00
120: 00 00 FE 32 00 64 64 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 73
170: 03 00 01 00 02 6C 03 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 05 03 03 03 03 03 03 03
190: 03 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
1A0: 00 00 00 00 CA 01 00 00 ED 99 92 A6 73 3C 00 00
1B0: 00 00 00 00 01 00 FF FF 5F E0 3D 5A 3B 43 00 00
1C0: 09 17 AF F8 14 F6 00 00 00 00 00 00 9F 86 95 00
1D0: 00 00 00 00 00 00 00 00 12 12 00 00 6F 00 02 00
1E0: 00 00 00 00 03 18 00 00 00 00 00 00 00 00 00 37
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 92
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 01 06 00 00 00 00 00 00 00 00 00 00 03 55
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 B8 63 00 00 00 00 00 00 00 00 00 00 BB 00
070: 00 00 00 00 00 00 00 00 00 00 BC 00 00 00 00 00
080: 00 00 00 00 00 00 BD 00 00 00 00 00 00 00 00 00
090: 00 00 BE 2D 00 00 00 00 00 00 00 00 00 00 BF 00
0A0: 00 00 00 00 00 00 00 00 00 00 C0 00 00 00 00 00
0B0: 00 00 00 00 00 00 C1 00 00 00 00 00 00 00 00 00
0C0: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C3 00
0D0: 00 00 00 00 00 00 00 00 00 00 C5 00 00 00 00 00
0E0: 00 00 00 00 00 00 C6 00 00 00 00 00 00 00 00 00
0F0: 00 00 C7 00 00 00 00 00 00 00 00 00 00 00 F0 00
100: 00 00 00 00 00 00 00 00 00 00 F1 00 00 00 00 00
110: 00 00 00 00 00 00 F2 00 00 00 00 00 00 00 00 00
120: 00 00 FE 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 84
# AdwCleaner v5.102 - Logfile created 20/03/2016 at 18:45:39
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.6 [Server]
# Operating system : Windows 7 Home Premium (x64)
# Username : jadrokukudla - JADROKUKUDLA-PC
# Running from : E:\Users\jadrokukudla\Desktop\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : ggbugreport
[-] Service Deleted : Winsere
***** [ Folders ] *****
[#] Folder Deleted : E:\Program Files (x86)\SearchesToYesbnd
[#] Folder Deleted : E:\Program Files (x86)\Winsere
[#] Folder Deleted : E:\Program Files (x86)\WinTaske
[#] Folder Deleted : E:\ProgramData\epicscale
[#] Folder Deleted : E:\ProgramData\IePluginServices
[#] Folder Deleted : E:\ProgramData\WindowsMangerProtect
[#] Folder Deleted : E:\Users\jadrokukudla\AppData\Local\pay-by-ads
[#] Folder Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Extensions\mallpejgeafdahhflmliiahjdpgbegpk
[#] Folder Deleted : E:\Users\jadrokukudla\AppData\Roaming\omiga-plus
[#] Folder Deleted : E:\Windows\SysNative\Tasks\WinTaske
***** [ Files ] *****
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idhbnjbbcnalphnliphggnfgjldpmnnj_0.localstorage
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idhbnjbbcnalphnliphggnfgjldpmnnj
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mallpejgeafdahhflmliiahjdpgbegpk_0.localstorage
[-] File Deleted : E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mallpejgeafdahhflmliiahjdpgbegpk_0.localstorage-journal
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : WinTaske
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9F7AB9C4-4DA3-440E-BA84-95903165F129}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9F7AB9C4-4DA3-440E-BA84-95903165F129}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
[-] Key Deleted : HKCU\Software\EpicScale
[-] Key Deleted : HKCU\Software\SupHpUISoft
[-] Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
[-] Key Deleted : HKLM\SOFTWARE\SupTab
[-] Key Deleted : HKLM\SOFTWARE\yessearchesSoftware
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omiga-plus uninstall
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-787874068-2874100851-3053886824-1000\Software\SourceApp
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [TCP Query User{5510FF2B-9196-4AAC-A9AE-FAE38799D7D7}E:\program files (x86)\relevantknowledge\rlvknlg.exe]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [UDP Query User{EEC424BF-FBAE-4848-AAE7-C79D4FEF3158}E:\program files (x86)\relevantknowledge\rlvknlg.exe]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\OldSearch
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{823F8AD6-2964-4A3A-8382-2FBEA38DFC30}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[#] Value Deleted : HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Data Restored : HKU\S-1-5-21-787874068-2874100851-3053886824-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\EpicScale
[-] Key Deleted : HKCU\Software\Classes\keepmysearch
***** [ Web browsers ] *****
[-] [E:\Users\jadrokukudla\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : mallpejgeafdahhflmliiahjdpgbegpk
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
E:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [5337 bytes] - [20/03/2016 18:45:39]
E:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [6014 bytes] - [20/03/2016 18:43:00]
########## EOF - E:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [5523 bytes] ##########
Re: Poprosim o kontrolu
Adw cleaner něco smazal, nicméně disk má nějaký problém
Zkuste Hd tune, kondici a eror sken
http://www.slunecnice.cz/sw/hd-tune/
Ten eror sken bude trvat déle, pokud bude nějaké políčko červené, je to jasné.
Z kondice poprosím screen (je to záložka s červeným křížkem.)
Zkuste Hd tune, kondici a eror sken
http://www.slunecnice.cz/sw/hd-tune/
Ten eror sken bude trvat déle, pokud bude nějaké políčko červené, je to jasné.
Z kondice poprosím screen (je to záložka s červeným křížkem.)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Poprosim o kontrolu
Sorry za viac prispekov ale nejak mi neslo vlozit do jedneho prispevku vsetky obrazky
Re: Poprosim o kontrolu
Ten disk není uplně ok, pokud byste měl nadále problémy, doporučuji minimálně zformátovat, ale spíš uvažujte o výměně disku. Občas ho zkontrolujte přes HD tune, jestli se začnou červená políčka rozšiřovat, vyměňte ho. Rozhodně si ale data ukládejte mimo disk.
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.

-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Poprosim o kontrolu
ako moj notebook ma uz 6 rokov, uz sa mi neoplati kupovat nic nove do neho mam to uz len tak na take hranie
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 21. 3. 2016
Čas skenování: 21:18
Protokol: mbam log.txt
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2016.03.21.05
Databáze rootkitů: v2016.03.12.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 7
CPU: x64
Souborový systém: NTFS
Uživatel: jadrokukudla
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 336155
Uplynulý čas: 9 min, 20 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 17
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [bbae8505069365d18fc629f707fc32ce],
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [97d2b9d1c2d70036b79e7ba533d05ca4],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64, , [a5c41c6e1683fa3c3709d25954b0c739],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64, , [45248cfe7b1e3ef85de3c8633cc8cc34],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9e225977-4791-4356-911d-90b292281075}Gw64, , [1554cfbb7d1c033353edcd5e83813ac6],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64, , [22476c1e396073c37dc366c549bbea16],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64, , [c7a23f4bd6c3b48276ca23084bb954ac],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64, , [006974167f1a8da994ac18139e6631cf],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64, , [3039f09adebb60d62818bc6fd03413ed],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64, , [98d17c0eb8e151e590b01318659f629e],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64, , [2445206ac4d5f54177c9af7c867ee41c],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64, , [20498a00e1b8a690e9575dce38cc39c7],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64, , [0267d9b1346558de85bb072422e247b9],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64, , [e28733575742b08650f0b774b64efa06],
PUP.Optional.IEPluginServices, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\IePluginServices, , [6504fe8c3e5b61d511e504127c889f61],
PUP.Optional.WindowsMangerProtect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, , [93d608825e3bec4aecd38daeea1ad030],
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [f97090fa00993402a6cd2a5ee91bb947],
Hodnoty registru: 12
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [bbae8505069365d18fc629f707fc32ce]
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [ef7afa9071285fd7d18440e009fa38c8]
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, http://www.yessearches.com/chrome.php?u ... =ffsengext, , [88e10d7da5f4c076a3b2e63a7c8718e8]
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, http://www.yessearches.com/chrome.php?u ... toolbar&q=, , [82e7eaa08f0abb7bbf9646dace35d22e]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [97d2b9d1c2d70036b79e7ba533d05ca4]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [93d68901f6a3b284aaab9888be458b75]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, http://www.yessearches.com/chrome.php?u ... =ffsengext, , [0069305acecb1a1cf65fb36dac576c94]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, http://www.yessearches.com/chrome.php?u ... toolbar&q=, , [0a5f800af0a9122495c057c9768d21df]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [f97090fa00993402a6cd2a5ee91bb947]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [e980e4a64d4cba7c77fc592f63a17b85]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, http://www.yessearches.com/chrome.php?u ... =ffsengext, , [3b2e46440198da5c41324c3c24e0e719]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, http://www.yessearches.com/chrome.php?u ... toolbar&q=, , [c1a8ec9ed5c480b6d89b5b2d19eb42be]
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 21. 3. 2016
Čas skenování: 21:18
Protokol: mbam log.txt
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2016.03.21.05
Databáze rootkitů: v2016.03.12.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 7
CPU: x64
Souborový systém: NTFS
Uživatel: jadrokukudla
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 336155
Uplynulý čas: 9 min, 20 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 17
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [bbae8505069365d18fc629f707fc32ce],
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [97d2b9d1c2d70036b79e7ba533d05ca4],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64, , [a5c41c6e1683fa3c3709d25954b0c739],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64, , [45248cfe7b1e3ef85de3c8633cc8cc34],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9e225977-4791-4356-911d-90b292281075}Gw64, , [1554cfbb7d1c033353edcd5e83813ac6],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{abbda6e4-1fdf-45e9-8feb-7ffcdf19a253}Gw64, , [22476c1e396073c37dc366c549bbea16],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64, , [c7a23f4bd6c3b48276ca23084bb954ac],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64, , [006974167f1a8da994ac18139e6631cf],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64, , [3039f09adebb60d62818bc6fd03413ed],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64, , [98d17c0eb8e151e590b01318659f629e],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64, , [2445206ac4d5f54177c9af7c867ee41c],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64, , [20498a00e1b8a690e9575dce38cc39c7],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64, , [0267d9b1346558de85bb072422e247b9],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64, , [e28733575742b08650f0b774b64efa06],
PUP.Optional.IEPluginServices, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\IePluginServices, , [6504fe8c3e5b61d511e504127c889f61],
PUP.Optional.WindowsMangerProtect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, , [93d608825e3bec4aecd38daeea1ad030],
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [f97090fa00993402a6cd2a5ee91bb947],
Hodnoty registru: 12
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [bbae8505069365d18fc629f707fc32ce]
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [ef7afa9071285fd7d18440e009fa38c8]
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, http://www.yessearches.com/chrome.php?u ... =ffsengext, , [88e10d7da5f4c076a3b2e63a7c8718e8]
PUP.Optional.YesSearches, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, http://www.yessearches.com/chrome.php?u ... toolbar&q=, , [82e7eaa08f0abb7bbf9646dace35d22e]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [97d2b9d1c2d70036b79e7ba533d05ca4]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [93d68901f6a3b284aaab9888be458b75]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, http://www.yessearches.com/chrome.php?u ... =ffsengext, , [0069305acecb1a1cf65fb36dac576c94]
PUP.Optional.YesSearches, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, http://www.yessearches.com/chrome.php?u ... toolbar&q=, , [0a5f800af0a9122495c057c9768d21df]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [f97090fa00993402a6cd2a5ee91bb947]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://www.yessearches.com/?ts=AHEpC38n ... =ffsengext, , [e980e4a64d4cba7c77fc592f63a17b85]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, http://www.yessearches.com/chrome.php?u ... =ffsengext, , [3b2e46440198da5c41324c3c24e0e719]
PUP.Optional.YesSearches, HKU\S-1-5-21-787874068-2874100851-3053886824-1000\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, http://www.yessearches.com/chrome.php?u ... toolbar&q=, , [c1a8ec9ed5c480b6d89b5b2d19eb42be]
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: Poprosim o kontrolu
Vše smažte. Poprosím o nový log z Frstu a napište, co počítač.
Jen si dávejte pozor na důležitá data, abyste o ně nepřišel..nejen z hlediska vady disku, ale všeobecně byste měl mít vždy ještě zálohu mimo pc.
Jen si dávejte pozor na důležitá data, abyste o ně nepřišel..nejen z hlediska vady disku, ale všeobecně byste měl mít vždy ještě zálohu mimo pc.

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.