Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

procesor jede stale na 100%

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

procesor jede stale na 100%

#1 Příspěvek od bonapart »

Dobrý den, chtel bych Vas poprosit o pomoc, asi mam vir, cele pc je totalne zpomaleno procesor jede naplno ram na 40 procent, ( podle spavce uloh) muzete mi poslat program ktery vytvori log , kdysi to byl HJT , ted je jich tu nejak víc, nevím ktery by byl pro muj problem vhodný
zatim dekuji Milan

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: procesor jede stale na 100%

#2 Příspěvek od Rudy »

Zdravím!
HJT je dávná minulost. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: procesor jede stale na 100%

#3 Příspěvek od bonapart »

podarilo se mi vytvorit nejake logy , nevim jestli to bude ono , jelikoz je vse strasne zpomalene, navic mi odkazy blokoval chrom tak jsem to nejak vybojoval pres explo

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-12-2016
Ran by bonapart (administrator) on AAA-8D452092365 (17-12-2016 12:17:02)
Running from C:\Documents and Settings\bonapart\Plocha
Loaded Profiles: bonapart (Available Profiles: bonapart)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Creative Technology Ltd) C:\WINDOWS\system32\CTHELPER.EXE
(CyberLink Corp.) C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
(cyberlink) C:\Program Files\CyberLink\Shared Files\brs.exe
(Uniblue Systems Limited) C:\Program Files\Uniblue\DriverScanner\dsmonitor.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
() C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Ellora Assets Corp.) C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
(O&O Software GmbH) C:\WINDOWS\system32\oodag.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
(Microsoft Corporation) C:\WINDOWS\system32\taskmgr.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [WINDVDPatch] => C:\WINDOWS\system32\CTHELPER.EXE [24576 2002-07-02] (Creative Technology Ltd)
HKLM\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM\...\Run: [Jet Detection] => C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe [28672 2001-11-29] ()
HKLM\...\Run: [RemoteControl9] => C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2009-02-16] (CyberLink Corp.)
HKLM\...\Run: [PDVD9LanguageShortcut] => C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [50472 2008-10-13] (CyberLink Corp.)
HKLM\...\Run: [BDRegion] => C:\Program Files\Cyberlink\Shared Files\brs.exe [75048 2009-02-28] (cyberlink)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2012-02-20] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime Alternative\qttask.exe [421888 2012-04-18] (Apple Inc.)
HKLM\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2004-06-16] (InstallShield Software Corporation)
HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [81920 2004-06-16] (InstallShield Software Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [nwiz] => nwiz.exe /install
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [OODefragTray] => C:\WINDOWS\system32\oodtray.exe [2512392 2007-05-11] (O&O Software GmbH)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03] (ATI Technologies Inc.)
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\Run: [OEXPRESS] => C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [26624 2012-06-17] ()
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\Run: [] => [X]
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {176c416d-f617-11e2-b587-000c6eee9b3d} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {3133bdca-e529-11e5-bb6c-000c6eee9b3d} - E:\startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {441d447c-08e1-11e2-90a0-000c6eee9b3d} - E:\Startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {a5bab56b-6573-11e6-bc56-000c6eee9b3d} - E:\startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {a6619f73-7a24-11e3-b6b5-000c6eee9b3d} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {f0b9dddc-ea15-11e5-bb75-000c6eee9b3d} - E:\Startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {fbb14787-c261-11e3-b743-000c6eee9b3d} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe [1294336 2007-11-07] (Time Information Services Ltd.)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> (None)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.exe.lnk [2012-06-16]
ShortcutTarget: Adobe Gamma Loader.exe.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Bluetooth.lnk [2015-11-15]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk [2012-06-15]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * OODBS

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{B9E8FD39-D613-4BAE-8870-261FB5703D57}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
BHO: WebTransBHO Class -> {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} -> C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2012-06-17] ()
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-21] (Oracle Corporation)
BHO: PDFCreator Toolbar Helper -> {C451C08A-EC37-45DF-AAAD-18B51AB5E837} -> C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll [2012-12-08] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-21] (Oracle Corporation)
Toolbar: HKLM - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2012-06-17] ()
Toolbar: HKLM - PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll [2012-12-08] ()
Toolbar: HKU\S-1-5-21-448539723-1682526488-1417001333-1003 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll [2012-04-20] (Společnost Microsoft)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {53049A9A-1122-4673-B8D4-12F545AE3285} hxxp://85.70.231.178:8888/AVC_AX_764.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1339796493156
DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} hxxps://www.mojedatovaschranka.cz/static/pages/ ... ?3,16,13,0

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2012-06-16] [not signed]
FF HKLM\...\Firefox\Extensions: [{C3949AC2-4B17-43ee-B4F1-D26B9D42404D}] - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-26] ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-21] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin -> C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2013-10-02] ( )
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2011-11-24] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR HomePage: Profile 1 -> hxxp://www.seznam.cz/
CHR Session Restore: Profile 1 -> is enabled.
CHR Profile: C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Default [2016-04-21]
CHR Profile: C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1 [2016-12-17]
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-17]
CHR Extension: (Disk Google) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-17]
CHR Extension: (YouTube) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-17]
CHR Extension: (Tabulky Google) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-17]
CHR Extension: (Dokumenty Google offline) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-17]
CHR Extension: (Gmail) - C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-04-17]
CHR Profile: C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Google\Chrome\User Data\System Profile [2016-12-16]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - <no Path/update_url>

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-09-27] (SUPERAntiSpyware.com) [File not signed]
R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [520192 2006-05-03] () [File not signed]
R2 FreemakeVideoCapture; C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216 2014-12-03] (Ellora Assets Corp.) [File not signed]
R2 O&O Defrag; C:\WINDOWS\system32\oodag.exe [1050120 2007-05-11] (O&O Software GmbH)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Avanquest Software)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 btaudio; C:\WINDOWS\System32\drivers\btaudio.sys [556200 2011-06-09] (Broadcom Corporation.)
R3 BTDriver; C:\WINDOWS\System32\DRIVERS\btport.sys [37160 2010-01-14] (Broadcom Corporation.)
R3 BTKRNL; C:\WINDOWS\System32\DRIVERS\btkrnl.sys [934312 2011-04-21] (Broadcom Corporation.)
S3 BTWDNDIS; C:\WINDOWS\System32\DRIVERS\btwdndis.sys [118440 2009-11-18] (Broadcom Corporation.)
S3 btwmodem; C:\WINDOWS\System32\DRIVERS\btwmodem.sys [37032 2010-01-14] (Broadcom Corporation.)
R3 btwsecfl; C:\WINDOWS\System32\drivers\btwsecfl.sys [92792 2012-09-18] (Broadcom Corporation.)
R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [52984 2012-10-17] (Broadcom Corporation.)
S3 ctljystk; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [3712 2001-08-17] (Creative Technology Ltd.)
S3 emu10k; C:\WINDOWS\System32\drivers\emu10k1m.sys [283904 2001-08-17] (Creative Technology Ltd.)
S3 emu10k1; C:\WINDOWS\System32\drivers\ctlfacem.sys [6912 2001-08-17] (Creative Technology Ltd.)
R3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-13] (Microsoft Corporation)
S3 ggsomc; C:\WINDOWS\System32\DRIVERS\ggsomc.sys [26328 2015-10-27] (Sony Mobile Communications)
R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] () [File not signed]
R3 ha10kx2k; C:\WINDOWS\System32\drivers\ha10kx2k.sys [998004 2002-07-24] (Creative Technology Ltd)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.)
R3 pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [47360 2013-09-09] (VSO Software) [File not signed]
S3 pmserenum; C:\WINDOWS\System32\DRIVERS\pmserenum.sys [30616 2012-09-06] (PenMount) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 sfman; C:\WINDOWS\System32\drivers\sfmanm.sys [36480 2001-08-17] (Creative Technology Ltd.)
S3 SIVDriver; C:\WINDOWS\system32\Drivers\SIVX32.sys [104848 2012-12-14] (Ray Hinchliffe)
S3 smbusp; C:\WINDOWS\System32\DRIVERS\intelsmb.sys [45184 2012-09-06] (Intel Corporation)
R0 speedfan; C:\WINDOWS\System32\speedfan.sys [5248 2006-09-24] (Windows (R) 2000 DDK provider) [File not signed]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files\CyberLink\PowerDVD9\000.fcl [87536 2009-02-28] (CyberLink Corp.)
S3 eapihdrv; \??\C:\DOCUME~1\bonapart\LOCALS~1\Temp\ehdrv.sys [X]
S4 IntelIde; no ImagePath
U1 WS2IFSL; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-17 12:17 - 2016-12-17 12:18 - 00017075 _____ C:\Documents and Settings\bonapart\Plocha\FRST.txt
2016-12-17 12:15 - 2016-12-17 12:17 - 00000000 ____D C:\FRST
2016-12-17 12:15 - 2016-12-17 12:15 - 00029696 _____ C:\Documents and Settings\bonapart\Local Settings\Data aplikací\MSGBOX.EXE
2016-12-17 12:11 - 2016-12-17 12:11 - 01762304 _____ (Farbar) C:\Documents and Settings\bonapart\Plocha\FRST.exe
2016-12-17 12:08 - 2016-12-17 12:08 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\bonapart\Plocha\FRSTLauncher.exe
2016-12-17 11:49 - 2016-12-17 11:49 - 00000000 ____D C:\Documents and Settings\bonapart\Dokumenty\O&O
2016-12-17 11:23 - 2016-12-17 11:23 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\CyberLink PowerDVD 9
2016-12-17 11:02 - 2016-12-17 11:02 - 00000552 _____ C:\Documents and Settings\bonapart\Plocha\Zástupce - Duch.lnk
2016-12-16 09:03 - 2016-12-17 11:24 - 03373917 _____ C:\WINDOWS\{00000002-00000000-0000000A-00001102-00000002-80401102}.BAK
2016-12-16 08:56 - 2016-12-16 08:56 - 00000166 _____ C:\Documents and Settings\bonapart\Dokumenty\cc_20161216_085646.reg
2016-12-15 20:02 - 2016-12-15 20:02 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\14.12.16
2016-12-10 20:13 - 2016-12-10 21:48 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\foto moni
2016-12-07 20:31 - 2016-12-07 21:55 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\mp3
2016-11-22 18:14 - 2016-11-22 18:14 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\ZRCADLA 2016
2016-11-17 17:23 - 2016-11-17 17:24 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\Zaloha restis 16.11.16

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-17 12:18 - 2012-06-15 22:10 - 00000000 ____D C:\Documents and Settings\bonapart\Local Settings\Temp
2016-12-17 12:17 - 2013-12-02 17:34 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-12-17 12:17 - 2012-06-15 22:10 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha
2016-12-17 12:15 - 2012-06-15 22:10 - 00000000 ___HD C:\Documents and Settings\bonapart\Local Settings\Data aplikací
2016-12-17 12:08 - 2012-06-16 19:55 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-12-17 11:49 - 2012-06-15 22:10 - 00000000 ___RD C:\Documents and Settings\bonapart\Dokumenty
2016-12-17 11:24 - 2013-12-02 17:34 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-12-17 11:24 - 2012-06-16 10:12 - 03373917 _____ C:\WINDOWS\{00000002-00000000-0000000A-00001102-00000002-80401102}.CDF
2016-12-17 11:24 - 2001-10-25 15:00 - 00012984 _____ C:\WINDOWS\system32\wpa.dbl
2016-12-17 11:23 - 2016-07-01 21:25 - 00000284 _____ C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-448539723-1682526488-1417001333-1003.job
2016-12-17 11:23 - 2014-03-19 10:45 - 00000228 _____ C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2016-12-17 11:23 - 2013-08-13 08:29 - 02422469 _____ C:\WINDOWS\system32\oodbs.lor
2016-12-17 11:23 - 2012-09-06 18:53 - 00000266 _____ C:\WINDOWS\Tasks\DriverScanner.job
2016-12-17 11:23 - 2012-06-15 22:10 - 00000000 ___RD C:\Documents and Settings\bonapart\Nabídka Start\Programy
2016-12-17 11:23 - 2012-06-15 22:05 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-12-17 11:07 - 2012-06-16 10:27 - 00016612 _____ C:\WINDOWS\system32\BMXStateBkp-{00000002-00000000-0000000A-00001102-00000002-80401102}.rfx
2016-12-17 11:07 - 2012-06-16 10:27 - 00016612 _____ C:\WINDOWS\system32\BMXState-{00000002-00000000-0000000A-00001102-00000002-80401102}.rfx
2016-12-17 11:07 - 2012-06-16 10:27 - 00001080 _____ C:\WINDOWS\system32\settingsbkup.sfm
2016-12-17 11:07 - 2012-06-16 10:27 - 00001080 _____ C:\WINDOWS\system32\settings.sfm
2016-12-17 11:07 - 2012-06-16 10:27 - 00000024 _____ C:\WINDOWS\system32\DVCStateBkp-{00000002-00000000-0000000A-00001102-00000002-80401102}.dat
2016-12-17 11:07 - 2012-06-16 10:27 - 00000024 _____ C:\WINDOWS\system32\DVCState-{00000002-00000000-0000000A-00001102-00000002-80401102}.dat
2016-12-17 11:07 - 2012-06-16 10:11 - 00026364 _____ C:\WINDOWS\system32\BMXCtrlState-{00000002-00000000-0000000A-00001102-00000002-80401102}.rfx
2016-12-17 11:07 - 2012-06-16 10:11 - 00026364 _____ C:\WINDOWS\system32\BMXBkpCtrlState-{00000002-00000000-0000000A-00001102-00000002-80401102}.rfx
2016-12-17 11:06 - 2014-12-14 20:36 - 00196608 _____ C:\WINDOWS\system32\config\CaptureL.evt
2016-12-17 11:06 - 2012-06-15 22:10 - 00000178 ___SH C:\Documents and Settings\bonapart\ntuser.ini
2016-12-17 11:06 - 2012-06-15 22:05 - 00032512 _____ C:\WINDOWS\SchedLgU.Txt
2016-12-17 10:23 - 2012-10-22 09:15 - 00000000 ____D C:\Program Files\Real
2016-12-17 10:23 - 2012-06-17 09:25 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\Real
2016-12-17 09:43 - 2012-06-17 09:25 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Real
2016-12-17 09:43 - 2012-06-15 23:51 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2016-12-17 09:24 - 2012-06-17 09:26 - 00000292 _____ C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-448539723-1682526488-1417001333-1003.job
2016-12-16 21:36 - 2012-06-16 09:47 - 00000000 ____D C:\Program Files\ESET
2016-12-16 21:18 - 2012-06-15 23:44 - 00000000 ___HD C:\WINDOWS\inf
2016-12-16 08:56 - 2012-06-16 17:32 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\NÁSTROJE
2016-12-16 08:56 - 2012-06-15 23:51 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2016-12-16 08:54 - 2012-06-15 22:10 - 00000000 ____D C:\Documents and Settings\bonapart
2016-12-13 21:24 - 2012-06-29 19:37 - 00037376 _____ C:\Documents and Settings\bonapart\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-12-11 17:31 - 2012-06-16 18:26 - 00000000 ____D C:\Documents and Settings\bonapart\Dokumenty\AAA DOKUMENTY
2016-12-08 18:30 - 2014-07-06 00:07 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\NA EXTERAK
2016-12-07 22:27 - 2012-06-21 08:10 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\YouTube Downloader
2016-12-07 21:47 - 2012-06-18 18:03 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\vlc
2016-12-07 10:02 - 2013-09-30 17:43 - 00000000 ____D C:\Program Files\VideoViewer
2016-12-05 19:58 - 2016-03-26 18:35 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\JIDELÁK od 1.3.2016
2016-12-04 19:30 - 2016-10-19 20:16 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\nelka angl 1
2016-11-24 17:14 - 2012-06-16 20:39 - 00000120 _____ C:\Documents and Settings\bonapart\default.pls
2016-11-22 20:11 - 2012-06-16 17:19 - 00000000 ____D C:\WINDOWS\system32\oodag
2016-11-22 18:43 - 2016-04-28 17:56 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\100OLYMP
2016-11-20 11:21 - 2012-09-18 23:17 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\dvdcss

==================== Files in the root of some directories =======

2012-12-05 21:43 - 2013-09-09 17:55 - 0087608 _____ () C:\Documents and Settings\bonapart\Data aplikací\inst.exe
2012-12-05 21:43 - 2013-09-09 17:55 - 0007887 _____ () C:\Documents and Settings\bonapart\Data aplikací\pcouffin.cat
2012-12-05 21:43 - 2013-09-09 17:55 - 0001144 _____ () C:\Documents and Settings\bonapart\Data aplikací\pcouffin.inf
2012-12-05 21:43 - 2013-09-09 17:55 - 0000034 _____ () C:\Documents and Settings\bonapart\Data aplikací\pcouffin.log
2012-12-05 21:43 - 2013-09-09 17:55 - 0047360 _____ (VSO Software) C:\Documents and Settings\bonapart\Data aplikací\pcouffin.sys
2012-06-29 19:37 - 2016-12-13 21:24 - 0037376 _____ () C:\Documents and Settings\bonapart\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-16 08:35 - 2012-06-16 08:35 - 0000128 _____ () C:\Documents and Settings\bonapart\Local Settings\Data aplikací\fusioncache.dat
2016-12-17 12:15 - 2016-12-17 12:15 - 0029696 _____ () C:\Documents and Settings\bonapart\Local Settings\Data aplikací\MSGBOX.EXE
2016-03-08 13:30 - 2016-08-18 19:49 - 45700992 _____ (Sony) C:\Documents and Settings\bonapart\Local Settings\Data aplikací\pcc.exe

Some zero byte size files/folders:
==========================
C:\Windows\logo_1.exe
C:\Windows\RUNDL132.EXE
C:\Windows\VDLL.DLL
C:\Windows\System32\runouce.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End of FRST.txt ============================



Additional scan result of Farbar Recovery Scan Tool (x86) Version: 17-12-2016
Ran by bonapart (17-12-2016 12:28:40)
Running from C:\Documents and Settings\bonapart\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) (2012-06-15 21:04:47)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-448539723-1682526488-1417001333-500 - Administrator - Enabled)
ASPNET (S-1-5-21-448539723-1682526488-1417001333-1004 - Limited - Enabled)
bonapart (S-1-5-21-448539723-1682526488-1417001333-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\bonapart
Guest (S-1-5-21-448539723-1682526488-1417001333-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-448539723-1682526488-1417001333-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-448539723-1682526488-1417001333-1002 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)


==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\uTorrent) (Version: 1.7.7 - )
µTorrent CZ 1.7.7 (build 8179) (HKLM\...\µTorrent CZ_is1) (Version: - emc)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 18 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Adobe Photoshop 6.0.1 CE (HKLM\...\Adobe Photoshop 6.0.1 CE) (Version: 6.0.1 - Adobe Systems, Inc.)
Adobe Reader XI (11.0.08) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Adobe SVG Viewer (HKLM\...\Adobe SVG Viewer) (Version: 1.0 - Adobe Systems, Inc.)
Aktualizace systému Windows Internet Explorer 8 (KB2598845) (HKLM\...\KB2598845-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows Internet Explorer 8 (KB2632503) (HKLM\...\KB2632503-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows XP (KB2808679) (HKLM\...\KB2808679) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2510531) (HKLM\...\KB2510531-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2544521) (HKLM\...\KB2544521-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2618444) (HKLM\...\KB2618444-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2699988) (HKLM\...\KB2699988-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2722913) (HKLM\...\KB2722913-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2744842) (HKLM\...\KB2744842-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2761465) (HKLM\...\KB2761465-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2792100) (HKLM\...\KB2792100-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2797052) (HKLM\...\KB2797052-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2799329) (HKLM\...\KB2799329-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2809289) (HKLM\...\KB2809289-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2817183) (HKLM\...\KB2817183-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2829530) (HKLM\...\KB2829530-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2838727) (HKLM\...\KB2838727-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2846071) (HKLM\...\KB2846071-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2847204) (HKLM\...\KB2847204-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2862772) (HKLM\...\KB2862772-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2870699) (HKLM\...\KB2870699-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2879017) (HKLM\...\KB2879017-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2888505) (HKLM\...\KB2888505-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2898785) (HKLM\...\KB2898785-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909210) (HKLM\...\KB2909210-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909921) (HKLM\...\KB2909921-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2925418) (HKLM\...\KB2925418-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2936068) (HKLM\...\KB2936068-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2964358) (HKLM\...\KB2964358-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381) (HKLM\...\KB982381-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB923789) (HKLM\...\KB923789) (Version: - Microsoft Corporation)
Apple Application Support (HKLM\...\{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}) (Version: 2.1.7 - Apple Inc.)
ATI - Software Uninstall Utility (HKLM\...\All ATI Software) (Version: 6.14.10.1014 - )
ATI Display Driver (HKLM\...\ATI Display Driver) (Version: 8.252-060503a-038185C-ATI - )
Balíček ovladače systému Windows - Nokia Modem (08/03/2007 6.84.0.2) (HKLM\...\819D45A9F73817F5B6D7C71A33ADAB88C5DA1765) (Version: 08/03/2007 6.84.0.2 - Nokia)
Balíček ovladače systému Windows - Nokia Modem (10/12/2007 3.6) (HKLM\...\6A630DCEC5EEC912115F2FF59D8C2C769798D930) (Version: 10/12/2007 3.6 - Nokia)
Balíček ovladače systému Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0) (HKLM\...\17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382) (Version: 05/31/2012 7.1.2.0 - Nokia)
Balíček zprostředkovatele služby Microsoft Base Smart Card Cryptographic Service (HKLM\...\KB909520) (Version: - Microsoft Corporation)
Canon CanoScan Toolbox 4.9 (HKLM\...\{CA9BCD4D-B782-4637-8F1F-F9A328D3C244}) (Version: - )
Canon ScanGear Starter (HKLM\...\{18A5DFF2-8A95-49F3-873F-743CB5549F3D}) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform)
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
CorelDRAW Graphics Suite 12 (HKLM\...\{505AFDC0-5E72-4928-8368-5DEA385E3647}) (Version: 12.0.0.536 - Corel Corporation)
CyberLink PowerDVD 9 (HKLM\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.0.1501 - CyberLink Corp.)
CyberLink PowerDVD 9.0.1501 CZ (HKLM\...\CyberLink PowerDVD 9.0.1501) (Version: - Sub - Zero)
DVDFab 7.0.4.0 (15/04/2010) (HKLM\...\DVDFab 7_is1) (Version: - Fengtao Software Inc.)
Encyklopedie historie (HKLM\...\{D313C090-F5BB-4538-896A-025737D4CEF0}) (Version: 1.1 - )
FormatFactory 3.7.0.0 (HKLM\...\FormatFactory) (Version: 3.7.0.0 - Format Factory)
Freemake Video Downloader (HKLM\...\Freemake Video Downloader_is1) (Version: 3.7.1 - Ellora Assets Corporation)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden
Intel(R) PRO Network Adapters and Drivers (HKLM\...\PROSet) (Version: - )
IPTInstaller (HKLM\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
K-Lite Mega Codec Pack 8.8.0 (HKLM\...\KLiteCodecPack_is1) (Version: 8.8.0 - )
MediaInfo 0.7.61 (HKLM\...\MediaInfo) (Version: 0.7.61 - MediaArea.net)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 Czech Language Pack (HKLM\...\{5E65E94D-69F2-4850-9E93-6459C53A0F50}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version: - )
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY (HKLM\...\{A2C9CD1B-2551-3AED-B244-6698FB929FA6}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY (HKLM\...\{546C143E-68DC-314D-97BC-1E454E3BA429}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Office XP Professional s aplikací FrontPage (HKLM\...\{90280405-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft User-Mode Driver Framework Feature Pack 1.9 (HKLM\...\Wudf01009) (Version: - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft WinUsb 2.0 (HKLM\...\winusb0200) (Version: - Microsoft Corporation)
MSVC80_x86 (Version: 1.0.1.0 - Nokia) Hidden
MSVC80_x86_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x86 (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nero 7 Ultra Edition (HKLM\...\{91C0B95B-B83A-4828-A775-BBE2DD421029}) (Version: 7.02.9752 - Nero AG)
Nokia Connectivity Cable Driver (HKLM\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia)
Nokia PC Suite (HKLM\...\Nokia PC Suite) (Version: 6.85.14.1 - Nokia)
Nokia PC Suite (Version: 6.85.14.1 - Nokia) Hidden
Nokia Suite (HKLM\...\Nokia Suite) (Version: 3.8.48.0 - Nokia)
Nokia Suite (Version: 3.8.48.0 - Nokia) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: - )
O&O Defrag Professional Edition (HKLM\...\{53480330-E1D1-41CA-B8F8-7F78644F7F50}) (Version: 10.0.1634 - O&O Software GmbH)
PC Connectivity Solution (HKLM\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
PC Translator (HKLM\...\PC Translator) (Version: - )
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 0.9.6 - Frank Heindörfer, Philip Chinery)
PDFCreator Toolbar (HKLM\...\PDFCreator Toolbar) (Version: 3.3.0.1 - )
QuickTime (HKLM\...\{0E64B098-8018-4256-BA23-C316A43AD9B0}) (Version: 7.72.80.56 - Apple Inc.)
QuickTime Alternative 2.9.0 (HKLM\...\QuicktimeAlt_is1) (Version: 2.9.0 - )
Recuva (HKLM\...\Recuva) (Version: 1.48 - Piriform)
Revo Uninstaller Pro 3.0.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.5 - VS Revo Group, Ltd.)
Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Software Bluetooth WIDCOMM (HKLM\...\{F48BE301-EC78-4686-B580-EE4934558798}) (Version: 5.6.0.8700 - Broadcom)
Software602 Form Filler rozšíření pro internetové prohlížeče (HKLM\...\602XMLFiller_CAB) (Version: 4.12 - Software602 a.s.)
Sonic Foundry Sound Forge 6.0a (HKLM\...\{6CDC68BB-C997-4ADC-9BA0-6293FB88521E}) (Version: 6.0.150 - Sonic Foundry)
Sony Mobile Update Engine (HKLM\...\Update Engine) (Version: 2.16.10.201607130957 - Sony Mobile Communications Inc.)
Sony PC Companion 2.10.303 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony)
Sound Blaster Live! (HKLM\...\{3FCAADB8-EB1B-11D6-AB2D-0090271A23A2}) (Version: - )
SpeedFan (remove only) (HKLM\...\SpeedFan) (Version: - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.5.1006 - SUPERAntiSpyware.com)
Ultra Video Joiner 5.2.0603 (HKLM\...\Ultra Video Joiner_is1) (Version: - Aone Software)
Uniblue DriverScanner (HKLM\...\{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1) (Version: 4.0.3.4 - Uniblue Systems Ltd)
Uniblue RegistryBooster 2009 (HKLM\...\Uniblue RegistryBooster 2009) (Version: - Uniblue Systems)
Uniblue RegistryBooster 2009 (Version: 3.0 - Uniblue Systems) Hidden
Video Viewer (HKLM\...\Video Viewer) (Version: 0.1.9.7 - AVTECH Corporation, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VSO ConvertXToDVD (HKLM\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.0.0.25 - VSO-Software SARL)
VSO Image Resizer 1.3.4d (HKLM\...\VSO Image Resizer_is1) (Version: 1.3.4d - VSO-Software)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Genuine Advantage Notifications (KB905474) (HKLM\...\WgaNotify) (Version: 1.9.0040.0 - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\KB892130) (Version: - Microsoft Corporation)
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Management Framework Core (HKLM\...\KB968930) (Version: - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - )
WinPcap 4.1.2 (HKLM\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - )
WinZip (HKLM\...\WinZip) (Version: - )
XMedia Recode version 3.1.3.7 (HKLM\...\{DDA3C325-47B2-4730-9672-BF3771C08799}_is1) (Version: 3.1.3.7 - XMedia Recode)
XML Paper Specification Shared Components Language Pack 1.0 (Version: - Microsoft Corporation) Hidden
YTD (pepak) (HKLM\...\YTD_Pepak) (Version: - )
YTD Video Downloader 3.9.6 (HKLM\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 3.9.6 - GreenTree Applications SRL) <==== ATTENTION

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{00B7E0AB-817A-44AD-A04B-D1148D524136}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{677D54F0-573E-11D4-9385-005004518EC8}\InprocServer32 -> C:\Program Files\OO Software\Defrag Professional\oodpep.dll (O&O Software GmbH)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{7C6E29BC-8B8B-4C3D-859E-AF6CD158BE0F}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C0-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C1-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C2-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C3-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C4-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C5-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C8-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969C9-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969CA-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{88D969D6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\WINDOWS\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{8AC29A61-573D-11D4-9385-005004518EC8}\InprocServer32 -> C:\Program Files\OO Software\Defrag Professional\oodpeo.ocx (O&O Software GmbH)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{943AA438-0ED3-11D3-8CE7-00105AC417F9}\InprocServer32 -> C:\Program Files\OO Software\Defrag Professional\oodpeo.ocx (O&O Software GmbH)
CustomCLSID: HKU\S-1-5-21-448539723-1682526488-1417001333-1003_Classes\CLSID\{B4E83711-62D3-11D4-9396-005004518EC8}\InprocServer32 -> C:\Program Files\OO Software\Defrag Professional\oodpep.dll (O&O Software GmbH)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DriverScanner.job => C:\Program Files\Uniblue\DriverScanner\dsmonitor.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-448539723-1682526488-1417001333-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-448539723-1682526488-1417001333-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Documents and Settings\bonapart\Okolní síť\Mé stránky WWW v síti MSN\target.lnk -> hxxp://uk.msnusers.com

==================== Loaded Modules (Whitelisted) ==============

2012-12-08 19:41 - 2001-10-28 17:42 - 00116224 _____ () C:\WINDOWS\system32\pdfcmnnt.dll
2012-06-17 08:46 - 2012-06-17 08:46 - 00045056 _____ () C:\Documents and Settings\All Users\Data aplikací\LangSoft\TrnOEH.dll
2014-04-20 09:02 - 2009-08-16 16:06 - 00141312 _____ () C:\Program Files\WinRAR\rarext.dll
2012-06-17 08:46 - 2012-06-17 08:46 - 00026624 _____ () C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
2012-06-17 08:46 - 2012-06-17 08:46 - 00200704 _____ () C:\Documents and Settings\All Users\Data aplikací\LangSoft\TrnOET.dll
2012-10-26 17:22 - 2012-10-26 17:22 - 02860984 _____ () C:\WINDOWS\system32\btwicons.dll
2012-10-26 17:22 - 2012-10-26 17:22 - 00075712 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2012-12-07 17:27 - 2012-12-07 17:27 - 00167424 _____ () C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
2014-07-23 00:29 - 2014-07-23 00:29 - 00530451 _____ () C:\Program Files\VideoLAN\VLC\axvlc.dll
2014-07-23 00:29 - 2014-07-23 00:29 - 00113171 _____ () C:\Program Files\VideoLAN\VLC\libvlc.dll
2014-07-23 00:29 - 2014-07-23 00:29 - 02396691 _____ () C:\Program Files\VideoLAN\VLC\libvlccore.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2001-10-25 15:00 - 2012-09-27 20:15 - 00000777 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 localhost
127.0.0.1 license.superantispyware.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-448539723-1682526488-1417001333-1003\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 10.0.0.138
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

StandardProfile\AuthorizedApplications: [C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe] => Enabled:WebKit
StandardProfile\AuthorizedApplications: [C:\Program Files\uTorrent\utorrent.exe] => Enabled:µTorrent
StandardProfile\AuthorizedApplications: [C:\phoenix2\files\proxy.exe] => Enabled:Proxyy
StandardProfile\AuthorizedApplications: [C:\phoenix2\files\phoenix.exe] => Enabled:Phoenixx
StandardProfile\AuthorizedApplications: [C:\phoenix2\files\wget.exe] => Enabled:Wgett
StandardProfile\AuthorizedApplications: [C:\Program Files\Moloz\cpu\cpu.exe] => Enabled:Molozcpu
StandardProfile\AuthorizedApplications: [C:\Program Files\Moloz\gpu\gpu.exe] => Enabled:Molozgpu
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Phone\Skype.exe] => Enabled:Skype
StandardProfile\AuthorizedApplications: [C:\Program Files\Google\Chrome\Application\chrome.exe] => Enabled:Google Chrome
StandardProfile\AuthorizedApplications: [C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe] => Enabled:Update Engine
StandardProfile\GloballyOpenPorts: [5985:TCP] => Disabled:Vzdálená správa systému Windows
StandardProfile\GloballyOpenPorts: [80:TCP] => Disabled:Vzdálená správa systému Windows – režim kompatibility (HTTP-In)

==================== Restore Points =========================

13-09-2016 18:36:33 Kontrolní bod systému
15-09-2016 08:56:18 Software Distribution Service 3.0
24-09-2016 08:41:22 Uniblue RegistryBooster 2009
29-09-2016 18:46:27 Kontrolní bod systému
04-10-2016 10:50:47 Kontrolní bod systému
06-10-2016 20:03:50 Kontrolní bod systému
17-10-2016 09:36:17 Software Distribution Service 3.0
20-10-2016 21:35:30 Kontrolní bod systému
22-10-2016 19:25:28 Kontrolní bod systému
03-11-2016 20:45:15 Uniblue RegistryBooster 2009
10-11-2016 09:41:00 Software Distribution Service 3.0
20-11-2016 11:44:14 Kontrolní bod systému
24-11-2016 18:08:09 Kontrolní bod systému
28-11-2016 20:51:13 Kontrolní bod systému
02-12-2016 22:15:19 Kontrolní bod systému
04-12-2016 19:59:00 Kontrolní bod systému
07-12-2016 22:52:06 Kontrolní bod systému
10-12-2016 20:32:19 Kontrolní bod systému
16-12-2016 09:08:15 Revo Uninstaller Pro's restore point - RealPlayer
16-12-2016 21:14:00 Revo Uninstaller Pro's restore point - ESET Smart Security
16-12-2016 21:16:17 Removed ESET Smart Security
17-12-2016 09:41:26 Revo Uninstaller Pro's restore point - RealPlayer
17-12-2016 11:30:02 Software Distribution Service 3.0

==================== Faulty Device Manager Devices =============

Name: Intel(R) 82801EB SMBus Controller - 24D3 (Intel(R) SMBus 2.0 Driver)
Description: Intel(R) 82801EB SMBus Controller - 24D3 (Intel(R) SMBus 2.0 Driver)
Class Guid: {4D36E97D-E325-11CE-BFC1-08002BE10318}
Manufacturer: Intel
Service: smbusp
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Nokia 6230i
Description: Nokia 6230i
Class Guid: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
Manufacturer: Nokia
Service: WUDFRd
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (12/16/2016 09:18:02 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Error: (12/16/2016 09:18:02 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.

Error: (12/15/2016 08:54:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace iexplore.exe, verze 8.0.6001.18702, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error: (10/05/2016 08:20:49 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace AcroRd32.exe, verze 11.0.8.4, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error: (09/27/2016 04:51:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace explorer.exe, verze 6.0.2900.5512, chybující modul shell32.dll, verze 6.0.2900.6242, adresa chyby 0x0002b2b4.
Zpracování události, specifické pro médium ([explorer.exe!ws!])

Error: (09/27/2016 04:47:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Chybující aplikace explorer.exe, verze 6.0.2900.5512, chybující modul shell32.dll, verze 6.0.2900.6242, adresa chyby 0x0002b2b4.
Zpracování události, specifické pro médium ([explorer.exe!ws!])

Error: (09/23/2016 05:36:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace AcroRd32.exe, verze 11.0.8.4, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error: (08/10/2016 06:43:20 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace CSTBox.exe, verze 4.9.2.0, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error: (08/10/2016 06:43:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace CSTBox.exe, verze 4.9.2.0, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error: (08/03/2016 06:57:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace AcroRd32.exe, verze 11.0.8.4, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.


System errors:
=============
Error: (11/06/2016 11:31:17 AM) (Source: WPDMTPDriver) (EventID: 15300) (User: )
Description: MTP WPD Driver has failed to start. Error 0x8004201e.

Error: (11/06/2016 11:29:15 AM) (Source: WPDMTPDriver) (EventID: 15300) (User: )
Description: MTP WPD Driver has failed to start. Error 0x8004201e.

Error: (11/05/2016 05:17:33 PM) (Source: Print) (EventID: 54) (User: NT AUTHORITY)
Description: Dokument HomeTicket.pdf byl poškozen, dokument byl odstraněn. Přidružený ovladač: HP LaserJet 5L.

Error: (11/04/2016 11:04:41 AM) (Source: System Error) (EventID: 1003) (User: )
Description: Kód chyby 10000050, parametr1 a5a55aa5, parametr2 00000001, parametr3 805db1fb, parametr4 00000000.


==================== Memory info ===========================

Processor: Intel(R) Pentium(R) 4 CPU 2.40GHz
Percentage of memory in use: 31%
Total physical RAM: 2046.73 MB
Available physical RAM: 1399.93 MB
Total Virtual: 3943.16 MB
Available Virtual: 3418.51 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:146.48 GB) (Free:10.99 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive d: (Nový svazek) (Fixed) (Total:319.27 GB) (Free:17.72 GB) NTFS
Drive g: () (Fixed) (Total:232.88 GB) (Free:19.34 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive h: (59774) (Removable) (Total:14.43 GB) (Free:5.46 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 79617961)
Partition 1: (Active) - (Size=146.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=319.3 GB) - (Type=OF Extended)

========================================================
Disk: 1 (Size: 232.9 GB) (Disk ID: 644E8DCC)
Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 14.4 GB) (Disk ID: 1C14CDC9)
Partition 1: (Active) - (Size=14.4 GB) - (Type=0C)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: procesor jede stale na 100%

#4 Příspěvek od Rudy »

OK, to je ono. Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\Run: [] => [X]
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {176c416d-f617-11e2-b587-000c6eee9b3d} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {3133bdca-e529-11e5-bb6c-000c6eee9b3d} - E:\startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {441d447c-08e1-11e2-90a0-000c6eee9b3d} - E:\Startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {a5bab56b-6573-11e6-bc56-000c6eee9b3d} - E:\startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {a6619f73-7a24-11e3-b6b5-000c6eee9b3d} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {f0b9dddc-ea15-11e5-bb75-000c6eee9b3d} - E:\Startme.exe
HKU\S-1-5-21-448539723-1682526488-1417001333-1003\...\MountPoints2: {fbb14787-c261-11e3-b743-000c6eee9b3d} - H:\HTC_Sync_Manager_PC.exe
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
FF HKLM\...\Firefox\Extensions: [{C3949AC2-4B17-43ee-B4F1-D26B9D42404D}] - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - <no Path/update_url>
S4 IntelIde; no ImagePath
U1 WS2IFSL; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\logo_1.exe
C:\Windows\RUNDL132.EXE
C:\Windows\VDLL.DLL
C:\Windows\System32\runouce.exe
Task: C:\WINDOWS\Tasks\DriverScanner.job => C:\Program Files\Uniblue\DriverScanner\dsmonitor.exe <==== ATTENTION

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: procesor jede stale na 100%

#5 Příspěvek od bonapart »

pokud stisknu fix pise ze nemuze nic najit, pokud stisknu scan udela mi to na plose dva textaky FRSR a Addition

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: procesor jede stale na 100%

#6 Příspěvek od bonapart »

zkopiroval jsem vas obsah do txt a spustil fix , chvili pracoval, pak chtel restart, vše vypada daleko lépe, budem delat jeste naslednou kontrolu?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: procesor jede stale na 100%

#7 Příspěvek od Rudy »

Není potřeby, pokud zatížení CPU pokleslo.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: procesor jede stale na 100%

#8 Příspěvek od bonapart »

ještě to vecer vyzkousim az budu u svého stařičkého pc, byla tam nejaka havět v tom prvním logu?
asi mam vse co jsme pouzily smazat ?nebo si nechat pro pripadne pristi pouziti FRST?
musim nainstalovat zpet nejaky antivir,jaky free by jste mi doporucil? avast avira........
zatím diky |Milan

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: procesor jede stale na 100%

#9 Příspěvek od Rudy »

Vše smažte, příště už bude určitě jiná verze. Co se týká antivirů, vybral jste správně, my je také doporučujeme. Vyberte si ten, který vám bude uživatelsky přijatelnější.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: procesor jede stale na 100%

#10 Příspěvek od bonapart »

dekuji za vše, poslete mi prosim číslo uctu na prevod z uctu na ucet a vs,rad bych alespoň sybolilicky podporil forum ,vždy jste mi tu pomohli .Milan

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: procesor jede stale na 100%

#11 Příspěvek od Rudy »

Nemáte zač! Všechny možnosti, jak fórum podpořit, najdete zde: http://forum.viry.cz/viewtopic.php?f=7&t=78175 . Za příspěvek předem děkujeme. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno