Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc, zpomalený a sekající se pc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Prosím o pomoc, zpomalený a sekající se pc

#1 Příspěvek od Lucifix »

Zdravím,
prosím o kontrolu pc, poslední dobou je strašně pomalý, zasekává se načítání stránek plus mě tedy odpojuje windows od wifi. Na jiném pc se to totiž nestává. Přikládám log z FRST a předem děkuji za jakoukoliv pomoc :-). Lucie

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-01-2019
Ran by DPL Pavel (administrator) on DPLPAVEL-PC (27-01-2019 15:11:45)
Running from C:\Users\DPL Pavel\Desktop
Loaded Profiles: DPL Pavel (Available Profiles: DPL Pavel)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-11-27] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd)
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f138f-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f13b3-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {482c932f-98eb-11e6-b0ac-00164194621f} - F:\Lenovo_Suite.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {91d5d56b-f265-11e5-887a-00164194621f} - E:\Startme.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {e0589cbb-b401-11e7-963f-00164194621f} - E:\startme.exe
HKLM\...\Drivers32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32: [VIDC.VP80] => vp8vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-26] (Google Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Inc.)
Startup: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FacebookGamesNotifier.exe.lnk [2016-06-30]
ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\DPL Pavel\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (No File)
Startup: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2018-08-24]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0EA02A51-623D-41D0-B18C-00C586FD640D}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{ED561183-B99A-45E2-BDCE-1DEA4ED1CE0E}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-08-23] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-08-23] (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: WSAllMyTubechrome - {0A0C95CF-A116-4C74 - No File

FireFox:
========
FF DefaultProfile: u38kt6rt.default
FF ProfilePath: C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default [2019-01-27]
FF Extension: (Avast SafePrice) - C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default\Extensions\sp@avast.com.xpi [2017-10-12]
FF Extension: (Avast Online Security) - C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default\Extensions\wrc@avast.com.xpi [2017-10-12]
FF HKLM\...\Firefox\Extensions: [AllMyTube@Wondershare.com] - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com_xpi => not found
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-08-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-08-23] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-26] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-26] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Profile 2
CHR StartupUrls: Profile 2 -> "hxxp://www.google.com/"
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default [2019-01-26]
CHR Extension: (Adobe Acrobat) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-07-21]
CHR Extension: (Avast SafePrice) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-10-18]
CHR Extension: (Tabulky) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Seznam pro Chrome - Esko) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-11-11]
CHR Extension: (Gmail) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-24]
CHR Extension: (Chrome Media Router) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-11]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-01-26]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2 [2019-01-27]
CHR Extension: (Prezentace) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-12]
CHR Extension: (Dokumenty) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-12]
CHR Extension: (Disk Google) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-12]
CHR Extension: (YouTube) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-12]
CHR Extension: (Adobe Acrobat) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-11-12]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-12-20]
CHR Extension: (Tabulky) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-23]
CHR Extension: (Avast Online Security) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-10-04]
CHR Extension: (One Click GSN Games) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kjdbedlepiebjogmbmmfgilidoobdfmb [2018-11-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-12]
CHR Extension: (Chrome Media Router) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-26]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\System Profile [2019-01-26]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6799632 2018-11-27] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2018-11-27] (AVAST Software)
R2 HFGService; C:\Windows\System32\HFGService.dll [413696 2009-12-21] (CSR, plc)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11644656 2018-08-13] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [167480 2018-11-27] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [188976 2018-11-27] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [165384 2018-11-27] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [284256 2018-11-27] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [57904 2018-11-27] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [183176 2018-11-27] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42736 2018-11-27] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40688 2018-11-27] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [135200 2019-01-22] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [100984 2018-11-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72800 2018-11-27] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [784560 2018-11-27] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [397992 2018-11-27] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [156936 2018-11-27] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [310200 2018-11-27] (AVAST Software)
R3 BthAudioHF; C:\Windows\System32\DRIVERS\BthAudioHF.sys [43008 2009-12-21] (CSR, plc)
R3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [22528 2009-08-13] (CSR, plc)
R3 csr_a2dp; C:\Windows\System32\drivers\bthav.sys [61952 2009-12-21] (CSR, plc)
U1 aswbdisk; no ImagePath
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 IT9135BDA; System32\Drivers\IT9135BDA.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-27 15:11 - 2019-01-27 15:12 - 000016004 _____ C:\Users\DPL Pavel\Desktop\FRST.txt
2019-01-27 15:11 - 2019-01-27 15:11 - 000000000 ____D C:\FRST
2019-01-27 15:10 - 2019-01-27 15:10 - 001787904 _____ (Farbar) C:\Users\DPL Pavel\Desktop\FRST.exe
2019-01-26 19:27 - 2019-01-26 19:29 - 000000000 ____D C:\Users\DPL Pavel\Desktop\Nová složka
2019-01-22 19:56 - 2019-01-22 19:56 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2019-01-22 17:12 - 2018-12-28 23:52 - 000348760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 004055272 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2019-01-22 17:12 - 2018-12-28 20:51 - 003960552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-01-22 17:12 - 2018-12-28 20:51 - 001214696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-01-22 17:12 - 2018-12-28 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-01-22 17:12 - 2018-12-28 20:51 - 000136424 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-01-22 17:12 - 2018-12-28 20:50 - 001310520 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 001072640 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:31 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-01-22 17:12 - 2018-12-28 20:31 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-01-22 17:12 - 2018-12-28 20:31 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-01-22 17:12 - 2018-12-28 20:31 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-01-22 17:12 - 2018-12-28 20:30 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-01-22 17:12 - 2018-12-28 20:26 - 000055296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\viac7.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-01-22 17:12 - 2018-12-28 20:26 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 00:25 - 020279808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-01-22 17:12 - 2018-12-28 00:17 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-01-22 17:12 - 2018-12-28 00:05 - 000498176 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-01-22 17:12 - 2018-12-28 00:05 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-01-22 17:12 - 2018-12-28 00:04 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-01-22 17:12 - 2018-12-28 00:04 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-01-22 17:12 - 2018-12-28 00:03 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-01-22 17:12 - 2018-12-28 00:02 - 002295808 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-01-22 17:12 - 2018-12-27 23:59 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-01-22 17:12 - 2018-12-27 23:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-01-22 17:12 - 2018-12-27 23:56 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-01-22 17:12 - 2018-12-27 23:55 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-01-22 17:12 - 2018-12-27 23:49 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-01-22 17:12 - 2018-12-27 23:47 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-01-22 17:12 - 2018-12-27 23:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-01-22 17:12 - 2018-12-27 23:42 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-01-22 17:12 - 2018-12-27 23:42 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-01-22 17:12 - 2018-12-27 23:39 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-01-22 17:12 - 2018-12-27 23:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-01-22 17:12 - 2018-12-27 23:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-01-22 17:12 - 2018-12-27 23:36 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-01-22 17:12 - 2018-12-27 23:33 - 004494848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-01-22 17:12 - 2018-12-27 23:31 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 013680640 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-01-22 17:12 - 2018-12-27 23:29 - 000696320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-01-22 17:12 - 2018-12-27 23:28 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-01-22 17:12 - 2018-12-27 23:11 - 004386816 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-01-22 17:12 - 2018-12-27 23:07 - 001329664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-01-22 17:12 - 2018-12-27 23:06 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2019-01-22 17:12 - 2018-12-08 03:41 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-01-22 17:12 - 2018-12-08 03:41 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-01-22 17:12 - 2018-12-08 03:41 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2019-01-22 17:12 - 2018-12-08 03:41 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2019-01-22 17:12 - 2018-12-08 03:41 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2019-01-22 17:12 - 2018-12-08 03:41 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-01-22 17:12 - 2018-12-07 16:33 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll
2019-01-22 17:11 - 2018-12-28 19:09 - 000419608 _____ C:\Windows\system32\locale.nls
2019-01-22 17:11 - 2018-12-28 00:17 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-01-04 19:08 - 2019-01-04 19:16 - 777598464 _____ C:\Users\DPL Pavel\Downloads\Stav obležení - cz 1998.avi

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-27 09:50 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-01-27 09:50 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-01-27 09:35 - 2018-05-24 21:08 - 000000000 ____D C:\Users\DPL Pavel\AppData\Local\AVAST Software
2019-01-27 09:32 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2019-01-27 09:31 - 2018-08-23 15:05 - 000000000 ____D C:\Program Files\TeamViewer
2019-01-27 09:31 - 2009-07-14 05:53 - 000032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2019-01-27 09:31 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-01-26 15:37 - 2014-11-14 17:29 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2019-01-26 15:37 - 2014-11-14 17:29 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2019-01-26 15:37 - 2014-11-14 17:29 - 000000000 ____D C:\Windows\system32\Macromed
2019-01-26 14:47 - 2010-11-21 02:16 - 000668792 _____ C:\Windows\system32\perfh005.dat
2019-01-26 14:47 - 2010-11-21 02:16 - 000141420 _____ C:\Windows\system32\perfc005.dat
2019-01-26 14:47 - 2010-11-20 22:01 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-01-23 00:10 - 2016-09-14 09:38 - 000000000 ____D C:\Windows\system32\MRT
2019-01-22 23:59 - 2016-09-14 09:36 - 129687688 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-01-22 19:56 - 2017-10-24 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2019-01-22 16:59 - 2017-10-12 17:49 - 000135200 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-01-04 17:02 - 2017-03-26 11:04 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Files in the root of some directories =======

2014-12-26 10:11 - 2014-12-26 10:11 - 000002045 ____H () C:\ProgramData\whlb32g.dll
2016-08-01 00:02 - 2016-08-01 00:27 - 000003474 _____ () C:\Users\DPL Pavel\AppData\Roaming\ad.trace
2017-10-18 15:40 - 2017-10-18 15:41 - 049979264 _____ (Sony) C:\Users\DPL Pavel\AppData\Local\pcc.exe
2018-08-23 21:38 - 2018-08-23 21:38 - 000000017 _____ () C:\Users\DPL Pavel\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-01-26 20:58

==================== End of FRST.txt ============================


Additional scan result of Farbar Recovery Scan Tool (x86) Version: 26-01-2019
Ran by DPL Pavel (27-01-2019 15:13:08)
Running from C:\Users\DPL Pavel\Desktop
Microsoft Windows 7 Professional Service Pack 1 (X86) (2014-11-14 16:00:54)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3201422022-4087511077-2840785942-500 - Administrator - Disabled)
DPL Pavel (S-1-5-21-3201422022-4087511077-2840785942-1000 - Administrator - Enabled) => C:\Users\DPL Pavel
Guest (S-1-5-21-3201422022-4087511077-2840785942-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3201422022-4087511077-2840785942-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.010.20069 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Advertising Center (HKLM\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 18.8.2356 - AVAST Software)
Big Brother (HKLM\...\{F05AF120-D84C-453D-8600-18C76930E6B0}) (Version: 1.2.1 - EMG Future Technologies Inc) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
Google Chrome (HKLM\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Java 8 Update 144 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 151 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
Java 8 Update 161 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java 8 Update 181 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Kyocera Product Library (HKLM\...\Kyocera Product Library) (Version: 4.2.1909 - KYOCERA Document Solutions Inc.)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM\...\{434a183a-ceb2-4f58-bee3-a6a12cc05f37}) (Version: - Nero AG)
Photo-Brush 5.30 (HKLM\...\Photo-Brush_is1) (Version: Photo-Brush 5.30 - Mediachance Corp.)
TeamViewer 13 (HKLM\...\TeamViewer) (Version: 13.2.14327 - TeamViewer)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
WinRAR 5.50 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2009-09-23] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player PPAPI Notifier" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CreateChoiceProcessTask" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\{45E129EF-985E-4CC0-8424-FB61DD51F9C0}" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F}" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {26122DA3-98AD-470C-8DAC-55986A2D31F8} - System32\Tasks\{45E129EF-985E-4CC0-8424-FB61DD51F9C0} => "c:\program files\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/7.25.0.106/cs/abandoninstall?source=lightinstaller&page=tsInstall
Task: {3AB3C313-6DA5-4557-8A6D-0B370781310D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {419AA5BE-FC86-43AB-90CB-CD91914474B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {481345C5-D3AA-4F52-A15A-045D420C12CF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {4F73E644-940A-43B2-AA15-78F4DA88F380} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd)
Task: {61A14E73-57AD-4E9B-950B-D69FF6ED1E80} - System32\Tasks\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe" -c REMOVESERIALNUMBER="XM02-508X-MHAT-19WU-9Z3Z-0CH0-3U6E-85W5-MMHH-6647-1Z5L-7M8C-0U45-758P-0000"
Task: {70D063DF-AF2A-4E94-A77A-5AE2ED79E830} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated)
Task: {78B73C86-7BEA-4548-8F20-9ED6A9F33B4F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd)
Task: {79E7C58F-C0E2-4EBB-9DCA-5EBE13DB1951} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-11-27] (AVAST Software)
Task: {9C0F48D3-1A7E-4798-8112-C33B8994BCD7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_114_pepper.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {DFC0DB1E-BECF-4490-B419-02ABDE1B11EC} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2019-01-22] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":
WMI:subscription\__EventFilter->BVTFilter:
WMI:subscription\CommandLineEventConsumer->BVTConsumer:

ShortcutWithArgument: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2"

==================== Loaded Modules (Whitelisted) ==============

2018-11-27 01:26 - 2018-11-27 01:26 - 000919256 _____ () C:\Program Files\AVAST Software\Avast\anen.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 000596696 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 000496344 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-11-27 01:25 - 2018-11-27 01:25 - 000150744 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 001112280 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2019-01-27 13:37 - 2019-01-27 13:37 - 005764752 _____ () C:\Program Files\AVAST Software\Avast\defs\19012700\algo.dll
2018-03-12 20:39 - 2018-03-12 20:39 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-06-24 12:26 - 2018-06-24 12:26 - 000084808 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2018-12-26 09:50 - 2018-12-12 05:58 - 002260960 _____ () C:\Program Files\Google\Chrome\Application\71.0.3578.98\swiftshader\libglesv2.dll
2018-12-26 09:50 - 2018-12-12 05:58 - 000128480 _____ () C:\Program Files\Google\Chrome\Application\71.0.3578.98\swiftshader\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:D5AD7675 [120]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2019-01-26 14:36 - 000000826 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupreg: ArcSoft Connection Service => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation)
FirewallRules: [{C3634288-2319-479C-AA7F-938F6C7513F5}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation)
FirewallRules: [TCP Query User{3B5DAB85-352B-4DC8-AFD6-A24D870FFA82}C:\program files\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_73\bin\javaw.exe (Oracle Corporation)
FirewallRules: [UDP Query User{A4C21FEC-EB43-4546-8D6D-98CA8B64FB2C}C:\program files\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_73\bin\javaw.exe (Oracle Corporation)
FirewallRules: [{432F42B5-5EF5-4550-9224-4CA2DEF5946D}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.)
FirewallRules: [{2A9A14EA-B826-47F8-BBE8-153AC20870E1}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.)
FirewallRules: [{46D19E1E-70CA-47C8-A450-EE06017CFAB3}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{D22A30B7-B1B5-44D7-B117-7F04993F0682}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{E8A04486-9D3A-4F1C-8EAB-6F7B48320BEB}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{58D1D593-7D96-4E51-BE9A-F79BF5303D20}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{DC7BBA5D-F65F-48D4-862F-30FDB854622D}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{26A48422-ACBE-4278-9E3A-736AEA66643E}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{E8A4E8D2-66F3-4474-A54E-DE1943B83008}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{C5C342CA-BAD4-4DB9-8275-C7A747A2263D}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{47DB538F-B279-450C-B160-32B0DFD85828}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

==================== Restore Points =========================

27-01-2019 11:31:31 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.

Kontext: aplikace Windows

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.JetPropStore> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 9002) (User: )
Description: Služba Windows Search nenačetla informace o úložišti vlastností.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800) (0xc0041800)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: Vyhledávací služby zjistila, že index {id=4700} obsahuje poškozené datové soubory. Služba se pokusí tyto potíže automaticky odstranit vytvořením nového indexu.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)


System errors:
=============
Error: (01/27/2019 09:34:33 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Služba WMPNetworkSvc nebyla spuštěna správně, protože u funkce CoCreateInstance (CLSID_UPnPDeviceFinder) došlo k chybě 0x80004005. Zkontrolujte, zda je spuštěná služba UPnPHost a zda je správně nainstalována součást systému Windows UPnPHost.

Error: (01/27/2019 09:33:29 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/27/2019 09:33:29 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba Windows Search ukončena s chybou %%-1073473535, specifickou pro službu.

Error: (01/26/2019 11:22:24 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {995C996E-D918-4A8C-A302-45719A6F4EA7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (01/26/2019 10:45:17 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (01/26/2019 02:41:06 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo časového limitu (30000 ms).

Error: (01/26/2019 02:36:44 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Ochrana softwaru byla ukončena s následující chybou:
Médium je chráněno proti zápisu.

Error: (01/26/2019 02:34:01 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.


CodeIntegrity:
===================================

Date: 2018-12-12 17:15:17.989
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Genuine Intel(R) CPU T2400 @ 1.83GHz
Percentage of memory in use: 44%
Total physical RAM: 3318.12 MB
Available physical RAM: 1856.28 MB
Total Virtual: 6634.61 MB
Available Virtual: 5270.06 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.79 GB) (Free:0.52 GB) NTFS

\\?\Volume{1b984b23-6c15-11e4-9b7e-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 55.9 GB) (Disk ID: 799DF895)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=55.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#2 Příspěvek od Diallix »

Dobry den.

:arrow: Stiahnite si na plochu nastroj AdwCleaner, link. na stiahnutie tu: https://toolslib.net/downloads/finish/1/
Pred spustenim nastroja povypinajte vsetke beziace okna programov, to su vsetke beziace programy pod desktopom.
Kliknite pravym tlacidlom mysi na program -> spustit ako Administrator.
Pokracujte kliknutim na tlacidlo Prehladaj teraz (Scan now) a pockajte, kym sa system doskenuje.
Po skene nechajte oznacene vsetky chlieviky, pripadne najdene hrozieby a pokracujte v dolnom pravom rohu tlacidlom Vycistit Teraz (Clean and Repair).
Po restartovani PC sa spusti nastroj AdwCleaner, klikni na Zobrazit soubor protokolu.
Spusti sa log, jeho obsah skopirujte sem.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#3 Příspěvek od Lucifix »

Děkuji za rychlou odezvu. Scan dokončen a přidávám log.

# -------------------------------
# Malwarebytes AdwCleaner 7.2.6.0
# -------------------------------
# Build: 12-18-2018
# Database: 2019-01-25.2 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 01-27-2019
# Duration: 00:00:06
# OS: Windows 7 Professional
# Cleaned: 5
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files\Seznam.cz
Deleted C:\Users\DPL Pavel\AppData\Roaming\Seznam.cz

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Seznam.cz

***** [ Chromium (and derivatives) ] *****

Deleted Seznam pro Chrome - Email
Deleted Seznam pro Chrome - Esko

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1464 octets] - [27/01/2019 15:29:35]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#4 Příspěvek od Diallix »

Dobre. Poprosim o nove logy FRST a ADDITION
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#5 Příspěvek od Lucifix »

Tak tu jsou :)

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-01-2019
Ran by DPL Pavel (administrator) on DPLPAVEL-PC (27-01-2019 15:44:18)
Running from C:\Users\DPL Pavel\Desktop
Loaded Profiles: DPL Pavel (Available Profiles: DPL Pavel)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat Reader DC\Reader\reader_sl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avBugReport.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-11-27] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd)
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f138f-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f13b3-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {482c932f-98eb-11e6-b0ac-00164194621f} - F:\Lenovo_Suite.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {91d5d56b-f265-11e5-887a-00164194621f} - E:\Startme.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {e0589cbb-b401-11e7-963f-00164194621f} - E:\startme.exe
HKLM\...\Drivers32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32: [VIDC.VP80] => vp8vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-26] (Google Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Inc.)
Startup: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FacebookGamesNotifier.exe.lnk [2016-06-30]
ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\DPL Pavel\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (No File)
Startup: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2018-08-24]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0EA02A51-623D-41D0-B18C-00C586FD640D}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{ED561183-B99A-45E2-BDCE-1DEA4ED1CE0E}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-08-23] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-08-23] (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: WSAllMyTubechrome - {0A0C95CF-A116-4C74 - No File

FireFox:
========
FF DefaultProfile: u38kt6rt.default
FF ProfilePath: C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default [2019-01-27]
FF Extension: (Avast SafePrice) - C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default\Extensions\sp@avast.com.xpi [2017-10-12]
FF Extension: (Avast Online Security) - C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default\Extensions\wrc@avast.com.xpi [2017-10-12]
FF HKLM\...\Firefox\Extensions: [AllMyTube@Wondershare.com] - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com_xpi => not found
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-08-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-08-23] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-26] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-26] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Profile 2
CHR StartupUrls: Profile 2 -> "hxxp://www.google.com/"
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default [2019-01-26]
CHR Extension: (Adobe Acrobat) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-07-21]
CHR Extension: (Avast SafePrice) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-10-18]
CHR Extension: (Tabulky) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Seznam pro Chrome - Esko) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-11-11]
CHR Extension: (Gmail) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-24]
CHR Extension: (Chrome Media Router) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-11]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-01-26]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2 [2019-01-27]
CHR Extension: (Prezentace) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-12]
CHR Extension: (Dokumenty) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-12]
CHR Extension: (Disk Google) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-12]
CHR Extension: (YouTube) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-12]
CHR Extension: (Adobe Acrobat) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-11-12]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-12-20]
CHR Extension: (Tabulky) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-23]
CHR Extension: (Avast Online Security) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-10-04]
CHR Extension: (One Click GSN Games) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kjdbedlepiebjogmbmmfgilidoobdfmb [2018-11-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-12]
CHR Extension: (Chrome Media Router) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-26]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\System Profile [2019-01-26]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6799632 2018-11-27] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2018-11-27] (AVAST Software)
R2 HFGService; C:\Windows\System32\HFGService.dll [413696 2009-12-21] (CSR, plc)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11644656 2018-08-13] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [167480 2018-11-27] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [188976 2018-11-27] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [165384 2018-11-27] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [284256 2018-11-27] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [57904 2018-11-27] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [183176 2018-11-27] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42736 2018-11-27] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40688 2018-11-27] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [135200 2019-01-22] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [100984 2018-11-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72800 2018-11-27] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [784560 2018-11-27] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [397992 2018-11-27] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [156936 2018-11-27] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [310200 2018-11-27] (AVAST Software)
R3 BthAudioHF; C:\Windows\System32\DRIVERS\BthAudioHF.sys [43008 2009-12-21] (CSR, plc)
R3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [22528 2009-08-13] (CSR, plc)
R3 csr_a2dp; C:\Windows\System32\drivers\bthav.sys [61952 2009-12-21] (CSR, plc)
U1 aswbdisk; no ImagePath
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 IT9135BDA; System32\Drivers\IT9135BDA.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-27 15:27 - 2019-01-27 15:27 - 007320272 _____ (Malwarebytes) C:\Users\DPL Pavel\Desktop\adwcleaner_7.2.6.0.exe
2019-01-27 15:13 - 2019-01-27 15:13 - 000024094 _____ C:\Users\DPL Pavel\Desktop\Addition.txt
2019-01-27 15:11 - 2019-01-27 15:45 - 000016122 _____ C:\Users\DPL Pavel\Desktop\FRST.txt
2019-01-27 15:11 - 2019-01-27 15:44 - 000000000 ____D C:\FRST
2019-01-27 15:10 - 2019-01-27 15:10 - 001787904 _____ (Farbar) C:\Users\DPL Pavel\Desktop\FRST.exe
2019-01-26 19:27 - 2019-01-26 19:29 - 000000000 ____D C:\Users\DPL Pavel\Desktop\Nová složka
2019-01-22 19:56 - 2019-01-22 19:56 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2019-01-22 17:12 - 2018-12-28 23:52 - 000348760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 004055272 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2019-01-22 17:12 - 2018-12-28 20:51 - 003960552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-01-22 17:12 - 2018-12-28 20:51 - 001214696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-01-22 17:12 - 2018-12-28 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-01-22 17:12 - 2018-12-28 20:51 - 000136424 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-01-22 17:12 - 2018-12-28 20:50 - 001310520 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 001072640 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:31 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-01-22 17:12 - 2018-12-28 20:31 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-01-22 17:12 - 2018-12-28 20:31 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-01-22 17:12 - 2018-12-28 20:31 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-01-22 17:12 - 2018-12-28 20:30 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-01-22 17:12 - 2018-12-28 20:26 - 000055296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\viac7.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-01-22 17:12 - 2018-12-28 20:26 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 00:25 - 020279808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-01-22 17:12 - 2018-12-28 00:17 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-01-22 17:12 - 2018-12-28 00:05 - 000498176 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-01-22 17:12 - 2018-12-28 00:05 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-01-22 17:12 - 2018-12-28 00:04 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-01-22 17:12 - 2018-12-28 00:04 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-01-22 17:12 - 2018-12-28 00:03 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-01-22 17:12 - 2018-12-28 00:02 - 002295808 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-01-22 17:12 - 2018-12-27 23:59 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-01-22 17:12 - 2018-12-27 23:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-01-22 17:12 - 2018-12-27 23:56 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-01-22 17:12 - 2018-12-27 23:55 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-01-22 17:12 - 2018-12-27 23:49 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-01-22 17:12 - 2018-12-27 23:47 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-01-22 17:12 - 2018-12-27 23:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-01-22 17:12 - 2018-12-27 23:42 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-01-22 17:12 - 2018-12-27 23:42 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-01-22 17:12 - 2018-12-27 23:39 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-01-22 17:12 - 2018-12-27 23:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-01-22 17:12 - 2018-12-27 23:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-01-22 17:12 - 2018-12-27 23:36 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-01-22 17:12 - 2018-12-27 23:33 - 004494848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-01-22 17:12 - 2018-12-27 23:31 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 013680640 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-01-22 17:12 - 2018-12-27 23:29 - 000696320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-01-22 17:12 - 2018-12-27 23:28 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-01-22 17:12 - 2018-12-27 23:11 - 004386816 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-01-22 17:12 - 2018-12-27 23:07 - 001329664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-01-22 17:12 - 2018-12-27 23:06 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2019-01-22 17:12 - 2018-12-08 03:41 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-01-22 17:12 - 2018-12-08 03:41 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-01-22 17:12 - 2018-12-08 03:41 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2019-01-22 17:12 - 2018-12-08 03:41 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2019-01-22 17:12 - 2018-12-08 03:41 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2019-01-22 17:12 - 2018-12-08 03:41 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-01-22 17:12 - 2018-12-07 16:33 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll
2019-01-22 17:11 - 2018-12-28 19:09 - 000419608 _____ C:\Windows\system32\locale.nls
2019-01-22 17:11 - 2018-12-28 00:17 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-01-04 19:08 - 2019-01-04 19:16 - 777598464 _____ C:\Users\DPL Pavel\Downloads\Stav obležení - cz 1998.avi

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-27 15:42 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-01-27 15:42 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-01-27 15:32 - 2018-08-23 15:05 - 000000000 ____D C:\Program Files\TeamViewer
2019-01-27 15:31 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-01-27 15:29 - 2017-10-30 05:59 - 000000000 ____D C:\AdwCleaner
2019-01-27 09:35 - 2018-05-24 21:08 - 000000000 ____D C:\Users\DPL Pavel\AppData\Local\AVAST Software
2019-01-27 09:32 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2019-01-27 09:31 - 2009-07-14 05:53 - 000032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2019-01-26 15:37 - 2014-11-14 17:29 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2019-01-26 15:37 - 2014-11-14 17:29 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2019-01-26 15:37 - 2014-11-14 17:29 - 000000000 ____D C:\Windows\system32\Macromed
2019-01-26 14:47 - 2010-11-21 02:16 - 000668792 _____ C:\Windows\system32\perfh005.dat
2019-01-26 14:47 - 2010-11-21 02:16 - 000141420 _____ C:\Windows\system32\perfc005.dat
2019-01-26 14:47 - 2010-11-20 22:01 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-01-23 00:10 - 2016-09-14 09:38 - 000000000 ____D C:\Windows\system32\MRT
2019-01-22 23:59 - 2016-09-14 09:36 - 129687688 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-01-22 19:56 - 2017-10-24 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2019-01-22 16:59 - 2017-10-12 17:49 - 000135200 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-01-04 17:02 - 2017-03-26 11:04 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Files in the root of some directories =======

2014-12-26 10:11 - 2014-12-26 10:11 - 000002045 ____H () C:\ProgramData\whlb32g.dll
2016-08-01 00:02 - 2016-08-01 00:27 - 000003474 _____ () C:\Users\DPL Pavel\AppData\Roaming\ad.trace
2017-10-18 15:40 - 2017-10-18 15:41 - 049979264 _____ (Sony) C:\Users\DPL Pavel\AppData\Local\pcc.exe
2018-08-23 21:38 - 2018-08-23 21:38 - 000000017 _____ () C:\Users\DPL Pavel\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-01-26 20:58

==================== End of FRST.txt ============================


Additional scan result of Farbar Recovery Scan Tool (x86) Version: 26-01-2019
Ran by DPL Pavel (27-01-2019 15:46:27)
Running from C:\Users\DPL Pavel\Desktop
Microsoft Windows 7 Professional Service Pack 1 (X86) (2014-11-14 16:00:54)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3201422022-4087511077-2840785942-500 - Administrator - Disabled)
DPL Pavel (S-1-5-21-3201422022-4087511077-2840785942-1000 - Administrator - Enabled) => C:\Users\DPL Pavel
Guest (S-1-5-21-3201422022-4087511077-2840785942-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3201422022-4087511077-2840785942-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.010.20069 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Advertising Center (HKLM\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 18.8.2356 - AVAST Software)
Big Brother (HKLM\...\{F05AF120-D84C-453D-8600-18C76930E6B0}) (Version: 1.2.1 - EMG Future Technologies Inc) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
Google Chrome (HKLM\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Java 8 Update 144 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 151 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
Java 8 Update 161 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java 8 Update 181 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Kyocera Product Library (HKLM\...\Kyocera Product Library) (Version: 4.2.1909 - KYOCERA Document Solutions Inc.)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM\...\{434a183a-ceb2-4f58-bee3-a6a12cc05f37}) (Version: - Nero AG)
Photo-Brush 5.30 (HKLM\...\Photo-Brush_is1) (Version: Photo-Brush 5.30 - Mediachance Corp.)
TeamViewer 13 (HKLM\...\TeamViewer) (Version: 13.2.14327 - TeamViewer)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
WinRAR 5.50 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2009-09-23] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player PPAPI Notifier" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CreateChoiceProcessTask" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\{45E129EF-985E-4CC0-8424-FB61DD51F9C0}" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F}" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {26122DA3-98AD-470C-8DAC-55986A2D31F8} - System32\Tasks\{45E129EF-985E-4CC0-8424-FB61DD51F9C0} => "c:\program files\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/7.25.0.106/cs/abandoninstall?source=lightinstaller&page=tsInstall
Task: {3AB3C313-6DA5-4557-8A6D-0B370781310D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {419AA5BE-FC86-43AB-90CB-CD91914474B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {481345C5-D3AA-4F52-A15A-045D420C12CF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {4F73E644-940A-43B2-AA15-78F4DA88F380} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd)
Task: {61A14E73-57AD-4E9B-950B-D69FF6ED1E80} - System32\Tasks\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe" -c REMOVESERIALNUMBER="XM02-508X-MHAT-19WU-9Z3Z-0CH0-3U6E-85W5-MMHH-6647-1Z5L-7M8C-0U45-758P-0000"
Task: {70D063DF-AF2A-4E94-A77A-5AE2ED79E830} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated)
Task: {78B73C86-7BEA-4548-8F20-9ED6A9F33B4F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd)
Task: {79E7C58F-C0E2-4EBB-9DCA-5EBE13DB1951} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-11-27] (AVAST Software)
Task: {9C0F48D3-1A7E-4798-8112-C33B8994BCD7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_114_pepper.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {DFC0DB1E-BECF-4490-B419-02ABDE1B11EC} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2019-01-22] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":
WMI:subscription\__EventFilter->BVTFilter:
WMI:subscription\CommandLineEventConsumer->BVTConsumer:

ShortcutWithArgument: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2"

==================== Loaded Modules (Whitelisted) ==============

2018-11-27 01:26 - 2018-11-27 01:26 - 000919256 _____ () C:\Program Files\AVAST Software\Avast\anen.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 000596696 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2019-01-27 13:37 - 2019-01-27 13:37 - 005764752 _____ () C:\Program Files\AVAST Software\Avast\defs\19012700\algo.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 001112280 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 000496344 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-11-27 01:25 - 2018-11-27 01:25 - 000150744 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2019-01-27 15:38 - 2019-01-27 15:38 - 005764752 _____ () C:\Program Files\AVAST Software\Avast\defs\19012702\algo.dll
2018-03-12 20:39 - 2018-03-12 20:39 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-06-24 12:26 - 2018-06-24 12:26 - 000084808 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2018-12-26 09:50 - 2018-12-12 05:58 - 002260960 _____ () C:\Program Files\Google\Chrome\Application\71.0.3578.98\swiftshader\libglesv2.dll
2018-12-26 09:50 - 2018-12-12 05:58 - 000128480 _____ () C:\Program Files\Google\Chrome\Application\71.0.3578.98\swiftshader\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:D5AD7675 [120]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2019-01-26 14:36 - 000000826 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupreg: ArcSoft Connection Service => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation)
FirewallRules: [{C3634288-2319-479C-AA7F-938F6C7513F5}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation)
FirewallRules: [TCP Query User{3B5DAB85-352B-4DC8-AFD6-A24D870FFA82}C:\program files\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_73\bin\javaw.exe (Oracle Corporation)
FirewallRules: [UDP Query User{A4C21FEC-EB43-4546-8D6D-98CA8B64FB2C}C:\program files\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_73\bin\javaw.exe (Oracle Corporation)
FirewallRules: [{432F42B5-5EF5-4550-9224-4CA2DEF5946D}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.)
FirewallRules: [{2A9A14EA-B826-47F8-BBE8-153AC20870E1}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.)
FirewallRules: [{46D19E1E-70CA-47C8-A450-EE06017CFAB3}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{D22A30B7-B1B5-44D7-B117-7F04993F0682}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{E8A04486-9D3A-4F1C-8EAB-6F7B48320BEB}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{58D1D593-7D96-4E51-BE9A-F79BF5303D20}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{DC7BBA5D-F65F-48D4-862F-30FDB854622D}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{26A48422-ACBE-4278-9E3A-736AEA66643E}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{E8A4E8D2-66F3-4474-A54E-DE1943B83008}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{C5C342CA-BAD4-4DB9-8275-C7A747A2263D}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{47DB538F-B279-450C-B160-32B0DFD85828}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/27/2019 03:33:18 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.

Kontext: aplikace Windows

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.JetPropStore> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 9002) (User: )
Description: Služba Windows Search nenačetla informace o úložišti vlastností.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800) (0xc0041800)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)


System errors:
=============
Error: (01/27/2019 03:30:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Windows Media Player Network Sharing neuspěla při spuštění v důsledku následující chyby:
Služba nebyla zahájena, protože se nepodařilo přihlásit.

Error: (01/27/2019 03:30:41 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba WMPNetworkSvc se nemohla přihlásit jako NT AUTHORITY\NetworkService s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.


Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).

Error: (01/27/2019 03:30:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/27/2019 03:30:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/27/2019 03:27:47 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (01/27/2019 09:34:33 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Služba WMPNetworkSvc nebyla spuštěna správně, protože u funkce CoCreateInstance (CLSID_UPnPDeviceFinder) došlo k chybě 0x80004005. Zkontrolujte, zda je spuštěná služba UPnPHost a zda je správně nainstalována součást systému Windows UPnPHost.

Error: (01/27/2019 09:33:29 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/27/2019 09:33:29 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba Windows Search ukončena s chybou %%-1073473535, specifickou pro službu.


CodeIntegrity:
===================================

Date: 2018-12-12 17:15:17.989
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Genuine Intel(R) CPU T2400 @ 1.83GHz
Percentage of memory in use: 44%
Total physical RAM: 3318.12 MB
Available physical RAM: 1844.37 MB
Total Virtual: 6513.02 MB
Available Virtual: 5177.04 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.79 GB) (Free:0.84 GB) NTFS

\\?\Volume{1b984b23-6c15-11e4-9b7e-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 55.9 GB) (Disk ID: 799DF895)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=55.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#6 Příspěvek od Diallix »

Do poznamkoveho bloku skopirujte obsah dole:

Kód: Vybrat vše

CloseProcesses:
CreateRestorePoint:

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd)
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f138f-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f13b3-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {482c932f-98eb-11e6-b0ac-00164194621f} - F:\Lenovo_Suite.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {91d5d56b-f265-11e5-887a-00164194621f} - E:\Startme.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {e0589cbb-b401-11e7-963f-00164194621f} - E:\startme.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-26] (Google Inc.)
ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\DPL Pavel\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (No File)
Handler: WSAllMyTubechrome - {0A0C95CF-A116-4C74 - No File
FF HKLM\...\Firefox\Extensions: [AllMyTube@Wondershare.com] - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com_xpi => not found
U1 aswbdisk; no ImagePath
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 IT9135BDA; System32\Drivers\IT9135BDA.sys [X]
2014-12-26 10:11 - 2014-12-26 10:11 - 000002045 ____H () C:\ProgramData\whlb32g.dll
2016-08-01 00:02 - 2016-08-01 00:27 - 000003474 _____ () C:\Users\DPL Pavel\AppData\Roaming\ad.trace
ask: {3AB3C313-6DA5-4557-8A6D-0B370781310D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {419AA5BE-FC86-43AB-90CB-CD91914474B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {481345C5-D3AA-4F52-A15A-045D420C12CF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {61A14E73-57AD-4E9B-950B-D69FF6ED1E80} - System32\Tasks\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe" -c REMOVESERIALNUMBER="XM02-508X-MHAT-19WU-9Z3Z-0CH0-3U6E-85W5-MMHH-6647-1Z5L-7M8C-0U45-758P-0000"
Task: {70D063DF-AF2A-4E94-A77A-5AE2ED79E830} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated)
AlternateDataStreams: C:\ProgramData\TEMP:D5AD7675 [120]

Poznamkovy blok ulozte pod nazvom fixlist.txt do umiestnenia kde je FRST.
Spustite FRST a odkliknite tlacidlo: Fix
Vykona sa funkcionalita po ktorej sa pocitac rebootuje. Po reboote sem vlozte obsah logu: fixlog.txt ulozeneho v umiestneni FRST.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#7 Příspěvek od Lucifix »

Děkuju za pomoc :-) a posílam opět log...

Fix result of Farbar Recovery Scan Tool (x86) Version: 27-01-2019
Ran by DPL Pavel (27-01-2019 16:28:08) Run:1
Running from C:\Users\DPL Pavel\Desktop\Nová složka (2)
Loaded Profiles: DPL Pavel (Available Profiles: DPL Pavel)
Boot Mode: Normal

==============================================

fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13594584 2018-06-24] (Piriform Ltd)
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f138f-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {246f13b3-716b-11e4-b67f-00164194621f} - E:\Autorun.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {482c932f-98eb-11e6-b0ac-00164194621f} - F:\Lenovo_Suite.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {91d5d56b-f265-11e5-887a-00164194621f} - E:\Startme.exe
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\...\MountPoints2: {e0589cbb-b401-11e7-963f-00164194621f} - E:\startme.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-26] (Google Inc.)
ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\DPL Pavel\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (No File)
Handler: WSAllMyTubechrome - {0A0C95CF-A116-4C74 - No File
FF HKLM\...\Firefox\Extensions: [AllMyTube@Wondershare.com] - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com_xpi => not found
U1 aswbdisk; no ImagePath
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 IT9135BDA; System32\Drivers\IT9135BDA.sys [X]
2014-12-26 10:11 - 2014-12-26 10:11 - 000002045 ____H () C:\ProgramData\whlb32g.dll
2016-08-01 00:02 - 2016-08-01 00:27 - 000003474 _____ () C:\Users\DPL Pavel\AppData\Roaming\ad.trace
ask: {3AB3C313-6DA5-4557-8A6D-0B370781310D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {419AA5BE-FC86-43AB-90CB-CD91914474B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {481345C5-D3AA-4F52-A15A-045D420C12CF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-12-24] (Google Inc.)
Task: {61A14E73-57AD-4E9B-950B-D69FF6ED1E80} - System32\Tasks\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe" -c REMOVESERIALNUMBER="XM02-508X-MHAT-19WU-9Z3Z-0CH0-3U6E-85W5-MMHH-6647-1Z5L-7M8C-0U45-758P-0000"
Task: {70D063DF-AF2A-4E94-A77A-5AE2ED79E830} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated)
AlternateDataStreams: C:\ProgramData\TEMP:D5AD7675 [120]


*****************

Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor" => removed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully.
"HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring" => removed successfully.
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{246f138f-716b-11e4-b67f-00164194621f} => removed successfully.
HKLM\Software\Classes\CLSID\{246f138f-716b-11e4-b67f-00164194621f} => not found
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{246f13b3-716b-11e4-b67f-00164194621f} => removed successfully.
HKLM\Software\Classes\CLSID\{246f13b3-716b-11e4-b67f-00164194621f} => not found
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{482c932f-98eb-11e6-b0ac-00164194621f} => removed successfully.
HKLM\Software\Classes\CLSID\{482c932f-98eb-11e6-b0ac-00164194621f} => not found
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{91d5d56b-f265-11e5-887a-00164194621f} => removed successfully.
HKLM\Software\Classes\CLSID\{91d5d56b-f265-11e5-887a-00164194621f} => not found
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0589cbb-b401-11e7-963f-00164194621f} => removed successfully.
HKLM\Software\Classes\CLSID\{e0589cbb-b401-11e7-963f-00164194621f} => not found
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => removed successfully.
"C:\Users\DPL Pavel\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe" => not found
HKLM\Software\Classes\PROTOCOLS\Handler\WSAllMyTubechrome => removed successfully.
"HKLM\Software\Mozilla\Firefox\Extensions\\AllMyTube@Wondershare.com" => removed successfully.
HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\ew_hwusbdev => removed successfully.
ew_hwusbdev => service removed successfully.
HKLM\System\CurrentControlSet\Services\ew_usbenumfilter => removed successfully.
ew_usbenumfilter => service removed successfully.
HKLM\System\CurrentControlSet\Services\Huawei => removed successfully.
Huawei => service removed successfully.
HKLM\System\CurrentControlSet\Services\huawei_cdcacm => removed successfully.
huawei_cdcacm => service removed successfully.
HKLM\System\CurrentControlSet\Services\huawei_enumerator => removed successfully.
huawei_enumerator => service removed successfully.
HKLM\System\CurrentControlSet\Services\huawei_ext_ctrl => removed successfully.
huawei_ext_ctrl => service removed successfully.
HKLM\System\CurrentControlSet\Services\huawei_wwanecm => removed successfully.
huawei_wwanecm => service removed successfully.
HKLM\System\CurrentControlSet\Services\hwdatacard => removed successfully.
hwdatacard => service removed successfully.
HKLM\System\CurrentControlSet\Services\IT9135BDA => removed successfully.
IT9135BDA => service removed successfully.
C:\ProgramData\whlb32g.dll => moved successfully
C:\Users\DPL Pavel\AppData\Roaming\ad.trace => moved successfully
ask: {3AB3C313-6DA5-4557-8A6D-0B370781310D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-26] (Adobe Systems Incorporated) => Error: No automatic fix found for this entry.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{419AA5BE-FC86-43AB-90CB-CD91914474B7}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{419AA5BE-FC86-43AB-90CB-CD91914474B7}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{481345C5-D3AA-4F52-A15A-045D420C12CF}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{481345C5-D3AA-4F52-A15A-045D420C12CF}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{61A14E73-57AD-4E9B-950B-D69FF6ED1E80}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{61A14E73-57AD-4E9B-950B-D69FF6ED1E80}" => removed successfully.
C:\Windows\System32\Tasks\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{70D063DF-AF2A-4E94-A77A-5AE2ED79E830}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70D063DF-AF2A-4E94-A77A-5AE2ED79E830}" => removed successfully.
C:\Windows\System32\Tasks\Adobe Acrobat Update Task => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => removed successfully.
C:\ProgramData\TEMP => ":D5AD7675" ADS removed successfully.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 27-01-2019 16:32:50)


Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected

==== End of Fixlog 16:32:51 ====

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#8 Příspěvek od Diallix »

Poprosim o nove logy FRST + ADITION
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#9 Příspěvek od Lucifix »

Posílám :-)

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-01-2019
Ran by DPL Pavel (administrator) on DPLPAVEL-PC (27-01-2019 16:45:20)
Running from C:\Users\DPL Pavel\Desktop\Nová složka (2)
Loaded Profiles: DPL Pavel (Available Profiles: DPL Pavel)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-11-27] (AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\...\Drivers32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32: [VIDC.VP80] => vp8vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Inc.)
Startup: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FacebookGamesNotifier.exe.lnk [2016-06-30]
ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\DPL Pavel\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (No File)
Startup: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2018-08-24]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0EA02A51-623D-41D0-B18C-00C586FD640D}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{ED561183-B99A-45E2-BDCE-1DEA4ED1CE0E}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-08-23] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-08-23] (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: u38kt6rt.default
FF ProfilePath: C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default [2019-01-27]
FF Extension: (Avast SafePrice) - C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default\Extensions\sp@avast.com.xpi [2017-10-12]
FF Extension: (Avast Online Security) - C:\Users\DPL Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\u38kt6rt.default\Extensions\wrc@avast.com.xpi [2017-10-12]
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-08-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-08-23] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-26] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-26] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Profile 2
CHR StartupUrls: Profile 2 -> "hxxp://www.google.com/"
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default [2019-01-26]
CHR Extension: (Adobe Acrobat) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-07-21]
CHR Extension: (Avast SafePrice) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-10-18]
CHR Extension: (Tabulky) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Seznam pro Chrome - Esko) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-11-11]
CHR Extension: (Gmail) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-24]
CHR Extension: (Chrome Media Router) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-11]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-01-26]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2 [2019-01-27]
CHR Extension: (Prezentace) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-12]
CHR Extension: (Dokumenty) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-12]
CHR Extension: (Disk Google) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-12]
CHR Extension: (YouTube) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-12]
CHR Extension: (Adobe Acrobat) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-11-12]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-12-20]
CHR Extension: (Tabulky) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-23]
CHR Extension: (Avast Online Security) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-10-04]
CHR Extension: (One Click GSN Games) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\kjdbedlepiebjogmbmmfgilidoobdfmb [2018-11-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-12]
CHR Extension: (Chrome Media Router) - C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-26]
CHR Profile: C:\Users\DPL Pavel\AppData\Local\Google\Chrome\User Data\System Profile [2019-01-26]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6799632 2018-11-27] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2018-11-27] (AVAST Software)
R2 HFGService; C:\Windows\System32\HFGService.dll [413696 2009-12-21] (CSR, plc)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11644656 2018-08-13] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [167480 2018-11-27] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [188976 2018-11-27] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [165384 2018-11-27] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [284256 2018-11-27] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [57904 2018-11-27] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [183176 2018-11-27] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42736 2018-11-27] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40688 2018-11-27] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [135200 2019-01-22] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [100984 2018-11-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72800 2018-11-27] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [784560 2018-11-27] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [397992 2018-11-27] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [156936 2018-11-27] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [310200 2018-11-27] (AVAST Software)
R3 BthAudioHF; C:\Windows\System32\DRIVERS\BthAudioHF.sys [43008 2009-12-21] (CSR, plc)
R3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [22528 2009-08-13] (CSR, plc)
R3 csr_a2dp; C:\Windows\System32\drivers\bthav.sys [61952 2009-12-21] (CSR, plc)
U1 aswbdisk; no ImagePath
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-27 16:26 - 2019-01-27 16:45 - 000000000 ____D C:\Users\DPL Pavel\Desktop\Nová složka (2)
2019-01-27 15:27 - 2019-01-27 15:27 - 007320272 _____ (Malwarebytes) C:\Users\DPL Pavel\Desktop\adwcleaner_7.2.6.0.exe
2019-01-27 15:13 - 2019-01-27 15:46 - 000024551 _____ C:\Users\DPL Pavel\Desktop\Addition.txt
2019-01-27 15:11 - 2019-01-27 16:45 - 000000000 ____D C:\FRST
2019-01-27 15:11 - 2019-01-27 15:46 - 000035792 _____ C:\Users\DPL Pavel\Desktop\FRST.txt
2019-01-26 19:27 - 2019-01-26 19:29 - 000000000 ____D C:\Users\DPL Pavel\Desktop\Nová složka
2019-01-22 19:56 - 2019-01-22 19:56 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2019-01-22 17:12 - 2018-12-28 23:52 - 000348760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 004055272 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2019-01-22 17:12 - 2018-12-28 20:51 - 003960552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-01-22 17:12 - 2018-12-28 20:51 - 001214696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-01-22 17:12 - 2018-12-28 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000189672 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-01-22 17:12 - 2018-12-28 20:51 - 000136424 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2019-01-22 17:12 - 2018-12-28 20:51 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-01-22 17:12 - 2018-12-28 20:50 - 001310520 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 001072640 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:48 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:31 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-01-22 17:12 - 2018-12-28 20:31 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-01-22 17:12 - 2018-12-28 20:31 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-01-22 17:12 - 2018-12-28 20:31 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-01-22 17:12 - 2018-12-28 20:30 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-01-22 17:12 - 2018-12-28 20:29 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-01-22 17:12 - 2018-12-28 20:27 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-01-22 17:12 - 2018-12-28 20:26 - 000055296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\viac7.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-01-22 17:12 - 2018-12-28 20:26 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-01-22 17:12 - 2018-12-28 20:26 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 20:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-01-22 17:12 - 2018-12-28 00:25 - 020279808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-01-22 17:12 - 2018-12-28 00:17 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-01-22 17:12 - 2018-12-28 00:05 - 000498176 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-01-22 17:12 - 2018-12-28 00:05 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-01-22 17:12 - 2018-12-28 00:04 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-01-22 17:12 - 2018-12-28 00:04 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-01-22 17:12 - 2018-12-28 00:03 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-01-22 17:12 - 2018-12-28 00:02 - 002295808 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-01-22 17:12 - 2018-12-27 23:59 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-01-22 17:12 - 2018-12-27 23:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-01-22 17:12 - 2018-12-27 23:56 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-01-22 17:12 - 2018-12-27 23:55 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-01-22 17:12 - 2018-12-27 23:55 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-01-22 17:12 - 2018-12-27 23:49 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-01-22 17:12 - 2018-12-27 23:47 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-01-22 17:12 - 2018-12-27 23:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-01-22 17:12 - 2018-12-27 23:42 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-01-22 17:12 - 2018-12-27 23:42 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-01-22 17:12 - 2018-12-27 23:39 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-01-22 17:12 - 2018-12-27 23:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-01-22 17:12 - 2018-12-27 23:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-01-22 17:12 - 2018-12-27 23:36 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-01-22 17:12 - 2018-12-27 23:33 - 004494848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-01-22 17:12 - 2018-12-27 23:31 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 013680640 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-01-22 17:12 - 2018-12-27 23:29 - 000696320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-01-22 17:12 - 2018-12-27 23:29 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-01-22 17:12 - 2018-12-27 23:28 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-01-22 17:12 - 2018-12-27 23:11 - 004386816 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-01-22 17:12 - 2018-12-27 23:07 - 001329664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-01-22 17:12 - 2018-12-27 23:06 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2019-01-22 17:12 - 2018-12-08 03:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2019-01-22 17:12 - 2018-12-08 03:41 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-01-22 17:12 - 2018-12-08 03:41 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-01-22 17:12 - 2018-12-08 03:41 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2019-01-22 17:12 - 2018-12-08 03:41 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2019-01-22 17:12 - 2018-12-08 03:41 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2019-01-22 17:12 - 2018-12-08 03:41 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-01-22 17:12 - 2018-12-07 16:33 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll
2019-01-22 17:11 - 2018-12-28 19:09 - 000419608 _____ C:\Windows\system32\locale.nls
2019-01-22 17:11 - 2018-12-28 00:17 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-01-04 19:08 - 2019-01-04 19:16 - 777598464 _____ C:\Users\DPL Pavel\Downloads\Stav obležení - cz 1998.avi

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-01-27 16:39 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-01-27 16:39 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-01-27 16:34 - 2018-05-24 21:08 - 000000000 ____D C:\Users\DPL Pavel\AppData\Local\AVAST Software
2019-01-27 16:31 - 2018-08-23 15:05 - 000000000 ____D C:\Program Files\TeamViewer
2019-01-27 16:30 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-01-27 15:29 - 2017-10-30 05:59 - 000000000 ____D C:\AdwCleaner
2019-01-27 09:32 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2019-01-27 09:31 - 2009-07-14 05:53 - 000032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2019-01-26 15:37 - 2014-11-14 17:29 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2019-01-26 15:37 - 2014-11-14 17:29 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2019-01-26 15:37 - 2014-11-14 17:29 - 000000000 ____D C:\Windows\system32\Macromed
2019-01-26 14:47 - 2010-11-21 02:16 - 000668792 _____ C:\Windows\system32\perfh005.dat
2019-01-26 14:47 - 2010-11-21 02:16 - 000141420 _____ C:\Windows\system32\perfc005.dat
2019-01-26 14:47 - 2010-11-20 22:01 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-01-23 00:10 - 2016-09-14 09:38 - 000000000 ____D C:\Windows\system32\MRT
2019-01-22 23:59 - 2016-09-14 09:36 - 129687688 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-01-22 19:56 - 2017-10-24 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2019-01-22 16:59 - 2017-10-12 17:49 - 000135200 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-01-04 17:02 - 2017-03-26 11:04 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Files in the root of some directories =======

2017-10-18 15:40 - 2017-10-18 15:41 - 049979264 _____ (Sony) C:\Users\DPL Pavel\AppData\Local\pcc.exe
2018-08-23 21:38 - 2018-08-23 21:38 - 000000017 _____ () C:\Users\DPL Pavel\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-01-26 20:58

==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27-01-2019
Ran by DPL Pavel (27-01-2019 16:47:09)
Running from C:\Users\DPL Pavel\Desktop\Nová složka (2)
Microsoft Windows 7 Professional Service Pack 1 (X86) (2014-11-14 16:00:54)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3201422022-4087511077-2840785942-500 - Administrator - Disabled)
DPL Pavel (S-1-5-21-3201422022-4087511077-2840785942-1000 - Administrator - Enabled) => C:\Users\DPL Pavel
Guest (S-1-5-21-3201422022-4087511077-2840785942-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3201422022-4087511077-2840785942-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.010.20069 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Advertising Center (HKLM\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 18.8.2356 - AVAST Software)
Big Brother (HKLM\...\{F05AF120-D84C-453D-8600-18C76930E6B0}) (Version: 1.2.1 - EMG Future Technologies Inc) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
Google Chrome (HKLM\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Java 8 Update 144 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 151 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
Java 8 Update 161 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java 8 Update 181 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Kyocera Product Library (HKLM\...\Kyocera Product Library) (Version: 4.2.1909 - KYOCERA Document Solutions Inc.)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM\...\{434a183a-ceb2-4f58-bee3-a6a12cc05f37}) (Version: - Nero AG)
Photo-Brush 5.30 (HKLM\...\Photo-Brush_is1) (Version: Photo-Brush 5.30 - Mediachance Corp.)
TeamViewer 13 (HKLM\...\TeamViewer) (Version: 13.2.14327 - TeamViewer)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
WinRAR 5.50 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2009-09-23] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-11-27] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player PPAPI Notifier" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CreateChoiceProcessTask" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\{45E129EF-985E-4CC0-8424-FB61DD51F9C0}" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\{F5B43A29-6813-4D9B-B17C-1E4688ACA73F}" /ENABLE
Task: {0523C0F0-A326-4216-9D01-4CC8B1F5332C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {26122DA3-98AD-470C-8DAC-55986A2D31F8} - System32\Tasks\{45E129EF-985E-4CC0-8424-FB61DD51F9C0} => "c:\program files\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/7.25.0.106/cs/abandoninstall?source=lightinstaller&page=tsInstall
Task: {3AB3C313-6DA5-4557-8A6D-0B370781310D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {4F73E644-940A-43B2-AA15-78F4DA88F380} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd)
Task: {78B73C86-7BEA-4548-8F20-9ED6A9F33B4F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd)
Task: {79E7C58F-C0E2-4EBB-9DCA-5EBE13DB1951} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-11-27] (AVAST Software)
Task: {9C0F48D3-1A7E-4798-8112-C33B8994BCD7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_114_pepper.exe [2019-01-26] (Adobe Systems Incorporated)
Task: {DFC0DB1E-BECF-4490-B419-02ABDE1B11EC} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2019-01-22] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":
WMI:subscription\__EventFilter->BVTFilter:
WMI:subscription\CommandLineEventConsumer->BVTConsumer:

ShortcutWithArgument: C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2"

==================== Loaded Modules (Whitelisted) ==============

2018-11-27 01:26 - 2018-11-27 01:26 - 000919256 _____ () C:\Program Files\AVAST Software\Avast\anen.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 000596696 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2019-01-27 15:38 - 2019-01-27 15:38 - 005764752 _____ () C:\Program Files\AVAST Software\Avast\defs\19012702\algo.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 000496344 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-11-27 01:25 - 2018-11-27 01:25 - 000150744 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-11-27 01:26 - 2018-11-27 01:26 - 001112280 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2018-03-12 20:39 - 2018-03-12 20:39 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-12-26 09:50 - 2018-12-12 05:58 - 002260960 _____ () C:\Program Files\Google\Chrome\Application\71.0.3578.98\swiftshader\libglesv2.dll
2018-12-26 09:50 - 2018-12-12 05:58 - 000128480 _____ () C:\Program Files\Google\Chrome\Application\71.0.3578.98\swiftshader\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2019-01-26 14:36 - 000000826 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
HKU\S-1-5-21-3201422022-4087511077-2840785942-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\DPL Pavel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupreg: ArcSoft Connection Service => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation)
FirewallRules: [{C3634288-2319-479C-AA7F-938F6C7513F5}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation)
FirewallRules: [TCP Query User{3B5DAB85-352B-4DC8-AFD6-A24D870FFA82}C:\program files\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_73\bin\javaw.exe (Oracle Corporation)
FirewallRules: [UDP Query User{A4C21FEC-EB43-4546-8D6D-98CA8B64FB2C}C:\program files\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_73\bin\javaw.exe (Oracle Corporation)
FirewallRules: [{432F42B5-5EF5-4550-9224-4CA2DEF5946D}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.)
FirewallRules: [{2A9A14EA-B826-47F8-BBE8-153AC20870E1}] => (Allow) C:\Windows\System32\muzapp.exe (Musiccity Co.Ltd.)
FirewallRules: [{46D19E1E-70CA-47C8-A450-EE06017CFAB3}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{D22A30B7-B1B5-44D7-B117-7F04993F0682}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{E8A04486-9D3A-4F1C-8EAB-6F7B48320BEB}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{58D1D593-7D96-4E51-BE9A-F79BF5303D20}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{DC7BBA5D-F65F-48D4-862F-30FDB854622D}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{26A48422-ACBE-4278-9E3A-736AEA66643E}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{E8A4E8D2-66F3-4474-A54E-DE1943B83008}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{C5C342CA-BAD4-4DB9-8275-C7A747A2263D}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{47DB538F-B279-450C-B160-32B0DFD85828}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

==================== Restore Points =========================

27-01-2019 16:28:10 Restore Point Created by FRST

==================== Faulty Device Manager Devices =============

Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/27/2019 04:31:54 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (01/27/2019 04:28:09 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005, Přístup byl odepřen.
.
To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {1412a08c-134c-4eb5-b595-b23d79f1069e}

Error: (01/27/2019 03:33:18 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.

Kontext: aplikace Windows

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/27/2019 09:33:29 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)

Error: (01/27/2019 09:33:20 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.JetPropStore> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)


System errors:
=============
Error: (01/27/2019 04:28:39 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě:
Instance této služby je již spuštěna.

Error: (01/27/2019 04:28:39 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Služba Windows Media Player Network Sharing, ale tato akce selhala kvůli následující chybě:
Instance této služby je již spuštěna.

Error: (01/27/2019 04:28:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/27/2019 04:28:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/27/2019 04:28:08 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba TeamViewer 13 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 2000 milisekund: Restartovat službu.

Error: (01/27/2019 04:28:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/27/2019 03:30:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Windows Media Player Network Sharing neuspěla při spuštění v důsledku následující chyby:
Služba nebyla zahájena, protože se nepodařilo přihlásit.

Error: (01/27/2019 03:30:41 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba WMPNetworkSvc se nemohla přihlásit jako NT AUTHORITY\NetworkService s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.


Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).


CodeIntegrity:
===================================

Date: 2018-12-12 17:15:17.989
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Genuine Intel(R) CPU T2400 @ 1.83GHz
Percentage of memory in use: 40%
Total physical RAM: 3318.12 MB
Available physical RAM: 1967.02 MB
Total Virtual: 6072.62 MB
Available Virtual: 4807.09 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.79 GB) (Free:1.11 GB) NTFS

\\?\Volume{1b984b23-6c15-11e4-9b7e-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 55.9 GB) (Disk ID: 799DF895)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=55.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#10 Příspěvek od Diallix »

Super.

:arrow: Chodte do nudzoveho rezimu a urobte nasledovny script:
Do poznamkoveho bloku skopirujte obsah dole:

Kód: Vybrat vše

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
Poznamkovy blok ulozte pod nazvom fixlist.txt do umiestnenia kde je FRST.
Spustite FRST a odkliknite tlacidlo: Fix
Vykona sa funkcionalita po ktorej sa pocitac rebootuje. Po reboote sem vlozte obsah logu: fixlog.txt ulozeneho v umiestneni FRST.


:arrow: Preinstalujte AVAST
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#11 Příspěvek od Lucifix »

Snad uděláno správně ...

Running from C:\Users\DPL Pavel\Desktop\Nová složka (2)
Loaded Profiles: DPL Pavel (Available Profiles: DPL Pavel)
Boot Mode: Safe Mode (with Networking)

==============================================

fixlist content:
*****************
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
*****************

Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully.


The system needed a reboot.

==== End of Fixlog 17:20:32 ====

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#12 Příspěvek od Diallix »

Super?

Ako je na tom pocitac?
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#13 Příspěvek od Lucifix »

Vypadá, že lépe, jen mě to stále vyhazuje z wifi. Myslíte si, že musím přeinstalovat celý pc? Jinak moc děkuju za váš čas i za pomoc, vždy jste mi tu pomohli, jste skvělí :-)

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o pomoc, zpomalený a sekající se pc

#14 Příspěvek od Diallix »

Dakujeme za uznanie.

Co sa tyka wifi, moze byt problem u routra. Vypnite ho, pockajte 10 sekund, znovu zapnite.
Chodte do nastavenia wifi na vasom pocitaci a vasu wifi odoberte - odstrante pripojenie. Nasledne znovu pripojte a zadajte vase heslo.

Problem moze byt aj v dosahu od end pointu a vasho pocitaca.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Lucifix
Návštěvník
Návštěvník
Příspěvky: 74
Registrován: 23 říj 2008 19:53

Re: Prosím o pomoc, zpomalený a sekající se pc

#15 Příspěvek od Lucifix »

Oki, moc děkuju za radu, určitě hned vyzkouším, wifi mám zhruba 2 metry od notasu a zbylé dva PC v jiných pokojích fungují v pořádku. Proto mi to je divné. Ale jdu to zkusit. Vám ještě raz strašně velké díky a mějte dál úspěšné dny :-)

Zamčeno