Re: preventivka
Napsal: 22 zář 2014 21:45
a zde je ten druhý soubor. Snad jsem nic nevynechala
OTL Extras logfile created on: 22. 9. 2014 19:23:22 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Eva\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17278)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d. M. yyyy
3,88 Gb Total Physical Memory | 1,65 Gb Available Physical Memory | 42,45% Memory free
4,57 Gb Paging File | 1,79 Gb Available in Paging File | 39,05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 450,76 Gb Total Space | 223,99 Gb Free Space | 49,69% Space Free | Partition Type: NTFS
Computer Name: EVA | User Name: Eva | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-1320900323-2956938217-1536712739-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0B0959B8-BA55-49D4-BC83-6F364FE9AA53}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1B5CFE1D-CCCD-431A-BBC2-41ECEB7248F7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{1EF171DD-FCC5-4CFC-9F85-70031A0BDDF2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1FD4E03A-C41B-465D-9F1B-40A53EBAF7E6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{288C704C-4C90-480D-85A0-614D3CDB923A}" = rport=445 | protocol=6 | dir=out | app=system |
"{2906A2D1-0A14-4025-B9A8-D2973F13300F}" = rport=137 | protocol=17 | dir=out | app=system |
"{2ABBFFA0-F989-417F-B72C-525D91F7CDCA}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{4929AB65-AC21-44D6-BB45-E01E45B58F81}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{550B11A7-0B2F-4F44-A5D4-877A682BF863}" = lport=137 | protocol=17 | dir=in | app=system |
"{5BB86E58-E642-4472-94D4-61CADA9B2BB4}" = lport=139 | protocol=6 | dir=in | app=system |
"{66FFBEA8-A658-4E39-9495-B653C8843E47}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6F1D20A4-99BB-4BE3-B9B5-ECDB6CBBEE52}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{7C0D2D8A-2E91-4F55-AB76-C311D02F1C15}" = rport=139 | protocol=6 | dir=out | app=system |
"{9EDC326C-89F0-45DA-A85D-DAF0E4154F78}" = lport=445 | protocol=6 | dir=in | app=system |
"{A76AFDB1-500D-4407-A920-C9EFB486C275}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A97D069D-1D52-4400-B95A-391879296045}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{AF9E6276-0901-4D03-B0FB-0431A2F69589}" = lport=138 | protocol=17 | dir=in | app=system |
"{B06AE35D-304C-443A-B67C-4F7B4C2F6B75}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B5CF7CDA-3B59-4386-B2DB-07D28679C16C}" = lport=2869 | protocol=6 | dir=in | app=system |
"{C00A7DE5-B0FE-4F4C-9A6C-8EF40494B19D}" = rport=138 | protocol=17 | dir=out | app=system |
"{C4B94DBB-5AAF-4236-AE91-2376A0762E0E}" = rport=10243 | protocol=6 | dir=out | app=system |
"{CD428CAD-308F-42DC-8C0F-F982CCBB3804}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{D4A7A9F2-0BA8-4ADC-BBE4-D268922D91D6}" = lport=10243 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{043E12EA-E97E-4EAA-A108-43C7AB057B1F}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{0C820A9D-F198-4F89-9D49-464A20FA4CB2}" = dir=out | name=contact pickup |
"{0FA2F747-46F3-407E-897C-3635E7405C1D}" = dir=in | name=onenote |
"{197511DE-0147-4F7E-A44C-8394FFCAE8D2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{29463624-E7C1-4A9F-8393-AE6F77CE178D}" = dir=out | name=@{microsoft.bingweather_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"{2DA59D62-C363-4964-AF7D-88682F11F285}" = protocol=6 | dir=out | app=system |
"{2F3BCA4A-EB0E-4295-A45A-B1674D2C8043}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{32189B1F-86C5-4546-87DF-361AE5233343}" = protocol=6 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{39F3B61F-6C2B-46D1-8684-CDD2DDCAE0F2}" = protocol=17 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{3C3D7363-7228-4916-A6E9-F57B73BC0388}" = dir=in | name=contact pickup |
"{3D89E68A-97EE-4CD5-88D2-E133C8D1C3BA}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{3F1BA604-27CD-44D2-899A-7A9287CCD8BE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{3FA08D2E-D189-40EE-9D92-BBB589401CA8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{401547C2-EB1F-4628-A179-EF7F2164D000}" = dir=out | name=onenote |
"{427A48A0-C0F6-4811-B8D2-1D8DAD9BE8A4}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{430EC380-80C9-4AC2-84E2-22E645F6C693}" = dir=out | name=@{microsoft.bingfinance_3.0.2.258_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{46235690-951D-449C-981D-FDA740DB11FC}" = dir=in | app=c:\users\eva\appdata\local\microsoft\skydrive\skydrive.exe |
"{47304F75-972F-4675-AEED-90B8DF36C6C8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{49DE3F8A-C363-42AF-9A39-E40807CAF036}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{4E2A7544-E447-4724-9401-233CE2030D3A}" = dir=out | name=contact pickup |
"{513E5602-92FD-4184-8A7B-32CC8190C705}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{602BCD22-BC98-48E7-94BE-4D50DC3AD857}" = dir=out | name=@{microsoft.zunevideo_2.6.283.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{65048CE0-691A-41F7-B5E3-7D9BF81AAF73}" = dir=out | name=@{microsoft.bingtravel_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{65455582-1C37-4603-8B0E-CFDF22C85886}" = dir=in | name=contact pickup |
"{68EA7CBF-ECCE-43FC-BB89-2AF6F00B6C21}" = dir=out | name=@{microsoft.bingsports_3.0.2.324_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{6EBAAFD8-693F-4F65-B298-01C83137F9F1}" = dir=out | name=evernote touch |
"{744D736B-5A28-4C2B-9558-976EF2F83E39}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{74754C78-3508-42B2-8F7B-7CB3DF5E3738}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{74ECE6D9-881D-49B4-AFCC-7DC05F4EDFF4}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.2.313_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{80DF7952-5C75-4664-A3D2-33A8DF9BE325}" = dir=out | name=@{microsoft.bingnews_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{8220CFDB-6278-4637-A270-1145A046C97D}" = protocol=6 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{86178BAD-8EAD-4019-9D93-C89A77F416DD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{871DC690-E3C4-439E-A0E9-7AD3FD957317}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{922F89EF-071B-4670-A6DD-FE9A700FD7FD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9D043819-1F28-477A-A310-6CFE6FE0531D}" = dir=out | name=skype |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9F290D9F-8C13-47B9-B4B7-094C5425F1CD}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{9FA1D350-0FFA-4C3F-B3ED-B1B54FF348D7}" = dir=in | name=evernote touch |
"{ABD574C9-A4C1-400B-AE22-105097449CCC}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{ADE5BB41-5225-45FA-A480-CBB7A5A1F3A9}" = dir=in | name=acer explorer |
"{B33456A8-868D-4DF8-8FB4-4A63C6FF8027}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{B3481C97-91DE-43D1-B64F-1A4408944087}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{B360F5A7-E1D5-4EFB-8E9C-0A4CD8671B61}" = dir=out | name=windows_ie_ac_001 |
"{B9935C91-3D85-4A03-A01B-52F1CC8FAD70}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BE7CDF20-1424-4D84-BF4E-BE13B30CEBB8}" = dir=out | name=@{microsoft.zunemusic_2.2.931.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{C1C95335-36B3-4B78-A383-3602FD6B1987}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{CF0A81CD-DFE5-45E3-AD36-13E9F2C575C5}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{D2AD0218-47B3-4D64-BD41-AF9457B931D8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{D2D6C7D6-7186-447F-A9DA-B533E20EE237}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.2.315_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{D5A1E9BA-3DD4-4B7E-8625-873A58CE99EE}" = dir=in | name=skype |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DC2FB712-908E-431F-A87D-FA67E97AE999}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E3E0ECEB-FD58-4618-9E3C-B29A5FCC817C}" = dir=out | name=acer explorer |
"{EB99FE3F-390C-4937-A1AB-BCBB217129CB}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{F31DD102-3323-4B38-B9A3-45AF10798644}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{F9CD3E1F-3244-43E4-917E-6E5AD5043462}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FC2FD616-1BAD-426E-9DED-CF662A235CA0}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{FD220F73-CE74-40CF-9FAC-D73209285E0F}" = protocol=17 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{FF4F01F7-A66B-4D9B-8E77-1318E2B56B31}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"TCP Query User{B5645E46-BF91-41F4-844E-D05ACC0B92EE}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{FD6866C5-23B7-4FE4-9B73-89AFE45657FC}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{0C82CF18-8E55-4493-B14E-C80DC35995AD}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{D7B52C52-3D57-4034-8E38-8195C622BF4F}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}" = Acer Recovery Management
"{08CCD7B4-9EED-4926-805D-C4FFF869989A}" = ProShield
"{12A718F2-2357-4D41-9E1F-18583A4745F7}" = Acer User Experience Improvement Program Framework
"{176E2755-0A17-42C6-88E2-192AB2131278}" = Intel(R) Trusted Execution Engine
"{2D6248C0-4693-4CAB-9922-F05E4015F62A}" = Intel(R) Trusted Execution Engine
"{302600C1-6BDF-4FD1-1312-148929CC1385}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 17.0.1347.2)
"{4681CBC7-F304-4EF1-BBE9-B5CFCADCD3DA}" = Intel® PROSet/Wireless WiFi Software
"{4D0F42CF-1693-43D9-BDC8-19141D023EE0}" = Acer Explorer Agent
"{54f76cac-e0ec-42a2-b428-8dda7f5b5fab}" = Intel(R) PRO/Wireless Driver
"{6307E820-0317-4DCE-AAE0-7B6CAD867055}" = Intel(R) Trusted Execution Engine Driver
"{64E785C9-B1F9-4889-B199-5FFC69224C60}" = Acer Registration
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{91F52DE4-B789-42B0-9311-A349F10E5479}" = Acer Power Management
"{978724F6-1863-4DD5-9E66-FB77F5AB5613}" = Acer User Experience Improvement Program App Monitor Plugin
"{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}" = Acer Launch Manager
"{C1FA525F-D701-4B31-9D32-504FC0CF0B98}" = Acer Quick Access
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"CCleaner" = CCleaner
"O365HomePremRetail - cs-cz" = Microsoft Office 365 - cs-cz
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = Face Login 5
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.20
"{3D9CB654-99AD-4301-89C6-0D12A790767C}" = Identity Card
"{6e8d4676-a513-4f5b-9b52-6deb7bdc94f0}" = Intel® PROSet/Wireless Software
"{7203447E-0A24-4EE2-A0D1-65A67F86DD27}" = ZoneAlarm Firewall
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8BE64AC3-CAA0-4A0D-A915-3A4EDD904A01}" = ZoneAlarm Security
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0405-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{959B7F35-2819-40C5-A0CD-3C53B5FCC935}" = Genesys USB Mass Storage Device
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-FFFF-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) MUI
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Avast" = avast! Free Antivirus
"C5A8BC6E-723A-4C0F-96E1-C426D1A4BCA9" = Intel(R) Sideband Fabric Device Driver
"FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C" = Intel(R) Dynamic Platform and Thermal Framework
"Google Chrome" = Google Chrome
"InstallShield_{08CCD7B4-9EED-4926-805D-C4FFF869989A}" = ProShield
"IrfanView" = IrfanView (remove only)
"NSIS_ocoll2e" = Oxford Collocations Dictionary
"Opera 24.0.1558.61" = Opera Stable 24.0.1558.61
"QUICKfind" = QUICKfind server v1.1
"VLC media player" = VLC media player
"Winamp" = Winamp
"zonealarm" = ZoneAlarm Security Toolbar
"ZoneAlarm Free Firewall" = ZoneAlarm Free Firewall
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1320900323-2956938217-1536712739-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"OneDriveSetup.exe" = Microsoft OneDrive
"Pokki_Start_Menu" = Pokki Start Menu
"zonealarm" = ZoneAlarm Security Toolbar
========== Last 20 Event Log Errors ==========
[ System Events ]
Error - 20. 9. 2014 9:59:57 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 9:59:58 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 9:59:58 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 9:59:59 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 10:00:00 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 10:05:18 | Computer Name = Eva | Source = Service Control Manager | ID = 7023
Description = Služba Superfetch byla ukončena s následující chybou: %%1062
< End of report >
OTL Extras logfile created on: 22. 9. 2014 19:23:22 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Eva\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17278)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d. M. yyyy
3,88 Gb Total Physical Memory | 1,65 Gb Available Physical Memory | 42,45% Memory free
4,57 Gb Paging File | 1,79 Gb Available in Paging File | 39,05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 450,76 Gb Total Space | 223,99 Gb Free Space | 49,69% Space Free | Partition Type: NTFS
Computer Name: EVA | User Name: Eva | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-1320900323-2956938217-1536712739-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0B0959B8-BA55-49D4-BC83-6F364FE9AA53}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1B5CFE1D-CCCD-431A-BBC2-41ECEB7248F7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{1EF171DD-FCC5-4CFC-9F85-70031A0BDDF2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1FD4E03A-C41B-465D-9F1B-40A53EBAF7E6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{288C704C-4C90-480D-85A0-614D3CDB923A}" = rport=445 | protocol=6 | dir=out | app=system |
"{2906A2D1-0A14-4025-B9A8-D2973F13300F}" = rport=137 | protocol=17 | dir=out | app=system |
"{2ABBFFA0-F989-417F-B72C-525D91F7CDCA}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{4929AB65-AC21-44D6-BB45-E01E45B58F81}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{550B11A7-0B2F-4F44-A5D4-877A682BF863}" = lport=137 | protocol=17 | dir=in | app=system |
"{5BB86E58-E642-4472-94D4-61CADA9B2BB4}" = lport=139 | protocol=6 | dir=in | app=system |
"{66FFBEA8-A658-4E39-9495-B653C8843E47}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6F1D20A4-99BB-4BE3-B9B5-ECDB6CBBEE52}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{7C0D2D8A-2E91-4F55-AB76-C311D02F1C15}" = rport=139 | protocol=6 | dir=out | app=system |
"{9EDC326C-89F0-45DA-A85D-DAF0E4154F78}" = lport=445 | protocol=6 | dir=in | app=system |
"{A76AFDB1-500D-4407-A920-C9EFB486C275}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A97D069D-1D52-4400-B95A-391879296045}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{AF9E6276-0901-4D03-B0FB-0431A2F69589}" = lport=138 | protocol=17 | dir=in | app=system |
"{B06AE35D-304C-443A-B67C-4F7B4C2F6B75}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B5CF7CDA-3B59-4386-B2DB-07D28679C16C}" = lport=2869 | protocol=6 | dir=in | app=system |
"{C00A7DE5-B0FE-4F4C-9A6C-8EF40494B19D}" = rport=138 | protocol=17 | dir=out | app=system |
"{C4B94DBB-5AAF-4236-AE91-2376A0762E0E}" = rport=10243 | protocol=6 | dir=out | app=system |
"{CD428CAD-308F-42DC-8C0F-F982CCBB3804}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{D4A7A9F2-0BA8-4ADC-BBE4-D268922D91D6}" = lport=10243 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{043E12EA-E97E-4EAA-A108-43C7AB057B1F}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{0C820A9D-F198-4F89-9D49-464A20FA4CB2}" = dir=out | name=contact pickup |
"{0FA2F747-46F3-407E-897C-3635E7405C1D}" = dir=in | name=onenote |
"{197511DE-0147-4F7E-A44C-8394FFCAE8D2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{29463624-E7C1-4A9F-8393-AE6F77CE178D}" = dir=out | name=@{microsoft.bingweather_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"{2DA59D62-C363-4964-AF7D-88682F11F285}" = protocol=6 | dir=out | app=system |
"{2F3BCA4A-EB0E-4295-A45A-B1674D2C8043}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{32189B1F-86C5-4546-87DF-361AE5233343}" = protocol=6 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{39F3B61F-6C2B-46D1-8684-CDD2DDCAE0F2}" = protocol=17 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{3C3D7363-7228-4916-A6E9-F57B73BC0388}" = dir=in | name=contact pickup |
"{3D89E68A-97EE-4CD5-88D2-E133C8D1C3BA}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{3F1BA604-27CD-44D2-899A-7A9287CCD8BE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{3FA08D2E-D189-40EE-9D92-BBB589401CA8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{401547C2-EB1F-4628-A179-EF7F2164D000}" = dir=out | name=onenote |
"{427A48A0-C0F6-4811-B8D2-1D8DAD9BE8A4}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{430EC380-80C9-4AC2-84E2-22E645F6C693}" = dir=out | name=@{microsoft.bingfinance_3.0.2.258_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{46235690-951D-449C-981D-FDA740DB11FC}" = dir=in | app=c:\users\eva\appdata\local\microsoft\skydrive\skydrive.exe |
"{47304F75-972F-4675-AEED-90B8DF36C6C8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{49DE3F8A-C363-42AF-9A39-E40807CAF036}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{4E2A7544-E447-4724-9401-233CE2030D3A}" = dir=out | name=contact pickup |
"{513E5602-92FD-4184-8A7B-32CC8190C705}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{602BCD22-BC98-48E7-94BE-4D50DC3AD857}" = dir=out | name=@{microsoft.zunevideo_2.6.283.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{65048CE0-691A-41F7-B5E3-7D9BF81AAF73}" = dir=out | name=@{microsoft.bingtravel_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{65455582-1C37-4603-8B0E-CFDF22C85886}" = dir=in | name=contact pickup |
"{68EA7CBF-ECCE-43FC-BB89-2AF6F00B6C21}" = dir=out | name=@{microsoft.bingsports_3.0.2.324_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{6EBAAFD8-693F-4F65-B298-01C83137F9F1}" = dir=out | name=evernote touch |
"{744D736B-5A28-4C2B-9558-976EF2F83E39}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{74754C78-3508-42B2-8F7B-7CB3DF5E3738}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{74ECE6D9-881D-49B4-AFCC-7DC05F4EDFF4}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.2.313_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{80DF7952-5C75-4664-A3D2-33A8DF9BE325}" = dir=out | name=@{microsoft.bingnews_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{8220CFDB-6278-4637-A270-1145A046C97D}" = protocol=6 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{86178BAD-8EAD-4019-9D93-C89A77F416DD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{871DC690-E3C4-439E-A0E9-7AD3FD957317}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{922F89EF-071B-4670-A6DD-FE9A700FD7FD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9D043819-1F28-477A-A310-6CFE6FE0531D}" = dir=out | name=skype |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9F290D9F-8C13-47B9-B4B7-094C5425F1CD}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{9FA1D350-0FFA-4C3F-B3ED-B1B54FF348D7}" = dir=in | name=evernote touch |
"{ABD574C9-A4C1-400B-AE22-105097449CCC}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{ADE5BB41-5225-45FA-A480-CBB7A5A1F3A9}" = dir=in | name=acer explorer |
"{B33456A8-868D-4DF8-8FB4-4A63C6FF8027}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{B3481C97-91DE-43D1-B64F-1A4408944087}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{B360F5A7-E1D5-4EFB-8E9C-0A4CD8671B61}" = dir=out | name=windows_ie_ac_001 |
"{B9935C91-3D85-4A03-A01B-52F1CC8FAD70}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BE7CDF20-1424-4D84-BF4E-BE13B30CEBB8}" = dir=out | name=@{microsoft.zunemusic_2.2.931.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{C1C95335-36B3-4B78-A383-3602FD6B1987}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{CF0A81CD-DFE5-45E3-AD36-13E9F2C575C5}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{D2AD0218-47B3-4D64-BD41-AF9457B931D8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{D2D6C7D6-7186-447F-A9DA-B533E20EE237}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.2.315_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{D5A1E9BA-3DD4-4B7E-8625-873A58CE99EE}" = dir=in | name=skype |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DC2FB712-908E-431F-A87D-FA67E97AE999}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E3E0ECEB-FD58-4618-9E3C-B29A5FCC817C}" = dir=out | name=acer explorer |
"{EB99FE3F-390C-4937-A1AB-BCBB217129CB}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{F31DD102-3323-4B38-B9A3-45AF10798644}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{F9CD3E1F-3244-43E4-917E-6E5AD5043462}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FC2FD616-1BAD-426E-9DED-CF662A235CA0}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{FD220F73-CE74-40CF-9FAC-D73209285E0F}" = protocol=17 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe |
"{FF4F01F7-A66B-4D9B-8E77-1318E2B56B31}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"TCP Query User{B5645E46-BF91-41F4-844E-D05ACC0B92EE}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{FD6866C5-23B7-4FE4-9B73-89AFE45657FC}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{0C82CF18-8E55-4493-B14E-C80DC35995AD}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{D7B52C52-3D57-4034-8E38-8195C622BF4F}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}" = Acer Recovery Management
"{08CCD7B4-9EED-4926-805D-C4FFF869989A}" = ProShield
"{12A718F2-2357-4D41-9E1F-18583A4745F7}" = Acer User Experience Improvement Program Framework
"{176E2755-0A17-42C6-88E2-192AB2131278}" = Intel(R) Trusted Execution Engine
"{2D6248C0-4693-4CAB-9922-F05E4015F62A}" = Intel(R) Trusted Execution Engine
"{302600C1-6BDF-4FD1-1312-148929CC1385}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 17.0.1347.2)
"{4681CBC7-F304-4EF1-BBE9-B5CFCADCD3DA}" = Intel® PROSet/Wireless WiFi Software
"{4D0F42CF-1693-43D9-BDC8-19141D023EE0}" = Acer Explorer Agent
"{54f76cac-e0ec-42a2-b428-8dda7f5b5fab}" = Intel(R) PRO/Wireless Driver
"{6307E820-0317-4DCE-AAE0-7B6CAD867055}" = Intel(R) Trusted Execution Engine Driver
"{64E785C9-B1F9-4889-B199-5FFC69224C60}" = Acer Registration
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{91F52DE4-B789-42B0-9311-A349F10E5479}" = Acer Power Management
"{978724F6-1863-4DD5-9E66-FB77F5AB5613}" = Acer User Experience Improvement Program App Monitor Plugin
"{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}" = Acer Launch Manager
"{C1FA525F-D701-4B31-9D32-504FC0CF0B98}" = Acer Quick Access
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"CCleaner" = CCleaner
"O365HomePremRetail - cs-cz" = Microsoft Office 365 - cs-cz
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = Face Login 5
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.20
"{3D9CB654-99AD-4301-89C6-0D12A790767C}" = Identity Card
"{6e8d4676-a513-4f5b-9b52-6deb7bdc94f0}" = Intel® PROSet/Wireless Software
"{7203447E-0A24-4EE2-A0D1-65A67F86DD27}" = ZoneAlarm Firewall
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8BE64AC3-CAA0-4A0D-A915-3A4EDD904A01}" = ZoneAlarm Security
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0405-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{959B7F35-2819-40C5-A0CD-3C53B5FCC935}" = Genesys USB Mass Storage Device
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-FFFF-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) MUI
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Avast" = avast! Free Antivirus
"C5A8BC6E-723A-4C0F-96E1-C426D1A4BCA9" = Intel(R) Sideband Fabric Device Driver
"FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C" = Intel(R) Dynamic Platform and Thermal Framework
"Google Chrome" = Google Chrome
"InstallShield_{08CCD7B4-9EED-4926-805D-C4FFF869989A}" = ProShield
"IrfanView" = IrfanView (remove only)
"NSIS_ocoll2e" = Oxford Collocations Dictionary
"Opera 24.0.1558.61" = Opera Stable 24.0.1558.61
"QUICKfind" = QUICKfind server v1.1
"VLC media player" = VLC media player
"Winamp" = Winamp
"zonealarm" = ZoneAlarm Security Toolbar
"ZoneAlarm Free Firewall" = ZoneAlarm Free Firewall
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1320900323-2956938217-1536712739-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"OneDriveSetup.exe" = Microsoft OneDrive
"Pokki_Start_Menu" = Pokki Start Menu
"zonealarm" = ZoneAlarm Security Toolbar
========== Last 20 Event Log Errors ==========
[ System Events ]
Error - 20. 9. 2014 9:59:57 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 9:59:58 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 9:59:58 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 9:59:59 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 10:00:00 | Computer Name = Eva | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.
Error - 20. 9. 2014 10:05:18 | Computer Name = Eva | Source = Service Control Manager | ID = 7023
Description = Služba Superfetch byla ukončena s následující chybou: %%1062
< End of report >