
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
spomalené PC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
spomalené PC
už nejaký čas sledujem spomalenie PC pozriete sa mi na log prosím
píše mi že som prekročil počet znakou a neviem odoslať príspevok s nakopírovaným logom preto ho ukladám do prílohy
ďakujem
píše mi že som prekročil počet znakou a neviem odoslať príspevok s nakopírovaným logom preto ho ukladám do prílohy
ďakujem
- Přílohy
-
- log.rar
- log
- (23.75 KiB) Staženo 108 x
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
objavený log
po skenovaní sa reštartovalo PC a potom sa zobrazil log neviem či je to normálne
# AdwCleaner v6.030 - Logfile created 27/10/2016 at 18:40:53
# Updated on 19/10/2016 by Malwarebytes
# Database : 2016-10-27.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : PCčko - DESKTOP-GSGHHMB
# Running from : C:\Users\PCčko\AppData\Local\Temp\scoped_dir512_8454\adwcleaner_6.030.exe
# Mode: Clean
# Support : hxxps://www.malwarebytes.com/support
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder deleted: C:\ProgramData\TweakBit
[#] Folder deleted on reboot: C:\ProgramData\Application Data\TweakBit
[-] Folder deleted: C:\Users\PCčko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
***** [ Files ] *****
[-] File deleted: C:\Users\PCčko\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hegneaniplmfjcmohoclabblbahcbjoe_0.localstorage
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
[-] Key deleted: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
[-] Key deleted: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
[-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}
[-] Key deleted: HKLM\SOFTWARE\TWEAKBIT
[-] Key deleted: HKCU\Software\Google\Chrome\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
[-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
[#] Key deleted on reboot: [x64] HKCU\Software\Google\Chrome\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
***** [ Web browsers ] *****
[-] [C:\Users\PCčko\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: hegneaniplmfjcmohoclabblbahcbjoe
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [2152 Bytes] - [27/10/2016 18:40:53]
C:\AdwCleaner\AdwCleaner[S0].txt - [2314 Bytes] - [27/10/2016 18:40:29]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [2298 Bytes] ##########
po skenovaní sa reštartovalo PC a potom sa zobrazil log neviem či je to normálne
# AdwCleaner v6.030 - Logfile created 27/10/2016 at 18:40:53
# Updated on 19/10/2016 by Malwarebytes
# Database : 2016-10-27.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : PCčko - DESKTOP-GSGHHMB
# Running from : C:\Users\PCčko\AppData\Local\Temp\scoped_dir512_8454\adwcleaner_6.030.exe
# Mode: Clean
# Support : hxxps://www.malwarebytes.com/support
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder deleted: C:\ProgramData\TweakBit
[#] Folder deleted on reboot: C:\ProgramData\Application Data\TweakBit
[-] Folder deleted: C:\Users\PCčko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
***** [ Files ] *****
[-] File deleted: C:\Users\PCčko\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hegneaniplmfjcmohoclabblbahcbjoe_0.localstorage
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
[-] Key deleted: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
[-] Key deleted: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
[-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}
[-] Key deleted: HKLM\SOFTWARE\TWEAKBIT
[-] Key deleted: HKCU\Software\Google\Chrome\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
[-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
[#] Key deleted on reboot: [x64] HKCU\Software\Google\Chrome\Extensions\hegneaniplmfjcmohoclabblbahcbjoe
***** [ Web browsers ] *****
[-] [C:\Users\PCčko\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: hegneaniplmfjcmohoclabblbahcbjoe
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [2152 Bytes] - [27/10/2016 18:40:53]
C:\AdwCleaner\AdwCleaner[S0].txt - [2314 Bytes] - [27/10/2016 18:40:29]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [2298 Bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Teď dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
log FRST
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by PCčko (27-10-2016 21:03:37)
Running from C:\Users\PCčko\Desktop
Windows 10 Home Version 1607 (X64) (2016-09-27 14:36:38)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-347709995-180324277-2981740601-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-347709995-180324277-2981740601-503 - Limited - Disabled)
Guest (S-1-5-21-347709995-180324277-2981740601-501 - Limited - Disabled)
PCčko (S-1-5-21-347709995-180324277-2981740601-1002 - Administrator - Enabled) => C:\Users\PCčko
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform)
Cossacks 3 (HKLM-x32\...\Cossacks 3_is1) (Version: - )
DAEMON Tools Pro Advanced (HKLM-x32\...\DAEMON Tools Pro Advanced) (Version: - )
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Driver and Application Installation (HKLM-x32\...\{6EC299C6-074C-4529-8D5F-2798584BB27B}) (Version: 2.02.0803 - Lenovo)
Dropbox (HKLM-x32\...\Dropbox) (Version: 12.4.22 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.39.1 - Dropbox, Inc.) Hidden
Far Cry 4 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.4.0 - Ubisoft)
Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.5.0.6.1001 - Genesys Logic)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_is1) (Version: 1.0.350.1 - Rockstar)
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
hppLaserJetService (x32 Version: 001.003.000145 - Hewlett-Packard) Hidden
hppM1130M1210SeriesLaserJetService (x32 Version: 001.003.00073 - Hewlett-Packard) Hidden
hppusgM1130M1210Series (x32 Version: 1.0.0.2 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
K-Lite Mega Codec Pack 12.1.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.1.5 - KLCP)
Lenovo Accelerator Application (HKLM-x32\...\{10672FE6-3D50-4F79-B0C7-A5573A5D415D}) (Version: 2.2.0.0701 - Lenovo)
Lenovo Blacksilk USB Keyboard Driver (HKLM-x32\...\{B266E062-D6C5-485B-B426-51B152B041A6}) (Version: V1.6.13.0724 - Lenovo)
Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 2.0.9.0 - Lenovo)
Lenovo Family Cloud Server (HKLM-x32\...\InstallShield_{1D99AD62-EA40-4BD7-AB53-4E7DBE62F5A3}) (Version: 1.1.88.0422 - Lenovo)
Lenovo Family Cloud Server (Version: 1.1.88.0422 - Lenovo) Hidden
Lenovo Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.8231 - CyberLink Corp.)
Lenovo Power2Go (x32 Version: 6.0.8231 - CyberLink Corp.) Hidden
Lenovo PowerDVD12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5320.55 - CyberLink Corp.)
Lenovo PowerDVD12 (x32 Version: 12.0.5320.55 - CyberLink Corp.) Hidden
Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.022.00 - Lenovo)
Lenovo Rescue System (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 4.0.0.4212 - CyberLink Corp.)
Lenovo Rescue System (Version: 4.0.0.4212 - CyberLink Corp.) Hidden
Lenovo Solution Center (HKLM\...\{52753916-613B-4455-8022-A146CC17B1F6}) (Version: 3.2.002.00 - Lenovo)
Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.067.00 - Lenovo)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.472 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.472 - LogMeIn, Inc.) Hidden
Mafia III v.1.010 (HKLM-x32\...\Mafia III_is1) (Version: - )
Manual (HKLM-x32\...\{693F92E5-37D1-46B7-A0D6-19A74A2FD0EC}) (Version: 1.00.0701 - Lenovo)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden
Microsoft Age of Empires (HKLM-x32\...\Age of Empires) (Version: - )
Microsoft Office 2016 Professional Plus - sk-sk (HKLM\...\ProPlusRetail - sk-sk) (Version: 16.0.4266.1003 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Mozilla Firefox 46.0.1 (x86 sk) (HKLM-x32\...\Mozilla Firefox 46.0.1 (x86 sk)) (Version: 46.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 46.0.1.5966 - Mozilla)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.4266.1003 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.4266.1003 - Microsoft Corporation) Hidden
Opera Stable 41.0.2353.46 (HKLM-x32\...\Opera 41.0.2353.46) (Version: 41.0.2353.46 - Opera Software)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.10.1-r112682-release - Plays.tv, LLC)
Python 2.7.10 (HKLM-x32\...\{D913186D-DDF8-48F9-897D-013F5F2F375E}_is1) (Version: 2.7.10150 - Python Software Foundation)
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.0-r112326-release - Raptr, Inc)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7525 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
Shadow Of Mordor version Shadow Of Mordor (HKLM-x32\...\Shadow Of Mordor_is1) (Version: Shadow Of Mordor - )
SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 3.3.0.1103 - Lenovo)
Skype™ 7.25 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.25.106 - Skype Technologies S.A.)
Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform)
The Witcher 3 Wild Hunt (HKLM-x32\...\The Witcher 3 Wild Hunt_is1) (Version: 1.21 - RePack by Valdeni)
TP-LINK TL-WN721N_TL-WN722N Driver (HKLM-x32\...\{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}) (Version: 1.3.1 - TP-LINK)
Vlastná Fotokniha 3.8.13 (HKLM-x32\...\aldodesign1_is1) (Version: - 1STEIN Corp.)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-2) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (Version: 1.0.3.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.8.0 (HKLM\...\VulkanRT1.0.8.0) (Version: 1.0.8.0 - LunarG, Inc.)
Windows Driver Package - Advanced Micro Devices (AtiHDAudioService) MEDIA (06/09/2015 10.0.0.01) (HKLM\...\D08173C6B023D3DD9DB541E1C161BB64276955F2) (Version: 06/09/2015 10.0.0.01 - Advanced Micro Devices)
Windows Driver Package - Advanced Micro Devices, Inc. (amdkmdap) Display (08/19/2015 15.201.1301.0000) (HKLM\...\CB1F6B71BEE8A4E96089A6FC90D3FFFACF02DB84) (Version: 08/19/2015 15.201.1301.0000 - Advanced Micro Devices, Inc.)
Windows Driver Package - Genesys Logic (GeneStor) USB (07/13/2015 4.5.0.6) (HKLM\...\AE2E6FAB44844413B4C6F53C908EACC8AFC838F0) (Version: 07/13/2015 4.5.0.6 - Genesys Logic)
Windows Driver Package - Realtek (rt640x64) Net (05/05/2015 10.001.0505.2015) (HKLM\...\6A304520C2F25CD034E477A379C47308AA84A2DC) (Version: 05/05/2015 10.001.0505.2015 - Realtek)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Zodiac Casino (HKLM-x32\...\zodiac) (Version: 16.11.1.4250 - )
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-347709995-180324277-2981740601-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\PCčko\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0992CCFA-537A-49B6-B10B-50EBC69DC2F6} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-08-16] (Microsoft Corporation)
Task: {16F8C488-0C7C-4D77-9E79-7F4C10301DB6} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-03] (Dropbox, Inc.)
Task: {2BE4D0A0-C158-445B-A2E3-91563B9EBAB2} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-03] (Dropbox, Inc.)
Task: {39C21E54-921A-4410-97F3-32B4F48EAD79} - System32\Tasks\Opera scheduled Autoupdate 1462168229 => C:\Program Files (x86)\Opera\launcher.exe [2016-10-24] (Opera Software)
Task: {55AEFA51-F685-4C69-A0C1-D537122A0431} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-20] (Google Inc.)
Task: {7B50F0C1-07D0-44B2-A6A6-0B41BB8823CC} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe [2016-10-26] (Adobe Systems Incorporated)
Task: {7BAE25F3-E6F8-4454-B32A-C74AEF08C09F} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-05-24] ()
Task: {8945DFFE-33B5-46FA-BFDB-B7E5F2126EC3} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-03-21] (Advanced Micro Devices, Inc.)
Task: {979FBC3B-912C-48B0-8616-7287B994BB12} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-20] (Google Inc.)
Task: {9A311483-548C-4825-A7C8-7370E0B99BC8} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-08-16] (Microsoft Corporation)
Task: {A2826144-219C-462C-A92E-4C044BEA7311} - System32\Tasks\Easy PC Optimizer Scheduled Scan - PCčko => C:\Program Files (x86)\Easy PC Optimizer\EPIC.exe
Task: {A6856D8C-F23B-4764-8ED3-66D036F8B6DA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2016-05-08] (Microsoft Corporation)
Task: {A6C8A1A6-A87C-4460-9448-00C6F2218A75} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {AD0EE4D9-5742-4850-B0E4-5B8C5E3EE322} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
Task: {B9891818-FD1F-4711-B41A-2AB268CC96A8} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-12-10] (Lenovo)
Task: {D35DADB9-144D-4EB8-9AB6-73D36D7AC313} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-12-10] (Lenovo)
Task: {D3ABFD3D-F18A-4D4B-99ED-2551EF4610EA} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-12-10] (Lenovo)
Task: {D7C28F43-508C-46EF-8FE0-BEF6A7B65D39} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {DA70BCDD-A068-4F30-8BF9-D52678177677} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-26] (Adobe Systems Incorporated)
Task: {E3649043-0F29-43CE-B8D4-D96AFED79EB7} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2016-05-04] (Lenovo)
Task: {E4061BA3-4203-4752-B718-5992A5B4177C} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\PCčko\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-27] (Microsoft Corporation)
Task: {E46A8206-BF5A-469F-884C-7F311691D759} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe [2015-05-20] (CyberLink Corp.)
Task: {EC36F5F9-4C56-4E3C-B541-023454EC8746} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-09-28] (Piriform Ltd)
Task: {EC42CB64-D173-4CC3-939D-EE9117AE7156} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2016-05-08] (Microsoft Corporation)
Task: {FA84503E-0C23-416B-A320-DE647958CCE7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-GSGHHMB-PCčko => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\Easy PC Optimizer Scheduled Scan - PCčko.job => C:\Program Files (x86)\Easy PC Optimizer\EPIC.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-10-03 21:16 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-28 01:59 - 2015-10-28 01:59 - 00226216 _____ () C:\Program Files\update\UpdateAgent.exe
2015-10-28 01:59 - 2015-10-28 01:59 - 00024312 _____ () C:\Program Files (x86)\Lenovo\LenovoPortal\LenovoPortalService.exe
2016-05-08 22:17 - 2015-08-16 00:21 - 00162880 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2015-08-19 22:06 - 2015-08-19 22:06 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2014-02-11 16:08 - 2014-02-11 16:08 - 00817152 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2014-02-11 16:08 - 2014-02-11 16:08 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2015-08-19 22:06 - 2015-08-19 22:06 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-10-28 01:57 - 2011-08-17 05:46 - 00032768 _____ () C:\Windows\jmesoft\Service.exe
2016-01-15 16:24 - 2016-01-15 16:24 - 00043976 _____ () C:\Program Files\Lenovo\QuickOptimizer\LNBPrismAssistInf.dll
2016-10-03 21:16 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\WINDOWS\SYSTEM32\CHARTV.dll
2016-05-08 22:53 - 2010-03-31 11:51 - 00407040 _____ () C:\WINDOWS\System32\HPM1210LM.DLL
2016-05-08 23:13 - 2010-03-31 11:51 - 00074240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2016-09-28 02:03 - 2016-09-28 02:03 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-11 21:31 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-11 21:32 - 2016-10-05 11:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-11 21:32 - 2016-10-05 11:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-11 21:32 - 2016-10-05 11:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-11 21:32 - 2016-10-05 11:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-11 21:32 - 2016-10-05 11:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-10-28 01:55 - 2015-07-15 12:54 - 00053832 _____ () C:\Windows\SysWOW64\UMonit64.exe
2016-04-25 17:28 - 2016-04-25 17:28 - 00249640 _____ () C:\Program Files\Lenovo\LiveStorage\Server\IntelSceneClass.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 02244904 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_imgproc2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 02581800 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_core2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 02418472 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_highgui2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00576808 _____ () C:\Program Files\Lenovo\LiveStorage\Server\facelib.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00251176 _____ () C:\Program Files\Lenovo\LiveStorage\Server\ContextBasedFaceRecognitionDLL.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00073512 _____ () C:\Program Files\Lenovo\LiveStorage\Server\SceneClassificationDLL.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00814376 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_objdetect2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 01497896 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_legacy2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00605992 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_ml2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00654120 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_flann2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00877352 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_features2d2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 01208616 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_calib3d2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00452904 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_video2411.dll
2016-10-20 20:49 - 2016-10-20 20:50 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-10-20 20:49 - 2016-10-20 20:50 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-10-20 20:49 - 2016-10-20 20:50 - 35253760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-08-17 08:37 - 2016-08-17 08:38 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-08-17 08:37 - 2016-08-17 08:38 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-06-05 12:18 - 2016-07-14 11:30 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-04-27 14:19 - 2016-04-27 14:20 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-08-25 17:48 - 2016-08-25 17:48 - 03763712 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1608.2213.0_x64__8wekyb3d8bbwe\Calculator.exe
2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd
2009-10-15 11:13 - 2009-10-15 11:13 - 00061440 _____ () C:\Program Files (x86)\HP\HPLaserJetService\HPTools.dll
2009-10-15 11:13 - 2009-10-15 11:13 - 00964096 _____ () C:\Program Files (x86)\HP\HPLaserJetService\LEDMXMLObjects.dll
2016-05-08 22:53 - 2010-04-28 17:49 - 00082432 _____ () C:\WINDOWS\SYSTEM32\mvusbews.DLL
2009-12-05 01:59 - 2009-12-05 01:59 - 00619816 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMediaLibrary.dll
2009-12-05 02:04 - 2009-12-05 02:04 - 00013096 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvcPS.dll
2016-05-13 22:19 - 2016-09-22 03:44 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-10-13 23:01 - 2016-09-22 03:44 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2016-10-13 23:01 - 2016-09-22 03:45 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2016-10-13 23:01 - 2016-09-22 03:44 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-05-13 22:19 - 2016-09-22 03:44 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-05-13 22:19 - 2016-09-22 03:44 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-05-13 22:19 - 2016-09-22 03:44 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-05-13 22:19 - 2016-09-22 03:45 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00021312 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-10-13 23:01 - 2016-09-22 03:44 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2016-10-13 23:01 - 2016-09-22 03:46 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00025424 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00246592 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-08-05 23:12 - 2016-09-22 03:45 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2016-10-13 23:01 - 2016-09-22 03:42 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2016-10-13 23:01 - 2016-10-10 20:35 - 00031568 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2016-10-13 23:01 - 2016-10-10 20:30 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2016-10-13 23:01 - 2016-10-10 20:35 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-10-13 23:01 - 2016-10-10 20:35 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-05-13 22:19 - 2016-09-22 03:45 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 01972528 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00133424 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00224056 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00020288 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32._winffi_user32.pyd
2016-10-13 23:01 - 2016-09-22 03:49 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2016-10-13 23:01 - 2016-09-22 03:49 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2016-05-13 22:19 - 2016-09-22 03:46 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00037192 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00168760 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2016-10-27 13:22 - 2016-10-27 13:22 - 66011856 _____ () C:\Program Files (x86)\Opera\41.0.2353.46\opera.dll
2016-10-27 13:22 - 2016-10-27 13:22 - 01888464 _____ () C:\Program Files (x86)\Opera\41.0.2353.46\libglesv2.dll
2016-10-27 13:22 - 2016-10-27 13:22 - 00094416 _____ () C:\Program Files (x86)\Opera\41.0.2353.46\libegl.dll
2013-05-14 17:33 - 2013-05-14 17:33 - 00002560 _____ () C:\Program Files (x86)\DAEMON Tools Pro Advanced\MSIMG32.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\PCčko\Desktop\eControl_ADRE.xlsx:com.dropbox.attributes [168]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-347709995-180324277-2981740601-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\PCčko\Desktop\TSlZ57J.jpg
DNS Servers: 192.168.1.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
HKLM\...\StartupApproved\Run: => "RtHDVBg_LENOVO_MICPKEY"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run: => "StartCN"
HKLM\...\StartupApproved\Run32: => "UpdateP2GoShortCut"
HKLM\...\StartupApproved\Run32: => "jmekey"
HKLM\...\StartupApproved\Run32: => "jmesoft"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "HPUsageTrackingLEDM"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "UMonit"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "DAEMON Tools Pro Agent"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "Uninstall C:\Users\PCčko\AppData\Local\Microsoft\OneDrive\17.3.6386.0412_1\amd64"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{09775492-C409-499A-A530-F249B98B9A45}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [TCP Query User{B502633D-878F-4229-AE3F-49BF91D928DB}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [UDP Query User{34CF8227-AE50-4A95-BF95-16CCE59A57FC}C:\hry\aom1\empires.exe] => (Allow) C:\hry\aom1\empires.exe
FirewallRules: [TCP Query User{F02DC3BE-45C8-44C9-A41B-A41ABE3A2F8C}C:\hry\aom1\empires.exe] => (Allow) C:\hry\aom1\empires.exe
FirewallRules: [{545D90F3-A59F-4C3B-AB0F-274E021C6E5F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{161BB871-75AD-4CB9-93DF-1DD2C143E5FB}C:\hry\far cry 4\bin\farcry4.exe] => (Allow) C:\hry\far cry 4\bin\farcry4.exe
FirewallRules: [TCP Query User{85561CE0-3FEA-45A1-9EF5-2FBA7FC5436E}C:\hry\far cry 4\bin\farcry4.exe] => (Allow) C:\hry\far cry 4\bin\farcry4.exe
FirewallRules: [{F414BE46-675A-4498-8FF2-DC9D30B2076E}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{4E5B71D6-4651-4371-888E-2E4780AD066B}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{F0456939-817F-45C4-B88B-5BCC8D1F5468}] => (Allow) C:\Program Files (x86)\Lenovo\LenovoPortal\Lenovo.Portal.exe
FirewallRules: [{65B85BA7-3A14-4AA1-B917-10F35A37CC8D}] => (Allow) C:\Program Files\Lenovo\LiveStorage\Server\LiveStorageServer.exe
FirewallRules: [{47F7E350-5CF7-4904-BC1C-112475EFEEF9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{77B1A066-7BAB-4B9A-B314-EAC43B04CE0F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{12948ED1-4223-491F-AF7D-E0F8216C81E4}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{611A6F4D-0AD1-41C0-B5F1-59E42651F19F}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6989240A-FA8A-49C4-A44A-74BBFDBF58D4}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2D01C33C-D81C-4883-BC9B-55D1AA646854}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4795BDD8-98B6-4595-AEB1-DDDF549F9AF0}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6FA3197A-F91D-4238-993C-E23F431FDD0B}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{E89B2085-EB00-49D2-937B-48816861DF96}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{C69BF0AD-7DAB-40F9-8932-D8D16E76AED4}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{50D20353-EC08-4F89-BEDF-1FF2DA521F92}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{4A0D48D7-1A7F-44A8-ACF8-A6DF2A0F1E0A}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{6B165BB0-6C30-44A9-835B-12A972FCD83D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{D56623E9-4A89-4085-A896-1909127BFBC5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{CE3548E6-31AD-423A-9D32-DA1359C1F07A}] => (Allow) C:\Program Files (x86)\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{2F08CD46-39B3-4B49-8911-6571319AE1EE}] => (Allow) C:\Program Files (x86)\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{1F87954E-873D-41AA-8362-4D6A40A76839}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{52300319-4743-497F-A2D0-DE8E1C4C45B0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{A2272EB9-4C36-42A6-B06E-6CC1E7657ECD}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{C1BC6763-73C2-4023-ACD1-8D1E74F3912A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{DB1EEBED-9C1C-400B-A405-BF3AB309E42C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{7EEC24D3-ABBF-471B-B18B-19D5E2532EF4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{8674D591-F715-4FAC-841D-D17B69DF91EB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{8DFE2343-7E03-415E-835A-E711B83C78BB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{D2653764-16C6-41AC-BF38-B064BE212668}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{67E75F06-1576-461E-97A4-5C1ECDB0D13C}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{AB986E14-A2D9-4B00-AB7E-583DBBD6D870}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [TCP Query User{F10E60BB-16DD-4D7E-B0FE-7B9C7F7BFC0B}C:\python27\python.exe] => (Allow) C:\python27\python.exe
FirewallRules: [UDP Query User{97B82DD9-210B-425B-BF9C-7BB5F2587948}C:\python27\python.exe] => (Allow) C:\python27\python.exe
FirewallRules: [TCP Query User{654B4670-DFB9-4F3D-BFB2-BB6D630FF687}C:\hry\nfs world\need for speed world\data\nfsw.exe] => (Block) C:\hry\nfs world\need for speed world\data\nfsw.exe
FirewallRules: [UDP Query User{7575307D-28BA-486D-884C-4FC160953466}C:\hry\nfs world\need for speed world\data\nfsw.exe] => (Block) C:\hry\nfs world\need for speed world\data\nfsw.exe
FirewallRules: [{9C0E5B7D-A7E6-49C7-976D-49822AE3BDF4}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [TCP Query User{B3832540-FC37-44C5-9314-1C2F6EE92624}C:\games\mafia iii\launcher.exe] => (Allow) C:\games\mafia iii\launcher.exe
FirewallRules: [UDP Query User{CE686822-FCC0-4D93-9FC2-1F02CD6332A7}C:\games\mafia iii\launcher.exe] => (Allow) C:\games\mafia iii\launcher.exe
FirewallRules: [TCP Query User{C680A657-4A3B-404D-8B9E-B41E8F391369}C:\games\mafia iii\mafia3.exe] => (Allow) C:\games\mafia iii\mafia3.exe
FirewallRules: [UDP Query User{62537496-5584-43B8-A0B7-ADB2923156AC}C:\games\mafia iii\mafia3.exe] => (Allow) C:\games\mafia iii\mafia3.exe
FirewallRules: [{DD64CDF9-3CB9-4B7C-B301-4770AE2F5852}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
18-10-2016 17:29:50 Windows Update
25-10-2016 17:46:17 Scheduled Checkpoint
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/27/2016 07:07:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: cossacks.exe, verzia: 2.0.0.1199, časová značka: 0x2a425e19
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.14393.206, časová značka: 0x57dacde1
Kód výnimky: 0xc0000005
Odstup chyby: 0x00044e7e
Identifikácia chybujúceho procesu: 0x26d4
Čas spustenia chybujúcej aplikácie: 0x01d2307473d4b7cb
Cesta chybujúcej aplikácie: C:\Hry\Cossacks 3\cossacks.exe
Cesta chybujúceho modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Identifikácia hlásenia: e97e6ef8-2e35-4438-aba1-0134aa053cba
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 06:42:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: spoolsv.exe, verzia: 10.0.14393.206, časová značka: 0x57daca12
Názov chybujúceho modulu: HPM1210LM.DLL, verzia: 2010.331.1.19178, časová značka: 0x4bb2c6b5
Kód výnimky: 0xc0000005
Odstup chyby: 0x0000000000002350
Identifikácia chybujúceho procesu: 0x798
Čas spustenia chybujúcej aplikácie: 0x01d23071068493e4
Cesta chybujúcej aplikácie: C:\WINDOWS\System32\spoolsv.exe
Cesta chybujúceho modulu: C:\WINDOWS\System32\HPM1210LM.DLL
Identifikácia hlásenia: 40ff2519-dd4e-472d-bff2-f4c4c3e56218
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 02:08:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: EXCEL.EXE, verzia: 16.0.4266.1003, časová značka: 0x55ceb394
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.14393.206, časová značka: 0x57dacde1
Kód výnimky: 0xc0000005
Odstup chyby: 0x00026d39
Identifikácia chybujúceho procesu: 0x188
Čas spustenia chybujúcej aplikácie: 0x01d2304a93b42139
Cesta chybujúcej aplikácie: C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE
Cesta chybujúceho modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Identifikácia hlásenia: 13392f1d-9c3e-11e6-9c0d-90fba6844178
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 02:06:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: EXCEL.EXE, verzia: 16.0.4266.1003, časová značka: 0x55ceb394
Názov chybujúceho modulu: KERNELBASE.dll, verzia: 10.0.14393.321, časová značka: 0x57f4c291
Kód výnimky: 0xe0000003
Odstup chyby: 0x000da6f2
Identifikácia chybujúceho procesu: 0x2044
Čas spustenia chybujúcej aplikácie: 0x01d23047ebdcfbf8
Cesta chybujúcej aplikácie: C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE
Cesta chybujúceho modulu: C:\WINDOWS\System32\KERNELBASE.dll
Identifikácia hlásenia: d3e62356-e27b-4890-974c-984021ce1f5f
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 01:23:15 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
Error: (10/27/2016 01:21:52 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
Error: (10/27/2016 01:04:32 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
Error: (10/27/2016 12:56:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program EXCEL.EXE version 16.0.4266.1003 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: f60
Start Time: 01d2303fa1e215c7
Termination Time: 4294967295
Application Path: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE
Report Id: 0756b893-9c34-11e6-9c0c-90fba6844178
Faulting package full name:
Faulting package-relative application ID:
Error: (10/27/2016 12:48:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program EXCEL.EXE version 16.0.4266.1003 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: cac
Start Time: 01d2303e2f6a764d
Termination Time: 4294967295
Application Path: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE
Report Id: d40faeb4-9c32-11e6-9c0c-90fba6844178
Faulting package full name:
Faulting package-relative application ID:
Error: (10/27/2016 03:54:03 AM) (Source: Winlogon) (EventID: 4005) (User: )
Description: Proces prihlásenia systému Windows sa neočakávane ukončil.
System errors:
=============
Error: (10/27/2016 07:07:02 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{3185A766-B338-11E4-A71E-12E3F512A338}
and APPID
{7006698D-2974-4091-A424-85DD0B909E23}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (10/27/2016 06:50:08 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Downloaded Maps Manager sa pri spustení zablokovala.
Error: (10/27/2016 06:48:07 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba LiveStorageService sa pri spustení zablokovala.
Error: (10/27/2016 06:46:06 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Delivery Optimization sa pri spustení zablokovala.
Error: (10/27/2016 06:42:22 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba CDPUserSvc_4c075 bola ukončená s nasledujúcou chybou:
Unspecified error
Error: (10/27/2016 06:42:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Print Spooler sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 5000 ms bude vykonaná nasledujúca opravná akcia: Restart the service.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba LogMeIn Hamachi Tunneling Engine sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Plays.tv Update Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba LenovoPortalService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 30000 ms bude vykonaná nasledujúca opravná akcia: Restart the service.
CodeIntegrity:
===================================
Date: 2016-10-22 20:39:32.503
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-22 20:39:32.399
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-17 22:38:29.754
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-17 22:38:29.504
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-12 22:22:52.219
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-12 22:22:51.939
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: AMD FX(tm)-770K Quad Core Processor
Percentage of memory in use: 66%
Total physical RAM: 8139.71 MB
Available physical RAM: 2752.99 MB
Total Virtual: 9739.71 MB
Available Virtual: 3081.27 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:899.67 GB) (Free:132.1 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: (CD113A9) (CDROM) (Total:0.11 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 9EAA358F)
Partition: GPT.
==================== End of Addition.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by PCčko (27-10-2016 21:03:37)
Running from C:\Users\PCčko\Desktop
Windows 10 Home Version 1607 (X64) (2016-09-27 14:36:38)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-347709995-180324277-2981740601-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-347709995-180324277-2981740601-503 - Limited - Disabled)
Guest (S-1-5-21-347709995-180324277-2981740601-501 - Limited - Disabled)
PCčko (S-1-5-21-347709995-180324277-2981740601-1002 - Administrator - Enabled) => C:\Users\PCčko
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0415.1636.28043 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform)
Cossacks 3 (HKLM-x32\...\Cossacks 3_is1) (Version: - )
DAEMON Tools Pro Advanced (HKLM-x32\...\DAEMON Tools Pro Advanced) (Version: - )
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Driver and Application Installation (HKLM-x32\...\{6EC299C6-074C-4529-8D5F-2798584BB27B}) (Version: 2.02.0803 - Lenovo)
Dropbox (HKLM-x32\...\Dropbox) (Version: 12.4.22 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.39.1 - Dropbox, Inc.) Hidden
Far Cry 4 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.4.0 - Ubisoft)
Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.5.0.6.1001 - Genesys Logic)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_is1) (Version: 1.0.350.1 - Rockstar)
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
hppLaserJetService (x32 Version: 001.003.000145 - Hewlett-Packard) Hidden
hppM1130M1210SeriesLaserJetService (x32 Version: 001.003.00073 - Hewlett-Packard) Hidden
hppusgM1130M1210Series (x32 Version: 1.0.0.2 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
K-Lite Mega Codec Pack 12.1.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.1.5 - KLCP)
Lenovo Accelerator Application (HKLM-x32\...\{10672FE6-3D50-4F79-B0C7-A5573A5D415D}) (Version: 2.2.0.0701 - Lenovo)
Lenovo Blacksilk USB Keyboard Driver (HKLM-x32\...\{B266E062-D6C5-485B-B426-51B152B041A6}) (Version: V1.6.13.0724 - Lenovo)
Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 2.0.9.0 - Lenovo)
Lenovo Family Cloud Server (HKLM-x32\...\InstallShield_{1D99AD62-EA40-4BD7-AB53-4E7DBE62F5A3}) (Version: 1.1.88.0422 - Lenovo)
Lenovo Family Cloud Server (Version: 1.1.88.0422 - Lenovo) Hidden
Lenovo Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.8231 - CyberLink Corp.)
Lenovo Power2Go (x32 Version: 6.0.8231 - CyberLink Corp.) Hidden
Lenovo PowerDVD12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5320.55 - CyberLink Corp.)
Lenovo PowerDVD12 (x32 Version: 12.0.5320.55 - CyberLink Corp.) Hidden
Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.022.00 - Lenovo)
Lenovo Rescue System (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 4.0.0.4212 - CyberLink Corp.)
Lenovo Rescue System (Version: 4.0.0.4212 - CyberLink Corp.) Hidden
Lenovo Solution Center (HKLM\...\{52753916-613B-4455-8022-A146CC17B1F6}) (Version: 3.2.002.00 - Lenovo)
Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.067.00 - Lenovo)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.472 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.472 - LogMeIn, Inc.) Hidden
Mafia III v.1.010 (HKLM-x32\...\Mafia III_is1) (Version: - )
Manual (HKLM-x32\...\{693F92E5-37D1-46B7-A0D6-19A74A2FD0EC}) (Version: 1.00.0701 - Lenovo)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden
Microsoft Age of Empires (HKLM-x32\...\Age of Empires) (Version: - )
Microsoft Office 2016 Professional Plus - sk-sk (HKLM\...\ProPlusRetail - sk-sk) (Version: 16.0.4266.1003 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Mozilla Firefox 46.0.1 (x86 sk) (HKLM-x32\...\Mozilla Firefox 46.0.1 (x86 sk)) (Version: 46.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 46.0.1.5966 - Mozilla)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.4266.1003 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.4266.1003 - Microsoft Corporation) Hidden
Opera Stable 41.0.2353.46 (HKLM-x32\...\Opera 41.0.2353.46) (Version: 41.0.2353.46 - Opera Software)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.10.1-r112682-release - Plays.tv, LLC)
Python 2.7.10 (HKLM-x32\...\{D913186D-DDF8-48F9-897D-013F5F2F375E}_is1) (Version: 2.7.10150 - Python Software Foundation)
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.0-r112326-release - Raptr, Inc)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7525 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
Shadow Of Mordor version Shadow Of Mordor (HKLM-x32\...\Shadow Of Mordor_is1) (Version: Shadow Of Mordor - )
SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 3.3.0.1103 - Lenovo)
Skype™ 7.25 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.25.106 - Skype Technologies S.A.)
Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform)
The Witcher 3 Wild Hunt (HKLM-x32\...\The Witcher 3 Wild Hunt_is1) (Version: 1.21 - RePack by Valdeni)
TP-LINK TL-WN721N_TL-WN722N Driver (HKLM-x32\...\{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}) (Version: 1.3.1 - TP-LINK)
Vlastná Fotokniha 3.8.13 (HKLM-x32\...\aldodesign1_is1) (Version: - 1STEIN Corp.)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-2) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (Version: 1.0.3.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.8.0 (HKLM\...\VulkanRT1.0.8.0) (Version: 1.0.8.0 - LunarG, Inc.)
Windows Driver Package - Advanced Micro Devices (AtiHDAudioService) MEDIA (06/09/2015 10.0.0.01) (HKLM\...\D08173C6B023D3DD9DB541E1C161BB64276955F2) (Version: 06/09/2015 10.0.0.01 - Advanced Micro Devices)
Windows Driver Package - Advanced Micro Devices, Inc. (amdkmdap) Display (08/19/2015 15.201.1301.0000) (HKLM\...\CB1F6B71BEE8A4E96089A6FC90D3FFFACF02DB84) (Version: 08/19/2015 15.201.1301.0000 - Advanced Micro Devices, Inc.)
Windows Driver Package - Genesys Logic (GeneStor) USB (07/13/2015 4.5.0.6) (HKLM\...\AE2E6FAB44844413B4C6F53C908EACC8AFC838F0) (Version: 07/13/2015 4.5.0.6 - Genesys Logic)
Windows Driver Package - Realtek (rt640x64) Net (05/05/2015 10.001.0505.2015) (HKLM\...\6A304520C2F25CD034E477A379C47308AA84A2DC) (Version: 05/05/2015 10.001.0505.2015 - Realtek)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Zodiac Casino (HKLM-x32\...\zodiac) (Version: 16.11.1.4250 - )
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-347709995-180324277-2981740601-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\PCčko\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0992CCFA-537A-49B6-B10B-50EBC69DC2F6} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-08-16] (Microsoft Corporation)
Task: {16F8C488-0C7C-4D77-9E79-7F4C10301DB6} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-03] (Dropbox, Inc.)
Task: {2BE4D0A0-C158-445B-A2E3-91563B9EBAB2} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-03] (Dropbox, Inc.)
Task: {39C21E54-921A-4410-97F3-32B4F48EAD79} - System32\Tasks\Opera scheduled Autoupdate 1462168229 => C:\Program Files (x86)\Opera\launcher.exe [2016-10-24] (Opera Software)
Task: {55AEFA51-F685-4C69-A0C1-D537122A0431} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-20] (Google Inc.)
Task: {7B50F0C1-07D0-44B2-A6A6-0B41BB8823CC} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe [2016-10-26] (Adobe Systems Incorporated)
Task: {7BAE25F3-E6F8-4454-B32A-C74AEF08C09F} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-05-24] ()
Task: {8945DFFE-33B5-46FA-BFDB-B7E5F2126EC3} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-03-21] (Advanced Micro Devices, Inc.)
Task: {979FBC3B-912C-48B0-8616-7287B994BB12} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-20] (Google Inc.)
Task: {9A311483-548C-4825-A7C8-7370E0B99BC8} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-08-16] (Microsoft Corporation)
Task: {A2826144-219C-462C-A92E-4C044BEA7311} - System32\Tasks\Easy PC Optimizer Scheduled Scan - PCčko => C:\Program Files (x86)\Easy PC Optimizer\EPIC.exe
Task: {A6856D8C-F23B-4764-8ED3-66D036F8B6DA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2016-05-08] (Microsoft Corporation)
Task: {A6C8A1A6-A87C-4460-9448-00C6F2218A75} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {AD0EE4D9-5742-4850-B0E4-5B8C5E3EE322} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
Task: {B9891818-FD1F-4711-B41A-2AB268CC96A8} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-12-10] (Lenovo)
Task: {D35DADB9-144D-4EB8-9AB6-73D36D7AC313} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-12-10] (Lenovo)
Task: {D3ABFD3D-F18A-4D4B-99ED-2551EF4610EA} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-12-10] (Lenovo)
Task: {D7C28F43-508C-46EF-8FE0-BEF6A7B65D39} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {DA70BCDD-A068-4F30-8BF9-D52678177677} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-26] (Adobe Systems Incorporated)
Task: {E3649043-0F29-43CE-B8D4-D96AFED79EB7} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2016-05-04] (Lenovo)
Task: {E4061BA3-4203-4752-B718-5992A5B4177C} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\PCčko\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-27] (Microsoft Corporation)
Task: {E46A8206-BF5A-469F-884C-7F311691D759} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe [2015-05-20] (CyberLink Corp.)
Task: {EC36F5F9-4C56-4E3C-B541-023454EC8746} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-09-28] (Piriform Ltd)
Task: {EC42CB64-D173-4CC3-939D-EE9117AE7156} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2016-05-08] (Microsoft Corporation)
Task: {FA84503E-0C23-416B-A320-DE647958CCE7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-GSGHHMB-PCčko => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\Easy PC Optimizer Scheduled Scan - PCčko.job => C:\Program Files (x86)\Easy PC Optimizer\EPIC.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-10-03 21:16 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-28 01:59 - 2015-10-28 01:59 - 00226216 _____ () C:\Program Files\update\UpdateAgent.exe
2015-10-28 01:59 - 2015-10-28 01:59 - 00024312 _____ () C:\Program Files (x86)\Lenovo\LenovoPortal\LenovoPortalService.exe
2016-05-08 22:17 - 2015-08-16 00:21 - 00162880 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2015-08-19 22:06 - 2015-08-19 22:06 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2014-02-11 16:08 - 2014-02-11 16:08 - 00817152 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2014-02-11 16:08 - 2014-02-11 16:08 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2015-08-19 22:06 - 2015-08-19 22:06 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-10-28 01:57 - 2011-08-17 05:46 - 00032768 _____ () C:\Windows\jmesoft\Service.exe
2016-01-15 16:24 - 2016-01-15 16:24 - 00043976 _____ () C:\Program Files\Lenovo\QuickOptimizer\LNBPrismAssistInf.dll
2016-10-03 21:16 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\WINDOWS\SYSTEM32\CHARTV.dll
2016-05-08 22:53 - 2010-03-31 11:51 - 00407040 _____ () C:\WINDOWS\System32\HPM1210LM.DLL
2016-05-08 23:13 - 2010-03-31 11:51 - 00074240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2016-09-28 02:03 - 2016-09-28 02:03 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-11 21:31 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-11 21:32 - 2016-10-05 11:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-11 21:32 - 2016-10-05 11:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-11 21:32 - 2016-10-05 11:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-11 21:32 - 2016-10-05 11:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-11 21:32 - 2016-10-05 11:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-10-28 01:55 - 2015-07-15 12:54 - 00053832 _____ () C:\Windows\SysWOW64\UMonit64.exe
2016-04-25 17:28 - 2016-04-25 17:28 - 00249640 _____ () C:\Program Files\Lenovo\LiveStorage\Server\IntelSceneClass.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 02244904 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_imgproc2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 02581800 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_core2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 02418472 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_highgui2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00576808 _____ () C:\Program Files\Lenovo\LiveStorage\Server\facelib.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00251176 _____ () C:\Program Files\Lenovo\LiveStorage\Server\ContextBasedFaceRecognitionDLL.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00073512 _____ () C:\Program Files\Lenovo\LiveStorage\Server\SceneClassificationDLL.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00814376 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_objdetect2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 01497896 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_legacy2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00605992 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_ml2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00654120 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_flann2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00877352 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_features2d2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 01208616 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_calib3d2411.dll
2016-04-25 17:28 - 2016-04-25 17:28 - 00452904 _____ () C:\Program Files\Lenovo\LiveStorage\Server\opencv_video2411.dll
2016-10-20 20:49 - 2016-10-20 20:50 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-10-20 20:49 - 2016-10-20 20:50 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-10-20 20:49 - 2016-10-20 20:50 - 35253760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-08-17 08:37 - 2016-08-17 08:38 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-08-17 08:37 - 2016-08-17 08:38 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-06-05 12:18 - 2016-07-14 11:30 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-04-27 14:19 - 2016-04-27 14:20 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-08-25 17:48 - 2016-08-25 17:48 - 03763712 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1608.2213.0_x64__8wekyb3d8bbwe\Calculator.exe
2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd
2009-10-15 11:13 - 2009-10-15 11:13 - 00061440 _____ () C:\Program Files (x86)\HP\HPLaserJetService\HPTools.dll
2009-10-15 11:13 - 2009-10-15 11:13 - 00964096 _____ () C:\Program Files (x86)\HP\HPLaserJetService\LEDMXMLObjects.dll
2016-05-08 22:53 - 2010-04-28 17:49 - 00082432 _____ () C:\WINDOWS\SYSTEM32\mvusbews.DLL
2009-12-05 01:59 - 2009-12-05 01:59 - 00619816 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMediaLibrary.dll
2009-12-05 02:04 - 2009-12-05 02:04 - 00013096 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvcPS.dll
2016-05-13 22:19 - 2016-09-22 03:44 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-10-13 23:01 - 2016-09-22 03:44 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2016-10-13 23:01 - 2016-09-22 03:45 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2016-10-13 23:01 - 2016-09-22 03:44 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-05-13 22:19 - 2016-09-22 03:44 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-05-13 22:19 - 2016-09-22 03:44 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-05-13 22:19 - 2016-09-22 03:44 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-05-13 22:19 - 2016-09-22 03:45 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00021312 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-10-13 23:01 - 2016-09-22 03:44 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2016-10-13 23:01 - 2016-09-22 03:46 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00025424 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00246592 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-08-05 23:12 - 2016-09-22 03:45 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-05-13 22:19 - 2016-09-22 03:46 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2016-10-13 23:01 - 2016-09-22 03:42 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2016-10-13 23:01 - 2016-10-10 20:35 - 00031568 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2016-10-13 23:01 - 2016-10-10 20:30 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2016-10-13 23:01 - 2016-10-10 20:35 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-10-13 23:01 - 2016-10-10 20:35 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-05-13 22:19 - 2016-09-22 03:45 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 01972528 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00133424 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00224056 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00020288 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32._winffi_user32.pyd
2016-10-13 23:01 - 2016-09-22 03:49 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2016-10-13 23:01 - 2016-09-22 03:49 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2016-05-13 22:19 - 2016-09-22 03:46 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2016-05-13 22:19 - 2016-10-10 20:35 - 00037192 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2016-08-05 23:12 - 2016-10-10 20:35 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2016-10-13 23:01 - 2016-10-10 20:35 - 00168760 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2016-10-27 13:22 - 2016-10-27 13:22 - 66011856 _____ () C:\Program Files (x86)\Opera\41.0.2353.46\opera.dll
2016-10-27 13:22 - 2016-10-27 13:22 - 01888464 _____ () C:\Program Files (x86)\Opera\41.0.2353.46\libglesv2.dll
2016-10-27 13:22 - 2016-10-27 13:22 - 00094416 _____ () C:\Program Files (x86)\Opera\41.0.2353.46\libegl.dll
2013-05-14 17:33 - 2013-05-14 17:33 - 00002560 _____ () C:\Program Files (x86)\DAEMON Tools Pro Advanced\MSIMG32.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\PCčko\Desktop\eControl_ADRE.xlsx:com.dropbox.attributes [168]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-347709995-180324277-2981740601-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\PCčko\Desktop\TSlZ57J.jpg
DNS Servers: 192.168.1.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
HKLM\...\StartupApproved\Run: => "RtHDVBg_LENOVO_MICPKEY"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run: => "StartCN"
HKLM\...\StartupApproved\Run32: => "UpdateP2GoShortCut"
HKLM\...\StartupApproved\Run32: => "jmekey"
HKLM\...\StartupApproved\Run32: => "jmesoft"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "HPUsageTrackingLEDM"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "UMonit"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "DAEMON Tools Pro Agent"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "Uninstall C:\Users\PCčko\AppData\Local\Microsoft\OneDrive\17.3.6386.0412_1\amd64"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{09775492-C409-499A-A530-F249B98B9A45}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [TCP Query User{B502633D-878F-4229-AE3F-49BF91D928DB}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [UDP Query User{34CF8227-AE50-4A95-BF95-16CCE59A57FC}C:\hry\aom1\empires.exe] => (Allow) C:\hry\aom1\empires.exe
FirewallRules: [TCP Query User{F02DC3BE-45C8-44C9-A41B-A41ABE3A2F8C}C:\hry\aom1\empires.exe] => (Allow) C:\hry\aom1\empires.exe
FirewallRules: [{545D90F3-A59F-4C3B-AB0F-274E021C6E5F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{161BB871-75AD-4CB9-93DF-1DD2C143E5FB}C:\hry\far cry 4\bin\farcry4.exe] => (Allow) C:\hry\far cry 4\bin\farcry4.exe
FirewallRules: [TCP Query User{85561CE0-3FEA-45A1-9EF5-2FBA7FC5436E}C:\hry\far cry 4\bin\farcry4.exe] => (Allow) C:\hry\far cry 4\bin\farcry4.exe
FirewallRules: [{F414BE46-675A-4498-8FF2-DC9D30B2076E}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{4E5B71D6-4651-4371-888E-2E4780AD066B}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{F0456939-817F-45C4-B88B-5BCC8D1F5468}] => (Allow) C:\Program Files (x86)\Lenovo\LenovoPortal\Lenovo.Portal.exe
FirewallRules: [{65B85BA7-3A14-4AA1-B917-10F35A37CC8D}] => (Allow) C:\Program Files\Lenovo\LiveStorage\Server\LiveStorageServer.exe
FirewallRules: [{47F7E350-5CF7-4904-BC1C-112475EFEEF9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{77B1A066-7BAB-4B9A-B314-EAC43B04CE0F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{12948ED1-4223-491F-AF7D-E0F8216C81E4}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{611A6F4D-0AD1-41C0-B5F1-59E42651F19F}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6989240A-FA8A-49C4-A44A-74BBFDBF58D4}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2D01C33C-D81C-4883-BC9B-55D1AA646854}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4795BDD8-98B6-4595-AEB1-DDDF549F9AF0}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6FA3197A-F91D-4238-993C-E23F431FDD0B}] => (Allow) C:\Users\PCčko\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{E89B2085-EB00-49D2-937B-48816861DF96}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{C69BF0AD-7DAB-40F9-8932-D8D16E76AED4}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{50D20353-EC08-4F89-BEDF-1FF2DA521F92}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{4A0D48D7-1A7F-44A8-ACF8-A6DF2A0F1E0A}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{6B165BB0-6C30-44A9-835B-12A972FCD83D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{D56623E9-4A89-4085-A896-1909127BFBC5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{CE3548E6-31AD-423A-9D32-DA1359C1F07A}] => (Allow) C:\Program Files (x86)\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{2F08CD46-39B3-4B49-8911-6571319AE1EE}] => (Allow) C:\Program Files (x86)\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{1F87954E-873D-41AA-8362-4D6A40A76839}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{52300319-4743-497F-A2D0-DE8E1C4C45B0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{A2272EB9-4C36-42A6-B06E-6CC1E7657ECD}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{C1BC6763-73C2-4023-ACD1-8D1E74F3912A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{DB1EEBED-9C1C-400B-A405-BF3AB309E42C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{7EEC24D3-ABBF-471B-B18B-19D5E2532EF4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{8674D591-F715-4FAC-841D-D17B69DF91EB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{8DFE2343-7E03-415E-835A-E711B83C78BB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{D2653764-16C6-41AC-BF38-B064BE212668}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{67E75F06-1576-461E-97A4-5C1ECDB0D13C}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{AB986E14-A2D9-4B00-AB7E-583DBBD6D870}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [TCP Query User{F10E60BB-16DD-4D7E-B0FE-7B9C7F7BFC0B}C:\python27\python.exe] => (Allow) C:\python27\python.exe
FirewallRules: [UDP Query User{97B82DD9-210B-425B-BF9C-7BB5F2587948}C:\python27\python.exe] => (Allow) C:\python27\python.exe
FirewallRules: [TCP Query User{654B4670-DFB9-4F3D-BFB2-BB6D630FF687}C:\hry\nfs world\need for speed world\data\nfsw.exe] => (Block) C:\hry\nfs world\need for speed world\data\nfsw.exe
FirewallRules: [UDP Query User{7575307D-28BA-486D-884C-4FC160953466}C:\hry\nfs world\need for speed world\data\nfsw.exe] => (Block) C:\hry\nfs world\need for speed world\data\nfsw.exe
FirewallRules: [{9C0E5B7D-A7E6-49C7-976D-49822AE3BDF4}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [TCP Query User{B3832540-FC37-44C5-9314-1C2F6EE92624}C:\games\mafia iii\launcher.exe] => (Allow) C:\games\mafia iii\launcher.exe
FirewallRules: [UDP Query User{CE686822-FCC0-4D93-9FC2-1F02CD6332A7}C:\games\mafia iii\launcher.exe] => (Allow) C:\games\mafia iii\launcher.exe
FirewallRules: [TCP Query User{C680A657-4A3B-404D-8B9E-B41E8F391369}C:\games\mafia iii\mafia3.exe] => (Allow) C:\games\mafia iii\mafia3.exe
FirewallRules: [UDP Query User{62537496-5584-43B8-A0B7-ADB2923156AC}C:\games\mafia iii\mafia3.exe] => (Allow) C:\games\mafia iii\mafia3.exe
FirewallRules: [{DD64CDF9-3CB9-4B7C-B301-4770AE2F5852}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
18-10-2016 17:29:50 Windows Update
25-10-2016 17:46:17 Scheduled Checkpoint
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/27/2016 07:07:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: cossacks.exe, verzia: 2.0.0.1199, časová značka: 0x2a425e19
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.14393.206, časová značka: 0x57dacde1
Kód výnimky: 0xc0000005
Odstup chyby: 0x00044e7e
Identifikácia chybujúceho procesu: 0x26d4
Čas spustenia chybujúcej aplikácie: 0x01d2307473d4b7cb
Cesta chybujúcej aplikácie: C:\Hry\Cossacks 3\cossacks.exe
Cesta chybujúceho modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Identifikácia hlásenia: e97e6ef8-2e35-4438-aba1-0134aa053cba
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 06:42:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: spoolsv.exe, verzia: 10.0.14393.206, časová značka: 0x57daca12
Názov chybujúceho modulu: HPM1210LM.DLL, verzia: 2010.331.1.19178, časová značka: 0x4bb2c6b5
Kód výnimky: 0xc0000005
Odstup chyby: 0x0000000000002350
Identifikácia chybujúceho procesu: 0x798
Čas spustenia chybujúcej aplikácie: 0x01d23071068493e4
Cesta chybujúcej aplikácie: C:\WINDOWS\System32\spoolsv.exe
Cesta chybujúceho modulu: C:\WINDOWS\System32\HPM1210LM.DLL
Identifikácia hlásenia: 40ff2519-dd4e-472d-bff2-f4c4c3e56218
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 02:08:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: EXCEL.EXE, verzia: 16.0.4266.1003, časová značka: 0x55ceb394
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.14393.206, časová značka: 0x57dacde1
Kód výnimky: 0xc0000005
Odstup chyby: 0x00026d39
Identifikácia chybujúceho procesu: 0x188
Čas spustenia chybujúcej aplikácie: 0x01d2304a93b42139
Cesta chybujúcej aplikácie: C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE
Cesta chybujúceho modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Identifikácia hlásenia: 13392f1d-9c3e-11e6-9c0d-90fba6844178
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 02:06:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: EXCEL.EXE, verzia: 16.0.4266.1003, časová značka: 0x55ceb394
Názov chybujúceho modulu: KERNELBASE.dll, verzia: 10.0.14393.321, časová značka: 0x57f4c291
Kód výnimky: 0xe0000003
Odstup chyby: 0x000da6f2
Identifikácia chybujúceho procesu: 0x2044
Čas spustenia chybujúcej aplikácie: 0x01d23047ebdcfbf8
Cesta chybujúcej aplikácie: C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE
Cesta chybujúceho modulu: C:\WINDOWS\System32\KERNELBASE.dll
Identifikácia hlásenia: d3e62356-e27b-4890-974c-984021ce1f5f
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (10/27/2016 01:23:15 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
Error: (10/27/2016 01:21:52 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
Error: (10/27/2016 01:04:32 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
Error: (10/27/2016 12:56:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program EXCEL.EXE version 16.0.4266.1003 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: f60
Start Time: 01d2303fa1e215c7
Termination Time: 4294967295
Application Path: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE
Report Id: 0756b893-9c34-11e6-9c0c-90fba6844178
Faulting package full name:
Faulting package-relative application ID:
Error: (10/27/2016 12:48:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program EXCEL.EXE version 16.0.4266.1003 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: cac
Start Time: 01d2303e2f6a764d
Termination Time: 4294967295
Application Path: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE
Report Id: d40faeb4-9c32-11e6-9c0c-90fba6844178
Faulting package full name:
Faulting package-relative application ID:
Error: (10/27/2016 03:54:03 AM) (Source: Winlogon) (EventID: 4005) (User: )
Description: Proces prihlásenia systému Windows sa neočakávane ukončil.
System errors:
=============
Error: (10/27/2016 07:07:02 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{3185A766-B338-11E4-A71E-12E3F512A338}
and APPID
{7006698D-2974-4091-A424-85DD0B909E23}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (10/27/2016 06:50:08 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Downloaded Maps Manager sa pri spustení zablokovala.
Error: (10/27/2016 06:48:07 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba LiveStorageService sa pri spustení zablokovala.
Error: (10/27/2016 06:46:06 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Delivery Optimization sa pri spustení zablokovala.
Error: (10/27/2016 06:42:22 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba CDPUserSvc_4c075 bola ukončená s nasledujúcou chybou:
Unspecified error
Error: (10/27/2016 06:42:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Print Spooler sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 5000 ms bude vykonaná nasledujúca opravná akcia: Restart the service.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba LogMeIn Hamachi Tunneling Engine sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Plays.tv Update Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba LenovoPortalService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (10/27/2016 06:40:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 30000 ms bude vykonaná nasledujúca opravná akcia: Restart the service.
CodeIntegrity:
===================================
Date: 2016-10-22 20:39:32.503
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-22 20:39:32.399
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-17 22:38:29.754
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-17 22:38:29.504
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-12 22:22:52.219
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-10-12 22:22:51.939
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: AMD FX(tm)-770K Quad Core Processor
Percentage of memory in use: 66%
Total physical RAM: 8139.71 MB
Available physical RAM: 2752.99 MB
Total Virtual: 9739.71 MB
Available Virtual: 3081.27 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:899.67 GB) (Free:132.1 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: (CD113A9) (CDROM) (Total:0.11 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 9EAA358F)
Partition: GPT.
==================== End of Addition.txt ============================
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Dal jste sem pouze Additional. Ještě potřebuji vidět log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
aha sorry
zas pripajam log z FRSt mal vela znakov
zas pripajam log z FRSt mal vela znakov
- Přílohy
-
- FRST.rar
- (23.98 KiB) Staženo 77 x
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\MountPoints2: {51184340-1445-11e6-9bda-90fba6844178} - "D:\setup.exe"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\MountPoints2: {9783680d-7d05-11e5-9bc8-806e6f6e6963} - "E:\Autorun.exe"
SearchScopes: HKU\S-1-5-21-347709995-180324277-2981740601-1002 -> DefaultScope {B97F3126-71FB-4D14-BAAF-39BB8CB3843C} URL =
SearchScopes: HKU\S-1-5-21-347709995-180324277-2981740601-1002 -> {B97F3126-71FB-4D14-BAAF-39BB8CB3843C} URL =
C:\WINDOWS\system32\ApnDatabase.xml
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\Users\PCčko\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
hotovo
Fix result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by PCčko (29-10-2016 02:16:38) Run:1
Running from C:\Users\PCčko\Desktop
Loaded Profiles: PCčko (Available Profiles: PCčko)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\MountPoints2: {51184340-1445-11e6-9bda-90fba6844178} - "D:\setup.exe"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\MountPoints2: {9783680d-7d05-11e5-9bc8-806e6f6e6963} - "E:\Autorun.exe"
SearchScopes: HKU\S-1-5-21-347709995-180324277-2981740601-1002 -> DefaultScope {B97F3126-71FB-4D14-BAAF-39BB8CB3843C} URL =
SearchScopes: HKU\S-1-5-21-347709995-180324277-2981740601-1002 -> {B97F3126-71FB-4D14-BAAF-39BB8CB3843C} URL =
C:\WINDOWS\system32\ApnDatabase.xml
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\Users\PCčko\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{51184340-1445-11e6-9bda-90fba6844178}" => key removed successfully
HKCR\CLSID\{51184340-1445-11e6-9bda-90fba6844178} => key not found.
"HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9783680d-7d05-11e5-9bc8-806e6f6e6963}" => key removed successfully
HKCR\CLSID\{9783680d-7d05-11e5-9bc8-806e6f6e6963} => key not found.
HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B97F3126-71FB-4D14-BAAF-39BB8CB3843C}" => key removed successfully
HKCR\CLSID\{B97F3126-71FB-4D14-BAAF-39BB8CB3843C} => key not found.
C:\WINDOWS\system32\ApnDatabase.xml => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
"C:\Users\PCčko\AppData\Local\Temp" folder move:
Could not move "C:\Users\PCčko\AppData\Local\Temp" => Scheduled to move on reboot.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => not found.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-10-2016 02:18:21)
C:\Users\PCčko\AppData\Local\Temp => moved successfully
==== End of Fixlog 02:18:22 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by PCčko (29-10-2016 02:16:38) Run:1
Running from C:\Users\PCčko\Desktop
Loaded Profiles: PCčko (Available Profiles: PCčko)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\MountPoints2: {51184340-1445-11e6-9bda-90fba6844178} - "D:\setup.exe"
HKU\S-1-5-21-347709995-180324277-2981740601-1002\...\MountPoints2: {9783680d-7d05-11e5-9bc8-806e6f6e6963} - "E:\Autorun.exe"
SearchScopes: HKU\S-1-5-21-347709995-180324277-2981740601-1002 -> DefaultScope {B97F3126-71FB-4D14-BAAF-39BB8CB3843C} URL =
SearchScopes: HKU\S-1-5-21-347709995-180324277-2981740601-1002 -> {B97F3126-71FB-4D14-BAAF-39BB8CB3843C} URL =
C:\WINDOWS\system32\ApnDatabase.xml
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\Users\PCčko\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{51184340-1445-11e6-9bda-90fba6844178}" => key removed successfully
HKCR\CLSID\{51184340-1445-11e6-9bda-90fba6844178} => key not found.
"HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9783680d-7d05-11e5-9bc8-806e6f6e6963}" => key removed successfully
HKCR\CLSID\{9783680d-7d05-11e5-9bc8-806e6f6e6963} => key not found.
HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-347709995-180324277-2981740601-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B97F3126-71FB-4D14-BAAF-39BB8CB3843C}" => key removed successfully
HKCR\CLSID\{B97F3126-71FB-4D14-BAAF-39BB8CB3843C} => key not found.
C:\WINDOWS\system32\ApnDatabase.xml => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
"C:\Users\PCčko\AppData\Local\Temp" folder move:
Could not move "C:\Users\PCčko\AppData\Local\Temp" => Scheduled to move on reboot.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => not found.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-10-2016 02:18:21)
C:\Users\PCčko\AppData\Local\Temp => moved successfully
==== End of Fixlog 02:18:22 ====
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
Ďakujem zmenu som zatial nepostrehol
čomu ale nerozumiem je že keď otvorím spravcu úloh tak využitá Pamäť RAM je 61% a nemám nič otvorené
a mám 8Gb ram
čomu ale nerozumiem je že keď otvorím spravcu úloh tak využitá Pamäť RAM je 61% a nemám nič otvorené
a mám 8Gb ram
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Udělejte ještě kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
log zda sa to byť čisté tak nerozumiem kde môže byť chyba
Malwarebytes Anti-Malware
www.malwarebytes.org
Dátum kontroly: 01.11.2016
Čas kontroly: 21:41
Protokol: mal.txt
Správca: Áno
Verzia: 2.2.1.1043
Dazabáza malware: v2016.11.01.11
Databáza rootkitov: v2016.10.31.01
Licencia: Bezplatná verzia
Ochrana pred škodlivým softvérom: Vypnuté
Ochrana pred škodlivými webstránkami: Vypnuté
Vlastná ochrana: Vypnuté
OS: Windows 10
CPU: x64
Súborový systém: NTFS
Používateľ: PCčko
Typ kontroly: Kontrola hrozieb
Výsledok: Dokončená
Skontrolovaných objektov: 331778
Uplynulý čas: 16 min, 43 s
Pamäť: Zapnuté
Pri spustení: Zapnuté
Súborový systém: Zapnuté
Archívy: Zapnuté
Rootkity: Vypnuté
Heuristika: Zapnuté
PUP: Zapnuté
PUM: Zapnuté
Procesy: 0
(Žiadne škodlivé položky neboli zistené)
Moduly: 0
(Žiadne škodlivé položky neboli zistené)
Kľúče databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)
Hodnoty databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)
Údaj databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)
Priečinky: 0
(Žiadne škodlivé položky neboli zistené)
Súbory: 0
(Žiadne škodlivé položky neboli zistené)
Fyzické sektory: 0
(Žiadne škodlivé položky neboli zistené)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Dátum kontroly: 01.11.2016
Čas kontroly: 21:41
Protokol: mal.txt
Správca: Áno
Verzia: 2.2.1.1043
Dazabáza malware: v2016.11.01.11
Databáza rootkitov: v2016.10.31.01
Licencia: Bezplatná verzia
Ochrana pred škodlivým softvérom: Vypnuté
Ochrana pred škodlivými webstránkami: Vypnuté
Vlastná ochrana: Vypnuté
OS: Windows 10
CPU: x64
Súborový systém: NTFS
Používateľ: PCčko
Typ kontroly: Kontrola hrozieb
Výsledok: Dokončená
Skontrolovaných objektov: 331778
Uplynulý čas: 16 min, 43 s
Pamäť: Zapnuté
Pri spustení: Zapnuté
Súborový systém: Zapnuté
Archívy: Zapnuté
Rootkity: Vypnuté
Heuristika: Zapnuté
PUP: Zapnuté
PUM: Zapnuté
Procesy: 0
(Žiadne škodlivé položky neboli zistené)
Moduly: 0
(Žiadne škodlivé položky neboli zistené)
Kľúče databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)
Hodnoty databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)
Údaj databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)
Priečinky: 0
(Žiadne škodlivé položky neboli zistené)
Súbory: 0
(Žiadne škodlivé položky neboli zistené)
Fyzické sektory: 0
(Žiadne škodlivé položky neboli zistené)
(end)
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: spomalené PC
Po stránce malware máte PC čistý. Na zkoušku vypněte aut. aktualizace.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: spomalené PC
dobre ďakujem skúsim nastaviť ešte Ramku

Přispějete na provoz fóra?