Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

vyskakovaní složek srv

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Nemakacenko
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 26 črc 2016 16:16

vyskakovaní složek srv

#1 Příspěvek od Nemakacenko »

Automatické vytvaření složek srv.
+ FRST jsem tam nemohl dát protože to bylo moc velké
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-07-2016
Ran by Asus (2016-07-26 17:02:46)
Running from C:\Users\Asus\Desktop
Microsoft Windows 7 Ultimate (X86) (2013-03-24 09:05:26)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2120129993-3777478874-4276046238-500 - Administrator - Disabled)
Asus (S-1-5-21-2120129993-3777478874-4276046238-1000 - Administrator - Enabled) => C:\Users\Asus
Guest (S-1-5-21-2120129993-3777478874-4276046238-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2120129993-3777478874-4276046238-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\uTorrent) (Version: 3.4.6.42094 - BitTorrent Inc.)
Acronis Disk Director (HKLM\...\{06E34C00-0446-4176-81C8-A5DAFE53CA36}) (Version: 11.0.2121 - Acronis)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Adobe Reader 9.1 - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated)
CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform)
CyberLink PowerDVD 8 (HKLM\...\InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}) (Version: 8.0.3224 - CyberLink Corp.)
Czech Soccer Manager (HKLM\...\Czech Soccer Manager) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd)
EA Sports™ FIFA World (HKLM\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 5.3.0.40277 - Electronic Arts, Inc.)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - )
Facebook Video Calling 2.0.0.447 (HKLM\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
FIFA 11 (HKLM\...\FIFA 11_is1) (Version: - REXE)
Football Manager 2011 (HKLM\...\Football Manager 2011) (Version: 11.0.0.0 - Sports Interactive)
GameRanger (HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\GameRanger) (Version: - GameRanger Technologies)
Gas Guzzlers (HKLM\...\Gas Guzzlers_is1) (Version: 1.0 - Game shop, s.r.o.)
GOM Player (HKLM\...\GOM Player) (Version: - )
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2021 - Intel Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.2021 - Intel Corporation)
Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation)
Java 8 Update 77 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation)
Keltští králové (HKLM\...\Celtic kings) (Version: - )
LogMeIn Hamachi (HKLM\...\LogMeIn Hamachi) (Version: 2.2.0.493 - LogMeIn, Inc.)
LogMeIn Hamachi (Version: 2.2.0.493 - LogMeIn, Inc.) Hidden
Maxthon Cloud Browser (HKLM\...\Maxthon3) (Version: 4.9.2.1000 - Maxthon International Limited)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.2.223.1 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MorphVOX Pro (HKLM\...\{6ac1d2d8-8f42-4d34-a993-fc1bf111bd14}) (Version: 4.4.41.23723 - Screaming Bee)
MorphVOX Pro (Version: 4.4.41.23723 - Screaming Bee) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 8 (HKLM\...\{76308844-456A-4D76-99CA-511F0DED1029}) (Version: 8.10.281 - Nero AG)
NHL® 09 (HKLM\...\{F2B5A2A7-2DF9-4361-8BD5-362714528B51}) (Version: 2.0.1.0 - Electronic Arts)
NVIDIA PhysX (HKLM\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
Origin (HKLM\...\Origin) (Version: 9.4.1.116 - Electronic Arts, Inc.)
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.8 (HKLM\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\Spotify) (Version: 0.9.10.14.g578d350b - Spotify AB)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM\...\TeamViewer) (Version: 11.0.63017 - TeamViewer)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.50 - Ghisler Software GmbH)
VCRedistSetup (Version: 1.0.0 - Nero AG) Hidden
WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{0002DF01-0000-0000-C000-000000000046}\localserver32 -> C:\Program Files\Maxthon3\Bin\Maxthon.exe (Maxthon International ltd.)
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{10DD084E-A5AE-456F-A3BE-DA67EBE6B090}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{15B6FEE5-5FB3-4071-AC1F-7AEDC0E2A6BB}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{1BCA4635-F1FC-44C8-B829-48229AEB32E3}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{222C0F35-3D78-4570-9F6D-BAEE289D0304}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{29DCD339-D184-469B-8BFB-199A2CCF014E}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{2DBCDA9F-1248-400B-A382-A56D71BF7B15}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{2EEAB6D0-491E-4962-BBA1-FF1CCA6D4DD0}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{3506CDB7-8BC6-40C0-B108-CEA0B9480130}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{3D3E7C1B-79A7-4CC7-8925-41FA813E9913}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{3E01D8E0-A72B-4C9F-99BD-8A6E7B97A48D}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{42FE718B-A148-41D6-885B-01A0AFAE8723}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{452CCB69-6A95-4370-9E5A-B3EFB06A7651}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{4B42750B-57A1-47E7-B340-8EAE0E3126A4}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{52071016-E648-4D3B-B57E-2B46CC993CE0}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{5792FC7D-5E1D-4F1A-BD4F-A7A50F92BC6E}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{5E541E71-A474-4EAD-8FCB-24D400D023B7}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{61F8FAF0-82D0-407C-AE97-31441483AE40}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{6AC51E9C-7947-4B46-A978-0AD601C4EFC9}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{6FA10A39-4760-4C94-A210-2398848618EC}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{7ACDC5B4-76A1-4BDF-918D-6962FCABBAD3}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{7B030003-037D-490D-9169-A4F391B3D831}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{830690FC-BF2F-47A6-AC2D-330BCB402664}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{89DD2F9D-C325-48BF-A615-96BD039BBC83}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{9017071A-2E34-4C3A-9BBB-688CBB5A9FF2}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{9D073235-D787-497D-8D1F-929559F1C621}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{A7DF2611-D752-4C9F-A90A-B56F18485EE9}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{A8109DB9-88E0-42FE-98EA-8A12BE5394C6}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{A983C9EC-D73E-4364-B89B-ACD1E405674F}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{B09AC3FF-0D5D-41C6-A34E-7C3F58A3127C}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{B0FE88F0-C92F-46D6-878F-31599BEA944C}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{CC461FC3-C9BE-41FB-8E47-E0115CBC01CC}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{D1C8C854-223A-4716-B670-C21918E8207E}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{D26B1D42-9C42-4E7B-BB73-86384C4B4345}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{DD0E8ED5-1494-4B87-A35C-39F6ED4B1153}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{E1BC9147-C3E3-4E8A-8304-5E6B5C1C0774}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{F278D870-7AF7-4957-96EE-E6AC72D0B109}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{F3188CF3-EF22-4C5B-92CB-605964761C3B}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File
CustomCLSID: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000_Classes\CLSID\{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D}\InprocServer32 -> C:\Program Files\AthTek\Voice Changer for Skype\accsky.dll => No File

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00007548-ABCE-42F8-AB9B-A7B0A83F82B6} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2120129993-3777478874-4276046238-1000UA => C:\Users\Asus\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: {4E464FD8-30DF-47A8-ACE2-66909446D84F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-07-23] (Piriform Ltd)
Task: {60E5FA3E-6E49-4874-83AE-68DE458BE499} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {65603A67-5D37-4967-A731-1B5DA34A4D9E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {663391F4-C9C4-42B0-8652-B7D8B83FFCEC} - System32\Tasks\MPC AdCleaner => C:\Program Files\MPC AdCleaner\AdCleaner.exe <==== ATTENTION
Task: {7A6BE619-03E0-4B23-A43B-94D9B006E9B5} - System32\Tasks\psv_Zoomtam => /c regedit.exe /s "C:\ProgramData\Quoteex\Quadsunlight.reg" & del "C:\ProgramData\Quoteex\Quadsunlight.reg" & SCHTASKS /Delete /TN "psv_Zoomtam" /F <==== ATTENTION
Task: {B9D7AB9D-EC88-4607-AAE7-F8BCAE6B09F9} - System32\Tasks\Maxthon Update => C:\Program Files\Maxthon3\Bin\Maxthon.exe [2016-04-12] (Maxthon International ltd.)
Task: {E46482CA-FD40-494A-AF01-417BBB5EE787} - System32\Tasks\Driver Booster SkipUAC (Asus) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2120129993-3777478874-4276046238-1000UA.job => C:\Users\Asus\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Asus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%
ShortcutWithArgument: C:\Users\Asus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%
ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%

==================== Loaded Modules (Whitelisted) ==============

2010-10-28 20:31 - 2010-10-28 20:31 - 02156952 _____ () C:\Program Files\Acronis\DiskDirector\OSS\reinstall_svc.exe
2016-02-28 22:41 - 2016-04-10 19:51 - 00149272 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll
2013-10-23 14:15 - 2016-04-10 19:51 - 00089880 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win32.dll
2013-10-23 14:15 - 2016-04-10 19:51 - 00103192 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll
2016-07-22 20:15 - 2016-07-26 04:49 - 00292864 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\ClownfishForTeamspeak_win32.dll
2013-10-23 14:15 - 2016-04-10 19:51 - 00259352 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2013-10-23 14:15 - 2016-04-10 19:51 - 00373016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2016-04-24 12:58 - 2016-04-12 12:05 - 00312744 _____ () C:\Program Files\Maxthon3\bin\Maxzlib.dll
2016-04-24 12:58 - 2016-02-03 05:48 - 09266600 _____ () C:\Program Files\Maxthon3\Core\Blink\plugins\pdf.dll
2016-04-24 12:58 - 2016-04-05 13:31 - 16393032 _____ () C:\Program Files\Maxthon3\Core\Blink\plugins\pepflashplayer.dll
2016-04-24 12:58 - 2016-04-12 12:05 - 00312744 _____ () C:\Program Files\Maxthon3\Bin\maxzlib.dll
2016-04-24 12:58 - 2016-02-03 05:48 - 01342776 _____ () C:\Program Files\Maxthon3\Core\Blink\libglesv2.dll
2016-04-24 12:58 - 2016-02-03 05:48 - 00219448 _____ () C:\Program Files\Maxthon3\Core\Blink\libegl.dll
2016-04-24 12:58 - 2016-02-03 05:48 - 02354488 _____ () C:\Program Files\Maxthon3\Core\Blink\ffmpegsumo.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> http://www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> http://www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> http://www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> http://www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> http://www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> http://www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> http://www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> http://www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> http://www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> http://www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> http://www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> http://www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> http://www.123simsen.com

There are 7865 more sites.

IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\008k.com -> http://www.008k.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\00hq.com -> http://www.00hq.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\0scan.com -> http://www.0scan.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\1-2005-search.com -> http://www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\1-domains-registrations.com -> http://www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\...\1-se.com -> 1-se.com

There are 11405 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2016-07-24 21:42 - 00450711 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 http://www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 http://www.008k.com
127.0.0.1 008k.com
127.0.0.1 http://www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 http://www.032439.com
127.0.0.1 032439.com
127.0.0.1 http://www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 http://www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 http://www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 http://www.100888290cs.com
127.0.0.1 http://www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 http://www.10sek.com
127.0.0.1 http://www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 http://www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 http://www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 http://www.123moviedownload.com

There are 15461 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2120129993-3777478874-4276046238-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.150.237 - 95.173.216.69
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A7C1CD9D-90D6-4AD2-8D9C-E4C0574A42B3}] => (Allow) C:\Program Files\CyberLink\PowerDVD8\PowerDVD8.EXE
FirewallRules: [{DEF7A0DF-99B1-48AF-990C-46509A68C8F3}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{65126B67-D389-4520-A4A9-0DB8BD0E0E22}C:\program files\athtek\voice changer for skype\skypevoicechanger.exe] => (Allow) C:\program files\athtek\voice changer for skype\skypevoicechanger.exe
FirewallRules: [UDP Query User{C514A184-F9B7-4008-86F3-A404A55BB3E6}C:\program files\athtek\voice changer for skype\skypevoicechanger.exe] => (Allow) C:\program files\athtek\voice changer for skype\skypevoicechanger.exe
FirewallRules: [{F486C1FA-E720-41B6-BE13-36C0696A623A}] => (Allow) C:\Program Files\Origin Games\FIFA World\fifaworld.exe
FirewallRules: [{9373DEEA-9D71-4735-9884-3988C1D87183}] => (Allow) C:\Program Files\Origin Games\FIFA World\fifaworld.exe
FirewallRules: [{8C000B33-14D1-4CF5-8433-F990F467937A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{1F228D9D-9FC2-4D57-B261-12CE3237E049}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{91ABB103-193D-4953-A9C8-D745896B3DAF}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{8D0ECB48-1322-4C47-A06E-8136416ECD4B}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{74144D4A-A132-4301-940C-AF99E5BA9341}C:\users\asus\desktop\crack\nhl2009.exe] => (Allow) C:\users\asus\desktop\crack\nhl2009.exe
FirewallRules: [UDP Query User{7CBD5865-1A90-4C79-8A2E-0A99A82DEBAB}C:\users\asus\desktop\crack\nhl2009.exe] => (Allow) C:\users\asus\desktop\crack\nhl2009.exe
FirewallRules: [{DC29BDCC-228E-4EC6-AC4F-49FFA296B9F0}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4CCED063-45F0-405D-8741-7BFE86C6552F}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{ABF0B03F-C99F-4841-9787-19BC4226523F}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1C65493A-73D6-47DB-B744-743C5DB3FE96}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8C2BDC61-BC5F-4A1A-AFA1-09290D0822B2}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{83469308-31A7-4458-91A1-65C65E854B47}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{B43B6A95-C690-47BA-A826-ECD5C77EA3A1}C:\users\asus\desktop\crack\nhl2009.exe] => (Block) C:\users\asus\desktop\crack\nhl2009.exe
FirewallRules: [UDP Query User{63A4F3D9-59D3-419C-8010-F859C071548F}C:\users\asus\desktop\crack\nhl2009.exe] => (Block) C:\users\asus\desktop\crack\nhl2009.exe
FirewallRules: [{B9621A0E-F0D9-43AD-8234-C8635DEF507E}] => (Allow) C:\Program Files\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{27212D21-5810-41F1-A824-6D43CBAB7048}] => (Allow) C:\Program Files\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{15E81561-C568-41C0-A86D-9FD12D5CE79D}] => (Allow) C:\Program Files\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{056C08F1-9FA4-4CE6-83CC-DC0607A90B8B}] => (Allow) C:\Program Files\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{4E3F5664-6C55-40A1-903E-F41D5AF02344}] => (Allow) C:\Program Files\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{76F34C03-8B86-4848-989E-0FB4F71DB3CB}] => (Allow) C:\Program Files\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [TCP Query User{64A92C11-203B-4B54-85E5-83847FA44AC0}C:\users\asus\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\asus\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [UDP Query User{BE351619-6CA8-42A1-BC99-DA7C7F93E41C}C:\users\asus\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\asus\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [TCP Query User{1E5483CD-8261-4F55-A47B-871CD294D052}C:\users\asus\desktop\crack\warcraft iii\war3.exe] => (Allow) C:\users\asus\desktop\crack\warcraft iii\war3.exe
FirewallRules: [UDP Query User{FC8D170A-C8F3-4506-82CE-8AA9FBA65DD5}C:\users\asus\desktop\crack\warcraft iii\war3.exe] => (Allow) C:\users\asus\desktop\crack\warcraft iii\war3.exe
FirewallRules: [TCP Query User{62573B2A-69F0-43E7-94D2-9DD1B06007AB}C:\games\ball 3d\game\ball 3d.exe] => (Allow) C:\games\ball 3d\game\ball 3d.exe
FirewallRules: [UDP Query User{7D6BF828-5080-47A1-9E99-A48497E472C4}C:\games\ball 3d\game\ball 3d.exe] => (Allow) C:\games\ball 3d\game\ball 3d.exe
FirewallRules: [{BF1422AA-D3A5-4A86-BB5F-60E75B9766FE}] => (Allow) C:\Program Files\Sports Interactive\Football Manager 2011\fm.exe
FirewallRules: [{ECBFB42B-3086-42E9-B8EB-E9437F5F62E4}] => (Allow) C:\Program Files\Sports Interactive\Football Manager 2011\fm.exe
FirewallRules: [{88D8A4AB-B530-44A9-BC6E-9705515B8D59}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{A80844D9-6EEC-4EDE-AC39-0B037AFF149D}] => (Allow) C:\Program Files\Maxthon3\Bin\MxUp.exe
FirewallRules: [{92B83EEC-0C3B-4A78-A5BC-8B37DD9BE053}] => (Allow) C:\Program Files\Maxthon3\Bin\Maxthon.exe
FirewallRules: [{A2E4B331-AE7D-4DC0-BA3E-973B23DB0952}] => (Allow) C:\Program Files\Maxthon3\Bin\MxUp.exe
FirewallRules: [{3A687015-2F1C-4AF5-8382-CF31934F01CD}] => (Allow) C:\Program Files\Maxthon3\Bin\Maxthon.exe
FirewallRules: [{FB8E1AB8-E3E6-43C9-AC11-795455BEE9D5}] => (Allow) C:\Program Files\Maxthon3\Bin\Maxthon.exe
FirewallRules: [{3ABB8BE2-5576-4A2F-B52D-1BC1F7BDACC3}] => (Allow) C:\Program Files\Maxthon3\Bin\Maxthon.exe
FirewallRules: [{578C26AF-8A86-4F73-9B0A-E89446085B7D}] => (Allow) C:\Program Files\Maxthon3\Bin\MxUp.exe
FirewallRules: [{642A6483-5FA1-4E04-B5B3-0C17909B140D}] => (Allow) C:\Program Files\Maxthon3\Bin\MxUp.exe
FirewallRules: [TCP Query User{DD70E16E-E323-4B2D-8AF4-24D8062854B2}C:\users\asus\desktop\nhl\nhl 09\nhl2009.exe] => (Allow) C:\users\asus\desktop\nhl\nhl 09\nhl2009.exe
FirewallRules: [UDP Query User{32A1524A-4639-4D3C-A46E-D09673279DAA}C:\users\asus\desktop\nhl\nhl 09\nhl2009.exe] => (Allow) C:\users\asus\desktop\nhl\nhl 09\nhl2009.exe
FirewallRules: [TCP Query User{95D2CC15-1368-447E-B8C0-39A4A40D1593}C:\program files\fifa 11\game\fifa.exe] => (Allow) C:\program files\fifa 11\game\fifa.exe
FirewallRules: [UDP Query User{887388DC-9457-4178-8658-E42E2783D60A}C:\program files\fifa 11\game\fifa.exe] => (Allow) C:\program files\fifa 11\game\fifa.exe
FirewallRules: [{C5A9B14E-F31F-4F45-A09D-A7445361A492}] => (Block) C:\program files\fifa 11\game\fifa.exe
FirewallRules: [{DEE60566-B1A4-4F63-9DE4-7899C2E2F69A}] => (Block) C:\program files\fifa 11\game\fifa.exe
FirewallRules: [{263FDEB9-3A6A-459E-9D09-FC89E1ABA9BE}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{93D90750-A164-4F2C-B0D0-D96F31D79382}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{1EBDEA18-4392-464A-ABC0-023A039C8743}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{AFA25C01-385A-49ED-95E1-166651DACD54}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe

==================== Restore Points =========================

16-07-2016 13:05:54 Naplánovaný kontrolní bod
17-07-2016 04:11:18 Windows Update
20-07-2016 23:54:01 Windows Update
24-07-2016 16:32:36 Windows Update
26-07-2016 13:57:28 Removed Voice Changer for Skype
26-07-2016 14:13:33 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/26/2016 04:43:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0x1a74
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 04:41:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0x514
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 04:40:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0x1450
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 02:42:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0xb14
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 02:42:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0xc14
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 02:29:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: tv_w32.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x578cbccc
Kód výjimky: 0xc0000005
Posun chyby: 0x6e398536
ID chybujícího procesu: 0x17ac
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 02:06:22 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program nhl2009.exe verze 0.0.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: db0

Čas spuštění: 01d1e735f0700f43

Čas ukončení: 31

Cesta k aplikaci: C:\Users\Asus\Desktop\nhl\NHL 09\nhl2009.exe

ID hlášení: 4add7765-5329-11e6-b30a-20cf3045d305

Error: (07/26/2016 01:09:46 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program EHA NHL 14 Launcher.exe verze 4.3.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 658

Čas spuštění: 01d1e72df9667b38

Čas ukončení: 59

Cesta k aplikaci: C:\Users\Asus\Desktop\nhl\NHL 09\EHA NHL 14 Launcher.exe

ID hlášení: 7131dd9f-5321-11e6-886d-20cf3045d305

Error: (07/26/2016 01:09:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0x2718
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3

Error: (07/26/2016 01:08:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Název chybujícího modulu: nhl2009.exe, verze: 0.0.0.0, časové razítko: 0x48e7156d
Kód výjimky: 0xc0000005
Posun chyby: 0x02222000
ID chybujícího procesu: 0x27e8
Čas spuštění chybující aplikace: 0xnhl2009.exe0
Cesta k chybující aplikaci: nhl2009.exe1
Cesta k chybujícímu modulu: nhl2009.exe2
ID zprávy: nhl2009.exe3


System errors:
=============
Error: (07/26/2016 04:24:03 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Protokol PNRP (Peer Name Resolution Protocol) byla ukončena s následující chybou:
%%-2140993535

Error: (07/26/2016 04:24:03 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Seskupování v sítích peer-to-peer závisí na službě Protokol PNRP (Peer Name Resolution Protocol), která neuspěla při spuštění v důsledku následující chyby:
%%-2140993535

Error: (07/26/2016 04:24:02 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801

Error: (07/26/2016 04:24:01 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Protokol PNRP (Peer Name Resolution Protocol) byla ukončena s následující chybou:
%%-2140993535

Error: (07/26/2016 04:24:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Seskupování v sítích peer-to-peer závisí na službě Protokol PNRP (Peer Name Resolution Protocol), která neuspěla při spuštění v důsledku následující chyby:
%%-2140993535

Error: (07/26/2016 04:24:01 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801

Error: (07/26/2016 04:23:54 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Protokol PNRP (Peer Name Resolution Protocol) byla ukončena s následující chybou:
%%-2140993535

Error: (07/26/2016 04:23:54 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Seskupování v sítích peer-to-peer závisí na službě Protokol PNRP (Peer Name Resolution Protocol), která neuspěla při spuštění v důsledku následující chyby:
%%-2140993535

Error: (07/26/2016 04:23:54 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: 0x80630801

Error: (07/26/2016 04:23:39 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: WMPNetworkSvc0x80004005


==================== Memory info ===========================

Processor: Celeron(R) Dual-Core CPU T3300 @ 2.00GHz
Percentage of memory in use: 67%
Total physical RAM: 2013.09 MB
Available physical RAM: 652.75 MB
Total Virtual: 4026.17 MB
Available Virtual: 2475.96 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:90.09 GB) (Free:14.59 GB) NTFS
Drive e: (Data) (Fixed) (Total:188.37 GB) (Free:136.36 GB) NTFS
Drive g: (FM2011) (CDROM) (Total:2.53 GB) (Free:0 GB) UDF

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 298.1 GB) (Disk ID: E0C5913D)
Partition 1: (Not Active) - (Size=19.5 GB) - (Type=1C)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=90.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=188.4 GB) - (Type=OF Extended)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakovaní složek srv

#2 Příspěvek od Rudy »

Zdravím!
Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nemakacenko
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 26 črc 2016 16:16

Re: vyskakovaní složek srv

#3 Příspěvek od Nemakacenko »

Ano je legalní přes kamarada programatora.Nic méně ani on si stím nevěděl rady tak se ptám proto zde.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakovaní složek srv

#4 Příspěvek od Rudy »

Udělejte následující sken:

Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
services.exe
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s

%PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
%PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
%PROGRAMFILES%\Opera\opera.exe /md5
%PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5

%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
a klikněte na >Prohledat<. Dejte oba logy.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět