
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
CPU na 100% - zasekaný notebook
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
CPU na 100% - zasekaný notebook
Dobrý večer, prosím o kontrolu logu - CPU běží pořád na 100% a je zasekaný notebook. Děkuji
Tady je log :
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-12-2014
Ran by Helča (administrator) on HELCA-PC on 01-12-2014 16:19:06
Running from C:\Users\Helča\Desktop
Loaded Profile: Helča (Available profiles: Helča)
Platform: Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
() C:\Windows\System32\AsusService.exe
() C:\Windows\System32\FUSServices.exe
(Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
(ASUSTeK Computer Inc.) C:\Program Files\Asus\HotkeyService\HotkeyService.exe
(ASUSTeK Computer Inc.) C:\Program Files\Asus\HotkeyService\HotKeyMon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ASUS) C:\Program Files\Asus\CapsHook\CapsHook.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Helča\Desktop\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9177632 2010-04-27] (Realtek Semiconductor)
HKLM\...\Run: [ASUSPRP] => C:\Program Files\ASUS\APRP\APRP.EXE [2018032 2011-04-18] (ASUSTek Computer Inc.)
HKLM\...\Run: [CapsHook] => C:\Program Files\ASUS\CapsHook\CapsHook.exe [445344 2010-11-15] (ASUS)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [974432 2014-08-22] (Microsoft Corporation)
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\...\Run: [Google Update] => "C:\Users\Hel
a\AppData\Local\Google\Update\GoogleUpdate.exe" /c
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {CC5FC992-B0AA-47CD-9DC2-83445083CBB8} => C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll ()
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {618A47A2-528B-4D9A-AFC8-97D3233511E2} => C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Tcpip\Parameters: [DhcpNameServer] 172.16.16.1
FireFox:
========
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2117519805-2901314670-1855320360-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2117519805-2901314670-1855320360-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2117519805-2901314670-1855320360-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Helča\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR Profile: C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-19]
CHR Extension: (Dokumenty Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-19]
CHR Extension: (Disk Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-19]
CHR Extension: (YouTube) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-03-10]
CHR Extension: (Vyhledávání Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-03-10]
CHR Extension: (Tabulky Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-19]
CHR Extension: (Peněženka Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-19]
CHR Extension: (Gmail) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-03-10]
CHR Profile: C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Learn French - Très Bien) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aeifanonhefcaphaeeknpklkfnjjmpec [2013-07-10]
CHR Extension: (MyNetDiary Calorie Counter and Food Diary) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjackipnjjjefeppmpbgcdefaplneopj [2013-07-10]
CHR Extension: (YouTube) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-07-10]
CHR Extension: (Math Mahjong) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cbcfbhpnngegochhbdlanodnmijfplal [2013-07-10]
CHR Extension: (Adblock Plus) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-07-10]
CHR Extension: (Vyhledávání Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-07-10]
CHR Extension: (GAIN Fitness) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cpompjlmddcnpijabjfcgnpmoibdffoc [2013-07-10]
CHR Extension: (World of Solitaire) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ifbnllnaaaohekjkcpfdllhhjijnidgn [2013-07-10]
CHR Extension: (Lose It!) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jehemifhdilebjjpibeianiedocpgocn [2013-07-10]
CHR Extension: (Diet Diary) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\neckeibmjhibmgoigmffjlihekefmffd [2013-07-10]
CHR Extension: (Peněženka Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-26]
CHR Extension: (Gmail) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-07-10]
CHR StartMenuInternet: Google Chrome - C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AsusService; C:\windows\system32\AsusService.exe [224680 2010-12-07] ()
R2 FUSServices; C:\windows\system32\FUSServices.exe [10752 2010-02-11] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22192 2014-08-22] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [288120 2014-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\windows\System32\drivers\AsIO.sys [11456 2010-06-28] ()
R1 AsUpIO; C:\windows\System32\drivers\AsUpIO.sys [11832 2010-08-03] ()
R3 ETD; C:\windows\System32\DRIVERS\ETD.sys [102912 2010-07-21] (ELAN Microelectronic Corp.)
R3 kbfiltr; C:\windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
R0 MpFilter; C:\windows\System32\DRIVERS\MpFilter.sys [231800 2014-07-17] (Microsoft Corporation)
S3 XMLDIUSB; C:\windows\System32\Drivers\XMLDIUSB.sys [33152 2010-01-29] (OEM)
U5 AppMgmt; C:\windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 btwaudio; system32\drivers\btwaudio.sys [X]
S3 btwavdt; \SystemRoot\system32\drivers\btwavdt.sys [X]
S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [X]
S3 btwrchid; \SystemRoot\system32\drivers\btwrchid.sys [X]
S3 catchme; \??\C:\Users\HELA~1\AppData\Local\Temp\catchme.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
R1 MpKsl8f0fb9f5; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F67DC294-2B5A-42D6-BA48-39D5C8B201F3}\MpKsl8f0fb9f5.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-01 16:19 - 2014-12-01 16:29 - 00013417 _____ () C:\Users\Helča\Desktop\FRST.txt
2014-12-01 16:15 - 2014-12-01 16:21 - 00000000 ____D () C:\FRST
2014-12-01 16:12 - 2014-12-01 16:12 - 00112640 _____ (forum.viry.cz) C:\Users\Helča\Desktop\FRSTLauncher (1).exe
2014-12-01 16:07 - 2014-12-01 16:07 - 00112640 _____ (forum.viry.cz) C:\Users\Helča\Downloads\Nepotvrzeno 648100.crdownload
2014-12-01 15:34 - 2014-12-01 15:35 - 01109504 _____ (Farbar) C:\Users\Helča\Desktop\FRST.exe
2014-12-01 15:09 - 2014-12-01 15:09 - 00000270 _____ () C:\Users\Helča\Documents\cc_20141201_150841.reg
2014-11-29 21:40 - 2014-11-29 21:40 - 00000000 __SHD () C:\found.003
2014-11-29 12:43 - 2014-11-29 12:44 - 00000000 ____D () C:\Users\Helča\AppData\Local\{238B625B-90AD-4317-85E3-E652A8C73F65}
2014-11-20 16:50 - 2014-12-01 11:57 - 00631116 ____N () C:\windows\WindowsUpdate.log
2014-11-20 16:50 - 2014-11-20 16:50 - 00002798 _____ () C:\Users\Helča\Documents\cc_20141120_165039.reg
2014-11-20 14:40 - 2014-11-20 14:40 - 00000000 __SHD () C:\found.002
2014-11-20 10:00 - 2014-11-20 10:00 - 00000000 __SHD () C:\found.001
2014-11-19 13:30 - 2014-11-19 13:30 - 00000000 __SHD () C:\found.000
2014-11-19 06:41 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-11-19 06:41 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\windows\system32\pku2u.dll
2014-11-18 14:10 - 2014-11-18 14:10 - 00000000 ____D () C:\Users\Helča\AppData\Local\{6466F372-9BC4-4790-BFAE-795D1ADDA5E2}
2014-11-18 14:09 - 2014-11-18 14:09 - 00000000 __SHD () C:\Users\Helča\AppData\Local\EmieBrowserModeList
2014-11-12 08:39 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2014-11-12 08:39 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\windows\system32\IMJP10K.DLL
2014-11-12 08:38 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-11-12 08:37 - 2014-10-10 01:45 - 02379264 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-11-12 08:37 - 2014-10-03 02:44 - 00475136 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00275968 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-11-12 08:37 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-11-12 08:37 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-11-12 08:36 - 2014-11-05 18:50 - 00254464 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-11-12 08:36 - 2014-11-05 18:50 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-11-12 08:36 - 2014-11-05 18:47 - 00302592 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-11-12 08:36 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-11-12 08:36 - 2014-10-14 02:56 - 00136632 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2014-11-12 08:36 - 2014-10-14 02:50 - 01059840 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-11-12 08:36 - 2014-10-14 02:50 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-11-12 08:36 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2014-11-12 08:36 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2014-11-12 08:35 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-11-12 08:35 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-11-12 08:35 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-11-12 08:35 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-11-12 08:35 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-11-12 08:35 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-11-12 08:35 - 2014-11-06 03:59 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-11-12 08:35 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-11-12 08:35 - 2014-11-06 03:51 - 00667648 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-11-12 08:35 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-11-12 08:35 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 08:35 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-11-12 08:35 - 2014-11-06 03:22 - 00683008 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-11-12 08:35 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-11-12 08:35 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-11-12 08:34 - 2014-11-06 04:28 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-11-12 08:34 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-11-12 08:34 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-11-12 08:34 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-11-12 08:34 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-11-12 08:33 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-11-12 08:33 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-11-12 08:33 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-11-12 08:33 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-11-12 08:33 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-11-12 08:33 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-11-12 08:33 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-11-12 08:33 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-11-12 08:33 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-11-12 08:33 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-11-05 13:09 - 2014-11-05 13:09 - 00000000 ____D () C:\Users\Helča\AppData\Local\{2D616493-865C-4A9E-AAE4-55F3FBA80943}
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-01 16:16 - 2012-11-29 08:54 - 00000962 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000UA.job
2014-12-01 15:15 - 2012-11-29 08:54 - 00000910 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000Core.job
2014-12-01 15:15 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\tracing
2014-12-01 15:12 - 2012-06-23 12:08 - 00000000 ____D () C:\windows\pss
2014-12-01 10:46 - 2009-07-14 05:34 - 00016160 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-01 10:46 - 2009-07-14 05:34 - 00016160 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-01 10:31 - 2009-07-14 05:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-11-30 06:48 - 2012-10-30 07:53 - 00000354 _____ () C:\windows\Tasks\Driver Robot.job
2014-11-29 22:16 - 2009-07-27 11:11 - 01615386 _____ () C:\windows\system32\PerfStringBackup.INI
2014-11-29 22:09 - 2011-10-21 11:07 - 00000000 ____D () C:\Users\Helča
2014-11-26 13:39 - 2012-03-10 22:35 - 00002330 _____ () C:\Users\Helča\Desktop\Google Chrome.lnk
2014-11-20 16:46 - 2013-08-29 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPlayCity.com
2014-11-20 16:44 - 2013-08-29 16:16 - 00000000 ____D () C:\Program Files\MyPlayCity.com
2014-11-20 16:44 - 2011-10-29 21:58 - 00000000 ____D () C:\Users\Helča\AppData\Local\Deployment
2014-11-13 22:45 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\rescache
2014-11-13 12:28 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\Microsoft.NET
2014-11-13 08:42 - 2009-07-14 05:33 - 00303984 _____ () C:\windows\system32\FNTCACHE.DAT
2014-11-13 08:39 - 2014-05-01 05:16 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-11-13 08:01 - 2013-08-15 03:55 - 00000000 ____D () C:\windows\system32\MRT
2014-11-13 07:16 - 2011-10-31 17:44 - 100445232 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
FontResizer (HKLM\...\InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}) (Version: 1.01.0011 - ASUSTek)
FontResizer (Version: 1.01.0011 - ASUSTek) Hidden
==================== Scheduled Tasks (whitelisted) ==================
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Hel�a\Desktop" je 687 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage
C:\Program Files\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eee Docking
C:\Program Files\ASUS\Eee Docking\Eee Docking.exe autorun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDWare
%ProgramFiles%\Elantech\ETDCtrl.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
"C:\Users\Hel�a\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon
AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService
AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotkeyService.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
C:\windows\system32\igfxtray.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate
AsusSender.exe C:\Program Files\Asus\LiveUpdate\LiveUpdate.exe auto [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MFFSum_Pro_LL2
"C:\Program Files\Xerox Companion Suite\MFFSUM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MFPrintServer_Pro_LL2
"C:\Program Files\Xerox Companion Suite\MFPrintServer.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence
C:\windows\system32\igfxpers.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine
AsusSender.exe C:\Program Files\ASUS\SHE\SuperHybridEngine.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk
C:\PROGRA~1\Asus\AsusVibe\ASUSVI~2.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Hel�a^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Hel�a^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Tady je log :
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-12-2014
Ran by Helča (administrator) on HELCA-PC on 01-12-2014 16:19:06
Running from C:\Users\Helča\Desktop
Loaded Profile: Helča (Available profiles: Helča)
Platform: Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
() C:\Windows\System32\AsusService.exe
() C:\Windows\System32\FUSServices.exe
(Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
(ASUSTeK Computer Inc.) C:\Program Files\Asus\HotkeyService\HotkeyService.exe
(ASUSTeK Computer Inc.) C:\Program Files\Asus\HotkeyService\HotKeyMon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ASUS) C:\Program Files\Asus\CapsHook\CapsHook.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Helča\Desktop\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9177632 2010-04-27] (Realtek Semiconductor)
HKLM\...\Run: [ASUSPRP] => C:\Program Files\ASUS\APRP\APRP.EXE [2018032 2011-04-18] (ASUSTek Computer Inc.)
HKLM\...\Run: [CapsHook] => C:\Program Files\ASUS\CapsHook\CapsHook.exe [445344 2010-11-15] (ASUS)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [974432 2014-08-22] (Microsoft Corporation)
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\...\Run: [Google Update] => "C:\Users\Hel
a\AppData\Local\Google\Update\GoogleUpdate.exe" /c
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {CC5FC992-B0AA-47CD-9DC2-83445083CBB8} => C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll ()
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {618A47A2-528B-4D9A-AFC8-97D3233511E2} => C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Tcpip\Parameters: [DhcpNameServer] 172.16.16.1
FireFox:
========
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2117519805-2901314670-1855320360-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2117519805-2901314670-1855320360-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2117519805-2901314670-1855320360-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Helča\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR Profile: C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-19]
CHR Extension: (Dokumenty Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-19]
CHR Extension: (Disk Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-19]
CHR Extension: (YouTube) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-03-10]
CHR Extension: (Vyhledávání Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-03-10]
CHR Extension: (Tabulky Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-19]
CHR Extension: (Peněženka Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-19]
CHR Extension: (Gmail) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-03-10]
CHR Profile: C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Learn French - Très Bien) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aeifanonhefcaphaeeknpklkfnjjmpec [2013-07-10]
CHR Extension: (MyNetDiary Calorie Counter and Food Diary) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjackipnjjjefeppmpbgcdefaplneopj [2013-07-10]
CHR Extension: (YouTube) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-07-10]
CHR Extension: (Math Mahjong) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cbcfbhpnngegochhbdlanodnmijfplal [2013-07-10]
CHR Extension: (Adblock Plus) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-07-10]
CHR Extension: (Vyhledávání Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-07-10]
CHR Extension: (GAIN Fitness) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cpompjlmddcnpijabjfcgnpmoibdffoc [2013-07-10]
CHR Extension: (World of Solitaire) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ifbnllnaaaohekjkcpfdllhhjijnidgn [2013-07-10]
CHR Extension: (Lose It!) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jehemifhdilebjjpibeianiedocpgocn [2013-07-10]
CHR Extension: (Diet Diary) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\neckeibmjhibmgoigmffjlihekefmffd [2013-07-10]
CHR Extension: (Peněženka Google) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-26]
CHR Extension: (Gmail) - C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-07-10]
CHR StartMenuInternet: Google Chrome - C:\Users\Helča\AppData\Local\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AsusService; C:\windows\system32\AsusService.exe [224680 2010-12-07] ()
R2 FUSServices; C:\windows\system32\FUSServices.exe [10752 2010-02-11] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22192 2014-08-22] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [288120 2014-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\windows\System32\drivers\AsIO.sys [11456 2010-06-28] ()
R1 AsUpIO; C:\windows\System32\drivers\AsUpIO.sys [11832 2010-08-03] ()
R3 ETD; C:\windows\System32\DRIVERS\ETD.sys [102912 2010-07-21] (ELAN Microelectronic Corp.)
R3 kbfiltr; C:\windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
R0 MpFilter; C:\windows\System32\DRIVERS\MpFilter.sys [231800 2014-07-17] (Microsoft Corporation)
S3 XMLDIUSB; C:\windows\System32\Drivers\XMLDIUSB.sys [33152 2010-01-29] (OEM)
U5 AppMgmt; C:\windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 btwaudio; system32\drivers\btwaudio.sys [X]
S3 btwavdt; \SystemRoot\system32\drivers\btwavdt.sys [X]
S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [X]
S3 btwrchid; \SystemRoot\system32\drivers\btwrchid.sys [X]
S3 catchme; \??\C:\Users\HELA~1\AppData\Local\Temp\catchme.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
R1 MpKsl8f0fb9f5; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F67DC294-2B5A-42D6-BA48-39D5C8B201F3}\MpKsl8f0fb9f5.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-01 16:19 - 2014-12-01 16:29 - 00013417 _____ () C:\Users\Helča\Desktop\FRST.txt
2014-12-01 16:15 - 2014-12-01 16:21 - 00000000 ____D () C:\FRST
2014-12-01 16:12 - 2014-12-01 16:12 - 00112640 _____ (forum.viry.cz) C:\Users\Helča\Desktop\FRSTLauncher (1).exe
2014-12-01 16:07 - 2014-12-01 16:07 - 00112640 _____ (forum.viry.cz) C:\Users\Helča\Downloads\Nepotvrzeno 648100.crdownload
2014-12-01 15:34 - 2014-12-01 15:35 - 01109504 _____ (Farbar) C:\Users\Helča\Desktop\FRST.exe
2014-12-01 15:09 - 2014-12-01 15:09 - 00000270 _____ () C:\Users\Helča\Documents\cc_20141201_150841.reg
2014-11-29 21:40 - 2014-11-29 21:40 - 00000000 __SHD () C:\found.003
2014-11-29 12:43 - 2014-11-29 12:44 - 00000000 ____D () C:\Users\Helča\AppData\Local\{238B625B-90AD-4317-85E3-E652A8C73F65}
2014-11-20 16:50 - 2014-12-01 11:57 - 00631116 ____N () C:\windows\WindowsUpdate.log
2014-11-20 16:50 - 2014-11-20 16:50 - 00002798 _____ () C:\Users\Helča\Documents\cc_20141120_165039.reg
2014-11-20 14:40 - 2014-11-20 14:40 - 00000000 __SHD () C:\found.002
2014-11-20 10:00 - 2014-11-20 10:00 - 00000000 __SHD () C:\found.001
2014-11-19 13:30 - 2014-11-19 13:30 - 00000000 __SHD () C:\found.000
2014-11-19 06:41 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-11-19 06:41 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\windows\system32\pku2u.dll
2014-11-18 14:10 - 2014-11-18 14:10 - 00000000 ____D () C:\Users\Helča\AppData\Local\{6466F372-9BC4-4790-BFAE-795D1ADDA5E2}
2014-11-18 14:09 - 2014-11-18 14:09 - 00000000 __SHD () C:\Users\Helča\AppData\Local\EmieBrowserModeList
2014-11-12 08:39 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2014-11-12 08:39 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\windows\system32\IMJP10K.DLL
2014-11-12 08:38 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-11-12 08:37 - 2014-10-10 01:45 - 02379264 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-11-12 08:37 - 2014-10-03 02:44 - 00475136 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00275968 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2014-11-12 08:37 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-11-12 08:37 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-11-12 08:37 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-11-12 08:37 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-11-12 08:36 - 2014-11-05 18:50 - 00254464 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-11-12 08:36 - 2014-11-05 18:50 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-11-12 08:36 - 2014-11-05 18:47 - 00302592 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-11-12 08:36 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-11-12 08:36 - 2014-10-14 02:56 - 00136632 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2014-11-12 08:36 - 2014-10-14 02:50 - 01059840 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-11-12 08:36 - 2014-10-14 02:50 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-11-12 08:36 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2014-11-12 08:36 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2014-11-12 08:35 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-11-12 08:35 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-11-12 08:35 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-11-12 08:35 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-11-12 08:35 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-11-12 08:35 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-11-12 08:35 - 2014-11-06 03:59 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-11-12 08:35 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-11-12 08:35 - 2014-11-06 03:51 - 00667648 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-11-12 08:35 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-11-12 08:35 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 08:35 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-11-12 08:35 - 2014-11-06 03:22 - 00683008 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-11-12 08:35 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-11-12 08:35 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-11-12 08:34 - 2014-11-06 04:28 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-11-12 08:34 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-11-12 08:34 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-11-12 08:34 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-11-12 08:34 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-11-12 08:33 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-11-12 08:33 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-11-12 08:33 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-11-12 08:33 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-11-12 08:33 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-11-12 08:33 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-11-12 08:33 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-11-12 08:33 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-11-12 08:33 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-11-12 08:33 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-11-05 13:09 - 2014-11-05 13:09 - 00000000 ____D () C:\Users\Helča\AppData\Local\{2D616493-865C-4A9E-AAE4-55F3FBA80943}
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-01 16:16 - 2012-11-29 08:54 - 00000962 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000UA.job
2014-12-01 15:15 - 2012-11-29 08:54 - 00000910 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000Core.job
2014-12-01 15:15 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\tracing
2014-12-01 15:12 - 2012-06-23 12:08 - 00000000 ____D () C:\windows\pss
2014-12-01 10:46 - 2009-07-14 05:34 - 00016160 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-01 10:46 - 2009-07-14 05:34 - 00016160 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-01 10:31 - 2009-07-14 05:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-11-30 06:48 - 2012-10-30 07:53 - 00000354 _____ () C:\windows\Tasks\Driver Robot.job
2014-11-29 22:16 - 2009-07-27 11:11 - 01615386 _____ () C:\windows\system32\PerfStringBackup.INI
2014-11-29 22:09 - 2011-10-21 11:07 - 00000000 ____D () C:\Users\Helča
2014-11-26 13:39 - 2012-03-10 22:35 - 00002330 _____ () C:\Users\Helča\Desktop\Google Chrome.lnk
2014-11-20 16:46 - 2013-08-29 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPlayCity.com
2014-11-20 16:44 - 2013-08-29 16:16 - 00000000 ____D () C:\Program Files\MyPlayCity.com
2014-11-20 16:44 - 2011-10-29 21:58 - 00000000 ____D () C:\Users\Helča\AppData\Local\Deployment
2014-11-13 22:45 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\rescache
2014-11-13 12:28 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\Microsoft.NET
2014-11-13 08:42 - 2009-07-14 05:33 - 00303984 _____ () C:\windows\system32\FNTCACHE.DAT
2014-11-13 08:39 - 2014-05-01 05:16 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-11-13 08:01 - 2013-08-15 03:55 - 00000000 ____D () C:\windows\system32\MRT
2014-11-13 07:16 - 2011-10-31 17:44 - 100445232 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
FontResizer (HKLM\...\InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}) (Version: 1.01.0011 - ASUSTek)
FontResizer (Version: 1.01.0011 - ASUSTek) Hidden
==================== Scheduled Tasks (whitelisted) ==================
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Hel�a\Desktop" je 687 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage
C:\Program Files\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eee Docking
C:\Program Files\ASUS\Eee Docking\Eee Docking.exe autorun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDWare
%ProgramFiles%\Elantech\ETDCtrl.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
"C:\Users\Hel�a\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon
AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService
AsusSender.exe C:\Program Files\ASUS\HotkeyService\HotkeyService.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
C:\windows\system32\igfxtray.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate
AsusSender.exe C:\Program Files\Asus\LiveUpdate\LiveUpdate.exe auto [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MFFSum_Pro_LL2
"C:\Program Files\Xerox Companion Suite\MFFSUM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MFPrintServer_Pro_LL2
"C:\Program Files\Xerox Companion Suite\MFPrintServer.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence
C:\windows\system32\igfxpers.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine
AsusSender.exe C:\Program Files\ASUS\SHE\SuperHybridEngine.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk
C:\PROGRA~1\Asus\AsusVibe\ASUSVI~2.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Hel�a^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Hel�a^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Re: CPU na 100% - zasekaný notebook
Zdravim
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: CPU na 100% - zasekaný notebook
log z adwcleaner :
# AdwCleaner v4.103 - Report created 01/12/2014 at 17:38:03
# Updated 01/12/2014 by Xplode
# Database : 2014-12-01.2 [Live]
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Helča - HELCA-PC
# Running from : C:\Users\Helča\Desktop\adwcleaner_4.103.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : FUSServices
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Users\Helča\AppData\Local\apn
Folder Deleted : C:\Users\Helča\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Public\Documents\AlawarWrapper
File Deleted : C:\Users\Public\Desktop\eBay.lnk
File Deleted : C:\windows\system32\FUSServices.exe
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
-\\ Google Chrome v
[C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AWR&o=1955&locale=en_EU&apn_uid=ab30f385-43fc-4e8b-b4ba-a5c83b779811&apn_ptnrs=%5EA17&apn_sauid=34B9ED61-E22B-4B61-960D-7812C4582821&apn_dtid=%5EYYYYYY%5EYY%5ECZ&q={searchTerms}
[C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AWR&o=1955&locale=en_EU&apn_uid=ab30f385-43fc-4e8b-b4ba-a5c83b779811&apn_ptnrs=%5EA17&apn_sauid=34B9ED61-E22B-4B61-960D-7812C4582821&apn_dtid=%5EYYYYYY%5EYY%5ECZ&q={searchTerms}
*************************
AdwCleaner[R0].txt - [1734 octets] - [01/12/2014 17:11:17]
AdwCleaner[S0].txt - [1673 octets] - [01/12/2014 17:38:03]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1733 octets] ##########
# AdwCleaner v4.103 - Report created 01/12/2014 at 17:38:03
# Updated 01/12/2014 by Xplode
# Database : 2014-12-01.2 [Live]
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)
# Username : Helča - HELCA-PC
# Running from : C:\Users\Helča\Desktop\adwcleaner_4.103.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : FUSServices
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Users\Helča\AppData\Local\apn
Folder Deleted : C:\Users\Helča\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Public\Documents\AlawarWrapper
File Deleted : C:\Users\Public\Desktop\eBay.lnk
File Deleted : C:\windows\system32\FUSServices.exe
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
-\\ Google Chrome v
[C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AWR&o=1955&locale=en_EU&apn_uid=ab30f385-43fc-4e8b-b4ba-a5c83b779811&apn_ptnrs=%5EA17&apn_sauid=34B9ED61-E22B-4B61-960D-7812C4582821&apn_dtid=%5EYYYYYY%5EYY%5ECZ&q={searchTerms}
[C:\Users\Helča\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AWR&o=1955&locale=en_EU&apn_uid=ab30f385-43fc-4e8b-b4ba-a5c83b779811&apn_ptnrs=%5EA17&apn_sauid=34B9ED61-E22B-4B61-960D-7812C4582821&apn_dtid=%5EYYYYYY%5EYY%5ECZ&q={searchTerms}
*************************
AdwCleaner[R0].txt - [1734 octets] - [01/12/2014 17:11:17]
AdwCleaner[S0].txt - [1673 octets] - [01/12/2014 17:38:03]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1733 octets] ##########
Re: CPU na 100% - zasekaný notebook
log ze zoek:
Zoek.exe v5.0.0.0 Updated 29-11-2014
Tool run by Helźa on po 01.12.2014 at 18:16:39,97.
Microsoft Windows 7 Starter 6.1.7601 Service Pack 1 x86
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\HELA~1\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
1.12.2014 18:23:10 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\Program Files\MSXML 4.0 deleted successfully
C:\Program Files\MyPlayCity.com deleted successfully
C:\PROGRA~2\AWEM deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\found.000 deleted
C:\found.001 deleted
C:\found.002 deleted
C:\found.003 deleted
C:\Users\HELA~1\AppData\Local\Com deleted
C:\windows\system32\config\systemprofile\Searches deleted
==== Chromium Look ======================
Learn French - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aeifanonhefcaphaeeknpklkfnjjmpec
MyNetDiary Calorie Counter and Food Diary - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjackipnjjjefeppmpbgcdefaplneopj
Math Mahjong - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cbcfbhpnngegochhbdlanodnmijfplal
GAIN Fitness - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cpompjlmddcnpijabjfcgnpmoibdffoc
World of Solitaire - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ifbnllnaaaohekjkcpfdllhhjijnidgn
Lose It - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jehemifhdilebjjpibeianiedocpgocn
Diet Diary - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\neckeibmjhibmgoigmffjlihekefmffd
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... -SearchBox"
==== Reset Google Chrome ======================
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine deleted successfully
==== Empty IE Cache ======================
C:\Users\HELA~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\HELA~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=10 folders=16 1063432 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\HELA~1\AppData\Local\temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\windows\Temp successfully emptied
C:\Users\HELA~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on po 01.12.2014 at 19:04:04,50 ======================
Zoek.exe v5.0.0.0 Updated 29-11-2014
Tool run by Helźa on po 01.12.2014 at 18:16:39,97.
Microsoft Windows 7 Starter 6.1.7601 Service Pack 1 x86
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\HELA~1\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
1.12.2014 18:23:10 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\Program Files\MSXML 4.0 deleted successfully
C:\Program Files\MyPlayCity.com deleted successfully
C:\PROGRA~2\AWEM deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
HKEY_USERS\S-1-5-21-2117519805-2901314670-1855320360-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\found.000 deleted
C:\found.001 deleted
C:\found.002 deleted
C:\found.003 deleted
C:\Users\HELA~1\AppData\Local\Com deleted
C:\windows\system32\config\systemprofile\Searches deleted
==== Chromium Look ======================
Learn French - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aeifanonhefcaphaeeknpklkfnjjmpec
MyNetDiary Calorie Counter and Food Diary - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bjackipnjjjefeppmpbgcdefaplneopj
Math Mahjong - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cbcfbhpnngegochhbdlanodnmijfplal
GAIN Fitness - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cpompjlmddcnpijabjfcgnpmoibdffoc
World of Solitaire - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ifbnllnaaaohekjkcpfdllhhjijnidgn
Lose It - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jehemifhdilebjjpibeianiedocpgocn
Diet Diary - HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\neckeibmjhibmgoigmffjlihekefmffd
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... -SearchBox"
==== Reset Google Chrome ======================
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine deleted successfully
==== Empty IE Cache ======================
C:\Users\HELA~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\HELA~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\HELA~1\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=10 folders=16 1063432 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\HELA~1\AppData\Local\temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\windows\Temp successfully emptied
C:\Users\HELA~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on po 01.12.2014 at 19:04:04,50 ======================
Re: CPU na 100% - zasekaný notebook
nejde se mi ale připojit k internetu, musela jsem vše stahovat a posílat ze stolního PC 

Re: CPU na 100% - zasekaný notebook
Restart PC, mackat F8, zvolit Stav nouze s praci v siti a zkuste jestli funguje internet tam.
Internet nefunguje az po nejacich lecebnych krocich nebo nefungoval uz predtim??
Internet nefunguje az po nejacich lecebnych krocich nebo nefungoval uz predtim??
Re: CPU na 100% - zasekaný notebook
Prestal slapat az po scanu adwcleanru. Ani v nouzovem rezimu nefunguje. Zvuk take nesel, u nej jsem aktualizovala ovladac a uz funguje.
Re: CPU na 100% - zasekaný notebook



Re: CPU na 100% - zasekaný notebook
omlouvám se za zpoždění, tady je log. Internet stále nejde, ovladač jsem aktualizovala, notebook je k wifi připojený, ale net nejde.
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 01-12-2014
Ran by Helča at 2014-12-03 16:09:57
Running from C:\Users\Helča\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 9.21beta (HKLM\...\7-Zip) (Version: - )
Acrobat.com (HKLM\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.)
Adobe Flash Player 10 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 10.2.152.32 - Adobe Systems Incorporated)
Adobe Reader 9.2 MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.2.0 - Adobe Systems Incorporated)
ASUS WebStorage (HKLM\...\ASUS WebStorage) (Version: 3.0.108.222 - eCareme Technologies, Inc.)
ASUSUpdate for Eee PC (HKLM\...\{587178E7-B1DF-494E-9838-FA4DD36E873C}) (Version: 1.06.02 - ASUSTeK Computer Inc.)
AsusVibe2.0 (HKLM\...\Asus Vibe2.0) (Version: 2.0.9.157 - ASUSTEK)
Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - Atheros)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.35 - Atheros Communications Inc.)
Bing Bar (HKLM\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
CapsHook (HKLM\...\{4B5092B6-F231-4D18-83BC-2618B729CA45}) (Version: 1.0.0.7 - AsusTek Computer)
CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
E-Cam (HKLM\...\{185AFA7A-F63E-450B-94AA-011CAC18090E}) (Version: 2.0.3.0 - AzureWave)
Eee Docking 3.8.3 (HKLM\...\Eee Docking_is1) (Version: 3.8.3 - ASUSTek Computer Inc.)
EeeSplendid (HKLM\...\{6333FC29-BFE5-4024-AC78-958A1A7555D1}) (Version: 5.1.2.0011 - ASUS)
EeeSplendid (Version: 5.1.2.0011 - ASUS) Hidden
ETDWare PS/2-x86 7.0.5.13_WHQL (HKLM\...\Elantech) (Version: 7.0.5.13 - ELAN Microelectronics Corp.)
FontResizer (HKLM\...\InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}) (Version: 1.01.0011 - ASUSTek)
FontResizer (Version: 1.01.0011 - ASUSTek) Hidden
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation)
Galeria fotografii usługi Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Chrome (HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\...\Google Chrome) (Version: 39.0.2171.71 - Google Inc.)
Hotkey Service (HKLM\...\{71C0E38E-09F2-4386-9977-404D4F6640CD}) (Version: 1.37 - AsusTek Computer Inc.)
InstantOn (HKLM\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 1.0.2 - ASUS)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.14.10.2364 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.4.1002 - Intel Corporation)
Java(TM) 6 Update 29 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216029FF}) (Version: 6.0.290 - Oracle)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LiveUpdate (HKLM\...\{38E5A3B1-ADF1-47E0-8024-76310A30EB36}) (Version: 1.28 - AsusTek Computer Inc.)
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
OpenOffice.org 3.4.1 (HKLM\...\{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}) (Version: 3.41.9593 - Apache Software Foundation)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation)
Poczta usługi Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Ralink RT2860 Wireless LAN Card (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 1.5.1.0 - Ralink)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6098 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM\...\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}) (Version: 1.00.0159 - REALTEK Semiconductor Corp.)
Super Hybrid Engine (HKLM\...\{88F08F98-12BC-4613-81A2-8F9B88CFC73E}) (Version: 2.17 - AsusTek Computer)
Unity Web Player (HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Windows Driver Package - Broadcom Bluetooth (07/17/2009 6.2.0.9403) (HKLM\...\B41C7C96D83162A676DA7365ADEFD6C1AF62A4EE) (Version: 07/17/2009 6.2.0.9403 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) (HKLM\...\B5C82F3814F82FB37F1513B3185399BD88892B08) (Version: 07/29/2009 6.1.7100.0 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (HKLM\...\{6E29C4F7-C2C2-4B18-A15C-E09B92065F15}) (Version: 15.4.5722.2 - Microsoft Corporation)
Xerox Phaser3100 MFP (HKLM\...\{ABDB5A8F-A163-4FD7-A8AE-E2695ACFEA90}) (Version: 1.2.5 - )
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Helča\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{5C65F4B0-3651-4514-B207-D10CB699B14B}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Chrome\Application\39.0.2171.71\delegate_execute.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\psuser.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\psuser.dll (Google Inc.)
==================== Restore Points =========================
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:04 - 2014-12-01 18:23 - 00000840 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {C29590B4-9A48-4B1B-B3ED-3442FCFD70AF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000Core => C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {E727CA66-F570-4E64-B81E-9A6C9922ED76} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000UA => C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {F7B14758-DA43-4A6D-9E03-2921404B787E} - System32\Tasks\Driver Robot => C:\Program Files\Driver Robot\1.2.0.5\DriverRobot.exe
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Driver Robot.job => C:\Program Files\Driver Robot\1.2.0.5\DriverRobot.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000Core.job => C:\Users\Hel
a\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000UA.job => C:\Users\Hel
a\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2010-09-02 12:08 - 2010-09-02 12:08 - 00118784 _____ () C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll
2011-04-18 10:03 - 2010-12-07 17:19 - 00224680 _____ () C:\windows\system32\AsusService.exe
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk => C:\windows\pss\AsusVibeLauncher.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Helča^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk => C:\windows\pss\OpenOffice.org 3.3.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Helča^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\windows\pss\OpenOffice.org 3.4.1.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
MSCONFIG\startupreg: Eee Docking => C:\Program Files\ASUS\Eee Docking\Eee Docking.exe autorun
MSCONFIG\startupreg: ETDWare => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: Google Update => "C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: IgfxTray => C:\windows\system32\igfxtray.exe
MSCONFIG\startupreg: MFFSum_Pro_LL2 => "C:\Program Files\Xerox Companion Suite\MFFSUM.exe"
MSCONFIG\startupreg: MFPrintServer_Pro_LL2 => "C:\Program Files\Xerox Companion Suite\MFPrintServer.exe"
MSCONFIG\startupreg: Persistence => C:\windows\system32\igfxpers.exe
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
========================= Accounts: ==========================
Administrator (S-1-5-21-2117519805-2901314670-1855320360-500 - Administrator - Disabled)
Guest (S-1-5-21-2117519805-2901314670-1855320360-501 - Limited - Disabled)
Helča (S-1-5-21-2117519805-2901314670-1855320360-1000 - Administrator - Enabled) => C:\Users\Helča
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/03/2014 04:05:15 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:15:19 PM) (Source: MsiInstaller) (EventID: 10005) (User: HELCA-PC)
Description: Produkt: Xerox Phaser3100 MFP - Chyba 2343. Specified path is empty.
Error: (12/02/2014 08:57:16 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 08:19:35 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 03:16:52 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 02:04:17 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:11:31 AM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:53:38 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:34:18 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoID={E34BD8A7-5360-4594-8AF7-0D0E19B30ECE}: Uživatel HELCA-PC\Helča vytočil připojení s názvem Nové připojení, které se nezdařilo. Kód chyby vrácený při selhání je 797.
Error: (12/01/2014 08:16:43 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
System errors:
=============
Error: (12/03/2014 04:08:14 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Windows Update byla ukončena s následující chybou:
%%-2147014874
Error: (12/03/2014 04:05:36 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:35 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:32 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:28 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
cdrom
Error: (12/03/2014 04:05:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Zprostředkovatel domácích skupin závisí na službě Publikování prostředků rozpoznávání funkcí, která neuspěla při spuštění v důsledku následující chyby:
%%-2147024809
Error: (12/03/2014 04:05:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Publikování prostředků rozpoznávání funkcí byla ukončena s následující chybou:
%%-2147024809
Error: (12/02/2014 09:21:13 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Windows Update byla ukončena s následující chybou:
%%-2147014874
Error: (12/02/2014 09:20:43 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Windows Update byla ukončena s následující chybou:
%%-2147014874
Microsoft Office Sessions:
=========================
Error: (12/03/2014 04:05:15 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:15:19 PM) (Source: MsiInstaller) (EventID: 10005) (User: HELCA-PC)
Description: Produkt: Xerox Phaser3100 MFP - Chyba 2343. Specified path is empty.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (12/02/2014 08:57:16 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 08:19:35 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 03:16:52 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 02:04:17 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:11:31 AM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:53:38 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:34:18 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: {E34BD8A7-5360-4594-8AF7-0D0E19B30ECE}HELCA-PC\HelčaNové připojení797
Error: (12/01/2014 08:16:43 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
==================== Memory info ===========================
Processor: Intel(R) Atom(TM) CPU N455 @ 1.66GHz
Percentage of memory in use: 65%
Total physical RAM: 1014.18 MB
Available physical RAM: 352.88 MB
Total Pagefile: 2038.18 MB
Available Pagefile: 1366.41 MB
Total Virtual: 2047.88 MB
Available Virtual: 1928.41 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:100 GB) (Free:73.3 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:183.07 GB) (Free:182.4 GB) NTFS
Drive e: () (Removable) (Total:1.83 GB) (Free:0.13 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: E588A9FC)
Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=15 GB) - (Type=1B)
Partition 3: (Not Active) - (Size=183.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=16 MB) - (Type=EF)
========================================================
Disk: 1 (Size: 1.8 GB) (Disk ID: 6F20736B)
No partition Table on disk 1.
Disk 1 is a removable device.
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 01-12-2014
Ran by Helča at 2014-12-03 16:09:57
Running from C:\Users\Helča\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 9.21beta (HKLM\...\7-Zip) (Version: - )
Acrobat.com (HKLM\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.)
Adobe Flash Player 10 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 10.2.152.32 - Adobe Systems Incorporated)
Adobe Reader 9.2 MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.2.0 - Adobe Systems Incorporated)
ASUS WebStorage (HKLM\...\ASUS WebStorage) (Version: 3.0.108.222 - eCareme Technologies, Inc.)
ASUSUpdate for Eee PC (HKLM\...\{587178E7-B1DF-494E-9838-FA4DD36E873C}) (Version: 1.06.02 - ASUSTeK Computer Inc.)
AsusVibe2.0 (HKLM\...\Asus Vibe2.0) (Version: 2.0.9.157 - ASUSTEK)
Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - Atheros)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.35 - Atheros Communications Inc.)
Bing Bar (HKLM\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
CapsHook (HKLM\...\{4B5092B6-F231-4D18-83BC-2618B729CA45}) (Version: 1.0.0.7 - AsusTek Computer)
CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
E-Cam (HKLM\...\{185AFA7A-F63E-450B-94AA-011CAC18090E}) (Version: 2.0.3.0 - AzureWave)
Eee Docking 3.8.3 (HKLM\...\Eee Docking_is1) (Version: 3.8.3 - ASUSTek Computer Inc.)
EeeSplendid (HKLM\...\{6333FC29-BFE5-4024-AC78-958A1A7555D1}) (Version: 5.1.2.0011 - ASUS)
EeeSplendid (Version: 5.1.2.0011 - ASUS) Hidden
ETDWare PS/2-x86 7.0.5.13_WHQL (HKLM\...\Elantech) (Version: 7.0.5.13 - ELAN Microelectronics Corp.)
FontResizer (HKLM\...\InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}) (Version: 1.01.0011 - ASUSTek)
FontResizer (Version: 1.01.0011 - ASUSTek) Hidden
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation)
Galeria fotografii usługi Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Chrome (HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\...\Google Chrome) (Version: 39.0.2171.71 - Google Inc.)
Hotkey Service (HKLM\...\{71C0E38E-09F2-4386-9977-404D4F6640CD}) (Version: 1.37 - AsusTek Computer Inc.)
InstantOn (HKLM\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 1.0.2 - ASUS)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.14.10.2364 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.4.1002 - Intel Corporation)
Java(TM) 6 Update 29 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216029FF}) (Version: 6.0.290 - Oracle)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LiveUpdate (HKLM\...\{38E5A3B1-ADF1-47E0-8024-76310A30EB36}) (Version: 1.28 - AsusTek Computer Inc.)
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
OpenOffice.org 3.4.1 (HKLM\...\{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}) (Version: 3.41.9593 - Apache Software Foundation)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation)
Poczta usługi Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Ralink RT2860 Wireless LAN Card (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 1.5.1.0 - Ralink)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6098 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM\...\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}) (Version: 1.00.0159 - REALTEK Semiconductor Corp.)
Super Hybrid Engine (HKLM\...\{88F08F98-12BC-4613-81A2-8F9B88CFC73E}) (Version: 2.17 - AsusTek Computer)
Unity Web Player (HKU\S-1-5-21-2117519805-2901314670-1855320360-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Windows Driver Package - Broadcom Bluetooth (07/17/2009 6.2.0.9403) (HKLM\...\B41C7C96D83162A676DA7365ADEFD6C1AF62A4EE) (Version: 07/17/2009 6.2.0.9403 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) (HKLM\...\B5C82F3814F82FB37F1513B3185399BD88892B08) (Version: 07/29/2009 6.1.7100.0 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (HKLM\...\{6E29C4F7-C2C2-4B18-A15C-E09B92065F15}) (Version: 15.4.5722.2 - Microsoft Corporation)
Xerox Phaser3100 MFP (HKLM\...\{ABDB5A8F-A163-4FD7-A8AE-E2695ACFEA90}) (Version: 1.2.5 - )
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Helča\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{5C65F4B0-3651-4514-B207-D10CB699B14B}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Chrome\Application\39.0.2171.71\delegate_execute.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\psuser.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2117519805-2901314670-1855320360-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Helča\AppData\Local\Google\Update\1.3.25.11\psuser.dll (Google Inc.)
==================== Restore Points =========================
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:04 - 2014-12-01 18:23 - 00000840 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {C29590B4-9A48-4B1B-B3ED-3442FCFD70AF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000Core => C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {E727CA66-F570-4E64-B81E-9A6C9922ED76} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000UA => C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {F7B14758-DA43-4A6D-9E03-2921404B787E} - System32\Tasks\Driver Robot => C:\Program Files\Driver Robot\1.2.0.5\DriverRobot.exe
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Driver Robot.job => C:\Program Files\Driver Robot\1.2.0.5\DriverRobot.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000Core.job => C:\Users\Hel
a\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2117519805-2901314670-1855320360-1000UA.job => C:\Users\Hel
a\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2010-09-02 12:08 - 2010-09-02 12:08 - 00118784 _____ () C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll
2011-04-18 10:03 - 2010-12-07 17:19 - 00224680 _____ () C:\windows\system32\AsusService.exe
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk => C:\windows\pss\AsusVibeLauncher.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Helča^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk => C:\windows\pss\OpenOffice.org 3.3.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Helča^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\windows\pss\OpenOffice.org 3.4.1.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
MSCONFIG\startupreg: Eee Docking => C:\Program Files\ASUS\Eee Docking\Eee Docking.exe autorun
MSCONFIG\startupreg: ETDWare => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: Google Update => "C:\Users\Helča\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: IgfxTray => C:\windows\system32\igfxtray.exe
MSCONFIG\startupreg: MFFSum_Pro_LL2 => "C:\Program Files\Xerox Companion Suite\MFFSUM.exe"
MSCONFIG\startupreg: MFPrintServer_Pro_LL2 => "C:\Program Files\Xerox Companion Suite\MFPrintServer.exe"
MSCONFIG\startupreg: Persistence => C:\windows\system32\igfxpers.exe
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
========================= Accounts: ==========================
Administrator (S-1-5-21-2117519805-2901314670-1855320360-500 - Administrator - Disabled)
Guest (S-1-5-21-2117519805-2901314670-1855320360-501 - Limited - Disabled)
Helča (S-1-5-21-2117519805-2901314670-1855320360-1000 - Administrator - Enabled) => C:\Users\Helča
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/03/2014 04:05:15 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:15:19 PM) (Source: MsiInstaller) (EventID: 10005) (User: HELCA-PC)
Description: Produkt: Xerox Phaser3100 MFP - Chyba 2343. Specified path is empty.
Error: (12/02/2014 08:57:16 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 08:19:35 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 03:16:52 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 02:04:17 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:11:31 AM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:53:38 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:34:18 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoID={E34BD8A7-5360-4594-8AF7-0D0E19B30ECE}: Uživatel HELCA-PC\Helča vytočil připojení s názvem Nové připojení, které se nezdařilo. Kód chyby vrácený při selhání je 797.
Error: (12/01/2014 08:16:43 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
System errors:
=============
Error: (12/03/2014 04:08:14 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Windows Update byla ukončena s následující chybou:
%%-2147014874
Error: (12/03/2014 04:05:36 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:35 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:32 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Agent zásad protokolu IPsec byla ukončena s následující chybou:
%%10022
Error: (12/03/2014 04:05:28 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
cdrom
Error: (12/03/2014 04:05:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Zprostředkovatel domácích skupin závisí na službě Publikování prostředků rozpoznávání funkcí, která neuspěla při spuštění v důsledku následující chyby:
%%-2147024809
Error: (12/03/2014 04:05:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Publikování prostředků rozpoznávání funkcí byla ukončena s následující chybou:
%%-2147024809
Error: (12/02/2014 09:21:13 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Windows Update byla ukončena s následující chybou:
%%-2147014874
Error: (12/02/2014 09:20:43 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Windows Update byla ukončena s následující chybou:
%%-2147014874
Microsoft Office Sessions:
=========================
Error: (12/03/2014 04:05:15 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:15:19 PM) (Source: MsiInstaller) (EventID: 10005) (User: HELCA-PC)
Description: Produkt: Xerox Phaser3100 MFP - Chyba 2343. Specified path is empty.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (12/02/2014 08:57:16 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 08:19:35 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 03:16:52 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 02:04:17 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/02/2014 09:11:31 AM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:53:38 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
Error: (12/01/2014 08:34:18 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: {E34BD8A7-5360-4594-8AF7-0D0E19B30ECE}HELCA-PC\HelčaNové připojení797
Error: (12/01/2014 08:16:43 PM) (Source: Schedule) (EventID: 0) (User: )
Description: Schedule error: 10022Initialize call failed, bailing out
==================== Memory info ===========================
Processor: Intel(R) Atom(TM) CPU N455 @ 1.66GHz
Percentage of memory in use: 65%
Total physical RAM: 1014.18 MB
Available physical RAM: 352.88 MB
Total Pagefile: 2038.18 MB
Available Pagefile: 1366.41 MB
Total Virtual: 2047.88 MB
Available Virtual: 1928.41 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:100 GB) (Free:73.3 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:183.07 GB) (Free:182.4 GB) NTFS
Drive e: () (Removable) (Total:1.83 GB) (Free:0.13 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: E588A9FC)
Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=15 GB) - (Type=1B)
Partition 3: (Not Active) - (Size=183.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=16 MB) - (Type=EF)
========================================================
Disk: 1 (Size: 1.8 GB) (Disk ID: 6F20736B)
No partition Table on disk 1.
Disk 1 is a removable device.
==================== End Of Log ============================