při spuštění firefox naskakují 2 blokované odkazy
Napsal: 11 zář 2017 20:16
info.txt logfile of random's system information tool 1.10 2017-09-11 20:55:02
======MBR======
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
======Uninstall list======
-->"C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.ini
Adobe Flash Player 26 NPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_26_0_0_151_Plugin.exe -maintain plugin
Adobe Reader XI (11.0.22) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Adobe Refresh Manager-->MsiExec.exe /I{AC76BA86-0804-1033-1959-001824237067}
AMD Catalyst Install Manager-->msiexec /q/x{5094145C-9F17-8099-7F4F-E5AADD5E4065} REBOOT=ReallySuppress
BS.Player PRO-->"C:\Program Files (x86)\Webteh\BSplayerPro\uninstall.exe"
Canon Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe Uninst.ini uinstrsc.dll
Canon Easy-WebPrint EX-->"C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.ini
Canon IJ Network Scanner Selector EX-->"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSU.exe" /UninstallRemove C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\uninst.ini
Canon IJ Network Tool-->C:\Program Files (x86)\Canon\Canon IJ Network Tool\CNMNUU.exe
Canon MG3100 series MP Drivers-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series\DELDRV64.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series /L0x0005
Canon MG3100 series On-screen Manual-->C:\Program Files (x86)\Canon\IJ Manual\Canon MG3100 series\uninstall.exe
Canon MP Navigator EX 5.0-->"C:\Program Files (x86)\Canon\MP Navigator EX 5.0\Maint.exe" /UninstallRemove C:\Program Files (x86)\Canon\MP Navigator EX 5.0\uninst.ini
Canon My Image Garden Design Files-->"C:\Program Files (x86)\Canon\My Image Garden\AddOn\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\My Image Garden\AddOn\uninst.ini
Canon My Image Garden-->"C:\Program Files (x86)\Canon\My Image Garden\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\My Image Garden\uninst.ini
Canon My Printer-->"C:\Program Files\Canon\MyPrinter\uninst.exe" /UninstallRemove C:\Program Files\Canon\MyPrinter\uninst.ini
Canon Quick Menu-->"C:\Program Files (x86)\Canon\Quick Menu\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\Quick Menu\uninst.ini
Catalyst Control Center - Branding-->MsiExec.exe /I{B820A5C2-0DD4-A49C-BC86-59E3B476D8CC}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
DisplayLink Graphics Driver-->MsiExec.exe /X{9A3C0ADE-9A32-4C80-A527-38072609B9EE}
ESET Smart Security-->MsiExec.exe /I{E483B847-824D-4659-A760-0AC8FE24055E}
Farming Simulator 17-->"E:\hry\Farming Simulator 2017\unins000.exe"
FastShare.cz verze 2.3.1-->"C:\Program Files (x86)\FastShare\unins000.exe"
HP 3D DriveGuard-->MsiExec.exe /X{F8FEE05E-1CE4-4F52-8463-630A81DABD6A}
HP Client Security Manager-->C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\setup.exe
HP Client Security Manager-->MsiExec.exe /X{214E6139-6853-4144-AEEB-212C922159E9}
HP Hotkey Support-->MsiExec.exe /X{6E7401DB-B722-4428-BE94-DD4740CF6464}
HP Port Replicator Software Installer-->"C:\Program Files (x86)\InstallShield Installation Information\{6313BCDF-1109-4682-A19D-413189817787}\setup.exe" -runfromtemp -l0x0405 -removeonly
HP SoftPaq Download Manager-->MsiExec.exe /I{BB51845C-10A6-457F-A215-9B2D3E130889}
HP Universal Camera Driver-->"C:\Program Files (x86)\HP Universal Camera Driver\uninstall.exe"
HP Wireless Button Driver-->MsiExec.exe /X{099DAD2B-56C5-4919-9F82-418C2A018CAE}
LibreOffice 5.3.3.2-->MsiExec.exe /I{DB76C19A-1E2A-4A8F-9AB7-3FC315EC57C7}
Mass Effect™: Andromeda-->"C:\Program Files\Common Files\EAInstaller\Mass Effect Andromeda\Cleanup.exe" uninstall_game -autologging
Mediatek Bluetooth-->MsiExec.exe /X{3D986C98-83E6-78D1-97F3-0BF6D4484602}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022-->MsiExec.exe /X{350AA351-21FA-3270-8B7A-835434E766AD}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501-->"C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501-->"C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215-->"C:\ProgramData\Package Cache\{d992c12e-cab2-426f-bde3-fb8c53950b0d}\VC_redist.x64.exe" /uninstall
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212-->"C:\ProgramData\Package Cache\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}\VC_redist.x86.exe" /uninstall
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215-->MsiExec.exe /X{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215-->MsiExec.exe /X{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212-->MsiExec.exe /X{844ECB74-9B63-3D5C-958C-30BD23F19EE4}
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212-->MsiExec.exe /X{37B55901-995A-3650-80B1-BBFD047E2911}
Mozilla Firefox 55.0.3 (x64 cs)-->"C:\Program Files\Mozilla Firefox\uninstall\helper.exe"
OpenShot Video Editor verze 2.3.4-->"C:\Program Files\OpenShot Video Editor\unins000.exe"
Polda 6 verze 1.1-->"E:\hry\Polda 6\unins000.exe"
Ralink RT3290 802.11bgn Wi-Fi Adapter-->"C:\Program Files (x86)\InstallShield Installation Information\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}\Setup.exe" -runfromtemp -l0x0405 -removeonly
Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe" -runfromtemp -removeonly
Smart Defrag 5-->"C:\Program Files (x86)\IObit\Smart Defrag\unins000.exe"
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Synaptics WBF Fingerprint Reader-->MsiExec.exe /X{B0CB33D8-1426-4D61-A4F6-BDFD7407AE92}
TeamViewer 12-->"C:\Program Files (x86)\TeamViewer\uninstall.exe"
Total Commander 64-bit (Remove or Repair)-->c:\totalcmd\tcunin64.exe
Ulož.to FileManager verze 2.25-->"C:\Program Files (x86)\Ulozto File Manager\unins000.exe"
WinRAR 5.40 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
======Hosts File======
127.0.0.1 cpm.paneladmin.pro
127.0.0.1 publisher.hmdiadmingate.xyz
127.0.0.1 distribution.hmdiadmingate.xyz
127.0.0.1 hmdicrewtracksystem.xyz
127.0.0.1 linkmate.space
127.0.0.1 space1.adminpressure.space
127.0.0.1 trackpressure.website
127.0.0.1 doctorlink.space
127.0.0.1 plugpackdownload.net
127.0.0.1 texttotalk.org
======System event log======
Computer Name: DESKTOP-SC61Q7B
Event Code: 27
Message: Typ spuštění byl 0x0.
Record Number: 5
Source Name: Microsoft-Windows-Kernel-Boot
Time Written: 20170519175941.232588-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 153
Message: Zabezpečení založené na virtualizaci (zásady: 0) je zakázáno.
Record Number: 4
Source Name: Microsoft-Windows-Kernel-Boot
Time Written: 20170519175941.232184-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 3
Source Name: EventLog
Time Written: 20170519180112.408609-000
Event Type: Informace
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 6009
Message: Microsoft (R) Windows (R) 10.00. 15063 Multiprocessor Free.
Record Number: 2
Source Name: EventLog
Time Written: 20170519180112.408609-000
Event Type: Informace
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 12
Message: Operační systém se spustil v systémovém čase 2017-05-19T17:59:40.498915800Z.
Record Number: 1
Source Name: Microsoft-Windows-Kernel-General
Time Written: 20170519175941.232075-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
=====Application event log=====
Computer Name: DESKTOP-SC61Q7B
Event Code: 5617
Message: Subsystémy služby WMI (Windows Management Instrumentation) byly úspěšně inicializovány.
Record Number: 5
Source Name: Microsoft-Windows-WMI
Time Written: 20170519180222.644872-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 5615
Message: Služba WMI (Windows Management Instrumentation) byla úspěšně spuštěna.
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20170519180120.014539-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 3
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20170519180113.128409-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 4097
Message: Úspěšná automatická aktualizace kořenového certifikátu jiného výrobce: Subjekt: <CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE> Kryptografický otisk SHA1: <B1BC968BD4F49D622AA89A81F2150152A41D829C>.
Record Number: 2
Source Name: Microsoft-Windows-CAPI2
Time Written: 20170519180106.486724-000
Event Type: Informace
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20170519180112.658543-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\hu-HU\memtest.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72865
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.162947-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\hu-HU\bootmgr.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72864
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.153767-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\hr-HR\bootmgr.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72863
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.140337-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\fr-FR\memtest.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72862
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.127842-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\fr-FR\bootmgr.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72861
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.120081-000
Event Type: Úspěšný audit
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"OS"=Windows_NT
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"PSModulePath"=%ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=21
"PROCESSOR_IDENTIFIER"=AMD64 Family 21 Model 16 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=1001
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static
"PTSMINSTALLPATH_X86"=C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\
-----------------EOF-----------------
======MBR======
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
======Uninstall list======
-->"C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.ini
Adobe Flash Player 26 NPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_26_0_0_151_Plugin.exe -maintain plugin
Adobe Reader XI (11.0.22) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Adobe Refresh Manager-->MsiExec.exe /I{AC76BA86-0804-1033-1959-001824237067}
AMD Catalyst Install Manager-->msiexec /q/x{5094145C-9F17-8099-7F4F-E5AADD5E4065} REBOOT=ReallySuppress
BS.Player PRO-->"C:\Program Files (x86)\Webteh\BSplayerPro\uninstall.exe"
Canon Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe Uninst.ini uinstrsc.dll
Canon Easy-WebPrint EX-->"C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\Easy-WebPrint EX\uninst.ini
Canon IJ Network Scanner Selector EX-->"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSU.exe" /UninstallRemove C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\uninst.ini
Canon IJ Network Tool-->C:\Program Files (x86)\Canon\Canon IJ Network Tool\CNMNUU.exe
Canon MG3100 series MP Drivers-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series\DELDRV64.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series /L0x0005
Canon MG3100 series On-screen Manual-->C:\Program Files (x86)\Canon\IJ Manual\Canon MG3100 series\uninstall.exe
Canon MP Navigator EX 5.0-->"C:\Program Files (x86)\Canon\MP Navigator EX 5.0\Maint.exe" /UninstallRemove C:\Program Files (x86)\Canon\MP Navigator EX 5.0\uninst.ini
Canon My Image Garden Design Files-->"C:\Program Files (x86)\Canon\My Image Garden\AddOn\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\My Image Garden\AddOn\uninst.ini
Canon My Image Garden-->"C:\Program Files (x86)\Canon\My Image Garden\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\My Image Garden\uninst.ini
Canon My Printer-->"C:\Program Files\Canon\MyPrinter\uninst.exe" /UninstallRemove C:\Program Files\Canon\MyPrinter\uninst.ini
Canon Quick Menu-->"C:\Program Files (x86)\Canon\Quick Menu\uninst.exe" /UninstallRemove C:\Program Files (x86)\Canon\Quick Menu\uninst.ini
Catalyst Control Center - Branding-->MsiExec.exe /I{B820A5C2-0DD4-A49C-BC86-59E3B476D8CC}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
DisplayLink Graphics Driver-->MsiExec.exe /X{9A3C0ADE-9A32-4C80-A527-38072609B9EE}
ESET Smart Security-->MsiExec.exe /I{E483B847-824D-4659-A760-0AC8FE24055E}
Farming Simulator 17-->"E:\hry\Farming Simulator 2017\unins000.exe"
FastShare.cz verze 2.3.1-->"C:\Program Files (x86)\FastShare\unins000.exe"
HP 3D DriveGuard-->MsiExec.exe /X{F8FEE05E-1CE4-4F52-8463-630A81DABD6A}
HP Client Security Manager-->C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\setup.exe
HP Client Security Manager-->MsiExec.exe /X{214E6139-6853-4144-AEEB-212C922159E9}
HP Hotkey Support-->MsiExec.exe /X{6E7401DB-B722-4428-BE94-DD4740CF6464}
HP Port Replicator Software Installer-->"C:\Program Files (x86)\InstallShield Installation Information\{6313BCDF-1109-4682-A19D-413189817787}\setup.exe" -runfromtemp -l0x0405 -removeonly
HP SoftPaq Download Manager-->MsiExec.exe /I{BB51845C-10A6-457F-A215-9B2D3E130889}
HP Universal Camera Driver-->"C:\Program Files (x86)\HP Universal Camera Driver\uninstall.exe"
HP Wireless Button Driver-->MsiExec.exe /X{099DAD2B-56C5-4919-9F82-418C2A018CAE}
LibreOffice 5.3.3.2-->MsiExec.exe /I{DB76C19A-1E2A-4A8F-9AB7-3FC315EC57C7}
Mass Effect™: Andromeda-->"C:\Program Files\Common Files\EAInstaller\Mass Effect Andromeda\Cleanup.exe" uninstall_game -autologging
Mediatek Bluetooth-->MsiExec.exe /X{3D986C98-83E6-78D1-97F3-0BF6D4484602}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022-->MsiExec.exe /X{350AA351-21FA-3270-8B7A-835434E766AD}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501-->"C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501-->"C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215-->"C:\ProgramData\Package Cache\{d992c12e-cab2-426f-bde3-fb8c53950b0d}\VC_redist.x64.exe" /uninstall
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212-->"C:\ProgramData\Package Cache\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}\VC_redist.x86.exe" /uninstall
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215-->MsiExec.exe /X{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215-->MsiExec.exe /X{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212-->MsiExec.exe /X{844ECB74-9B63-3D5C-958C-30BD23F19EE4}
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212-->MsiExec.exe /X{37B55901-995A-3650-80B1-BBFD047E2911}
Mozilla Firefox 55.0.3 (x64 cs)-->"C:\Program Files\Mozilla Firefox\uninstall\helper.exe"
OpenShot Video Editor verze 2.3.4-->"C:\Program Files\OpenShot Video Editor\unins000.exe"
Polda 6 verze 1.1-->"E:\hry\Polda 6\unins000.exe"
Ralink RT3290 802.11bgn Wi-Fi Adapter-->"C:\Program Files (x86)\InstallShield Installation Information\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}\Setup.exe" -runfromtemp -l0x0405 -removeonly
Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe" -runfromtemp -removeonly
Smart Defrag 5-->"C:\Program Files (x86)\IObit\Smart Defrag\unins000.exe"
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Synaptics WBF Fingerprint Reader-->MsiExec.exe /X{B0CB33D8-1426-4D61-A4F6-BDFD7407AE92}
TeamViewer 12-->"C:\Program Files (x86)\TeamViewer\uninstall.exe"
Total Commander 64-bit (Remove or Repair)-->c:\totalcmd\tcunin64.exe
Ulož.to FileManager verze 2.25-->"C:\Program Files (x86)\Ulozto File Manager\unins000.exe"
WinRAR 5.40 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
======Hosts File======
127.0.0.1 cpm.paneladmin.pro
127.0.0.1 publisher.hmdiadmingate.xyz
127.0.0.1 distribution.hmdiadmingate.xyz
127.0.0.1 hmdicrewtracksystem.xyz
127.0.0.1 linkmate.space
127.0.0.1 space1.adminpressure.space
127.0.0.1 trackpressure.website
127.0.0.1 doctorlink.space
127.0.0.1 plugpackdownload.net
127.0.0.1 texttotalk.org
======System event log======
Computer Name: DESKTOP-SC61Q7B
Event Code: 27
Message: Typ spuštění byl 0x0.
Record Number: 5
Source Name: Microsoft-Windows-Kernel-Boot
Time Written: 20170519175941.232588-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 153
Message: Zabezpečení založené na virtualizaci (zásady: 0) je zakázáno.
Record Number: 4
Source Name: Microsoft-Windows-Kernel-Boot
Time Written: 20170519175941.232184-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 3
Source Name: EventLog
Time Written: 20170519180112.408609-000
Event Type: Informace
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 6009
Message: Microsoft (R) Windows (R) 10.00. 15063 Multiprocessor Free.
Record Number: 2
Source Name: EventLog
Time Written: 20170519180112.408609-000
Event Type: Informace
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 12
Message: Operační systém se spustil v systémovém čase 2017-05-19T17:59:40.498915800Z.
Record Number: 1
Source Name: Microsoft-Windows-Kernel-General
Time Written: 20170519175941.232075-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
=====Application event log=====
Computer Name: DESKTOP-SC61Q7B
Event Code: 5617
Message: Subsystémy služby WMI (Windows Management Instrumentation) byly úspěšně inicializovány.
Record Number: 5
Source Name: Microsoft-Windows-WMI
Time Written: 20170519180222.644872-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 5615
Message: Služba WMI (Windows Management Instrumentation) byla úspěšně spuštěna.
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20170519180120.014539-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 3
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20170519180113.128409-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: DESKTOP-SC61Q7B
Event Code: 4097
Message: Úspěšná automatická aktualizace kořenového certifikátu jiného výrobce: Subjekt: <CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE> Kryptografický otisk SHA1: <B1BC968BD4F49D622AA89A81F2150152A41D829C>.
Record Number: 2
Source Name: Microsoft-Windows-CAPI2
Time Written: 20170519180106.486724-000
Event Type: Informace
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20170519180112.658543-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\hu-HU\memtest.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72865
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.162947-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\hu-HU\bootmgr.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72864
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.153767-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\hr-HR\bootmgr.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72863
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.140337-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\fr-FR\memtest.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72862
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.127842-000
Event Type: Úspěšný audit
User:
Computer Name: DESKTOP-SC61Q7B
Event Code: 4907
Message: Nastavení auditu objektu se změnila.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: DESKTOP-SC61Q7B$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Boot\fr-FR\bootmgr.exe.mui
ID popisovače: 0x2ec
Informace o procesu:
ID procesu: 0x884
Název procesu: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe
Nastavení auditu:
Původní popisovač zabezpečení: S:AINO_ACCESS_CONTROL
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 72861
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20170811190837.120081-000
Event Type: Úspěšný audit
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"OS"=Windows_NT
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"PSModulePath"=%ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=21
"PROCESSOR_IDENTIFIER"=AMD64 Family 21 Model 16 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=1001
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static
"PTSMINSTALLPATH_X86"=C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\
-----------------EOF-----------------