Dobrý den, moc prosím o preventivku. Už několik dní Mě zlobí Seznam.cz - mám jako domovskou stránku. Několikrát za den se musím přihlašovat nebo dát "načíst znovu". A ještě prosím, když vypínám PC, tak mám hlášku, že musím počkat až se zavřou programy na pozadí. Nevím co to je za programy.
Takže tady jsou scany:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28.03.2024
Ran by Danica (administrator) on DANICA-PC (Gigabyte Technology Co., Ltd. Z97-D3H) (01-04-2024 10:24:54)
Running from C:\Users\Danica\Desktop\FRST64 (1).exe
Loaded Profiles: Danica
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser not detected!
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(cmd.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnNM.exe
(explorer.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupUI.exe <3>
(explorer.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Driver Updater\DriverUpdUI.exe <2>
(explorer.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe <4>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> PixArt Imaging Incorporation) C:\Windows\PixArt\Pac207\Monitor.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Driver Updater\DriverUpdSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [9831832 2024-03-18] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [Monitor] => C:\Windows\PixArt\PAC207\Monitor.exe [319488 2006-11-03] (Microsoft Windows Hardware Compatibility Publisher -> PixArt Imaging Incorporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [423320 2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [DriverUpdUI.exe] => C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe [10276248 2024-03-18] (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-835433377-1433666261-3082474647-1000\...\Run: [Google Update] => C:\Users\Danica\AppData\Local\Google\Update\1.3.36.372\GoogleUpdateCore.exe [223008 2024-02-02] (Google LLC -> Google LLC)
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\Windows\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-02-04] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> "C:\Windows\SysWOW64\Rundll32.exe" "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll",CreateReaderUserSettings
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2024-02-13]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {8445DB17-ECDE-4680-A8F0-5002873E48D2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1547208 2024-01-31] (Adobe Inc. -> Adobe Inc.)
Task: {538457F0-82E7-428A-BC30-DD7ED811C094} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5167512 2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {190C9504-0BD2-4019-903E-0935450664B9} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1425816 2024-01-26] (Avast Software s.r.o. -> AVAST Software)
Task: {FC5843C0-0214-4285-A0C0-AE3DEEB48673} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4979096 2024-03-18] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\A (the data entry has 70 more characters).
Task: {85FA844B-D5F4-45C1-8A81-9000824661B6} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [7786904 2024-03-14] (Avast Software s.r.o. -> Avast Software)
Task: {F2BFED25-DF7B-4CE6-BA56-B99F9DA6E038} - System32\Tasks\Avast Software\Avast Driver Updater BugReport => C:\Program Files\Avast Software\Driver Updater\AvBugReport.exe [4979096 2024-03-18] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 148 --programpath "C:\Program Files\Avast Software\Driver Updater\Setup\.." --configpath "C:\Program Files\Avast Software\Driver Updater\Setup" --path "C:\ProgramData\Avast Software\Driver Updater\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --log (the data entry has 99 more characters).
Task: {932DDB95-B76B-43DD-89A5-D4790C13EA11} - System32\Tasks\Avast Software\Avast Driver Updater Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-du\icarus.exe [7786904 2024-03-14] (Avast Software s.r.o. -> Avast Software)
Task: {E11EA96C-EC1B-4DD6-AFBB-DC813E92444B} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4920728 2024-01-26] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramDat (the data entry has 80 more characters).
Task: {06AD13C9-5C46-4839-88A4-3F35F713E6A3} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [7498648 2024-01-23] (Avast Software s.r.o. -> Avast Software)
Task: {3D9600B3-AEDD-4F4F-86E6-8F609D5208A4} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-01] (Avast Software s.r.o. -> Avast Software)
Task: {68120022-43FE-42D7-921E-BE32096EAF48} - System32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
Task: {591EE09E-0689-4517-8841-E7B18AFDE593} - System32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
Task: {CB9B770C-314C-4FA6-B782-E83AA9C1BBDE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482} => C:\Users\Danica\AppData\Local\Google\Update\GoogleUpdate.exe [154440 2016-02-02] (Google Inc -> Google Inc.)
Task: {013FAD6D-5668-420B-9392-267E371279A0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A} => C:\Users\Danica\AppData\Local\Google\Update\GoogleUpdate.exe [154440 2016-02-02] (Google Inc -> Google Inc.)
Task: {4F4C1840-BCE7-47BF-9E3A-E2B6A4B999DE} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [816960 2017-10-11] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {5ECD3875-7B45-464F-B3C8-9550E064C862} - System32\Tasks\Opera scheduled assistant Autoupdate 1659598895 => C:\Users\Danica\AppData\Local\Programs\Opera\launcher.exe [1866960 2022-03-29] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Danica\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {14415E68-8A42-437A-9801-E9B3F6B9CC54} - System32\Tasks\Opera scheduled Autoupdate 1548835486 => C:\Users\Danica\AppData\Local\Programs\Opera\launcher.exe [1866960 2022-03-29] (Opera Software AS -> Opera Software)
Task: {0923F731-6A9F-421A-9AD8-45E54B612CA1} - System32\Tasks\Opera scheduled Autoupdate 1659598887 => C:\Users\Danica\AppData\Local\Programs\Opera\launcher.exe [1866960 2022-03-29] (Opera Software AS -> Opera Software)
Task: {DA7D9B12-8CB8-4164-9944-7D4559615EB6} - System32\Tasks\Program k provádění aktualizací online Adobe => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1547208 2024-01-31] (Adobe Inc. -> Adobe Inc.)
Task: {D7D403FC-3B78-45D3-B1E1-E1BE5906998A} - System32\Tasks\WinASORegistryOptimizerForDanica => C:\Program Files (x86)\WinASO\Registry Optimizer 4.0\RegOpt.exe -> C:\Program Files (x86)\WinASO\Registry Optimizer 4.0\\-auto -second15 -param11111111111111111111
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\WinASORegistryOptimizerForDanica.job => C:\Program Files (x86)\WinASO\Registry Optimizer 4.0\RegOpt.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{A10C2104-F2DE-4AAA-AA41-1F8916A922BE}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{A10C2104-F2DE-4AAA-AA41-1F8916A922BE}: [DhcpDomain] home
Tcpip\..\Interfaces\{BF8E6D5A-A227-42DC-BBC2-1E48544133F3}: [DhcpNameServer] 192.168.2.1 192.168.0.1
Tcpip\..\Interfaces\{E64695E6-DE1B-4473-B479-F34B73537FB5}: [NameServer] 100.120.170.1
Edge:
=======
Edge Profile: C:\Users\Danica\AppData\Local\Microsoft\Edge\User Data\Default [2020-06-26]
FireFox:
========
FF DefaultProfile: 8qyzod9n.default-1549969440949
FF ProfilePath: C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\8qyzod9n.default-1549969440949 [2020-07-09]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2015-11-18] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.10 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.14 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.20 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.7 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2024-03-27] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-835433377-1433666261-3082474647-1000: google.com/WidevineMediaOptimizer -> C:\Users\Danica\AppData\Roaming\IDM\bin\npwidevinemediaoptimizer.dll [2014-06-09] (Widevine Technologies -> Google Inc.)
Chrome:
=======
CHR Profile: C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default [2024-04-01]
CHR DownloadDir: C:\Users\Danica\Desktop
CHR Notifications: Default -> hxxps://cz.pinterest.com; hxxps://hotovkykosik.cz; hxxps://www.facebook.com; hxxps://www.megaknihy.cz
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.denik.cz/krimi/vysetrovani-tragedie ... ount/Index"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Facebook) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2015-11-24]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-03-08]
CHR Extension: (Avast Passwords) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2021-01-05]
CHR Extension: (Hodiny) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdkjifoifglkpcdffkenpinlbjgephlo [2015-11-24]
CHR Extension: (Chuck Anderson) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\gegkoiakifeoejnjkbnnojkkdoegeofp [2017-07-14]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2023-02-05]
CHR Extension: (Uložit na Pinterest) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2024-03-27]
CHR Extension: (Blogger) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\lejliakmhcfhakneflmicaoikhbicggc [2015-11-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (Picasa) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2015-11-24]
CHR Extension: (Avast SecureLine VPN) - C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\phmegojolgpbbcnhccbfneddlooepbpd [2024-01-13]
CHR Profile: C:\Users\Danica\AppData\Local\Google\Chrome\User Data\System Profile [2019-03-26]
CHR HKU\S-1-5-21-835433377-1433666261-3082474647-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
Opera:
=======
OPR Profile: C:\Users\Danica\AppData\Roaming\Opera Software\Opera Stable [2023-10-12]
OPR Notifications: Opera Stable -> hxxps://www.facebook.com
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\Danica\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-08-04]
OPR Extension: (Opera Crypto Wallet) - C:\Users\Danica\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-08-04]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Danica\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-06-28]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-01-31] (Adobe Inc. -> Adobe Inc.)
S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9138072 2024-03-18] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [765848 2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2243480 2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1180568 2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-20] (Avast Software s.r.o. -> AVAST Software)
S2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [18727320 2024-03-18] (Avast Software s.r.o. -> AVAST Software)
R2 DriverUpdSvc; C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe [16925592 2024-03-18] (Avast Software s.r.o. -> AVAST Software)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [11913112 2024-01-26] (Avast Software s.r.o. -> AVAST Software)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2015-11-22] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [230968 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [379960 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [292920 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84536 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28728 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [264760 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548920 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [23472 2023-04-12] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [93752 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [935480 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [694728 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [201680 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306120 2024-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswVpnRdr; C:\Windows\System32\drivers\aswVpnRdr.sys [78632 2024-01-26] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
R3 aswWintun; C:\Windows\System32\DRIVERS\aswWintun.sys [40832 2024-01-26] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 aswWireGuard; C:\Windows\System32\DRIVERS\aswWireguard.sys [184544 2023-05-14] (Avast Software s.r.o. -> Avast Software)
R3 int0800; C:\Windows\System32\DRIVERS\flashud.sys [51712 2009-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R1 netfilter2; C:\Windows\System32\drivers\netfilter2.sys [88720 2021-03-25] (Avast Software s.r.o. -> Windows (R) Win 7 DDK provider)
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [572416 2006-12-05] (Microsoft Windows Hardware Compatibility Publisher -> PixArt Imaging Inc.)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166768 2020-10-20] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 SWDUMon; system32\DRIVERS\SWDUMon.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-04-01 10:24 - 2024-04-01 10:25 - 000024927 _____ C:\Users\Danica\Desktop\FRST.txt
2024-03-31 15:28 - 2024-03-31 15:28 - 000018477 _____ C:\Users\Danica\Desktop\Alergie na pyl.odt
2024-03-28 10:05 - 2024-03-28 10:05 - 000412576 _____ C:\Windows\system32\FNTCACHE.DAT
2024-03-18 18:06 - 2024-03-18 18:05 - 000314264 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2024-03-16 16:25 - 2024-03-16 16:25 - 000020409 _____ C:\Users\Danica\Desktop\léky.odt
2024-03-08 13:45 - 2024-03-08 14:06 - 000002072 _____ C:\Users\Public\Desktop\Avast Cleanup Premium.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-04-01 10:25 - 2020-07-08 12:49 - 000000000 ____D C:\FRST
2024-04-01 10:24 - 2024-01-13 13:03 - 002392064 _____ (Farbar) C:\Users\Danica\Desktop\FRST64 (1).exe
2024-04-01 10:05 - 2017-03-12 10:36 - 000000000 ____D C:\Users\Danica\AppData\Local\AVAST Software
2024-04-01 09:42 - 2015-11-22 10:34 - 000000000 ____D C:\Program Files (x86)\Google
2024-04-01 09:41 - 2022-08-05 07:32 - 000000000 ___HD C:\Users\Danica\Downloads\.opera
2024-04-01 09:41 - 2022-08-05 07:32 - 000000000 ___HD C:\Users\Danica\.opera
2024-04-01 06:58 - 2009-07-14 06:45 - 000032464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2024-04-01 06:58 - 2009-07-14 06:45 - 000032464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2024-04-01 06:54 - 2011-04-12 10:34 - 000669596 _____ C:\Windows\system32\perfh005.dat
2024-04-01 06:54 - 2011-04-12 10:34 - 000141754 _____ C:\Windows\system32\perfc005.dat
2024-04-01 06:54 - 2009-07-14 07:13 - 001586720 _____ C:\Windows\system32\PerfStringBackup.INI
2024-04-01 06:54 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2024-04-01 06:49 - 2024-02-10 09:15 - 000003938 _____ C:\Windows\system32\Tasks\Avast SecureLine VPN Update
2024-04-01 06:49 - 2015-11-22 14:26 - 000000000 __SHD C:\Users\Danica\IntelGraphicsProfiles
2024-04-01 06:48 - 2015-11-24 14:06 - 000000000 ____D C:\ProgramData\AVAST Software
2024-04-01 06:47 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-03-31 17:18 - 2024-02-02 10:23 - 000003860 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A}
2024-03-31 17:18 - 2024-02-02 10:23 - 000003588 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482}
2024-03-31 17:18 - 2024-01-30 21:31 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}
2024-03-31 17:18 - 2024-01-30 21:31 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}
2024-03-31 17:18 - 2022-08-04 09:41 - 000004308 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1659598895
2024-03-31 17:18 - 2022-08-04 09:41 - 000004072 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1659598887
2024-03-31 17:18 - 2019-11-23 14:17 - 000003646 _____ C:\Windows\system32\Tasks\Intel PTT EK Recertification
2024-03-31 17:18 - 2019-01-30 10:04 - 000004072 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1548835486
2024-03-31 17:18 - 2015-12-03 17:08 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2024-03-31 15:48 - 2015-11-25 20:14 - 000004478 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-03-31 15:45 - 2022-10-21 06:25 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2024-03-31 15:45 - 2022-10-21 06:25 - 000002047 _____ C:\Users\Public\Desktop\Acrobat Reader.lnk
2024-03-31 08:06 - 2021-01-02 19:32 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2024-03-25 15:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2024-03-19 12:28 - 2019-10-30 11:12 - 000000000 ____D C:\Users\Danica\Documents\spiderema-práni
2024-03-18 18:06 - 2021-01-02 19:32 - 000306120 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswVmm.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000935480 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSnx.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000694728 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSP.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000548920 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswNetHub.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000379960 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsdriver.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000292920 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsh.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000264760 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswMonFlt.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000230968 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArPot.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000093752 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRdr2.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000084536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbuniv.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000069176 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRvrt.sys
2024-03-18 18:05 - 2021-01-02 19:32 - 000028728 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswKbd.sys
2024-03-16 16:26 - 2023-10-27 23:08 - 000015397 _____ C:\Users\Danica\Desktop\seznam léků.odt
2024-03-14 11:37 - 2022-09-16 07:39 - 000000000 ____D C:\Users\Danica\AppData\Roaming\com.adobe.dunamis
2024-03-14 01:16 - 2015-11-22 17:14 - 000000000 ____D C:\Windows\system32\MRT
2024-03-14 01:13 - 2015-11-22 17:13 - 190470136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-03-08 13:45 - 2021-01-02 19:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
==================== Files in the root of some directories ========
2019-10-01 15:48 - 2019-10-01 15:48 - 000000017 _____ () C:\Users\Danica\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2024-03-27 11:49
==================== End of FRST.txt ========================
????????????????????????????????????????????????????????????????????????????????????
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28.03.2024
Ran by Danica (01-04-2024 10:25:47)
Running from C:\Users\Danica\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X64) (2015-11-22 08:18:55)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-835433377-1433666261-3082474647-500 - Administrator - Disabled)
Danica (S-1-5-21-835433377-1433666261-3082474647-1000 - Administrator - Enabled) => C:\Users\Danica
Guest (S-1-5-21-835433377-1433666261-3082474647-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
FW: Avast Antivirus (Disabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 21.06 (x64) (HKLM\...\7-Zip) (Version: 21.06 - Igor Pavlov)
7-Zip 23.01 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2301-000001000000}) (Version: 23.01.00.0 - Igor Pavlov)
Adobe Acrobat Reader - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 24.001.20629 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601067}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Adobe Shockwave Player 12.2 (HKLM-x32\...\{315BE77E-D725-477D-9C71-63F78844363C}) (Version: 12.2.2.172 - Adobe Systems, Inc)
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 23.4.15807.16040 - Avast Software)
Avast Driver Updater (HKLM\...\Avast Driver Updater) (Version: 23.4.4881.16862 - Avast Software)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 24.2.6105 - Avast Software)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 5.29.9498.11096 - Avast Software)
Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 109.0.5414.120 - Google LLC)
i-Look 110 (HKLM-x32\...\{99F351B0-E2CD-43E2-935F-256F1CF1348B}) (Version: 1.0.4.15 - KYE)
Intel(R) Chipset Device Software (HKLM\...\{9A431D9C-9FC9-454E-AC8D-15DBAA6ED0F7}) (Version: 10.0.26 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{0CF34B2C-F509-4D23-927E-334C1A776FED}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{A0EBC31A-8EA9-4D24-89A8-2C12A0B8B0C9}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{E3DE9447-C8F3-4DDA-82D3-096166CBBBB5}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{C7C01DEF-DFDD-4C01-9F22-4BDF7B26CF1D}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME UninstallLegacy (HKLM\...\{E9B9A1A5-6398-4C99-8FDE-10794F6505C5}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel(R) Network Connections 18.8.136.0 (HKLM\...\{2B7A8C9C-465A-42F0-B9C3-180FDAAB2C4B}) (Version: 18.8.136.0 - Intel) Hidden
Intel(R) Network Connections 18.8.136.0 (HKLM\...\PROSetDX) (Version: 18.8.136.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.5180 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.16.1063 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{9503AD68-6198-4081-9F57-1F346D7B58D4}) (Version: 14.8.16.1063 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{246c6cc0-9810-4728-9a29-28474de2eec5}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel(R) USB 3.0\3.1 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 5.0.4.43 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{5a6a5d15-d5af-417c-b08f-f7e5eb1f98af}) (Version: 10.0.26 - Intel(R) Corporation) Hidden
K-Lite Codec Pack 11.6.6 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.6.6 - )
LibreOffice 7.6.4.1 (HKLM\...\{6FD4C38E-90C0-408E-BAA3-13C7FBA0096E}) (Version: 7.6.4.1 - The Document Foundation)
Microsoft .NET Framework 4.8 (CSY) (HKLM\...\{39DC4515-B8C1-3AD9-AA88-D7C8A333612F}) (Version: 4.8.03761 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.8 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{16735AF7-1D8D-3681-94A5-C578A61EC832}) (Version: 4.8.03761 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{054EDAF7-39E0-41E8-9F06-21E6D19B9E59}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{B431C944-726E-409E-B4A1-8864E64E4F6C}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Nature Illusion Studio (HKLM-x32\...\Nature Illusion Studio) (Version: 3.41 - Nufsoft)
Prohlížeč Seznam.cz (HKU\S-1-5-21-835433377-1433666261-3082474647-1000\...\Seznam Browser) (Version: 6.21.0 - Seznam.cz a.s.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9239.1 - Realtek Semiconductor Corp.)
Sqirlz Water Reflections (HKLM-x32\...\Sqirlz Water Reflections) (Version: 2.6 - xiberpix)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 11.00 - Ghisler Software GmbH)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.20 - VideoLAN)
Widevine Media Optimizer IE 6.0.0 (HKU\S-1-5-21-835433377-1433666261-3082474647-1000\...\optimizer_ie) (Version: 6.0.0.12757 - Widevine Technologies)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{3BC2EF70-3830-43FC-9009-029942FD2DCE}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.372\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.372\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.372\psuser_64.dll (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2021-03-17] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-03-18] (Avast Software s.r.o. -> Gen Digital Inc.)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Danica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5046ca2656e8714f\Chromium.lnk -> C:\Users\Danica\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) -> --profile-directory=Default
==================== Loaded Modules (Whitelisted) =============
2023-06-20 13:00 - 2023-06-20 13:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-environment-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-environment-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-filesystem-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-filesystem-l1-1-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-locale-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-locale-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-math-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-math-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-multibyte-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-multibyte-l1-1-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-time-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-time-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-utility-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\api-ms-win-crt-utility-l1-1-0.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\msvcp140.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\MSVCP140.dll
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\ucrtbase.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\ucrtbase.DLL
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\ucrtbase.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\ucrtbase.DLL
2021-11-06 16:43 - 2021-11-06 16:43 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\AVAST Software\Avast\avast.local_vc142.crt\vcruntime140.dll] C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\VCRUNTIME140.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\vcruntime140.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\VCRUNTIME140.dll
2024-04-01 07:49 - 2024-04-01 07:49 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\vcruntime140_1.dll] C:\Program Files\Avast Software\Avast\defs\24040100\avast.local_vc142.crt\VCRUNTIME140_1.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Version 11) (Whitelisted) ==========
HKU\S-1-5-21-835433377-1433666261-3082474647-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {2E2AE52D-B746-4D5A-8D87-040FF26DA1AD} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {37FE3127-D331-432F-BA62-C6FA353ED829} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {474B5B48-C606-45D6-85BD-240F1DC1BC5D} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {4A0FE769-7C54-4C0A-B4AB-3E525FB2DCB1} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {4AC592D3-7BCD-4DC1-8B44-C589D17B7A37} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {BB2D0F1E-B329-4EC6-9E6D-7AFE0321B394} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {E179443E-DC27-473B-A279-C9C8091DC7B4} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {F41CD5ED-2BB8-4D58-9A8C-3B826C405379} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-835433377-1433666261-3082474647-1000 -> {F8D14E72-77A1-4FB6-AAEE-BB4FB3AAC7CA} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2011-10-14 16:53 - 2019-10-13 22:36 - 000000035 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\UCRT\;C:\Program Files\Intel\UCRT\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-835433377-1433666261-3082474647-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Danica\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 31.30.90.11 - 31.30.90.12
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{3871DEFB-3256-41E5-9E2F-6464122C8120}] => (Allow) C:\Windows\System32\migwiz\migwiz.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{0E048752-553C-47DE-8491-2F377493FF42}] => (Allow) C:\Windows\System32\migwiz\migwiz.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{ADA3CE02-14BA-4B05-8BFE-69ADB4F9931C}] => (Allow) LPort=7000
FirewallRules: [{C20991B6-BD4A-4AE3-AE45-1A26C8701E33}] => (Allow) LPort=7000
FirewallRules: [{43CF9B9D-CBFC-43D6-B8E5-B5C52AE656DC}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{645796C0-1D2F-4C56-8A5C-FB2787E57FEF}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{26F06A34-69A4-4312-B641-4CEA17AE165E}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{CA94148E-4037-4F66-B0A6-891B2FA9EF03}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{D4B4BF4D-2323-40AE-9B31-5421C5B25073}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9621991E-64F4-422E-8FD1-6DE7B3B78606}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{DE392749-7C93-4FF6-9062-BA93F8BF18B2}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{B57D9FF1-A482-4814-9EEA-FE1AEE2FD656}] => (Allow) C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{818FCFE1-5983-4C4F-8925-975ADD9DB002}] => (Allow) C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe (Avast Software s.r.o. -> AVAST Software)
==================== Restore Points =========================
17-03-2024 20:00:17 Windows Zálohování
24-03-2024 20:00:19 Windows Zálohování
25-03-2024 15:54:19 Avast Driver Updater Restore Point
31-03-2024 19:00:18 Windows Zálohování
==================== Faulty Device Manager Devices ============
Name: Microsoft 6to4 Adapter
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Microsoft ISATAP Adapter
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Microsoft ISATAP Adapter #2
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: ========================
Application errors:
==================
Error: (04/01/2024 06:48:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/31/2024 08:04:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/30/2024 09:44:50 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/29/2024 09:39:22 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/28/2024 10:07:07 AM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (03/28/2024 10:07:07 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (03/28/2024 10:07:07 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (03/28/2024 10:07:07 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
System errors:
=============
Error: (04/01/2024 10:28:49 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/01/2024 06:48:08 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Avast Cleanup neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (04/01/2024 06:48:06 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Avast Cleanup bylo dosaženo časového limitu (30000 ms).
Error: (03/31/2024 03:43:45 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 40.
Error: (03/31/2024 03:43:45 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.
Error: (03/31/2024 09:35:16 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 40.
Error: (03/31/2024 09:35:16 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 70.
Error: (03/31/2024 09:35:16 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 40.
Windows Defender:
================
Date: 2016-01-15 18:53:23.072
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{C3E4969D-95AC-45BB-9AC1-1A0DBE8D68B5}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:Danica-PC\Danica
==================== Memory info ===========================
BIOS: American Megatrends Inc. F9 09/18/2015
Motherboard: Gigabyte Technology Co., Ltd. Z97-D3H-CF
Processor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz
Percentage of memory in use: 70%
Total physical RAM: 7580.21 MB
Available physical RAM: 2262.74 MB
Total Virtual: 15158.56 MB
Available Virtual: 8075.61 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:575.6 GB) (Free:499.98 GB) (Model: WDC WD10PURX-64E5EY0 SCSI Disk Device) NTFS
Drive e: (Záloha ) (Fixed) (Total:355.69 GB) (Free:58.47 GB) (Model: WDC WD10PURX-64E5EY0 SCSI Disk Device) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 32DA4823)
Partition: GPT.
==================== End of Addition.txt =======================
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o preventivku
Moderátor: Moderátoři
Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
-
- Vzorný návštěvník
- Příspěvky: 424
- Registrován: 14 úno 2008 20:05
- Bydliště: Praha
- Kontaktovat uživatele:
Prosím o preventivku
Děkuji!
Danica Tomášková
Danica Tomášková
- Rudy
- Site Admin
- Příspěvky: 118738
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o preventivku
Zdravím!
Prtogramy na pozadí jsou takové, které nevidíte, anin neslyšíte, jsou ale třeba prochod PC. S malware obvykle nemají nic společného a ta hláška je systémová. Systém ji uplatní tehdy, když je doba jejich vypnutí delší, než má systém nastaveno. Nakonec budou vypnuty a systém se sám vypne. Není to nic proti ničemu. Nicméně provedeme kontrolu. Otevřte poznámkový blok a zkopírujte do něj:
Prtogramy na pozadí jsou takové, které nevidíte, anin neslyšíte, jsou ale třeba prochod PC. S malware obvykle nemají nic společného a ta hláška je systémová. Systém ji uplatní tehdy, když je doba jejich vypnutí delší, než má systém nastaveno. Nakonec budou vypnuty a systém se sám vypne. Není to nic proti ničemu. Nicméně provedeme kontrolu. Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start¨
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {68120022-43FE-42D7-921E-BE32096EAF48} - System32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
Task: {591EE09E-0689-4517-8841-E7B18AFDE593} - System32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A}
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Vzorný návštěvník
- Příspěvky: 424
- Registrován: 14 úno 2008 20:05
- Bydliště: Praha
- Kontaktovat uživatele:
Re: Prosím o preventivku
Fix result of Farbar Recovery Scan Tool (x64) Version: 28.03.2024
Ran by Danica (01-04-2024 12:11:02) Run:10
Running from C:\Users\Danica\Desktop
Loaded Profiles: Danica
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start�
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {68120022-43FE-42D7-921E-BE32096EAF48} - System32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
Task: {591EE09E-0689-4517-8841-E7B18AFDE593} - System32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A}
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
EmptyTemp:
End
*****************
Start� => Error: No automatic fix found for this entry.
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{68120022-43FE-42D7-921E-BE32096EAF48}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68120022-43FE-42D7-921E-BE32096EAF48}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{591EE09E-0689-4517-8841-E7B18AFDE593}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{591EE09E-0689-4517-8841-E7B18AFDE593}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}" => removed successfully
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A} => moved successfully
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482} => moved successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}" => not found
HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83} => removed successfully
HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83} => not found
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27080730 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => -410298 B
Edge => 0 B
Chrome => 477105485 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 0 B
systemprofile32 => 132 B
LocalService => 132 B
NetworkService => 132 B
Danica => 3258205 B
RecycleBin => 19654266 B
EmptyTemp: => 502.7 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 12:11:18 ====
Ran by Danica (01-04-2024 12:11:02) Run:10
Running from C:\Users\Danica\Desktop
Loaded Profiles: Danica
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start�
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {68120022-43FE-42D7-921E-BE32096EAF48} - System32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
Task: {591EE09E-0689-4517-8841-E7B18AFDE593} - System32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-26] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A}
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\Danica\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => No File
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
EmptyTemp:
End
*****************
Start� => Error: No automatic fix found for this entry.
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{68120022-43FE-42D7-921E-BE32096EAF48}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68120022-43FE-42D7-921E-BE32096EAF48}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{591EE09E-0689-4517-8841-E7B18AFDE593}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{591EE09E-0689-4517-8841-E7B18AFDE593}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}" => removed successfully
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000UA{3AF7B6A2-B023-4717-9375-73F09B698A9A} => moved successfully
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-835433377-1433666261-3082474647-1000Core{88A44582-F8A3-4EE1-B69D-4759C14CF482} => moved successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{639D705D-C228-41CF-A8F2-52AA945489E9}" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{FE9D8F34-624A-492B-8A35-0A6BC610A866}" => not found
HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83} => removed successfully
HKU\S-1-5-21-835433377-1433666261-3082474647-1000_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83} => not found
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27080730 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => -410298 B
Edge => 0 B
Chrome => 477105485 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 0 B
systemprofile32 => 132 B
LocalService => 132 B
NetworkService => 132 B
Danica => 3258205 B
RecycleBin => 19654266 B
EmptyTemp: => 502.7 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 12:11:18 ====
Děkuji!
Danica Tomášková
Danica Tomášková
- Rudy
- Site Admin
- Příspěvky: 118738
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o preventivku
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Vzorný návštěvník
- Příspěvky: 424
- Registrován: 14 úno 2008 20:05
- Bydliště: Praha
- Kontaktovat uživatele:
Re: Prosím o preventivku
Zatím se zdá, že to bude v pořádku. Seznam.cz drží a pokud by začal zlobit, tak dám vědět. Jo? Moc děkuji, Rudýsku
Děkuji!
Danica Tomášková
Danica Tomášková
- Rudy
- Site Admin
- Příspěvky: 118738
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o preventivku
Rádo se stalo, Danuš.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.