Nejdou smazat spamy
Napsal: 02 pro 2015 12:30
Prosím o kontrolu a radu - nejdou mazat spamy z pošty.
Additional scan result of Farbar Recovery Scan Tool (x86) Version:01-12-2015
Ran by Arwel (2015-12-02 12:29:18)
Running from C:\Users\Arwel\Desktop
Microsoft Windows 8.1 (X86) (2015-07-26 12:25:44)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1691434953-3710603858-1979380488-500 - Administrator - Disabled)
Arwel (S-1-5-21-1691434953-3710603858-1979380488-1001 - Administrator - Enabled) => C:\Users\Arwel
Guest (S-1-5-21-1691434953-3710603858-1979380488-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1691434953-3710603858-1979380488-1003 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
32 Bit HP CIO Components Installer (Version: 16.1.1 - Hewlett-Packard) Hidden
Adobe Flash Player 19 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Avast Internet Security (HKLM\...\Avast) (Version: 10.4.2233 - AVAST Software)
BS.Player FREE (HKLM\...\BSPlayerf) (Version: 2.69.1079 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.11 - Piriform)
CorelDRAW Graphics Suite 12 (HKLM\...\{505AFDC0-5E72-4928-8368-5DEA385E3647}) (Version: 12.0.0.536 - Corel Corporation)
HP Support Solutions Framework (HKLM\...\{9327D2D1-A0F2-4B33-AA57-0EA3D40054E6}) (Version: 12.0.30.219 - Hewlett-Packard Company)
LaserJet 1020 series (HKLM\...\HP-LaserJet 1020 series) (Version: - )
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 38.1.0 - Mozilla)
Mozilla Thunderbird 38.3.0 (x86 cs) (HKLM\...\Mozilla Thunderbird 38.3.0 (x86 cs)) (Version: 38.3.0 - Mozilla)
OpenOffice 4.1.1 (HKLM\...\{C560D6E7-E40A-435D-8B71-62CBCF1701B2}) (Version: 4.11.9775 - Apache Software Foundation)
Opera Stable 33.0.1990.115 (HKLM\...\Opera 33.0.1990.115) (Version: 33.0.1990.115 - Opera Software)
OrderReminder HP LaserJet 1020 (HKLM\...\OrderReminder HP LaserJet 1020) (Version: 2.0 - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.)
STORMWARE PDF Printer 10.1.0.1871 (HKLM\...\STORMWARE PDF Printer_is1) (Version: 10.1.0.1871 - STORMWARE)
STORMWARE POHODA CZ Premium (HKLM\...\{8C3BA5D5-6FAE-42C3-A3CD-EF1A3872B149}) (Version: 11100.161 - STORMWARE)
STORMWARE POHODA Klient CZ Premium (HKLM\...\{D9291109-63B3-407B-B29F-6CAF69F0DEBB}) (Version: 11100.161 - STORMWARE)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
11-11-2015 08:18:14 Windows Update
18-11-2015 08:20:06 Naplánovaný kontrolní bod
27-11-2015 08:19:12 Naplánovaný kontrolní bod
02-12-2015 09:11:00 Installed STORMWARE POHODA Klient CZ.
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 07:13 - 2013-08-22 07:13 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {38522F0B-03DD-45F5-9CB4-E28E1348C80F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-10-12] (AVAST Software)
Task: {5B5F3382-C564-4500-B66B-F3F4152BEBA1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-10-19] (Piriform Ltd)
Task: {637F4D2E-2CE9-4CDE-898F-42886022D42F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-28] (Hewlett-Packard)
Task: {B6E48F33-D406-4627-92B3-9B6E99851265} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-11] (Adobe Systems Incorporated)
Task: {B8D87042-FD20-45FC-80E9-B55B47676B2E} - System32\Tasks\Driver Booster SkipUAC (Arwel) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe
Task: {B9E33F94-AE6C-4C79-B460-3B11367D88D2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-11-11] (Microsoft Corporation)
Task: {D69BBE5D-E58D-4721-B35C-E911627E41D7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_19_0_0_245_pepper.exe [2015-11-11] (Adobe Systems Incorporated)
Task: {DAC980B9-DEC5-4173-BE6B-836C03EE2E09} - System32\Tasks\Opera scheduled Autoupdate 1437981128 => C:\Program Files\Opera\launcher.exe [2015-11-16] (Opera Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\system32\Macromed\Flash\FlashUtil32_19_0_0_245_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-10-12 07:13 - 2015-10-12 07:13 - 00103376 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-10-12 07:13 - 2015-10-12 07:13 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-11-30 20:13 - 2015-11-30 20:13 - 02812928 _____ () C:\Program Files\AVAST Software\Avast\defs\15113001\algo.dll
2015-12-01 12:18 - 2015-12-01 12:18 - 02813440 _____ () C:\Program Files\AVAST Software\Avast\defs\15120101\algo.dll
2015-10-12 07:13 - 2015-10-12 07:13 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-11-19 13:54 - 2015-11-19 13:53 - 60736120 _____ () C:\Program Files\Opera\33.0.1990.115\opera.dll
2015-07-26 15:33 - 2012-09-18 14:26 - 02223104 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\suhp1020.dll
2015-07-26 15:34 - 2012-09-18 14:26 - 00949248 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\gchp1020.dll
2015-07-26 15:33 - 2012-09-18 14:26 - 00532992 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\sdhp1020.dll
2015-07-26 15:34 - 2012-09-18 14:26 - 00169472 _____ () C:\Windows\System32\ZLhp1020.DLL
2015-07-26 15:34 - 2012-09-18 14:26 - 00059904 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\pphp1020.dll
2015-09-30 11:55 - 2015-09-30 11:55 - 00298792 ____R () \\Vlador\pohoda\StwXML.dll
2014-07-22 07:51 - 2014-07-22 07:51 - 00055808 ____R () \\Vlador\pohoda\zlib1.dll
2015-09-30 11:55 - 2015-09-30 11:55 - 00211752 ____R () \\Vlador\pohoda\StwDataBox.dll
2014-07-22 07:51 - 2014-07-22 07:51 - 24978944 ____R () \\Vlador\pohoda\libcef.dll
2013-08-22 00:55 - 2013-06-18 13:17 - 00364544 _____ () C:\Windows\System32\msjetoledb40.dll
2015-10-01 16:25 - 2015-10-01 16:25 - 00153768 _____ () C:\Program Files\Mozilla Thunderbird\NSLDAP32V60.dll
2015-10-01 16:25 - 2015-10-01 16:25 - 00023208 _____ () C:\Program Files\Mozilla Thunderbird\NSLDAPPR32V60.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1691434953-3710603858-1979380488-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Theme1\img2.jpg
DNS Servers: 192.168.1.1 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "OrderReminder"
HKU\S-1-5-21-1691434953-3710603858-1979380488-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
==================== Faulty Device Manager Devices =============
Name: Sériový port sběrnice PCI
Description: Sériový port sběrnice PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (12/01/2015 00:39:55 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/30/2015 03:57:23 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program StwPh.exe verze 5.1.11103.11 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 1074
Čas spuštění: 01d12b7a98fd336c
Čas ukončení: 0
Cesta k aplikaci: C:\Program Files\STORMWARE\POHODA\StwPh.exe
ID hlášení: 9fc2593e-9772-11e5-972b-0019993d38cc
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/30/2015 02:47:15 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program StwPh.exe verze 5.1.11103.11 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 900
Čas spuštění: 01d12b7312efed6a
Čas ukončení: 562
Cesta k aplikaci: C:\Program Files\STORMWARE\POHODA\StwPh.exe
ID hlášení: d9a7acd9-9768-11e5-972a-0019993d38cc
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/25/2015 03:13:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program glcnd.exe verze 6.3.9600.17994 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 12b0
Čas spuštění: 01d126c1a243a511
Čas ukončení: 270
Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Reader_6.4.9926.17994_x86__8wekyb3d8bbwe\glcnd.exe
ID hlášení: a1c969ca-937e-11e5-9728-0019993d38cc
Úplný název chybujícího balíčku: Microsoft.Reader_6.4.9926.17994_x86__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: Microsoft.Reader
Error: (11/17/2015 01:42:01 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/16/2015 08:18:21 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/10/2015 08:15:12 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/10/2015 07:55:47 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Službě Windows Search se nepodařilo vytvořit nový vyhledávací index. Došlo k vnitřní chybě <4, 0x80070020, Nepodařilo se přidat projekt: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects>.
Error: (11/10/2015 07:54:56 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu. (HRESULT : 0x80040d06) (0x80040d06)
Error: (11/10/2015 07:54:56 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu. (HRESULT : 0x80040d06) (0x80040d06)
System errors:
=============
Error: (12/01/2015 00:16:47 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (11:50:27, 1. 12. 2015) bylo neočekávané.
Error: (11/30/2015 03:08:49 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 03:08:49 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 02:22:30 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Hlavní prohledávač přijal oznámení serveru od počítače VLADOR,
který se považuje za hlavní prohledávač domény pro přenos NetBT_Tcpip_{C1705383-0328-4EB4-B343-1DDE8B26145.
Hlavní prohledávač bude ukončen nebo bude vyvolána volba.
Error: (11/30/2015 01:12:33 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicializace výpisu stavu systému se nezdařila.
Error: (11/30/2015 01:06:26 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:26 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:23 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:22 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:22 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU E8300 @ 2.83GHz
Percentage of memory in use: 75%
Total physical RAM: 2005.29 MB
Available physical RAM: 493.45 MB
Total Virtual: 3285.29 MB
Available Virtual: 866.24 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:193 GB) (Free:150.14 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:111.78 GB) (Free:96.76 GB) NTFS
Drive e: (Elements) (Fixed) (Total:298.09 GB) (Free:166.52 GB) NTFS
Drive f: (Data) (Fixed) (Total:39.88 GB) (Free:39.48 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D85F7F66)
Partition 1: (Active) - (Size=193 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=39.9 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 111.8 GB) (Disk ID: 42134212)
Partition 1: (Active) - (Size=111.8 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 0014D254)
Partition 1: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x86) Version:01-12-2015
Ran by Arwel (2015-12-02 12:29:18)
Running from C:\Users\Arwel\Desktop
Microsoft Windows 8.1 (X86) (2015-07-26 12:25:44)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1691434953-3710603858-1979380488-500 - Administrator - Disabled)
Arwel (S-1-5-21-1691434953-3710603858-1979380488-1001 - Administrator - Enabled) => C:\Users\Arwel
Guest (S-1-5-21-1691434953-3710603858-1979380488-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1691434953-3710603858-1979380488-1003 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
32 Bit HP CIO Components Installer (Version: 16.1.1 - Hewlett-Packard) Hidden
Adobe Flash Player 19 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Avast Internet Security (HKLM\...\Avast) (Version: 10.4.2233 - AVAST Software)
BS.Player FREE (HKLM\...\BSPlayerf) (Version: 2.69.1079 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.11 - Piriform)
CorelDRAW Graphics Suite 12 (HKLM\...\{505AFDC0-5E72-4928-8368-5DEA385E3647}) (Version: 12.0.0.536 - Corel Corporation)
HP Support Solutions Framework (HKLM\...\{9327D2D1-A0F2-4B33-AA57-0EA3D40054E6}) (Version: 12.0.30.219 - Hewlett-Packard Company)
LaserJet 1020 series (HKLM\...\HP-LaserJet 1020 series) (Version: - )
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 38.1.0 - Mozilla)
Mozilla Thunderbird 38.3.0 (x86 cs) (HKLM\...\Mozilla Thunderbird 38.3.0 (x86 cs)) (Version: 38.3.0 - Mozilla)
OpenOffice 4.1.1 (HKLM\...\{C560D6E7-E40A-435D-8B71-62CBCF1701B2}) (Version: 4.11.9775 - Apache Software Foundation)
Opera Stable 33.0.1990.115 (HKLM\...\Opera 33.0.1990.115) (Version: 33.0.1990.115 - Opera Software)
OrderReminder HP LaserJet 1020 (HKLM\...\OrderReminder HP LaserJet 1020) (Version: 2.0 - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.)
STORMWARE PDF Printer 10.1.0.1871 (HKLM\...\STORMWARE PDF Printer_is1) (Version: 10.1.0.1871 - STORMWARE)
STORMWARE POHODA CZ Premium (HKLM\...\{8C3BA5D5-6FAE-42C3-A3CD-EF1A3872B149}) (Version: 11100.161 - STORMWARE)
STORMWARE POHODA Klient CZ Premium (HKLM\...\{D9291109-63B3-407B-B29F-6CAF69F0DEBB}) (Version: 11100.161 - STORMWARE)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
11-11-2015 08:18:14 Windows Update
18-11-2015 08:20:06 Naplánovaný kontrolní bod
27-11-2015 08:19:12 Naplánovaný kontrolní bod
02-12-2015 09:11:00 Installed STORMWARE POHODA Klient CZ.
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 07:13 - 2013-08-22 07:13 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {38522F0B-03DD-45F5-9CB4-E28E1348C80F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-10-12] (AVAST Software)
Task: {5B5F3382-C564-4500-B66B-F3F4152BEBA1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-10-19] (Piriform Ltd)
Task: {637F4D2E-2CE9-4CDE-898F-42886022D42F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-28] (Hewlett-Packard)
Task: {B6E48F33-D406-4627-92B3-9B6E99851265} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-11] (Adobe Systems Incorporated)
Task: {B8D87042-FD20-45FC-80E9-B55B47676B2E} - System32\Tasks\Driver Booster SkipUAC (Arwel) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe
Task: {B9E33F94-AE6C-4C79-B460-3B11367D88D2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-11-11] (Microsoft Corporation)
Task: {D69BBE5D-E58D-4721-B35C-E911627E41D7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_19_0_0_245_pepper.exe [2015-11-11] (Adobe Systems Incorporated)
Task: {DAC980B9-DEC5-4173-BE6B-836C03EE2E09} - System32\Tasks\Opera scheduled Autoupdate 1437981128 => C:\Program Files\Opera\launcher.exe [2015-11-16] (Opera Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\system32\Macromed\Flash\FlashUtil32_19_0_0_245_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-10-12 07:13 - 2015-10-12 07:13 - 00103376 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-10-12 07:13 - 2015-10-12 07:13 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-11-30 20:13 - 2015-11-30 20:13 - 02812928 _____ () C:\Program Files\AVAST Software\Avast\defs\15113001\algo.dll
2015-12-01 12:18 - 2015-12-01 12:18 - 02813440 _____ () C:\Program Files\AVAST Software\Avast\defs\15120101\algo.dll
2015-10-12 07:13 - 2015-10-12 07:13 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-11-19 13:54 - 2015-11-19 13:53 - 60736120 _____ () C:\Program Files\Opera\33.0.1990.115\opera.dll
2015-07-26 15:33 - 2012-09-18 14:26 - 02223104 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\suhp1020.dll
2015-07-26 15:34 - 2012-09-18 14:26 - 00949248 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\gchp1020.dll
2015-07-26 15:33 - 2012-09-18 14:26 - 00532992 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\sdhp1020.dll
2015-07-26 15:34 - 2012-09-18 14:26 - 00169472 _____ () C:\Windows\System32\ZLhp1020.DLL
2015-07-26 15:34 - 2012-09-18 14:26 - 00059904 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\pphp1020.dll
2015-09-30 11:55 - 2015-09-30 11:55 - 00298792 ____R () \\Vlador\pohoda\StwXML.dll
2014-07-22 07:51 - 2014-07-22 07:51 - 00055808 ____R () \\Vlador\pohoda\zlib1.dll
2015-09-30 11:55 - 2015-09-30 11:55 - 00211752 ____R () \\Vlador\pohoda\StwDataBox.dll
2014-07-22 07:51 - 2014-07-22 07:51 - 24978944 ____R () \\Vlador\pohoda\libcef.dll
2013-08-22 00:55 - 2013-06-18 13:17 - 00364544 _____ () C:\Windows\System32\msjetoledb40.dll
2015-10-01 16:25 - 2015-10-01 16:25 - 00153768 _____ () C:\Program Files\Mozilla Thunderbird\NSLDAP32V60.dll
2015-10-01 16:25 - 2015-10-01 16:25 - 00023208 _____ () C:\Program Files\Mozilla Thunderbird\NSLDAPPR32V60.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1691434953-3710603858-1979380488-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Theme1\img2.jpg
DNS Servers: 192.168.1.1 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "OrderReminder"
HKU\S-1-5-21-1691434953-3710603858-1979380488-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
==================== Faulty Device Manager Devices =============
Name: Sériový port sběrnice PCI
Description: Sériový port sběrnice PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (12/01/2015 00:39:55 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/30/2015 03:57:23 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program StwPh.exe verze 5.1.11103.11 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 1074
Čas spuštění: 01d12b7a98fd336c
Čas ukončení: 0
Cesta k aplikaci: C:\Program Files\STORMWARE\POHODA\StwPh.exe
ID hlášení: 9fc2593e-9772-11e5-972b-0019993d38cc
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/30/2015 02:47:15 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program StwPh.exe verze 5.1.11103.11 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 900
Čas spuštění: 01d12b7312efed6a
Čas ukončení: 562
Cesta k aplikaci: C:\Program Files\STORMWARE\POHODA\StwPh.exe
ID hlášení: d9a7acd9-9768-11e5-972a-0019993d38cc
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/25/2015 03:13:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program glcnd.exe verze 6.3.9600.17994 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 12b0
Čas spuštění: 01d126c1a243a511
Čas ukončení: 270
Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Reader_6.4.9926.17994_x86__8wekyb3d8bbwe\glcnd.exe
ID hlášení: a1c969ca-937e-11e5-9728-0019993d38cc
Úplný název chybujícího balíčku: Microsoft.Reader_6.4.9926.17994_x86__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: Microsoft.Reader
Error: (11/17/2015 01:42:01 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/16/2015 08:18:21 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/10/2015 08:15:12 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (11/10/2015 07:55:47 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Službě Windows Search se nepodařilo vytvořit nový vyhledávací index. Došlo k vnitřní chybě <4, 0x80070020, Nepodařilo se přidat projekt: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects>.
Error: (11/10/2015 07:54:56 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu. (HRESULT : 0x80040d06) (0x80040d06)
Error: (11/10/2015 07:54:56 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu. (HRESULT : 0x80040d06) (0x80040d06)
System errors:
=============
Error: (12/01/2015 00:16:47 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (11:50:27, 1. 12. 2015) bylo neočekávané.
Error: (11/30/2015 03:08:49 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 03:08:49 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 02:22:30 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Hlavní prohledávač přijal oznámení serveru od počítače VLADOR,
který se považuje za hlavní prohledávač domény pro přenos NetBT_Tcpip_{C1705383-0328-4EB4-B343-1DDE8B26145.
Hlavní prohledávač bude ukončen nebo bude vyvolána volba.
Error: (11/30/2015 01:12:33 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicializace výpisu stavu systému se nezdařila.
Error: (11/30/2015 01:06:26 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:26 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:23 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:22 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/30/2015 01:06:22 PM) (Source: DCOM) (EventID: 10010) (User: UČTO1)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU E8300 @ 2.83GHz
Percentage of memory in use: 75%
Total physical RAM: 2005.29 MB
Available physical RAM: 493.45 MB
Total Virtual: 3285.29 MB
Available Virtual: 866.24 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:193 GB) (Free:150.14 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:111.78 GB) (Free:96.76 GB) NTFS
Drive e: (Elements) (Fixed) (Total:298.09 GB) (Free:166.52 GB) NTFS
Drive f: (Data) (Fixed) (Total:39.88 GB) (Free:39.48 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D85F7F66)
Partition 1: (Active) - (Size=193 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=39.9 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 111.8 GB) (Disk ID: 42134212)
Partition 1: (Active) - (Size=111.8 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 0014D254)
Partition 1: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================