Stránka 1 z 1

Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 18:22
od MadPaul
Prosím o kontrolu logu. Notebook je velmi zpomalený včetně webového prohlížeče. Děkuji

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:28-06-2015 01
Ran by Pavlík (administrator) on PAVEL on 06-11-2017 18:16:50
Running from C:\Users\Pavlík\Desktop
Loaded Profiles: UpdatusUser & Pavlík (Available Profiles: UpdatusUser & Pavlík)
Platform: Windows 8 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 10 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(MyGoya) C:\Program Files (x86)\MyGoya\KMPFaster\ServiceProvider.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Akamai Technologies, Inc.) C:\Users\Pavlík\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Pavlík\AppData\Local\Akamai\netsession_win.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
() C:\Users\Pavlík\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Pavlík\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\Bluetooth Headset Helper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6346464 2013-01-04] (Realtek semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2888352 2013-04-25] (ELAN Microelectronics Corp.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-04-24] (IDT, Inc.)
HKLM\...\Run: [DolbyTrayApp] => c:\program files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-09-01] (Dolby Laboratories Inc.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2013-09-01] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2013-09-01] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-08-13] (Apple Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-10-17] (AVAST Software)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-31] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-19] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.)
HKLM-x32\...\Run: [mcui_exe] => "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [Akamai NetSession Interface] => C:\Users\Pavlík\AppData\Local\Akamai\netsession_win.exe [4490200 2017-09-08] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Pavlík\AppData\Roaming\Seznam.cz\szninstall.exe [1061960 2013-03-21] ()
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Pavlík\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\MountPoints2: {dbaff005-a86e-11e5-bec2-1c3e84ddec5e} - "E:\HiSuiteDownLoader.exe"
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [245872 2013-02-24] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [201576 2013-02-24] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-09-01]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk [2015-02-02]
ShortcutTarget: GamePark klient 2.lnk -> C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
Startup: C:\Users\Pavlík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2016-04-07]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-17] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-17] (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
BootExecute: autocheck autochk /m /P \Device\HarddiskVolume11autocheck autochk *

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
URLSearchHook: [S-1-5-21-3582125000-47192514-3500607020-1001] ATTENTION ==> Default URLSearchHook is missing
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3582125000-47192514-3500607020-1002 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-10-17] (AVAST Software)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll [2016-03-15] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-10-17] (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll [2016-03-15] (Oracle Corporation)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll File Not ' & $found1 & '
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 188.122.222.222
Tcpip\..\Interfaces\{83F3DE6B-D1DF-4806-9855-B054520D919D}: [DhcpNameServer] 84.16.96.129 84.16.96.2
Tcpip\..\Interfaces\{9F270CB5-2872-4DBF-83FA-B2F74335754A}: [DhcpNameServer] 192.168.2.1 188.122.222.222

FireFox:
========
FF ProfilePath: C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_183.dll [2017-10-30] ()
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-09-19] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-30] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-07-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\dtplugin\npDeployJava1.dll [2016-03-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\plugin2\npjp2.dll [2016-03-15] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll [2011-03-09] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-09-19] (Adobe Systems)
FF Extension: Seznam lištička - C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2017-10-03]
FF Extension: SmileysWeLove: Smileys for use with Facebook, GMail, and more - C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\Extensions\jid1-FB1bBgFMk5H6Wg@jetpack.xpi [2015-02-07]
FF HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\Users\PavlĂ­k\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\extensions\23fb8bb3-ac21-4230-bbfa-49b94968bc63@gmail.com [not found]
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-11]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]

Chrome:
=======
CHR Profile: C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Slides) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-10]
CHR Extension: (Docs) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-10]
CHR Extension: (Google Drive) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-10]
CHR Extension: (YouTube) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-10]
CHR Extension: (Google Search) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-10]
CHR Extension: (Avast Online Security (BETA)) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2016-07-17]
CHR Extension: (Sheets) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-10]
CHR Extension: (Google Docs Offline) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-06]
CHR Extension: (What's your name?) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-07-05]
CHR Extension: (Avast Online Security) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-10]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-10]
CHR Extension: (Gmail) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-10]
CHR Extension: (Chrome Media Router) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-03]
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7446024 2017-10-17] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-10-17] (AVAST Software)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2228440 2013-03-22] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [959192 2013-04-03] (Broadcom Corporation.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [99184 2013-04-12] (ELAN Microelectronics Corp.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-09-18] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-09-18] (Intel Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [332800 2013-04-24] (IDT, Inc.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2013-09-01] ()
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Corporation)
S2 0103491496076174mcinstcleanup; C:\Users\PAVLK~1\AppData\Local\Temp\010349~1.EXE -cleanup -nolog [X]
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [321032 2017-10-17] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [198976 2017-10-17] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [343288 2017-10-17] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [57736 2017-10-17] (AVAST Software s.r.o.)
S3 aswHdsKe; C:\WINDOWS\system32\drivers\aswHdsKe.sys [105128 2017-10-13] (AVAST Software)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [47008 2017-10-17] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [41832 2017-09-12] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [147776 2017-10-17] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [110376 2017-10-17] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [84416 2017-10-17] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1029872 2017-10-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [587168 2017-10-17] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [201352 2017-10-17] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [363440 2017-10-17] (AVAST Software)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170200 2013-03-22] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6835784 2012-10-13] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R3 BTWPANFL; C:\windows\system32\drivers\btwpanfl.sys [44912 2013-01-20] (Broadcom Corporation.)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8239456 2013-01-04] (Realtek Semiconductor Corp.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-01 15:27 - 2017-11-01 15:27 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-10-22 15:48 - 2017-10-22 15:48 - 00006447 _____ C:\Users\Pavlík\Documents\Okruhy k abs 4.K INTERNA.odt
2017-10-17 09:15 - 2017-10-17 09:15 - 00401488 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2017-10-13 13:08 - 2017-10-13 09:17 - 00105128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2017-10-13 09:32 - 2017-10-13 09:32 - 01510015 _____ C:\Users\Pavlík\Desktop\Zaklinac II - Mec osudu - Andrzej Sapkowski.mobi
2017-10-11 10:12 - 2017-10-11 10:12 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-06 18:16 - 2015-06-29 19:01 - 00023324 _____ C:\Users\Pavlík\Desktop\FRST.txt
2017-11-06 18:16 - 2015-06-29 19:01 - 00000000 ____D C:\FRST
2017-11-06 18:00 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\system32\sru
2017-11-06 17:08 - 2013-09-01 16:23 - 01367534 _____ C:\WINDOWS\WindowsUpdate.log
2017-11-06 17:04 - 2015-03-27 07:38 - 00435200 ___SH C:\Users\Pavlík\Desktop\Thumbs.db
2017-11-06 16:57 - 2015-02-05 18:48 - 00000000 ____D C:\KMPlayer
2017-11-06 16:34 - 2015-02-05 18:38 - 00000000 ____D C:\Users\Pavlík\Desktop\foto 2
2017-11-05 22:21 - 2016-02-25 19:25 - 00000000 ____D C:\Users\Pavlík\AppData\Roaming\Skype
2017-11-04 13:23 - 2015-02-01 13:05 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3582125000-47192514-3500607020-1002
2017-11-04 13:18 - 2013-09-01 17:06 - 02185864 _____ C:\WINDOWS\system32\perfh005.dat
2017-11-04 13:18 - 2013-09-01 17:06 - 00616418 _____ C:\WINDOWS\system32\perfc005.dat
2017-11-04 13:18 - 2012-07-26 08:28 - 00005430 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-04 13:17 - 2015-02-01 20:08 - 00000000 ____D C:\Users\Pavlík\AppData\Roaming\Seznam.cz
2017-11-04 13:12 - 2016-05-08 20:53 - 00000404 _____ C:\WINDOWS\Tasks\KMPFaster (Tray).job
2017-11-04 13:11 - 2016-05-08 20:53 - 00000356 _____ C:\WINDOWS\Tasks\KMPFaster.job
2017-11-04 13:11 - 2012-07-26 08:22 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-04 13:08 - 2015-02-01 13:33 - 00000000 ____D C:\Users\Pavlík\AppData\Roaming\uTorrent
2017-11-01 15:39 - 2015-02-01 08:40 - 00000000 ____D C:\ldiag
2017-10-31 08:24 - 2015-02-05 18:37 - 00000000 ____D C:\Users\Pavlík\Desktop\filmy
2017-10-30 21:16 - 2015-02-10 17:53 - 01029872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2017-10-30 18:04 - 2015-02-01 17:29 - 00004372 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-10-30 18:04 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-10-30 18:04 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-10-20 18:26 - 2017-02-16 18:03 - 00003886 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1468764671
2017-10-20 18:26 - 2016-05-08 20:53 - 00002764 _____ C:\WINDOWS\System32\Tasks\KMPFaster (Tray)
2017-10-20 18:26 - 2016-05-08 20:53 - 00002724 _____ C:\WINDOWS\System32\Tasks\KMPFaster
2017-10-20 18:26 - 2015-12-03 15:34 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2017-10-20 18:26 - 2015-07-09 19:19 - 00004476 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2017-10-20 18:26 - 2015-02-10 17:53 - 00003384 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-20 18:26 - 2015-02-10 17:53 - 00003256 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-20 18:26 - 2015-02-02 17:40 - 00003298 _____ C:\WINDOWS\System32\Tasks\{F574F383-D792-410B-88B6-9899C015FF44}
2017-10-20 18:26 - 2013-09-01 17:02 - 00003512 _____ C:\WINDOWS\System32\Tasks\OFFICE2013ACT
2017-10-20 18:26 - 2013-09-01 16:42 - 00003238 _____ C:\WINDOWS\System32\Tasks\Dolby Selector
2017-10-20 17:50 - 2017-02-09 09:41 - 00004172 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2017-10-20 17:40 - 2013-09-01 17:01 - 00025088 _____ C:\WINDOWS\system32\VfService.trf
2017-10-20 17:40 - 2012-07-26 06:26 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2017-10-19 17:04 - 2013-03-25 22:02 - 00870540 _____ C:\WINDOWS\PFRO.log
2017-10-19 07:27 - 2015-02-05 18:16 - 00000000 ____D C:\Users\Pavlík\Desktop\hudba 2
2017-10-17 09:15 - 2015-02-10 17:53 - 00587168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00363440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00201352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00147776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00110376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00084416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00047008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2017-10-17 09:15 - 2015-02-10 17:52 - 00000000 ____D C:\ProgramData\AVAST Software
2017-10-17 09:14 - 2017-02-09 09:41 - 00343288 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
2017-10-17 09:14 - 2017-02-09 09:41 - 00321032 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2017-10-17 09:14 - 2017-02-09 09:41 - 00198976 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2017-10-17 09:14 - 2017-02-09 09:41 - 00057736 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2017-10-11 10:15 - 2015-02-01 14:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-10-11 10:12 - 2015-02-01 14:21 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-10-10 11:18 - 2017-09-07 09:24 - 00000000 ____D C:\Users\Pavlík\Desktop\pudorysy
2017-10-09 20:20 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent

==================== Files in the root of some directories =======

2016-06-09 16:49 - 2016-06-09 16:49 - 0000132 _____ () C:\Users\Pavlík\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-01-25 17:12 - 2015-01-25 17:12 - 0002086 _____ () C:\Users\Pavlík\AppData\Roaming\CY
2017-05-29 18:02 - 2017-05-29 18:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Pavlík\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\Pavlík\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2017-10-30 18:32

==================== End of log ============================

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 18:57
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 19:21
od MadPaul
# AdwCleaner 7.0.4.0 - Logfile created on Mon Nov 06 18:22:46 2017
# Updated on 2017/27/10 by Malwarebytes
# Running on Windows 8 (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

Deleted: C:\Program Files (x86)\CinPlus-2.4cV07.02
Deleted: C:\Program Files (x86)\Optical Surf


***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted: amiupdaterExi
Deleted: amiupdaterExd


***** [ Registry ] *****

Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cloudfront.net
Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\cloudfront.net


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries deleted.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries deleted.

*************************

::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0



*************************

C:/AdwCleaner/AdwCleaner[C0].txt - [7811 B] - [2017/5/28 11:19:36]
C:/AdwCleaner/AdwCleaner[S0].txt - [13871 B] - [2015/6/29 18:18:49]
C:/AdwCleaner/AdwCleaner[S1].txt - [7792 B] - [2017/5/28 11:18:41]
C:/AdwCleaner/AdwCleaner[S2].txt - [1460 B] - [2017/11/6 18:20:5]


########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt ##########

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 19:55
od Rudy
Dejte nový log FRST.

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 20:15
od MadPaul
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:28-06-2015 01
Ran by Pavlík (administrator) on PAVEL on 06-11-2017 20:14:02
Running from C:\Users\Pavlík\Desktop
Loaded Profiles: UpdatusUser & Pavlík (Available Profiles: UpdatusUser & Pavlík)
Platform: Windows 8 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 10 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(MyGoya) C:\Program Files (x86)\MyGoya\KMPFaster\ServiceProvider.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Akamai Technologies, Inc.) C:\Users\Pavlík\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Pavlík\AppData\Local\Akamai\netsession_win.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\Bluetooth Headset Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Users\Pavlík\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Pavlík\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Users\PAVLK~1\AppData\Roaming\Seznam.cz\bin\sznpp_64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6346464 2013-01-04] (Realtek semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2888352 2013-04-25] (ELAN Microelectronics Corp.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-04-24] (IDT, Inc.)
HKLM\...\Run: [DolbyTrayApp] => c:\program files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-09-01] (Dolby Laboratories Inc.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2013-09-01] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2013-09-01] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-08-13] (Apple Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-10-17] (AVAST Software)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-31] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-19] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.)
HKLM-x32\...\Run: [mcui_exe] => "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [Akamai NetSession Interface] => C:\Users\Pavlík\AppData\Local\Akamai\netsession_win.exe [4490200 2017-09-08] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Pavlík\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Pavlík\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\RunOnce: [SeznamInstall-uninstall:baef780f2ba29427931d78e3461bfd06] => C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [534528 2017-11-06] () <===== ATTENTION
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\MountPoints2: {dbaff005-a86e-11e5-bec2-1c3e84ddec5e} - "E:\HiSuiteDownLoader.exe"
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [245872 2013-02-24] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [201576 2013-02-24] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-09-01]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk [2015-02-02]
ShortcutTarget: GamePark klient 2.lnk -> C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
Startup: C:\Users\Pavlík\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2016-04-07]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-17] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-17] (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
BootExecute: autocheck autochk /m /P \Device\HarddiskVolume11autocheck autochk *

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
URLSearchHook: [S-1-5-21-3582125000-47192514-3500607020-1001] ATTENTION ==> Default URLSearchHook is missing
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-3582125000-47192514-3500607020-1002 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-10-17] (AVAST Software)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll [2016-03-15] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-10-17] (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll [2016-03-15] (Oracle Corporation)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll File Not ' & $found1 & '
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 188.122.222.222
Tcpip\..\Interfaces\{83F3DE6B-D1DF-4806-9855-B054520D919D}: [DhcpNameServer] 84.16.96.129 84.16.96.2
Tcpip\..\Interfaces\{9F270CB5-2872-4DBF-83FA-B2F74335754A}: [DhcpNameServer] 192.168.2.1 188.122.222.222

FireFox:
========
FF ProfilePath: C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_183.dll [2017-10-30] ()
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-09-19] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-30] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-07-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\dtplugin\npDeployJava1.dll [2016-03-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\plugin2\npjp2.dll [2016-03-15] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll [2011-03-09] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-09-19] (Adobe Systems)
FF Extension: Seznam lištička - C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2017-11-06]
FF Extension: SmileysWeLove: Smileys for use with Facebook, GMail, and more - C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\Extensions\jid1-FB1bBgFMk5H6Wg@jetpack.xpi [2015-02-07]
FF HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\Users\PavlĂ­k\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\extensions\23fb8bb3-ac21-4230-bbfa-49b94968bc63@gmail.com [not found]
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-11]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]

Chrome:
=======
CHR Profile: C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Slides) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-10]
CHR Extension: (Docs) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-10]
CHR Extension: (Google Drive) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-10]
CHR Extension: (YouTube) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-10]
CHR Extension: (Google Search) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-10]
CHR Extension: (Avast Online Security (BETA)) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2016-07-17]
CHR Extension: (Sheets) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-10]
CHR Extension: (Google Docs Offline) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-06]
CHR Extension: (What's your name?) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-07-05]
CHR Extension: (Avast Online Security) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-10]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-10]
CHR Extension: (Gmail) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-10]
CHR Extension: (Chrome Media Router) - C:\Users\Pavlík\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-03]
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7446024 2017-10-17] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-10-17] (AVAST Software)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2228440 2013-03-22] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [959192 2013-04-03] (Broadcom Corporation.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [99184 2013-04-12] (ELAN Microelectronics Corp.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-09-18] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-09-18] (Intel Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [332800 2013-04-24] (IDT, Inc.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2013-09-01] ()
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Corporation)
S2 0103491496076174mcinstcleanup; C:\Users\PAVLK~1\AppData\Local\Temp\010349~1.EXE -cleanup -nolog [X]
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [321032 2017-10-17] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [198976 2017-10-17] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [343288 2017-10-17] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [57736 2017-10-17] (AVAST Software s.r.o.)
S3 aswHdsKe; C:\WINDOWS\system32\drivers\aswHdsKe.sys [105128 2017-10-13] (AVAST Software)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [47008 2017-10-17] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [41832 2017-09-12] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [147776 2017-10-17] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [110376 2017-10-17] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [84416 2017-10-17] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1029872 2017-10-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [587168 2017-10-17] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [201352 2017-10-17] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [363440 2017-10-17] (AVAST Software)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170200 2013-03-22] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6835784 2012-10-13] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R3 BTWPANFL; C:\windows\system32\drivers\btwpanfl.sys [44912 2013-01-20] (Broadcom Corporation.)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8239456 2013-01-04] (Realtek Semiconductor Corp.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-06 19:16 - 2017-11-06 19:16 - 08261584 _____ (Malwarebytes) C:\Users\Pavlík\Desktop\adwcleaner_7.0.4.0.exe
2017-11-01 15:27 - 2017-11-01 15:27 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-10-22 15:48 - 2017-10-22 15:48 - 00006447 _____ C:\Users\Pavlík\Documents\Okruhy k abs 4.K INTERNA.odt
2017-10-17 09:15 - 2017-10-17 09:15 - 00401488 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2017-10-13 13:08 - 2017-10-13 09:17 - 00105128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2017-10-13 09:32 - 2017-10-13 09:32 - 01510015 _____ C:\Users\Pavlík\Desktop\Zaklinac II - Mec osudu - Andrzej Sapkowski.mobi
2017-10-11 10:12 - 2017-10-11 10:12 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-06 20:14 - 2015-06-29 19:01 - 00024312 _____ C:\Users\Pavlík\Desktop\FRST.txt
2017-11-06 20:14 - 2015-06-29 19:01 - 00000000 ____D C:\FRST
2017-11-06 20:13 - 2016-02-25 19:25 - 00000000 ____D C:\Users\Pavlík\AppData\Roaming\Skype
2017-11-06 20:13 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\system32\sru
2017-11-06 19:48 - 2013-09-01 16:23 - 01459748 _____ C:\WINDOWS\WindowsUpdate.log
2017-11-06 19:44 - 2015-02-01 13:05 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3582125000-47192514-3500607020-1002
2017-11-06 19:34 - 2015-02-01 20:08 - 00000000 ____D C:\Users\Pavlík\AppData\Roaming\Seznam.cz
2017-11-06 19:28 - 2016-05-08 20:53 - 00000404 _____ C:\WINDOWS\Tasks\KMPFaster (Tray).job
2017-11-06 19:28 - 2013-09-01 17:06 - 02199516 _____ C:\WINDOWS\system32\perfh005.dat
2017-11-06 19:28 - 2013-09-01 17:06 - 00620818 _____ C:\WINDOWS\system32\perfc005.dat
2017-11-06 19:28 - 2012-07-26 08:28 - 00005430 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-06 19:23 - 2012-07-26 08:22 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-06 19:23 - 2012-07-26 06:26 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2017-11-06 19:22 - 2015-06-29 19:16 - 00000000 ____D C:\AdwCleaner
2017-11-06 19:22 - 2013-09-01 17:01 - 00025088 _____ C:\WINDOWS\system32\VfService.trf
2017-11-06 17:04 - 2015-03-27 07:38 - 00435200 ___SH C:\Users\Pavlík\Desktop\Thumbs.db
2017-11-06 16:57 - 2015-02-05 18:48 - 00000000 ____D C:\KMPlayer
2017-11-06 16:34 - 2015-02-05 18:38 - 00000000 ____D C:\Users\Pavlík\Desktop\foto 2
2017-11-04 13:11 - 2016-05-08 20:53 - 00000356 _____ C:\WINDOWS\Tasks\KMPFaster.job
2017-11-04 13:08 - 2015-02-01 13:33 - 00000000 ____D C:\Users\Pavlík\AppData\Roaming\uTorrent
2017-11-01 15:39 - 2015-02-01 08:40 - 00000000 ____D C:\ldiag
2017-10-31 08:24 - 2015-02-05 18:37 - 00000000 ____D C:\Users\Pavlík\Desktop\filmy
2017-10-30 21:16 - 2015-02-10 17:53 - 01029872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2017-10-30 18:04 - 2015-02-01 17:29 - 00004372 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-10-30 18:04 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-10-30 18:04 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-10-20 18:26 - 2017-02-16 18:03 - 00003886 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1468764671
2017-10-20 18:26 - 2016-05-08 20:53 - 00002764 _____ C:\WINDOWS\System32\Tasks\KMPFaster (Tray)
2017-10-20 18:26 - 2016-05-08 20:53 - 00002724 _____ C:\WINDOWS\System32\Tasks\KMPFaster
2017-10-20 18:26 - 2015-12-03 15:34 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2017-10-20 18:26 - 2015-07-09 19:19 - 00004476 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2017-10-20 18:26 - 2015-02-10 17:53 - 00003384 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-20 18:26 - 2015-02-10 17:53 - 00003256 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-20 18:26 - 2015-02-02 17:40 - 00003298 _____ C:\WINDOWS\System32\Tasks\{F574F383-D792-410B-88B6-9899C015FF44}
2017-10-20 18:26 - 2013-09-01 17:02 - 00003512 _____ C:\WINDOWS\System32\Tasks\OFFICE2013ACT
2017-10-20 18:26 - 2013-09-01 16:42 - 00003238 _____ C:\WINDOWS\System32\Tasks\Dolby Selector
2017-10-20 17:50 - 2017-02-09 09:41 - 00004172 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2017-10-19 17:04 - 2013-03-25 22:02 - 00870540 _____ C:\WINDOWS\PFRO.log
2017-10-19 07:27 - 2015-02-05 18:16 - 00000000 ____D C:\Users\Pavlík\Desktop\hudba 2
2017-10-17 09:15 - 2015-02-10 17:53 - 00587168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00363440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00201352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00147776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00110376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00084416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2017-10-17 09:15 - 2015-02-10 17:53 - 00047008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2017-10-17 09:15 - 2015-02-10 17:52 - 00000000 ____D C:\ProgramData\AVAST Software
2017-10-17 09:14 - 2017-02-09 09:41 - 00343288 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
2017-10-17 09:14 - 2017-02-09 09:41 - 00321032 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2017-10-17 09:14 - 2017-02-09 09:41 - 00198976 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2017-10-17 09:14 - 2017-02-09 09:41 - 00057736 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2017-10-11 10:15 - 2015-02-01 14:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-10-11 10:12 - 2015-02-01 14:21 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-10-10 11:18 - 2017-09-07 09:24 - 00000000 ____D C:\Users\Pavlík\Desktop\pudorysy
2017-10-10 06:17 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent

==================== Files in the root of some directories =======

2016-06-09 16:49 - 2016-06-09 16:49 - 0000132 _____ () C:\Users\Pavlík\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-01-25 17:12 - 2015-01-25 17:12 - 0002086 _____ () C:\Users\Pavlík\AppData\Roaming\CY
2017-05-29 18:02 - 2017-05-29 18:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Files to move or delete:
====================
C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


Some files in TEMP:
====================
C:\Users\Pavlík\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\Pavlík\AppData\Local\Temp\Quarantine.exe
C:\Users\Pavlík\AppData\Local\Temp\sqlite3.dll
C:\Users\Pavlík\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2017-10-30 18:32

==================== End of log ============================

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 20:56
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\RunOnce: [SeznamInstall-uninstall:baef780f2ba29427931d78e3461bfd06] => C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [534528 2017-11-06] () <===== ATTENTION
URLSearchHook: [S-1-5-21-3582125000-47192514-3500607020-1001] ATTENTION ==> Default URLSearchHook is missing
FF Extension: No Name - C:\Users\PavlĂ­k\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\extensions\23fb8bb3-ac21-4230-bbfa-49b94968bc63@gmail.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
C:\Users\PAVLK~1\AppData\Local\Temp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 21:25
od MadPaul
Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Pavlík at 2017-11-06 21:05:55 Run:3
Running from C:\Users\Pavlík\Desktop
Loaded Profiles: UpdatusUser & Pavlík (Available Profiles: UpdatusUser & Pavlík)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKU\S-1-5-21-3582125000-47192514-3500607020-1002\...\RunOnce: [SeznamInstall-uninstall:baef780f2ba29427931d78e3461bfd06] => C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [534528 2017-11-06] () <===== ATTENTION
URLSearchHook: [S-1-5-21-3582125000-47192514-3500607020-1001] ATTENTION ==> Default URLSearchHook is missing
FF Extension: No Name - C:\Users\PavlĂ­k\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\extensions\23fb8bb3-ac21-4230-bbfa-49b94968bc63@gmail.com [not found]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
C:\Users\PAVLK~1\AppData\Local\Temp

EmptyTemp:
End
*****************

HKU\S-1-5-21-3582125000-47192514-3500607020-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SeznamInstall-uninstall:baef780f2ba29427931d78e3461bfd06 => value removed successfully
Could not restore Default URLSearchHook.
C:\Users\PavlĂ­k\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\extensions\23fb8bb3-ac21-4230-bbfa-49b94968bc63@gmail.com not found.
C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} not found.
Bonjour Service => Service removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully.
Could not move "C:\ProgramData\DP45977C.lfl" => Scheduled to move on reboot.
C:\Users\PAVLK~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe => moved successfully.
C:\Users\PAVLK~1\AppData\Local\Temp => moved successfully.
EmptyTemp: => 9.2 GB temporary data Removed.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2017-11-06 21:12:52)<=

C:\ProgramData\DP45977C.lfl => Is moved successfully

==== End of Fixlog 21:12:52 ====

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 21:54
od Rudy
Smazáno. Nastala nějaká změna?

Re: Zpomalený a zasekaný notebook

Napsal: 06 lis 2017 22:07
od MadPaul
Je trochu svižnější, ale není to úplně ono. Zatím moc děkuji

Re: Zpomalený a zasekaný notebook

Napsal: 07 lis 2017 12:57
od Rudy
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: Zpomalený a zasekaný notebook

Napsal: 07 lis 2017 16:17
od MadPaul
Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 07.11.17
Čas skenování: 16:11
Logovací soubor: ffd823a2-c3cd-11e7-bac5-1c3e84ddec5e.json
Správce: Ano

-Informace o softwaru-
Verze: 3.3.1.2183
Verze komponentů: 1.0.236
Aktualizovat verzi balíku komponent: 1.0.3151
Licence: Zkušební

-Systémová informace-
OS: Windows 8
CPU: x64
Systém souborů: NTFS
Uživatel: Pavel\Pavl\u00c3\u00adk

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 380277
Zjištěné hrozby: 74
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 2 min, 55 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 41
PUP.Optional.CinemaPlus, HKU\S-1-5-21-3582125000-47192514-3500607020-1002\SOFTWARE\CinPlus-2.4cV07.02-nv-ie, Žádná uživatelská akce, [2508], [236521],1.0.3151
PUP.Optional.CinemaPlus, HKU\S-1-5-18\SOFTWARE\CinPlus-2.4cV07.02-nv-ie, Žádná uživatelská akce, [2508], [236521],1.0.3151
PUP.Optional.CinemaPlus, HKLM\SOFTWARE\WOW6432NODE\CinPlus-2.4cV07.02, Žádná uživatelská akce, [2508], [236541],1.0.3151
PUP.Optional.CinemaPlus, HKLM\SOFTWARE\WOW6432NODE\CinPlus-2.4cV07.02-nv-ie, Žádná uživatelská akce, [2508], [236541],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E4EF8A64-0A30-48F5-B3FE-5FDA978DA775}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E4EF8A64-0A30-48F5-B3FE-5FDA978DA775}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.IEModule, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{AE815BAF-3E4E-3159-9B64-3E3B641B6629}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{AE815BAF-3E4E-3159-9B64-3E3B641B6629}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{AE815BAF-3E4E-3159-9B64-3E3B641B6629}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.IEModule+IECustomCommands, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{7FD45008-86E6-3366-B2F2-00120191DE57}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{7FD45008-86E6-3366-B2F2-00120191DE57}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{7FD45008-86E6-3366-B2F2-00120191DE57}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.IEModule+IECustomContextMenuCommands, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{BFB18DD2-51C1-34EC-BE7F-58B9D83B2B33}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{BFB18DD2-51C1-34EC-BE7F-58B9D83B2B33}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{BFB18DD2-51C1-34EC-BE7F-58B9D83B2B33}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.PopupForm, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{D029C6E7-2145-323B-8340-0AEC5315042F}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D029C6E7-2145-323B-8340-0AEC5315042F}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D029C6E7-2145-323B-8340-0AEC5315042F}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.PopupForm+AltActionClickedEventArgs, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.PCSpeedUp, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, Žádná uživatelská akce, [6182], [241622],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{3D954F15-72BA-3C5E-8B2B-BF0D65A1B98B}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3D954F15-72BA-3C5E-8B2B-BF0D65A1B98B}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{3D954F15-72BA-3C5E-8B2B-BF0D65A1B98B}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.PopupForm+SmileyClickedEventArgs, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.SWLIEToolbar, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{0DDD0901-01F1-3F7E-BAAA-0A56984C0A51}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{0DDD0901-01F1-3F7E-BAAA-0A56984C0A51}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{0DDD0901-01F1-3F7E-BAAA-0A56984C0A51}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.SWLSettings, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\CLSID\{A830CF64-0BF6-3C3D-9AC2-713DCE11059B}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A830CF64-0BF6-3C3D-9AC2-713DCE11059B}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{A830CF64-0BF6-3C3D-9AC2-713DCE11059B}, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\CLASSES\SmileysWeLoveToolbar.WatermarkTextBox, Žádná uživatelská akce, [6720], [243210],1.0.3151
PUP.Optional.Yontoo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Update Optical Surf, Žádná uživatelská akce, [39], [254015],1.0.3151
PUP.Optional.Yontoo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Util Optical Surf, Žádná uživatelská akce, [39], [254015],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{5D57E386-D294-41BA-9146-FADE0C76EB2A}, Žádná uživatelská akce, [6720], [243215],1.0.3151
PUP.Optional.SmileysWeLove, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\1afb8e7a-a08b-475a-beb2-376df461eb17, Žádná uživatelská akce, [6720], [168805],1.0.3151

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 6
PUP.Optional.SmileysWeLove, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\SMILEYSWELOVE FOR IE, Žádná uživatelská akce, [6720], [243208],1.0.3151
PUP.Optional.SmileysWeLove, C:\PROGRAM FILES (X86)\SMILEYS WE LOVE TOOLBAR FOR IE, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\jetpack\jid1-FB1bBgFMk5H6Wg@jetpack\simple-storage, Žádná uživatelská akce, [6720], [179671],1.0.3151
PUP.Optional.SmileysWeLove, C:\USERS\PAVLíK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LDBJ6XQT.DEFAULT\JETPACK\JID1-FB1BBGFMK5H6WG@JETPACK, Žádná uživatelská akce, [6720], [179671],1.0.3151
PUP.Optional.SmileysWeLove, C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\jetpack\jid1-vW9nopuIAJiRHw@jetpack\simple-storage, Žádná uživatelská akce, [6720], [179672],1.0.3151
PUP.Optional.SmileysWeLove, C:\USERS\PAVLíK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LDBJ6XQT.DEFAULT\JETPACK\JID1-VW9NOPUIAJIRHW@JETPACK, Žádná uživatelská akce, [6720], [179672],1.0.3151

Soubor: 27
PUP.Optional.SmileysWeLove, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\SMILEYSWELOVE FOR IE\SMILEYSWELOVE SETTINGS FOR IE.LNK, Žádná uživatelská akce, [6720], [243208],1.0.3151
PUP.Optional.SmileysWeLove, C:\USERS\PAVLíK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\LDBJ6XQT.DEFAULT\EXTENSIONS\JID1-FB1BBGFMK5H6WG@JETPACK.XPI, Žádná uživatelská akce, [6720], [243204],1.0.3151
PUP.Optional.SmileysWeLove, C:\PROGRAM FILES (X86)\SMILEYS WE LOVE TOOLBAR FOR IE\SMILEYSWELOVE.ICO, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\AddinExpress.IE.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\AddinExpress.IE.tlb, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.dll.manifest, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.exe, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader64.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader64.exe, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxregistrator.exe, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\HtmlAgilityPack.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\Interop.SHDocVw.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\Microsoft.mshtml.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\SmileysWeLoveToolbar.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\SWLCustomInstaller.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\SWLCustomInstaller.InstallState, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\SWLHelperLibrary.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\SWLSettingsApp.exe, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\SWLSettingsApp.exe.config, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Program Files (x86)\Smileys We Love Toolbar for IE\System.Net.Json.dll, Žádná uživatelská akce, [6720], [243207],1.0.3151
PUP.Optional.SmileysWeLove, C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\jetpack\jid1-FB1bBgFMk5H6Wg@jetpack\simple-storage\store.json, Žádná uživatelská akce, [6720], [179671],1.0.3151
PUP.Optional.SmileysWeLove, C:\Users\Pavlík\AppData\Roaming\Mozilla\Firefox\Profiles\ldbj6xqt.default\jetpack\jid1-vW9nopuIAJiRHw@jetpack\simple-storage\store.json, Žádná uživatelská akce, [6720], [179672],1.0.3151
PUP.Optional.Yontoo, C:\PROGRAMDATA\NTUSER.POL, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.Spigot, C:\USERS\PAVLíK\DESKTOP\YTDSETUP.EXE, Žádná uživatelská akce, [648], [300859],1.0.3151
PUP.Optional.Bundler, C:\USERS\PAVLíK\DOWNLOADS\KMPLAYER-LISTA-CENTRUMCZ.EXE, Žádná uživatelská akce, [148], [88479],1.0.3151
PUP.Optional.Seznam, C:\USERS\PAVLíK\DOWNLOADS\UTORRENT-SETUP.EXE, Žádná uživatelská akce, [4814], [43478],1.0.3151

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Re: Zpomalený a zasekaný notebook

Napsal: 07 lis 2017 18:08
od Rudy
Všechny nálezy smažte.

Re: Zpomalený a zasekaný notebook

Napsal: 07 lis 2017 21:13
od MadPaul
Zrychlilo se to . Moc Vám děkuji :)

Re: Zpomalený a zasekaný notebook

Napsal: 07 lis 2017 21:47
od Rudy
Rádo se stalo! :)