Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu.

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
HornyCZ
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 22 dub 2015 10:08

Prosím o kontrolu logu.

#1 Příspěvek od HornyCZ »

Dobrý den,
prosil bych prosím o kontrolu logu. Mám trochu podezření na snížení výkonnosti počítače.
Předem děkuji
  • Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-01-2016
    Ran by Skrillexer (administrator) on ASUS-HORNY (28-01-2017 14:24:03)
    Running from C:\Users\Skrillexer\Desktop\AntiVir PROGRÁMKY
    Loaded Profiles: UpdatusUser & Skrillexer (Available Profiles: UpdatusUser & Skrillexer & Administrator)
    Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
    (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
    (Microsoft Corporation) C:\Windows\System32\wlanext.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
    (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
    () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
    (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
    (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
    (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
    (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
    (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
    (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
    (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
    (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
    (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
    (Intel Corporation) C:\Windows\System32\igfxtray.exe
    (Intel Corporation) C:\Windows\System32\igfxsrvc.exe
    (Intel Corporation) C:\Windows\System32\hkcmd.exe
    (Intel Corporation) C:\Windows\System32\igfxpers.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
    (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
    (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe
    (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe


    ==================== Registry (Whitelisted) ===========================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13550152 2013-05-30] (Realtek Semiconductor)
    HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232 2013-05-20] (Realtek Semiconductor)
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-05-01] (ASUSTek Computer Inc.)
    HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-19] (ASUS Cloud Corporation)
    HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.)
    HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [904824 2015-08-19] (BlueStack Systems, Inc.)
    Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1001\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-11-21] (Microsoft Corporation)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\Run: [uTorrent] => C:\Users\Skrillexer\AppData\Roaming\uTorrent\utorrent.exe [1696096 2015-09-19] (BitTorrent Inc.)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [5583120 2015-02-27] (Disc Soft Ltd)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\Run: [Steam] => D:\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\Run: [MK LOL] => C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe [942584 2016-04-04] (MKGame)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [26424960 2016-06-28] (Skype Technologies S.A.)
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\MountPoints2: {5de7855a-5f0c-11e5-be86-10c37b1f4da4} - "F:\Setup.exe"
    AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-10] (NVIDIA Corporation)
    ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
    ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
    ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
    ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
    ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
    ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2014-04-18]
    ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
    BootExecute: autocheck autochk * bootdelete

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    Tcpip\Parameters: [DhcpNameServer] 10.2.1.1 8.8.8.8
    Tcpip\..\Interfaces\{9917FFF6-BAAB-4085-9F86-CE9916B8BD82}: [DhcpNameServer] 194.12.32.193 8.8.8.8 192.168.1.1
    Tcpip\..\Interfaces\{DDAB6577-74C5-445D-9499-9BA5A3F474B0}: [DhcpNameServer] 10.2.1.1 8.8.8.8

    Internet Explorer:
    ==================
    HKU\S-1-5-21-770707743-2238207204-2158057649-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com
    HKU\S-1-5-21-770707743-2238207204-2158057649-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\Software\Microsoft\Internet Explorer\Main,Start Page =
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-770707743-2238207204-2158057649-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation)
    BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
    BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
    BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-15] (Adobe Systems Incorporated)
    BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation)
    BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
    Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation)

    FireFox:
    ========
    FF ProfilePath: C:\Users\Skrillexer\AppData\Roaming\Mozilla\Firefox\Profiles\xk5205go.default
    FF DefaultSearchEngine: Yahoo®
    FF SelectedSearchEngine: Yahoo®
    FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-10] ()
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
    FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-10] ()
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
    FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation)
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-07-27] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-29] (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-29] (Google Inc.)
    FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] ()
    FF Plugin HKU\S-1-5-21-770707743-2238207204-2158057649-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Skrillexer\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-07-14] (Unity Technologies ApS)
    FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-12-16] [not signed]
    FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found

    Chrome:
    =======
    CHR Profile: C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Prezentace Google) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-26]
    CHR Extension: (Dokumenty Google) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-26]
    CHR Extension: (Disk Google) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
    CHR Extension: (YouTube) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
    CHR Extension: (Vyhledávání Google) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
    CHR Extension: (Tabulky Google) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-26]
    CHR Extension: (Dokumenty Google offline) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
    CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-18]
    CHR Extension: (Gmail) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-26]
    CHR Extension: (Chrome Media Router) - C:\Users\Skrillexer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-14]

    ==================== Services (Whitelisted) ========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS)
    R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] () [File not signed]
    S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-07] (Broadcom Corporation.)
    S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-08-19] (BlueStack Systems, Inc.)
    R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413304 2015-08-19] (BlueStack Systems, Inc.)
    R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [839288 2015-08-19] (BlueStack Systems, Inc.)
    R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3042032 2016-12-13] (Microsoft Corporation)
    S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272592 2015-02-27] (Disc Soft Ltd)
    R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
    R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
    R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
    R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

    ===================== Drivers (Whitelisted) ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [70928 2013-12-12] (ASUS Corporation)
    R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-08-07] (Broadcom Corporation.)
    R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8462000 2014-04-18] (Broadcom Corporation)
    R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-08-19] (BlueStack Systems)
    S3 cpuz139; C:\Users\Skrillexer\AppData\Local\Temp\cpuz139\cpuz139_x64.sys [43312 2016-02-15] (CPUID)
    R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30352 2015-09-19] (Disc Soft Ltd)
    S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
    S3 hitmanpro37; C:\WINDOWS\SysWOW64\drivers\hitmanpro37.sys [30616 2016-11-05] ()
    R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
    S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Apple, Inc.) [File not signed]
    S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
    R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
    R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

    ==================== NetSvcs (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== One Month Created files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2017-01-28 14:09 - 2017-01-28 14:10 - 04015056 _____ C:\Users\Skrillexer\Downloads\adwcleaner_6.043.exe
    2017-01-20 01:36 - 2017-01-20 02:07 - 1403187006 _____ C:\Users\Skrillexer\Downloads\Sakasama-no-Patema.TitCz.mkv
    2017-01-17 12:30 - 2017-01-17 12:30 - 00000000 ____D C:\Users\Skrillexer\AppData\Roaming\CyberLink
    2017-01-17 12:30 - 2017-01-17 12:30 - 00000000 ____D C:\Users\Public\CyberLink
    2017-01-17 12:30 - 2017-01-17 12:30 - 00000000 ____D C:\ProgramData\CyberLink
    2017-01-14 02:18 - 2017-01-14 02:18 - 00000000 ____D C:\Users\Skrillexer\AppData\Local\Chromium
    2017-01-10 23:12 - 2017-01-10 22:49 - 00000030 _____ C:\AVScanner.ini
    2017-01-10 23:08 - 2017-01-10 23:08 - 00000000 ____D C:\Program Files\Common Files\Intel
    2017-01-10 22:59 - 2017-01-10 22:59 - 00000000 ____D C:\Users\Skrillexer\AppData\Local\Macromedia
    2017-01-10 22:49 - 2017-01-28 13:54 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
    2017-01-10 22:49 - 2017-01-10 22:49 - 00003802 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
    2016-12-29 00:02 - 2016-12-29 00:02 - 00002289 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
    2016-12-29 00:02 - 2016-12-29 00:02 - 00002277 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2016-12-29 00:01 - 2016-12-29 00:06 - 00003384 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
    2016-12-29 00:01 - 2016-12-29 00:06 - 00003256 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
    2016-12-29 00:01 - 2016-12-29 00:01 - 01065376 _____ (Google Inc.) C:\Users\Skrillexer\Downloads\ChromeSetup.exe

    ==================== One Month Modified files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2017-01-28 14:24 - 2015-07-23 09:43 - 00000000 ____D C:\FRST
    2017-01-28 14:24 - 2015-04-22 09:13 - 00000000 ___RD C:\Users\Skrillexer\Desktop\AntiVir PROGRÁMKY
    2017-01-28 14:23 - 2015-07-26 13:56 - 00000000 ___DO C:\Users\Skrillexer\OneDrive
    2017-01-28 14:22 - 2015-07-26 02:53 - 00000062 _____ C:\Users\Skrillexer\AppData\Roaming\sp_data.sys
    2017-01-28 14:19 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
    2017-01-28 14:19 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
    2017-01-28 14:18 - 2015-04-29 17:07 - 00000000 ____D C:\AdwCleaner
    2017-01-28 14:11 - 2015-08-05 20:59 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
    2017-01-28 14:10 - 2015-04-22 07:04 - 00000000 ___RD C:\Users\Skrillexer\Desktop\Fotky
    2017-01-28 14:08 - 2015-07-26 14:01 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-770707743-2238207204-2158057649-1002
    2017-01-28 14:07 - 2016-04-13 06:26 - 00000000 ____D C:\Program Files (x86)\Sniper Elite 3
    2017-01-28 14:07 - 2014-08-25 23:01 - 00000000 ___RD C:\Users\Skrillexer\Desktop\Games
    2017-01-28 14:04 - 2014-10-02 21:53 - 00000000 ____D C:\Games
    2017-01-28 13:22 - 2015-10-03 01:32 - 00000000 ____D C:\Users\Skrillexer\Downloads\QuadCoreM2
    2017-01-28 13:21 - 2016-12-03 11:57 - 00000000 ____D C:\Users\Skrillexer\AppData\LocalLow\Mozilla
    2017-01-28 12:00 - 2015-07-26 14:16 - 00003474 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1
    2017-01-28 12:00 - 2015-07-26 14:16 - 00003464 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2
    2017-01-28 10:29 - 2015-07-26 14:00 - 00003998 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{99BA6691-4500-4856-BCCE-CBB73FDFB55B}
    2017-01-25 14:43 - 2014-08-26 11:31 - 07930368 ___SH C:\Users\Skrillexer\Desktop\Thumbs.db
    2017-01-24 22:21 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
    2017-01-21 00:39 - 2014-09-27 00:44 - 01905152 ___SH C:\Users\Skrillexer\Downloads\Thumbs.db
    2017-01-20 07:13 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
    2017-01-19 07:29 - 2015-07-26 13:26 - 00000000 ____D C:\Users\Skrillexer
    2017-01-18 11:22 - 2013-08-22 16:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
    2017-01-18 11:20 - 2015-07-26 10:52 - 00000000 ____D C:\Program Files\Microsoft Office 15
    2017-01-18 10:59 - 2015-07-26 13:26 - 00000000 ____D C:\Users\UpdatusUser
    2017-01-14 02:18 - 2015-10-11 00:41 - 00000000 ____D C:\Users\Skrillexer\AppData\Local\Steam
    2017-01-13 19:28 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
    2017-01-11 22:30 - 2013-05-01 12:18 - 00000000 ____D C:\ProgramData\McAfee
    2017-01-11 22:30 - 2013-05-01 12:18 - 00000000 ____D C:\Program Files\Common Files\mcafee
    2017-01-11 06:18 - 2015-07-26 04:33 - 00000000 ____D C:\WINDOWS\system32\MRT
    2017-01-11 06:18 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp
    2017-01-11 06:14 - 2015-07-26 04:32 - 135657872 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
    2017-01-10 23:07 - 2015-10-03 20:27 - 00000000 ____D C:\ProgramData\Package Cache
    2017-01-10 22:49 - 2015-07-26 10:43 - 00000000 ____D C:\Users\Skrillexer\AppData\Local\Adobe
    2017-01-10 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
    2017-01-10 22:49 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Macromed
    2017-01-10 15:37 - 2014-11-21 05:53 - 01745984 _____ C:\WINDOWS\system32\PerfStringBackup.INI
    2017-01-10 15:37 - 2014-11-21 05:10 - 00739924 _____ C:\WINDOWS\system32\perfh005.dat
    2017-01-10 15:37 - 2014-11-21 05:10 - 00151610 _____ C:\WINDOWS\system32\perfc005.dat
    2016-12-31 17:21 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\catroot2
    2016-12-29 00:02 - 2015-07-26 14:01 - 00000000 ____D C:\Program Files (x86)\Google

    ==================== Files in the root of some directories =======

    2015-07-26 02:53 - 2017-01-28 14:22 - 0000062 _____ () C:\Users\Skrillexer\AppData\Roaming\sp_data.sys
    2015-08-03 19:51 - 2015-08-03 19:51 - 0007604 _____ () C:\Users\Skrillexer\AppData\Local\Resmon.ResmonCfg
    2013-05-01 12:15 - 2012-09-07 12:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
    2013-05-01 12:15 - 2009-07-22 11:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
    2013-05-01 12:15 - 2012-09-07 12:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS

    Some files in TEMP:
    ====================
    C:\Users\Skrillexer\AppData\Local\Temp\COMAP.EXE
    C:\Users\Skrillexer\AppData\Local\Temp\drm_dialogs.dll
    C:\Users\Skrillexer\AppData\Local\Temp\GrLauncherTempSetup.exe
    C:\Users\Skrillexer\AppData\Local\Temp\libeay32.dll
    C:\Users\Skrillexer\AppData\Local\Temp\msvcr120.dll
    C:\Users\Skrillexer\AppData\Local\Temp\Quarantine.exe
    C:\Users\Skrillexer\AppData\Local\Temp\SecuExp.exe
    C:\Users\Skrillexer\AppData\Local\Temp\SkypeSetup.exe
    C:\Users\Skrillexer\AppData\Local\Temp\sonarinst.exe
    C:\Users\Skrillexer\AppData\Local\Temp\sqlite3.dll


    ==================== Bamital & volsnap =================

    (There is no automatic fix for files that do not pass verification.)

    C:\WINDOWS\system32\winlogon.exe => File is digitally signed
    C:\WINDOWS\system32\wininit.exe => File is digitally signed
    C:\WINDOWS\explorer.exe => File is digitally signed
    C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
    C:\WINDOWS\system32\svchost.exe => File is digitally signed
    C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
    C:\WINDOWS\system32\services.exe => File is digitally signed
    C:\WINDOWS\system32\User32.dll => File is digitally signed
    C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
    C:\WINDOWS\system32\userinit.exe => File is digitally signed
    C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
    C:\WINDOWS\system32\rpcss.dll => File is digitally signed
    C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
    C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
    C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


    LastRegBack: 2017-01-26 11:57

    ==================== End of FRST.txt ============================











  • Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-01-2016
    Ran by Skrillexer (2017-01-28 14:25:21)
    Running from C:\Users\Skrillexer\Desktop\AntiVir PROGRÁMKY
    Windows 8.1 (X64) (2015-07-26 12:52:39)
    Boot Mode: Normal
    ==========================================================


    ==================== Accounts: =============================

    Administrator (S-1-5-21-770707743-2238207204-2158057649-500 - Administrator - Disabled) => C:\Users\Administrator
    Guest (S-1-5-21-770707743-2238207204-2158057649-501 - Limited - Disabled)
    HomeGroupUser$ (S-1-5-21-770707743-2238207204-2158057649-1009 - Limited - Enabled)
    Skrillexer (S-1-5-21-770707743-2238207204-2158057649-1002 - Administrator - Enabled) => C:\Users\Skrillexer
    UpdatusUser (S-1-5-21-770707743-2238207204-2158057649-1001 - Limited - Enabled) => C:\Users\UpdatusUser

    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)

    AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    ==================== Installed Programs ======================

    (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    µTorrent (HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\uTorrent) (Version: 3.4.4.40911 - BitTorrent Inc.)
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
    Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
    Adobe Reader X MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated)
    ASUS InstantOn (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 3.0.5 - ASUS)
    ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.3.4 - ASUS)
    ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 2.1.7 - ASUS)
    ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.2 - ASUS)
    ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.2.8 - ASUS)
    ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0021 - ASUS)
    ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.5 - ASUS)
    ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.18.159 - ASUS Cloud Corporation)
    ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5712.52 - CyberLink Corp.)
    ASUSDVD (x32 Version: 10.0.5712.52 - CyberLink Corp.) Hidden
    AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.311 - ASUSTEK)
    ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0031 - ASUS)
    Azteca (x32 Version: 2.2.0.97 - WildTangent) Hidden
    Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
    BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.10.0.4321 - BlueStack Systems, Inc.)
    BlueStacks Notification Center (HKLM-x32\...\{473E82D7-79E2-43DF-8FA0-025407C93191}) (Version: 0.10.0.4321 - BlueStack Systems, Inc.)
    Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
    Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.30.223.170 - Broadcom Corporation)
    CPU-Control (HKLM-x32\...\CPU-Control_is1) (Version: - Koma-Code)
    Cut the Rope (x32 Version: 3.0.2.38 - WildTangent) Hidden
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd)
    Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games)
    Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Fraps (HKLM-x32\...\Fraps) (Version: - )
    Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    GOM Audio (HKLM-x32\...\GomAudio) (Version: 2.2.1.0 - Gretech Corporation)
    GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.6.5260 - Gretech Corporation)
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.)
    Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
    GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games)
    Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
    Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation)
    Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
    League of Legends (HKLM-x32\...\{918A9082-6287-4D25-9002-5E5D5E4971CB}) (Version: 1.02.0000 - Riot Games)
    Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
    Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 15.0.4893.1002 - Microsoft Corporation)
    Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
    Microsoft Office Professional Plus 2013 - cs-cz (HKLM\...\ProPlusRetail - cs-cz) (Version: 15.0.4893.1002 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
    Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
    MK LOL (HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\MK LOL) (Version: - )
    Mount&Blade Warband (HKLM-x32\...\Mount&Blade Warband) (Version: - )
    Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Mozilla Firefox 50.1.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 cs)) (Version: 50.1.0 - Mozilla)
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0.6186 - Mozilla)
    MyBitCast 2.0 (HKLM-x32\...\MyBitCast) (Version: 2.0 - ASUS)
    NVIDIA Graphics Driver 311.93 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 311.93 - NVIDIA Corporation)
    NVIDIA HD Audio Driver 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation)
    NVIDIA PhysX System Software 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation)
    NVIDIA Update 4.11.9 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 4.11.9 - NVIDIA Corporation)
    Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4893.1002 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Licensing Component (Version: 15.0.4893.1002 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4893.1002 - Microsoft Corporation) Hidden
    Opera Stable 35.0.2066.82 (HKLM-x32\...\Opera 35.0.2066.82) (Version: 35.0.2066.82 - Opera Software)
    Peggle (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
    Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.7.1025.2012 - Realtek)
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6937 - Realtek Semiconductor Corp.)
    Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.9200.27030 - Realtek Semiconductor Corp.)
    Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
    Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
    Skype™ 7.25 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.25.106 - Skype Technologies S.A.)
    Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
    Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden
    The Witcher 3 - Wild Hunt (HKLM-x32\...\The Witcher 3 - Wild Hunt_is1) (Version: - )
    Ulož.to FileManager verze 1.97 (HKLM-x32\...\{7DE5EA5D-C933-4549-9A44-5BC671F23BBF}_is1) (Version: 1.97 - Uloz.to cloud a.s.)
    Unity Web Player (HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS)
    Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
    Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
    Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
    Web Companion (HKLM-x32\...\{6c699081-7e3b-4495-b137-49b38dc64104}) (Version: 2.3.1471.2857 - Lavasoft)
    WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.8070 - Broadcom Corporation)
    WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.0.0 - WildTangent)
    WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden
    Windows Driver Package - ASUS (ATP) Mouse (11/20/2013 1.0.0.194) (HKLM\...\8BA9C239ED04E09F06755E1497239BEFC08085C2) (Version: 11/20/2013 1.0.0.194 - ASUS)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
    WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS)
    WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

    ==================== Custom CLSID (Whitelisted): ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== Scheduled Tasks (Whitelisted) =============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    Task: {04327007-977E-43B7-BDF2-B8E3B74DC241} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
    Task: {08FAC3BE-FE17-49E7-9FAD-BB96A7B0430A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
    Task: {09DE464F-CE0B-4DF1-AA03-CE5A3F8A4D2B} - System32\Tasks\ASUS InstantOn Config => C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [2012-10-24] (ASUS)
    Task: {3275351C-AA2B-4A9C-9A99-974C3AF78558} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-01-11] (Microsoft Corporation)
    Task: {32CB965F-B6DA-4D7C-B918-E18DF3F4064A} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2015-03-23] (ASUSTeK Computer Inc.)
    Task: {32E9DC52-1050-4E5B-A9AC-E9F575333FF2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-11-01] (Microsoft Corporation)
    Task: {3438D559-F579-43F2-80DB-748E91DE2433} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-29] (Google Inc.)
    Task: {408774E7-BB8F-4800-A35C-0BBEC07BEB61} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-jina.9.9@seznam.cz => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
    Task: {413C1CF1-E989-4366-A013-41D491A2DA7B} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-10-07] (ASUS)
    Task: {4643C54C-085C-4837-9060-2004DA841BC3} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2015-03-23] (ASUSTeK Computer Inc.)
    Task: {67E9AD2F-9BCC-4FDF-B2FD-03AE4A433F77} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-08-24] (ASUS)
    Task: {749C1FE8-B7C1-4A68-9D52-453BFE2E10A5} - System32\Tasks\{D5951A53-CBCB-44D2-BA61-3B0DE7A6B643} => pcalua.exe -a C:\Users\Skrillexer\Desktop\DirectX\dxsetup.exe -d C:\Users\Skrillexer\Desktop\DirectX
    Task: {7D962674-2C1B-444A-8412-BC0BD5C0466F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-29] (Google Inc.)
    Task: {81D14B9B-DB2C-48E2-98BE-2B9700ED7EBA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-11-01] (Microsoft Corporation)
    Task: {8FA1DE33-F989-4282-9CBF-C42389B2CF98} - System32\Tasks\Opera scheduled Autoupdate 1456490906 => C:\Program Files (x86)\Opera\launcher.exe
    Task: {A6226242-962D-48F8-A579-2D59AB90747B} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2013-12-12] (AsusTek)
    Task: {A7588ACA-6E19-4F67-947B-68A9D53A7063} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-10-07] (ASUSTeK Computer Inc.)
    Task: {A843F67A-3043-4D70-A783-E501B6AA163B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-10] (Adobe Systems Incorporated)
    Task: {ADF705CC-2B09-44E9-9609-7853091901D8} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-09-18] (ASUSTek Computer Inc.)
    Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
    Task: {DF23E2EE-BFBF-4D79-8CA6-29233B48CB00} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-11-04] ()
    Task: {F75DD603-7BDF-42C4-8C33-4436FD50C662} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2015-02-12] ()
    Task: {F807EFC5-37B1-4479-AC92-2EA69859559B} - System32\Tasks\{B60C44AA-0277-4583-9950-9D9E638AA93F} => Chrome.exe hxxp://ui.skype.com/ui/0/7.26.0.101/cs/abandoninstall?page=tsProgressBar

    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    ==================== Shortcuts =============================

    (The entries could be listed to be restored or removed.)

    ==================== Loaded Modules (Whitelisted) ==============

    2013-12-10 07:13 - 2013-12-10 07:13 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
    2012-12-19 07:10 - 2012-12-19 07:10 - 00072192 _____ () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
    2013-10-25 12:05 - 2013-10-25 12:05 - 00049368 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btwleapi.dll
    2015-07-27 13:28 - 2016-05-24 08:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
    2012-08-24 17:26 - 2012-08-24 17:26 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
    2015-07-26 14:01 - 2015-07-26 14:01 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\ErrorReporting.dll
    2013-10-01 12:02 - 2013-10-01 12:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
    2013-10-08 20:41 - 2013-10-08 20:41 - 00037968 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll
    2013-09-09 18:23 - 2013-09-09 18:23 - 00162816 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll
    2014-04-18 03:59 - 2012-06-25 10:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

    ==================== Alternate Data Streams (Whitelisted) =========

    (If an entry is included in the fixlist, only the ADS will be removed.)


    ==================== Safe Mode (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


    ==================== EXE Association (Whitelisted) ===============

    (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


    ==================== Internet Explorer trusted/restricted ===============

    (If an entry is included in the fixlist, it will be removed from the registry.)

    IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
    IE trusted site: HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\localhost -> localhost

    ==================== Hosts content: ===============================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2013-08-22 14:25 - 2017-01-10 23:12 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-770707743-2238207204-2158057649-1001\Control Panel\Desktop\\Wallpaper ->
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Skrillexer\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
    DNS Servers: 10.2.1.1 - 8.8.8.8
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    Windows Firewall is enabled.

    ==================== MSCONFIG/TASK MANAGER disabled items ==

    (Currently there is no automatic fix for this section.)

    HKLM\...\StartupApproved\StartupFolder: => "Bluetooth.lnk"
    HKLM\...\StartupApproved\Run: => "iTunesHelper"
    HKLM\...\StartupApproved\Run32: => "RemoteControl10"
    HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\StartupApproved\Run: => "Skype"
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\StartupApproved\Run: => "uTorrent"
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\StartupApproved\Run: => "DAEMON Tools Lite"
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\StartupApproved\Run: => "Steam"
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\StartupApproved\Run: => "MK LOL"

    ==================== FirewallRules (Whitelisted) ===============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
    FirewallRules: [{D760BB8A-53A0-47FF-B582-A2B0CA3F68BA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
    FirewallRules: [{F5A24EA4-FBE6-4578-87BC-C754D388EDA0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
    FirewallRules: [{FF53E8C6-6546-4AF1-AE39-9A6DD35926EB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
    FirewallRules: [{78F8E8DA-219B-4E22-ABF2-C97CF02440A3}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
    FirewallRules: [{7A67DBBD-3C40-4086-8EBF-486A984A6433}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
    FirewallRules: [{9DF568BF-1BE4-40F8-B58A-90F91C8AEB20}] => (Allow) LPort=1900
    FirewallRules: [{D9FDE7C5-91CF-4946-B79E-C7E264DA859C}] => (Allow) LPort=2869
    FirewallRules: [{AF702977-4330-41DC-B7EB-971528C7BDD5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
    FirewallRules: [TCP Query User{907E6717-AA93-4F04-8050-16C301D361C2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
    FirewallRules: [UDP Query User{BB2CE702-28A6-4FA1-8C02-6C40F6BF4F80}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
    FirewallRules: [{06733875-F5DD-4158-8F77-075BB2AA478C}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
    FirewallRules: [{9E93BE4B-CEF0-48C9-80E9-6CCEBC479462}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
    FirewallRules: [{A73BC834-9C50-4D59-86E2-8D0665AB8785}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
    FirewallRules: [TCP Query User{4588BA2C-4A01-4E9F-BBDA-CDFC2B141147}C:\games\dying light\dyinglightgame.exe] => (Block) C:\games\dying light\dyinglightgame.exe
    FirewallRules: [UDP Query User{C52A1E77-B825-41B7-90AF-082037A49E24}C:\games\dying light\dyinglightgame.exe] => (Block) C:\games\dying light\dyinglightgame.exe
    FirewallRules: [TCP Query User{2DA7D01E-318E-4FC2-9FBF-1F3EF9CBC63D}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
    FirewallRules: [UDP Query User{47CDD132-5A4C-47B7-B611-F77C96242CCA}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
    FirewallRules: [TCP Query User{D6713DF0-E838-45A4-B852-8B756EF1A45D}D:\wrc 4 fia world rally championship\wrc4.exe] => (Block) D:\wrc 4 fia world rally championship\wrc4.exe
    FirewallRules: [UDP Query User{ABA005BE-C7F7-46FF-A3B8-D231B9A8148B}D:\wrc 4 fia world rally championship\wrc4.exe] => (Block) D:\wrc 4 fia world rally championship\wrc4.exe
    FirewallRules: [{ABC09EEB-AF00-4F55-8ADE-3AEA51E5515F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
    FirewallRules: [{8A96F75F-A14B-4537-92D8-79B300D83087}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
    FirewallRules: [{512741DA-53E6-4376-919B-583B82497FB2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    FirewallRules: [{C0883DF5-23CB-4FEE-9E3E-BB6DD1B10A9F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    FirewallRules: [TCP Query User{B61CDC7A-B31C-4D26-AEBC-D1705238A5ED}C:\utorrent\utorrent.exe] => (Allow) C:\utorrent\utorrent.exe
    FirewallRules: [UDP Query User{C3DC9018-0986-45FF-BBAA-E3C11BB96F48}C:\utorrent\utorrent.exe] => (Allow) C:\utorrent\utorrent.exe
    FirewallRules: [TCP Query User{FB39D977-BB9B-44EC-ADDC-95AEFFC7EF5B}C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe
    FirewallRules: [UDP Query User{6EB80EAB-64A7-444A-853C-EE3C597B59E0}C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe
    FirewallRules: [{9A13E6B5-EFDF-4DB0-B2CB-55E96B47B191}] => (Allow) C:\Program Files (x86)\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe
    FirewallRules: [{F5FF4F0C-AAE4-4699-BE79-64EB264CE7AC}] => (Allow) C:\Program Files (x86)\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe
    FirewallRules: [TCP Query User{EE35BCCA-7966-483D-B0D2-C552DE6D6B6F}C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe
    FirewallRules: [UDP Query User{F9E7F52E-8AFE-438D-9BC9-B0795FD63442}C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\skrillexer\appdata\roaming\utorrent\utorrent.exe
    FirewallRules: [TCP Query User{0B21DF07-4C73-4C0E-A6B1-F21ADC9020BF}D:\ea games\need for speed underground 2\speed2.exe] => (Block) D:\ea games\need for speed underground 2\speed2.exe
    FirewallRules: [UDP Query User{6920806B-6C54-48B8-82D6-FDF6FA413387}D:\ea games\need for speed underground 2\speed2.exe] => (Block) D:\ea games\need for speed underground 2\speed2.exe
    FirewallRules: [TCP Query User{75CEA689-85FF-48F8-B569-69FAD77F6A89}C:\users\skrillexer\downloads\quadcorem2\pack\core.bin] => (Allow) C:\users\skrillexer\downloads\quadcorem2\pack\core.bin
    FirewallRules: [UDP Query User{BA7A2172-3CCB-42DA-8AB6-ABB28C5E27F9}C:\users\skrillexer\downloads\quadcorem2\pack\core.bin] => (Allow) C:\users\skrillexer\downloads\quadcorem2\pack\core.bin
    FirewallRules: [TCP Query User{6AED7E07-FD07-42D5-BE91-9716343E02F5}C:\users\skrillexer\downloads\quadcorem2\pack\core.bin] => (Allow) C:\users\skrillexer\downloads\quadcorem2\pack\core.bin
    FirewallRules: [UDP Query User{C469D27E-1AC5-4E8A-9246-55DB4529F09D}C:\users\skrillexer\downloads\quadcorem2\pack\core.bin] => (Allow) C:\users\skrillexer\downloads\quadcorem2\pack\core.bin
    FirewallRules: [{9DD2C6B7-1C0E-4F09-A425-F7A61E6E80A0}] => (Allow) D:\Steam\Steam.exe
    FirewallRules: [{D3DCD5D7-67A7-45CB-B957-5E69E25C1EFE}] => (Allow) D:\Steam\Steam.exe
    FirewallRules: [{84F4B230-63CE-47EA-A3B3-072BCCAD9FFD}] => (Allow) D:\Steam\bin\steamwebhelper.exe
    FirewallRules: [{EFD1903B-8785-4686-9D12-161F4E18C1FA}] => (Allow) D:\Steam\bin\steamwebhelper.exe
    FirewallRules: [{E3B30C7D-E78D-4BA1-B80F-A7BAC914441C}] => (Allow) D:\Games\Need for Speed Rivals\NFS14_x86.exe
    FirewallRules: [{4E0E8C67-2C12-4211-86CA-B5135EE8A6A8}] => (Allow) D:\Games\Need for Speed Rivals\NFS14_x86.exe
    FirewallRules: [{F0DA8594-0906-4286-97EA-37CD447A24D9}] => (Allow) D:\Games\Need for Speed Rivals\NFS14.exe
    FirewallRules: [{9ED56C4A-264C-4923-AF76-309CF2CD4C8A}] => (Allow) D:\Games\Need for Speed Rivals\NFS14.exe
    FirewallRules: [{70C8DFBC-16A9-4B1B-81D3-33C7EE4A69C3}] => (Allow) D:\Steam\steamapps\common\Darksiders 2\Darksiders2.exe
    FirewallRules: [{4995060D-FD57-4635-94C3-1EB980814FFA}] => (Allow) D:\Steam\steamapps\common\Darksiders 2\Darksiders2.exe
    FirewallRules: [TCP Query User{4709949D-2F6C-4AD1-A246-C27BD7D26FDB}D:\wrc 4 fia world rally championship\wrc4.exe] => (Block) D:\wrc 4 fia world rally championship\wrc4.exe
    FirewallRules: [UDP Query User{E750F2F4-E478-422F-88CF-A8E01A99BFAC}D:\wrc 4 fia world rally championship\wrc4.exe] => (Block) D:\wrc 4 fia world rally championship\wrc4.exe
    FirewallRules: [TCP Query User{6380A143-CBF1-49A7-AAEB-650C153A5681}C:\users\skrillexer\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\skrillexer\appdata\local\mycomgames\mycomgames.exe
    FirewallRules: [UDP Query User{5E59DC3E-C291-431B-AD06-B5839A94ED2E}C:\users\skrillexer\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\skrillexer\appdata\local\mycomgames\mycomgames.exe
    FirewallRules: [{3F6675C7-69E9-4C1B-A4EB-DEDD8DA7CAA9}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
    FirewallRules: [{C47D2F89-E04A-4637-80E0-B8EAB5919324}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
    FirewallRules: [TCP Query User{95DCB4AF-F363-409C-8D36-27A28243BCF9}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe
    FirewallRules: [UDP Query User{368D5898-8D47-40E2-9413-468B343F05F9}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe
    FirewallRules: [TCP Query User{23E9427E-9FC6-4447-B7D5-A381667E8FEA}D:\dying light\dyinglightgame.exe] => (Block) D:\dying light\dyinglightgame.exe
    FirewallRules: [UDP Query User{9E7C236F-2BA2-44AC-A749-810011D056D8}D:\dying light\dyinglightgame.exe] => (Block) D:\dying light\dyinglightgame.exe
    FirewallRules: [TCP Query User{EE97A1A4-C2F4-47EA-9C2D-4A5379F1BCFE}C:\games\dying light\dyinglightgame.exe] => (Block) C:\games\dying light\dyinglightgame.exe
    FirewallRules: [UDP Query User{66A9ED24-2572-4709-8306-A37670BE888A}C:\games\dying light\dyinglightgame.exe] => (Block) C:\games\dying light\dyinglightgame.exe
    FirewallRules: [TCP Query User{1A4EC533-A456-4B1F-A0A0-BF5AFE4C7168}D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Block) D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe
    FirewallRules: [UDP Query User{D271DA70-D441-433D-949A-9F32EB679170}D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Block) D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe
    FirewallRules: [{5309E4AB-379D-41E9-8096-015B9280E44F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    FirewallRules: [{9298FE13-85F4-4AEE-9D16-F1E672228101}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    FirewallRules: [TCP Query User{1C7FB2D0-1F00-4C8E-9C6E-AC23674FDE96}D:\dmc devi may cry\binaries\win32\dmc-devilmaycry.exe] => (Block) D:\dmc devi may cry\binaries\win32\dmc-devilmaycry.exe
    FirewallRules: [UDP Query User{CF02B711-793F-4036-A356-13ADCC73DC7F}D:\dmc devi may cry\binaries\win32\dmc-devilmaycry.exe] => (Block) D:\dmc devi may cry\binaries\win32\dmc-devilmaycry.exe
    FirewallRules: [{6DAD1D80-E403-4BE2-BC16-79CDFA9034FF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    FirewallRules: [{F2B37784-CB45-4200-823F-4EB394BFC3F6}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe
    FirewallRules: [{18604A49-936C-421F-9D71-945843FB7D5D}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe

    ==================== Restore Points =========================

    10-01-2017 23:05:46 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
    18-01-2017 23:57:03 Naplánovaný kontrolní bod
    27-01-2017 10:20:09 Naplánovaný kontrolní bod

    ==================== Faulty Device Manager Devices =============


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (01/28/2017 10:26:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 22468609

    Error: (01/28/2017 10:26:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 22468609

    Error: (01/28/2017 10:26:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second

    Error: (01/28/2017 04:11:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 4250

    Error: (01/28/2017 04:11:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 4250

    Error: (01/28/2017 04:11:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second

    Error: (01/27/2017 08:02:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 13780375

    Error: (01/27/2017 08:02:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 13780375

    Error: (01/27/2017 08:02:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second

    Error: (01/27/2017 04:13:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 3782


    System errors:
    =============
    Error: (01/28/2017 02:18:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
    Description: Služba Služba Windows Media Player Network Sharing závisí na službě Windows Search, která neuspěla při spuštění v důsledku následující chyby:
    %%3

    Error: (01/28/2017 02:18:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: Služba Windows Search neuspěla při spuštění v důsledku následující chyby:
    %%3

    Error: (01/28/2017 02:18:42 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: Služba Windows Search neuspěla při spuštění v důsledku následující chyby:
    %%3

    Error: (01/28/2017 02:18:32 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
    Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

    Cesta k modulu: C:\WINDOWS\System32\bcmihvsrv64.dll

    Error: (01/28/2017 02:18:32 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
    Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

    Cesta k modulu: C:\WINDOWS\System32\bcmihvsrv64.dll

    Error: (01/28/2017 02:18:26 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
    Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

    Cesta k modulu: C:\WINDOWS\System32\bcmihvsrv64.dll

    Error: (01/28/2017 02:18:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

    Error: (01/28/2017 02:18:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Služba Intel(R) Management and Security Application User Notification Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

    Error: (01/28/2017 02:18:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Služba Intel(R) ME Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

    Error: (01/28/2017 02:18:12 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.


    CodeIntegrity:
    ===================================
    Date: 2017-01-28 14:14:43.207
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-28 14:14:42.967
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-28 14:14:42.214
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-28 14:14:41.973
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-28 14:13:21.488
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-28 14:13:21.215
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-27 10:25:39.127
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-27 10:25:38.788
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-27 10:25:38.436
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-01-27 10:25:37.753
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


    ==================== Memory info ===========================

    Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
    Percentage of memory in use: 17%
    Total physical RAM: 8077.63 MB
    Available physical RAM: 6636.76 MB
    Total Virtual: 9357.63 MB
    Available Virtual: 7983.46 MB

    ==================== Drives ================================

    Drive c: (OS) (Fixed) (Total:372.16 GB) (Free:162.97 GB) NTFS ==>[system with boot components (obtained from drive)]
    Drive d: (DATA) (Fixed) (Total:537.8 GB) (Free:478.62 GB) NTFS

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (Size: 931.5 GB) (Disk ID: E0C4D189)

    Partition: GPT.

    ==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu.

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

HornyCZ
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 22 dub 2015 10:08

Re: Prosím o kontrolu logu.

#3 Příspěvek od HornyCZ »

  • # AdwCleaner v6.043 - Log vytvořen 29/01/2017 v 18:59:07
    # Aktualizováno dne 27/01/2017 z Malwarebytes
    # Databáze : 2017-01-28.2 [Server]
    # Operační systém : Windows 8.1 (X64)
    # Uživatelské jméno : Skrillexer - ASUS-HORNY
    # Spuštěno z : C:\Users\Skrillexer\Desktop\adwcleaner_6.043.exe
    # Mod: Čištění
    # Podpora : https://www.malwarebytes.com/support



    ***** [ Služby ] *****



    ***** [ Složky ] *****



    ***** [ Soubory ] *****



    ***** [ DLL ] *****



    ***** [ WMI ] *****



    ***** [ Zástupci ] *****



    ***** [ Naplánované úlohy ] *****



    ***** [ Registry ] *****



    ***** [ Prohlížeče ] *****



    *************************

    :: "Tracing" klíče smazány
    :: Winsock nastavení vyčištěno

    *************************

    C:\AdwCleaner\AdwCleaner[C1].txt - [747 Bajty] - [06/02/2016 14:09:18]
    C:\AdwCleaner\AdwCleaner[C2].txt - [745 Bajty] - [06/02/2016 14:16:13]
    C:\AdwCleaner\AdwCleaner[C3].txt - [827 Bajty] - [31/03/2016 16:26:09]
    C:\AdwCleaner\AdwCleaner[C4].txt - [2120 Bajty] - [05/11/2016 21:58:26]
    C:\AdwCleaner\AdwCleaner[C5].txt - [2186 Bajty] - [28/01/2017 14:18:18]
    C:\AdwCleaner\AdwCleaner[C6].txt - [1162 Bajty] - [29/01/2017 18:59:07]
    C:\AdwCleaner\AdwCleaner[R0].txt - [2490 Bajty] - [29/04/2015 17:07:09]
    C:\AdwCleaner\AdwCleaner[R1].txt - [1349 Bajty] - [16/06/2015 11:16:49]
    C:\AdwCleaner\AdwCleaner[R2].txt - [1581 Bajty] - [14/07/2015 06:05:43]
    C:\AdwCleaner\AdwCleaner[R3].txt - [1092 Bajty] - [24/07/2015 12:21:14]
    C:\AdwCleaner\AdwCleaner[R4].txt - [1150 Bajty] - [24/07/2015 12:23:07]
    C:\AdwCleaner\AdwCleaner[S0].txt - [2552 Bajty] - [29/04/2015 17:08:37]
    C:\AdwCleaner\AdwCleaner[S1].txt - [1596 Bajty] - [16/06/2015 11:19:26]
    C:\AdwCleaner\AdwCleaner[S2].txt - [1826 Bajty] - [14/07/2015 06:07:16]
    C:\AdwCleaner\AdwCleaner[S3].txt - [1942 Bajty] - [24/07/2015 12:24:21]
    C:\AdwCleaner\AdwCleaner[S4].txt - [9203 Bajty] - [05/11/2016 21:51:26]
    C:\AdwCleaner\AdwCleaner[S5].txt - [2436 Bajty] - [05/11/2016 21:57:43]
    C:\AdwCleaner\AdwCleaner[S6].txt - [2482 Bajty] - [28/01/2017 14:16:37]
    C:\AdwCleaner\AdwCleaner[S7].txt - [2609 Bajty] - [29/01/2017 18:58:45]

    ########## EOF - C:\AdwCleaner\AdwCleaner[C6].txt - [2184 Bajty] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu.

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\MountPoints2: {5de7855a-5f0c-11e5-be86-10c37b1f4da4} - "F:\Setup.exe"
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
HKU\S-1-5-21-770707743-2238207204-2158057649-1002\Software\Microsoft\Internet Explorer\Main,Start Page =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-770707743-2238207204-2158057649-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\SetStretch.VBS
C:\Users\Skrillexer\AppData\Local\Temp

EmptyTemp:
End
Uložte do C:\Users\Skrillexer\Desktop\AntiVir PROGRÁMKY jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

HornyCZ
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 22 dub 2015 10:08

Re: Prosím o kontrolu logu.

#5 Příspěvek od HornyCZ »

  • Fix result of Farbar Recovery Scan Tool (x64) Version:27-01-2016
    Ran by Skrillexer (2017-01-30 15:41:43) Run:2
    Running from C:\Users\Skrillexer\Desktop
    Loaded Profiles: UpdatusUser & Skrillexer (Available Profiles: UpdatusUser & Skrillexer & Administrator)
    Boot Mode: Normal
    ==============================================

    fixlist content:
    *****************
    Start
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\...\MountPoints2: {5de7855a-5f0c-11e5-be86-10c37b1f4da4} - "F:\Setup.exe"
    ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
    ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
    ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
    ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\Software\Microsoft\Internet Explorer\Main,Start Page =
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-770707743-2238207204-2158057649-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
    C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
    C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
    C:\ProgramData\SetStretch.VBS
    C:\Users\Skrillexer\AppData\Local\Temp

    EmptyTemp:
    End
    *****************

    "HKU\S-1-5-21-770707743-2238207204-2158057649-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5de7855a-5f0c-11e5-be86-10c37b1f4da4}" => key removed successfully
    HKCR\CLSID\{5de7855a-5f0c-11e5-be86-10c37b1f4da4} => key not found.
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => key removed successfully
    HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => key not found.
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => key removed successfully
    HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => key not found.
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => key removed successfully
    HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => key not found.
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => key removed successfully
    HKCR\Wow6432Node\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => key not found.
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => key removed successfully
    HKCR\Wow6432Node\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => key not found.
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => key removed successfully
    HKCR\Wow6432Node\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => key not found.
    HKU\S-1-5-21-770707743-2238207204-2158057649-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
    HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
    HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
    HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
    HKU\S-1-5-21-770707743-2238207204-2158057649-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
    HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => value removed successfully
    C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
    C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
    C:\ProgramData\SetStretch.VBS => moved successfully
    C:\Users\Skrillexer\AppData\Local\Temp => moved successfully
    EmptyTemp: => 1.4 GB temporary data Removed.


    The system needed a reboot.

    ==== End of Fixlog 15:43:45 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu.

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

HornyCZ
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 22 dub 2015 10:08

Re: Prosím o kontrolu logu.

#7 Příspěvek od HornyCZ »

Ano, je znát že pracuje rychleji, děkuji :worship:
Ještě jsem se chtěl zeptat, pokud mohu. Trochu mívám problém s vytížení disku od Hostitel služby:Místní systém, které se se někdy pohybuje až na 70%, ale po čase se uklidní. Také mívám potíže s wifi připojení, že při slabším signálu musím na ntb vypnout wifi, zapnout a zase připojit. :?:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu.

#8 Příspěvek od Rudy »

Při přílišném vytížení na zkoušku vypněte aut. aktualizace a přesvědčte, zda zatížení pokleslo. U té wifi zkuste přejít do místa, kde bude ten signál silnější. Při slabém (nebo naopak příliš silném) signálu se mohou rozsekat pakety. Tento stav někdy napraví restart wifi. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

HornyCZ
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 22 dub 2015 10:08

Re: Prosím o kontrolu logu.

#9 Příspěvek od HornyCZ »

Dobrá, velice děkuji. Počítač jede jako nový, takže spokojenost maximální. :worship:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu.

#10 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět