MIzejícíí ikony z plochy .... prosím o pomoc
Napsal: 22 lis 2017 22:04
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-11-2017
Ran by Martin Z (22-11-2017 22:02:45)
Running from E:\Downloads
Windows 10 Home Version 1703 15063.726 (X64) (2017-08-17 15:34:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3071303108-890137103-2170573570-500 - Administrator - Disabled)
davzu (S-1-5-21-3071303108-890137103-2170573570-1002 - Limited - Disabled)
DefaultAccount (S-1-5-21-3071303108-890137103-2170573570-503 - Limited - Disabled)
Guest (S-1-5-21-3071303108-890137103-2170573570-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3071303108-890137103-2170573570-1004 - Limited - Enabled)
Martin Z (S-1-5-21-3071303108-890137103-2170573570-1001 - Administrator - Enabled) => C:\Users\Martin Z
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Internet Security (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG Internet Security (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
AirDroid 3.4.1.0 (HKLM-x32\...\AirDroid) (Version: 3.4.1.0 - Sand Studio)
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
ANT Drivers Installer x64 (HKLM\...\{B9218A36-7AD3-4046-8D77-31F51DC0D795}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
AntiRansomware 2017 (HKLM-x32\...\AbAppId-82_is1) (Version: 17.08 - Abelssoft)
AVG (HKLM\...\{51E31F6F-B8C7-46D9-AFC8-C36F9DE38031}) (Version: 16.151.8013 - AVG Technologies) Hidden
AVG 2016 (HKLM\...\{B8AFCDA5-F0B6-476F-9E02-55488686278A}) (Version: 16.0.4782 - AVG Technologies) Hidden
AVG PC TuneUp (HKLM-x32\...\{82B9AF2D-4254-428A-9D1E-7714BA91A4B0}) (Version: 16.76.2 - AVG Technologies) Hidden
AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.76.3.18604 - AVG Technologies)
AVG Protection (HKLM\...\AVG) (Version: 2016.151.8013 - AVG Technologies)
Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.14.160917 - )
Backup and Sync from Google (HKLM-x32\...\{604582EB-8259-4ED6-9B1B-6F2494D4B640}) (Version: 3.37.7411.4599 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.37 - Piriform)
Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version: - )
ČRo Stream verze 1.63 (HKLM-x32\...\ČRo Stream_is1) (Version: 1.63 - )
DokanSetup (HKLM\...\{E2676CB4-216C-4050-9C45-63A2B3349E0C}) (Version: 0.6.40.0 - MegaBackup Corp) Hidden
Driver Booster 4.4 (HKLM-x32\...\Driver Booster_is1) (Version: 4.4.0 - IObit)
Elevated Installer (HKLM-x32\...\{B85F70BE-A5A3-48A2-A790-AF6001F026E0}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden
FMW 1 (HKLM\...\{DC2A8E3D-D5E1-4837-A2E0-C308100AC412}) (Version: 1.143.3 - AVG Technologies) Hidden
foobar2000 v1.3.16 (HKLM-x32\...\foobar2000) (Version: 1.3.16 - Peter Pawlowski)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.0.0.29935 - Foxit Software Inc.)
Garmin Communicator Plugin (HKLM-x32\...\{71DBFBF2-F7EB-4268-8485-9471D83C4E66}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (HKLM\...\{70A381F1-C161-4D61-A20C-BE12FC6777DF}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{5b328687-2baf-4fb6-b6c7-c49fb4840cba}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{5F4164CE-621E-4AFD-BBFE-1BBE2299710E}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (HKLM-x32\...\{4E9533AB-7743-4B73-A5D2-42207E159E11}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Hddb File Search (HKLM-x32\...\Hddb) (Version: 2.0.0 - hddb.xp-zed.com)
Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java SE Development Kit 8 Update 73 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180730}) (Version: 8.0.730.2 - Oracle Corporation)
Mendeley Desktop 1.17.10 (HKLM-x32\...\Mendeley Desktop) (Version: 1.17.10 - Mendeley Ltd.)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.8201.2200 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Support and Recovery Assistant for Office 365 (HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\4415f693b586d348) (Version: 16.0.1799.1 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Mozilla Firefox 57.0 (x64 cs) (HKLM\...\Mozilla Firefox 57.0 (x64 cs)) (Version: 57.0 - Mozilla)
Mozilla Firefox 57.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 57.0 (x86 cs)) (Version: 57.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla)
NVIDIA Ovladač 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8201.2200 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8201.2200 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.8201.2075 - Microsoft Corporation) Hidden
Oracle VM VirtualBox 5.1.30 (HKLM\...\{2F7790B1-72FA-426F-91B3-EBEAA30B1ABA}) (Version: 5.1.30 - Oracle Corporation)
Ovládací panel NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8198 - Realtek Semiconductor Corp.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.1.0.1120 - Samsung Electronics)
Seznam Software (HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\SeznamInstall) (Version: 2.1.15 - Seznam.cz)
SSD Fresh 2016 (HKLM-x32\...\{71149886-0AA3-4F31-81F9-CC90EA0D55EF}_is1) (Version: 5.0 - Abelssoft)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.88438 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.2 - TrueCrypt Foundation)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Zoner Photo Studio 16 (HKLM\...\ZonerPhotoStudio16_CZ_is1) (Version: - ZONER software)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google)
ShellIconOverlayIdentifiers: [0.IconShell32] -> {94763686-13FB-47B5-A193-A9CD37391BAC} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers1: [AVG Shell Extension] -> {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} => C:\Program Files (x86)\AVG\Av\avgsea.dll [2017-04-11] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-10-21] (Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-01] (Google)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers4: [AVG Disk Space Explorer Shell Extension] -> {4838CD50-7E5D-4811-9B17-C47A85539F28} => C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers4: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-01] (Google)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers6: [AVG Shell Extension] -> {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} => C:\Program Files (x86)\AVG\Av\avgsea.dll [2017-04-11] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-10-21] (Foxit Software Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00C5A2EF-50E1-4FC4-95AC-EF736AE0EAAA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-10-21] (Microsoft Corporation)
Task: {04FD8C30-2A43-4FB0-BE4B-D402927CC9CA} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] ()
Task: {0A8C04D4-8E79-47A6-8222-1DA110254555} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-10-21] (Microsoft Corporation)
Task: {1656E95A-6FD5-49C7-A554-98DC40D2CC39} - System32\Tasks\Driver Booster SkipUAC (Martin Z) => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe [2017-05-03] (IObit)
Task: {179442FC-E229-4D9C-8C00-E18837E5060A} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] ()
Task: {497CDCE2-0D64-4351-BD16-6519E876CCB2} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\Scheduler.exe [2017-03-28] (IObit)
Task: {50CB2A38-8EBB-4551-B034-7FDE3219003A} - \TweakBit\Driver Updater\Start Driver Updater automatic scanning -> No File <==== ATTENTION
Task: {549813F5-8C75-4144-B08B-F8B4D3CCA225} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2017-10-09] ()
Task: {58E63F2B-B282-4262-9C16-E7B6B6DE9594} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-10-21] (Microsoft Corporation)
Task: {5BA124F6-EF8C-411C-85B1-D6695A42DFAB} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
Task: {5D21B430-EE51-42A4-B592-DACC0F8FF86C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21] (Google Inc.)
Task: {6311C770-584B-46D6-9733-89468948FA3B} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe [2017-11-15] (AVG Technologies CZ, s.r.o.)
Task: {6C9D6DD0-EFD5-4B99-942E-6AA1E885619C} - \TweakBit\Driver Updater\Time for deal -> No File <==== ATTENTION
Task: {8FC6B609-856F-4888-AC52-2354B2D8FD34} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe
Task: {95149457-2BD3-4910-A53F-AFA928D70471} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-04] (Microsoft Corporation)
Task: {B1247089-EFD3-4D58-BED2-EA90598ACEF1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [2017-05-19] (Samsung Electronics Co. Ltd.)
Task: {CEFA8723-BD93-4D91-B4AB-F9E873A01DD6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21] (Google Inc.)
Task: {D139B6F0-FCFE-44B9-BCC6-6C449B91AA89} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-11-08] (Piriform Ltd)
Task: {E13BC679-4985-4FBD-8204-96564FC32A90} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-04] (Microsoft Corporation)
Task: {E2C503BE-DB4F-4E7D-98ED-8A59E36DC74A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-11-08] (Piriform Ltd)
Task: {E5854CE7-3857-4815-9DFD-E5FD84CFA3A9} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-07-21] (Oracle Corporation)
Task: {E6D5E591-F399-4017-891F-5274844327FD} - \TweakBit\Driver Updater\Start Driver Updater оn logon -> No File <==== ATTENTION
Task: {F30EA4F3-AE64-4D27-9FF7-A09649B52161} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-11-21] (Microsoft Corporation)
Task: {F7D63482-1DD2-4A66-962A-345D85F6F4A0} - System32\Tasks\Abelssoft\AntiRansomware => C:\Program Files (x86)\AntiRansomware\AbLauncher.exe [2016-12-13] ()
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Martin Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Pocket.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=mjcnijlhddpbdemagnpefmlkjdagkogk
ShortcutWithArgument: C:\Users\Martin Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Videostream for Google Chromecast™.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=cnciopoikihiagdjbjpnocolokfelagl
==================== Loaded Modules (Whitelisted) ==============
2017-08-17 16:23 - 2016-11-14 12:15 - 000135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 21:59 - 2017-03-20 05:45 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-11-12 09:43 - 2017-11-12 09:44 - 000087552 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-11-12 09:43 - 2017-11-12 09:44 - 000206336 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-11-12 09:43 - 2017-11-12 09:44 - 025461760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-11-07 15:23 - 2017-11-07 15:24 - 002552832 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\skypert.dll
2017-11-12 09:43 - 2017-11-12 09:44 - 000685056 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2017-02-12 14:54 - 2016-12-13 11:29 - 002771992 _____ () C:\ProgramData\Abelssoft\AntiRansomware\Program\AntiRansomware.exe
2017-11-01 05:49 - 2017-11-01 05:49 - 040417680 _____ () C:\Program Files (x86)\Google\Drive\googledrivesync.exe
2017-11-08 22:35 - 2017-11-08 22:35 - 000086224 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2017-11-15 23:24 - 2017-11-10 10:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll
2017-11-15 23:24 - 2017-11-10 10:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll
2016-09-10 09:47 - 2015-12-23 15:27 - 000629536 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000088064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_ctypes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000918528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_hashlib.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000098816 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32api.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000110080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pywintypes27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000364544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pythoncom27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000686080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\unicodedata.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000320512 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32com.shell.shell.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001177088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._core_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000806912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._gdi_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000816640 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._windows_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001067520 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._controls_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000733696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._misc_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000736256 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pysqlite2._sqlite.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000119808 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32file.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000108544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32security.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000007168 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\hashobjs_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017920 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\thumbnails_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000082432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\usb_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000013824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\common.time34.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000018432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32event.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.conditional.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.winwrap.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000089088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.volumes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000167936 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32gui.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000046080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_socket.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001309696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_ssl.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000129536 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_elementtree.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000127488 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pyexpat.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000038912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32inet.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000077824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._html2.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000036864 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_psutil_windows.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000524248 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows._lib_cacheinvalidation.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000011264 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32crypt.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000218624 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\PIL._imaging.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_multiprocessing.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000020480 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_yappi.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000035840 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32process.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000024064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32pipe.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000010240 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\select.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000025600 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32pdh.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000059392 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.device_monitor.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32profile.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000022528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32ts.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000088064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_ctypes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000918528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_hashlib.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000098816 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32api.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000110080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pywintypes27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000364544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pythoncom27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000686080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\unicodedata.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000320512 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32com.shell.shell.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001177088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._core_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000806912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._gdi_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000816640 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._windows_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001067520 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._controls_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000733696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._misc_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000736256 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pysqlite2._sqlite.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000119808 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32file.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000108544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32security.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000007168 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\hashobjs_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017920 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\thumbnails_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000082432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\usb_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000013824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\common.time34.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000018432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32event.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.conditional.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.winwrap.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000089088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.volumes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000167936 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32gui.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000046080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_socket.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001309696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_ssl.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000129536 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_elementtree.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000127488 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pyexpat.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000038912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32inet.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000077824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._html2.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000036864 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_psutil_windows.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000524248 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows._lib_cacheinvalidation.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000011264 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32crypt.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000218624 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\PIL._imaging.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_multiprocessing.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000020480 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_yappi.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000035840 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32process.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000024064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32pipe.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000010240 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\select.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000025600 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32pdh.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000059392 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.device_monitor.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32profile.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000022528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32ts.pyd
2016-12-24 19:54 - 2016-12-24 19:54 - 048920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\sharepoint.com -> hxxps://upolomouc-files.sharepoint.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123simsen.com -> www.123simsen.com
There are 7871 more sites.
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 08:24 - 2016-02-21 20:07 - 000452933 ____R C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 www.msftncsi.com
127.0.0.1 pre.footprintpredict.com
127.0.0.1 cs1.wpc.v0cdn.net
127.0.0.1 a-0001.a-msedge.net
127.0.0.1 az361816.vo.msecnd.net
127.0.0.1 az512334.vo.msecnd.net
127.0.0.1 choice.microsoft.com
127.0.0.1 choice.microsoft.com.nsatc.net
127.0.0.1 compatexchange.cloudapp.net
127.0.0.1 corp.sts.microsoft.com
127.0.0.1 corpext.msitadfs.glbdns2.microsoft.com
127.0.0.1 df.telemetry.microsoft.com
127.0.0.1 diagnostics.support.microsoft.com
127.0.0.1 fe2.update.microsoft.com.akadns.net
127.0.0.1 feedback.microsoft-hohm.com
127.0.0.1 feedback.search.microsoft.com
127.0.0.1 feedback.windows.com
127.0.0.1 i1.services.social.microsoft.com
127.0.0.1 i1.services.social.microsoft.com.nsatc.net
127.0.0.1 oca.telemetry.microsoft.com
127.0.0.1 oca.telemetry.microsoft.com.nsatc.net
127.0.0.1 preview.msn.com
127.0.0.1 rad.msn.com
127.0.0.1 redir.metaservices.microsoft.com
127.0.0.1 reports.wes.df.telemetry.microsoft.com
127.0.0.1 services.wes.df.telemetry.microsoft.com
127.0.0.1 settings-sandbox.data.microsoft.com
127.0.0.1 sls.update.microsoft.com.akadns.net
127.0.0.1 sqm.df.telemetry.microsoft.com
127.0.0.1 sqm.telemetry.microsoft.com
There are 15521 more lines.
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: off)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\startupreg: Acronis Scheduler2 Service => "c:\program files (x86)\common files\acronis\schedule2\schedhlp.exe"
MSCONFIG\startupreg: AcronisTimounterMonitor => c:\program files (x86)\acronis\trueimagehome\timountermonitor.exe
MSCONFIG\startupreg: TrueImageMonitor.exe => c:\program files (x86)\acronis\trueimagehome\trueimagemonitor.exe
MSCONFIG\startupreg: Zoner Photo Studio Autoupdate => "c:\program files\zoner\photo studio 16\program32\zpstray.exe"
HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service"
HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "AcronisTimounterMonitor"
HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "Spybot-S&D Cleaning"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "cz.seznam.software.autoupdate"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "cz.seznam.software.szndesktop"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{67E01CCF-3552-4632-A11A-0D4F2354426A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\AutoUpdate.exe
FirewallRules: [{6759112F-3E5B-485C-AB8D-39ADD709D003}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\AutoUpdate.exe
FirewallRules: [{4274DCFB-CBBE-487B-A542-D107DBAD5FD8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DBDownloader.exe
FirewallRules: [{67D69ED7-5946-46E7-BDDB-6B2F1FCF7328}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DBDownloader.exe
FirewallRules: [{306D5F77-7FE8-4974-95A1-31BC4AC8515C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe
FirewallRules: [{EE438550-CDA3-45ED-83A7-C6573D7BFFEC}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe
FirewallRules: [{464FF4A0-A514-4E50-858A-F509C8338B08}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{69390D80-4842-4EB0-AB89-A0D4BC97FAE5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{81D8A9E3-260E-4DD4-A16F-7B35CF4EF2F9}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{22111238-8F6D-49FA-99AF-2A8B8B0C79C2}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [UDP Query User{70197930-53C1-400F-B30C-25644CB95291}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [TCP Query User{9C90A3DA-03CB-47EC-A52B-DE049B78D223}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [{20B4A504-8C1E-47A7-B8EC-C04F324DBFA7}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{2A4CCA8F-E4E8-4864-B82E-66BD31C5A721}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{D02D511B-D5DA-4A92-A0D4-17D023FD03B3}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{85D9138E-2D85-4CBB-8267-8D637436BA33}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{84489B66-60AF-4513-8036-58B86DA44DBA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{9FA22EE2-F306-481B-8D7E-19D9CCF8B421}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{9A4BE667-C28A-43E0-9706-CE8BCFCA62B9}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{963197F6-6FA7-4D81-B004-147458230A01}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [UDP Query User{FE11860E-E061-4C4B-8118-60E59A25CAC0}C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe] => (Allow) C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe
FirewallRules: [TCP Query User{FD8527F8-5322-46D3-B170-23CD67014B6F}C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe] => (Allow) C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe
FirewallRules: [{742ABC05-8128-4473-BAC2-D563573C1040}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{41FFAA41-4AB0-4724-B8F6-0897F10B1F1B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{49551A2A-27CA-4F27-BDE9-6E031B688089}C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe
FirewallRules: [TCP Query User{E31B3FAF-A60C-4A19-9BF0-9729565B32AF}C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe
FirewallRules: [{14F94817-5B25-46FA-9974-EF5273C3CD7D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{339B25D4-DDD4-4644-93EB-03AC93250A0A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{CC3BEFF5-B172-4A85-AE77-A00580A9B1C0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{FE5A7060-F60E-44A6-B5BA-5FD0C1A5F29B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{4AE0004F-8100-40FA-A29E-8E6D3FEBE0AA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{5ECED519-301D-453E-9CF2-7A05E3AEB3BA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Restore Points =========================
06-11-2017 16:54:18 Naplánovaný kontrolní bod
15-11-2017 18:52:41 Naplánovaný kontrolní bod
18-11-2017 09:00:14 Driver Booster : Realtek PCIe GBE Family Controller
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/22/2017 07:05:04 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/20/2017 08:40:08 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/20/2017 05:27:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.15063.0, časové razítko: 0xeee35298
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x8274fd8b
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000f775f
ID chybujícího procesu: 0x3784
Čas spuštění chybující aplikace: 0x01d361b7ed424f30
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 13b52900-bd77-4377-be23-afd023ed77c7
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/20/2017 05:27:50 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.15063.0, časové razítko: 0xeee35298
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x8274fd8b
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000f775f
ID chybujícího procesu: 0x184c
Čas spuštění chybující aplikace: 0x01d361b7d4726893
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 67936749-8e99-4c90-aec7-04bacc4951a3
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/19/2017 05:02:12 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/19/2017 04:01:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.15063.0, časové razítko: 0x58ccbd2e
Název chybujícího modulu: StartUI.dll, verze: 10.0.15063.502, časové razítko: 0x597abae6
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000a050b
ID chybujícího procesu: 0x2070
Čas spuštění chybující aplikace: 0x01d360f40b9aa31e
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\ShellExperiences\StartUI.dll
ID zprávy: 3d532f6a-1bc4-45c8-bbb2-55758b4194a4
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App
Error: (11/19/2017 04:01:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.15063.0, časové razítko: 0x58ccbd2e
Název chybujícího modulu: StartUI.dll, verze: 10.0.15063.502, časové razítko: 0x597abae6
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000a050b
ID chybujícího procesu: 0x2070
Čas spuštění chybující aplikace: 0x01d360f40b9aa31e
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\ShellExperiences\StartUI.dll
ID zprávy: 66e1155a-33d0-4960-8ece-341d9ffc3872
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App
Error: (11/18/2017 05:00:51 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/18/2017 02:57:05 PM) (Source: ESENT) (EventID: 476) (User: )
Description: svchost (11624) Unistore: Ověření načtení stránky databáze ze souboru C:\Users\Martin Z\AppData\Local\Comms\UnistoreDB\store.vol na posunu 37105664 (0x0000000002363000) (stránka databáze 9058 (0x2362)) o 4096 (0x00001000) bajtů selhalo. Stránka neobsahuje žádná data. Operace čtení selže a dojde k chybě -1019 (0xfffffc05). Pokud s tím budou dál problémy, obnovte prosím databázi z předchozí zálohy. Tento problém je pravděpodobně způsobený vadným hardwarem. O další pomoc s diagnostikováním problému požádejte dodavatele hardwaru.
Error: (11/18/2017 05:35:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.15063.0, časové razítko: 0xeee35298
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x8274fd8b
Kód výjimky: 0xc0000409
Posun chyby: 0x00000000000c9915
ID chybujícího procesu: 0x1824
Čas spuštění chybující aplikace: 0x01d360268ce16373
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 43867c7b-2bea-4e3f-a62b-b7f5599bfdee
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (11/22/2017 09:59:12 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
Error: (11/22/2017 09:59:11 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
Error: (11/22/2017 09:59:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba CldFlt neuspěla při spuštění v důsledku následující chyby:
Požadavek není podporován.
Error: (11/22/2017 09:58:33 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
Error: (11/22/2017 09:58:14 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:57:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:57:36 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:57:32 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:55:55 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 06:36:21 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
CodeIntegrity:
===================================
Date: 2017-11-22 21:59:11.568
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\msvcp140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.525
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.525
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.427
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.415
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\msvcp140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.042
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:58:34.084
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 20:40:08.507
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 20:40:00.939
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 20:40:00.852
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 540 @ 3.07GHz
Percentage of memory in use: 46%
Total physical RAM: 8119.11 MB
Available physical RAM: 4378.3 MB
Total Virtual: 8319.11 MB
Available Virtual: 4359.6 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:231.95 GB) (Free:132.89 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (Old system) (Fixed) (Total:0.1 GB) (Free:0.05 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: (DATA DISC) (Fixed) (Total:584.51 GB) (Free:228.47 GB) NTFS
Drive f: (CHIPDVD_1217) (CDROM) (Total:7.7 GB) (Free:0 GB) CDFS
Drive g: (HP_RECOVERY) (Fixed) (Total:11.56 GB) (Free:1.4 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive h: () (Removable) (Total:1.83 GB) (Free:1.07 GB) FAT
Drive i: (WD SmartWare) (CDROM) (Total:0.63 GB) (Free:0 GB) UDF
Drive l: () (Removable) (Total:0.12 GB) (Free:0.02 GB) FAT
Drive n: () (Removable) (Total:15.1 GB) (Free:7.77 GB) FAT32
Drive z: (My Passport) (Fixed) (Total:297.44 GB) (Free:4.87 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: E9062E2A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=852 MB) - (Type=27)
========================================================
Disk: 1 (Size: 596.2 GB) (Disk ID: 26E2C48F)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=584.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=11.6 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 297.4 GB) (Disk ID: 14FC14FB)
Partition 1: (Active) - (Size=297.4 GB) - (Type=07 NTFS)
========================================================
Disk: 3 (MBR Code: Windows XP) (Size: 15.1 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=15.1 GB) - (Type=0C)
========================================================
Disk: 4 (Size: 1.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 8 (Size: 126.1 MB) (Disk ID: F92F470B)
Partition 1: (Active) - (Size=126 MB) - (Type=06)
==================== End of Addition.txt ============================
Ran by Martin Z (22-11-2017 22:02:45)
Running from E:\Downloads
Windows 10 Home Version 1703 15063.726 (X64) (2017-08-17 15:34:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3071303108-890137103-2170573570-500 - Administrator - Disabled)
davzu (S-1-5-21-3071303108-890137103-2170573570-1002 - Limited - Disabled)
DefaultAccount (S-1-5-21-3071303108-890137103-2170573570-503 - Limited - Disabled)
Guest (S-1-5-21-3071303108-890137103-2170573570-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3071303108-890137103-2170573570-1004 - Limited - Enabled)
Martin Z (S-1-5-21-3071303108-890137103-2170573570-1001 - Administrator - Enabled) => C:\Users\Martin Z
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Internet Security (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG Internet Security (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
AirDroid 3.4.1.0 (HKLM-x32\...\AirDroid) (Version: 3.4.1.0 - Sand Studio)
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
ANT Drivers Installer x64 (HKLM\...\{B9218A36-7AD3-4046-8D77-31F51DC0D795}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
AntiRansomware 2017 (HKLM-x32\...\AbAppId-82_is1) (Version: 17.08 - Abelssoft)
AVG (HKLM\...\{51E31F6F-B8C7-46D9-AFC8-C36F9DE38031}) (Version: 16.151.8013 - AVG Technologies) Hidden
AVG 2016 (HKLM\...\{B8AFCDA5-F0B6-476F-9E02-55488686278A}) (Version: 16.0.4782 - AVG Technologies) Hidden
AVG PC TuneUp (HKLM-x32\...\{82B9AF2D-4254-428A-9D1E-7714BA91A4B0}) (Version: 16.76.2 - AVG Technologies) Hidden
AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.76.3.18604 - AVG Technologies)
AVG Protection (HKLM\...\AVG) (Version: 2016.151.8013 - AVG Technologies)
Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.14.160917 - )
Backup and Sync from Google (HKLM-x32\...\{604582EB-8259-4ED6-9B1B-6F2494D4B640}) (Version: 3.37.7411.4599 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.37 - Piriform)
Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version: - )
ČRo Stream verze 1.63 (HKLM-x32\...\ČRo Stream_is1) (Version: 1.63 - )
DokanSetup (HKLM\...\{E2676CB4-216C-4050-9C45-63A2B3349E0C}) (Version: 0.6.40.0 - MegaBackup Corp) Hidden
Driver Booster 4.4 (HKLM-x32\...\Driver Booster_is1) (Version: 4.4.0 - IObit)
Elevated Installer (HKLM-x32\...\{B85F70BE-A5A3-48A2-A790-AF6001F026E0}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden
FMW 1 (HKLM\...\{DC2A8E3D-D5E1-4837-A2E0-C308100AC412}) (Version: 1.143.3 - AVG Technologies) Hidden
foobar2000 v1.3.16 (HKLM-x32\...\foobar2000) (Version: 1.3.16 - Peter Pawlowski)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.0.0.29935 - Foxit Software Inc.)
Garmin Communicator Plugin (HKLM-x32\...\{71DBFBF2-F7EB-4268-8485-9471D83C4E66}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (HKLM\...\{70A381F1-C161-4D61-A20C-BE12FC6777DF}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{5b328687-2baf-4fb6-b6c7-c49fb4840cba}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{5F4164CE-621E-4AFD-BBFE-1BBE2299710E}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (HKLM-x32\...\{4E9533AB-7743-4B73-A5D2-42207E159E11}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Hddb File Search (HKLM-x32\...\Hddb) (Version: 2.0.0 - hddb.xp-zed.com)
Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java SE Development Kit 8 Update 73 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180730}) (Version: 8.0.730.2 - Oracle Corporation)
Mendeley Desktop 1.17.10 (HKLM-x32\...\Mendeley Desktop) (Version: 1.17.10 - Mendeley Ltd.)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.8201.2200 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Support and Recovery Assistant for Office 365 (HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\4415f693b586d348) (Version: 16.0.1799.1 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Mozilla Firefox 57.0 (x64 cs) (HKLM\...\Mozilla Firefox 57.0 (x64 cs)) (Version: 57.0 - Mozilla)
Mozilla Firefox 57.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 57.0 (x86 cs)) (Version: 57.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla)
NVIDIA Ovladač 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8201.2200 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8201.2200 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.8201.2075 - Microsoft Corporation) Hidden
Oracle VM VirtualBox 5.1.30 (HKLM\...\{2F7790B1-72FA-426F-91B3-EBEAA30B1ABA}) (Version: 5.1.30 - Oracle Corporation)
Ovládací panel NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8198 - Realtek Semiconductor Corp.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.1.0.1120 - Samsung Electronics)
Seznam Software (HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\SeznamInstall) (Version: 2.1.15 - Seznam.cz)
SSD Fresh 2016 (HKLM-x32\...\{71149886-0AA3-4F31-81F9-CC90EA0D55EF}_is1) (Version: 5.0 - Abelssoft)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.88438 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.2 - TrueCrypt Foundation)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Zoner Photo Studio 16 (HKLM\...\ZonerPhotoStudio16_CZ_is1) (Version: - ZONER software)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-01] (Google)
ShellIconOverlayIdentifiers: [0.IconShell32] -> {94763686-13FB-47B5-A193-A9CD37391BAC} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers1: [AVG Shell Extension] -> {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} => C:\Program Files (x86)\AVG\Av\avgsea.dll [2017-04-11] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-10-21] (Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-01] (Google)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers4: [AVG Disk Space Explorer Shell Extension] -> {4838CD50-7E5D-4811-9B17-C47A85539F28} => C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers4: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll [2017-11-15] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-01] (Google)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers6: [AVG Shell Extension] -> {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} => C:\Program Files (x86)\AVG\Av\avgsea.dll [2017-04-11] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-10-21] (Foxit Software Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00C5A2EF-50E1-4FC4-95AC-EF736AE0EAAA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-10-21] (Microsoft Corporation)
Task: {04FD8C30-2A43-4FB0-BE4B-D402927CC9CA} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] ()
Task: {0A8C04D4-8E79-47A6-8222-1DA110254555} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-10-21] (Microsoft Corporation)
Task: {1656E95A-6FD5-49C7-A554-98DC40D2CC39} - System32\Tasks\Driver Booster SkipUAC (Martin Z) => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe [2017-05-03] (IObit)
Task: {179442FC-E229-4D9C-8C00-E18837E5060A} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] ()
Task: {497CDCE2-0D64-4351-BD16-6519E876CCB2} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\Scheduler.exe [2017-03-28] (IObit)
Task: {50CB2A38-8EBB-4551-B034-7FDE3219003A} - \TweakBit\Driver Updater\Start Driver Updater automatic scanning -> No File <==== ATTENTION
Task: {549813F5-8C75-4144-B08B-F8B4D3CCA225} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2017-10-09] ()
Task: {58E63F2B-B282-4262-9C16-E7B6B6DE9594} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-10-21] (Microsoft Corporation)
Task: {5BA124F6-EF8C-411C-85B1-D6695A42DFAB} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
Task: {5D21B430-EE51-42A4-B592-DACC0F8FF86C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21] (Google Inc.)
Task: {6311C770-584B-46D6-9733-89468948FA3B} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe [2017-11-15] (AVG Technologies CZ, s.r.o.)
Task: {6C9D6DD0-EFD5-4B99-942E-6AA1E885619C} - \TweakBit\Driver Updater\Time for deal -> No File <==== ATTENTION
Task: {8FC6B609-856F-4888-AC52-2354B2D8FD34} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe
Task: {95149457-2BD3-4910-A53F-AFA928D70471} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-04] (Microsoft Corporation)
Task: {B1247089-EFD3-4D58-BED2-EA90598ACEF1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [2017-05-19] (Samsung Electronics Co. Ltd.)
Task: {CEFA8723-BD93-4D91-B4AB-F9E873A01DD6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-21] (Google Inc.)
Task: {D139B6F0-FCFE-44B9-BCC6-6C449B91AA89} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-11-08] (Piriform Ltd)
Task: {E13BC679-4985-4FBD-8204-96564FC32A90} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-04] (Microsoft Corporation)
Task: {E2C503BE-DB4F-4E7D-98ED-8A59E36DC74A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-11-08] (Piriform Ltd)
Task: {E5854CE7-3857-4815-9DFD-E5FD84CFA3A9} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-07-21] (Oracle Corporation)
Task: {E6D5E591-F399-4017-891F-5274844327FD} - \TweakBit\Driver Updater\Start Driver Updater оn logon -> No File <==== ATTENTION
Task: {F30EA4F3-AE64-4D27-9FF7-A09649B52161} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-11-21] (Microsoft Corporation)
Task: {F7D63482-1DD2-4A66-962A-345D85F6F4A0} - System32\Tasks\Abelssoft\AntiRansomware => C:\Program Files (x86)\AntiRansomware\AbLauncher.exe [2016-12-13] ()
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Martin Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Pocket.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=mjcnijlhddpbdemagnpefmlkjdagkogk
ShortcutWithArgument: C:\Users\Martin Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Videostream for Google Chromecast™.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=cnciopoikihiagdjbjpnocolokfelagl
==================== Loaded Modules (Whitelisted) ==============
2017-08-17 16:23 - 2016-11-14 12:15 - 000135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 21:59 - 2017-03-20 05:45 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-11-12 09:43 - 2017-11-12 09:44 - 000087552 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-11-12 09:43 - 2017-11-12 09:44 - 000206336 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-11-12 09:43 - 2017-11-12 09:44 - 025461760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-11-07 15:23 - 2017-11-07 15:24 - 002552832 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\skypert.dll
2017-11-12 09:43 - 2017-11-12 09:44 - 000685056 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2017-02-12 14:54 - 2016-12-13 11:29 - 002771992 _____ () C:\ProgramData\Abelssoft\AntiRansomware\Program\AntiRansomware.exe
2017-11-01 05:49 - 2017-11-01 05:49 - 040417680 _____ () C:\Program Files (x86)\Google\Drive\googledrivesync.exe
2017-11-08 22:35 - 2017-11-08 22:35 - 000086224 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2017-11-15 23:24 - 2017-11-10 10:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll
2017-11-15 23:24 - 2017-11-10 10:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll
2016-09-10 09:47 - 2015-12-23 15:27 - 000629536 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000088064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_ctypes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000918528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_hashlib.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000098816 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32api.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000110080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pywintypes27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000364544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pythoncom27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000686080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\unicodedata.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000320512 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32com.shell.shell.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001177088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._core_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000806912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._gdi_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000816640 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._windows_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001067520 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._controls_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000733696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._misc_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000736256 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pysqlite2._sqlite.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000119808 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32file.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000108544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32security.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000007168 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\hashobjs_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017920 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\thumbnails_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000082432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\usb_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000013824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\common.time34.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000018432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32event.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.conditional.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.winwrap.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000089088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.volumes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000167936 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32gui.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000046080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_socket.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001309696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_ssl.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000129536 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_elementtree.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000127488 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\pyexpat.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000038912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32inet.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000077824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\wx._html2.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000036864 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_psutil_windows.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000524248 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows._lib_cacheinvalidation.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000011264 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32crypt.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000218624 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\PIL._imaging.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_multiprocessing.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000020480 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\_yappi.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000035840 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32process.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000024064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32pipe.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000010240 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\select.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000025600 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32pdh.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000059392 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\windows.device_monitor.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32profile.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000022528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI122682\win32ts.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000088064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_ctypes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000918528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_hashlib.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000098816 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32api.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000110080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pywintypes27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000364544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pythoncom27.dll
2017-11-22 21:59 - 2017-11-22 21:59 - 000686080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\unicodedata.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000320512 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32com.shell.shell.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001177088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._core_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000806912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._gdi_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000816640 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._windows_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001067520 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._controls_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000733696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._misc_.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000736256 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pysqlite2._sqlite.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000119808 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32file.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000108544 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32security.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000007168 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\hashobjs_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017920 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\thumbnails_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000082432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\usb_ext.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000013824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\common.time34.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000018432 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32event.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.conditional.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.winwrap.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000089088 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.volumes.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000167936 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32gui.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000046080 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_socket.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 001309696 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_ssl.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000129536 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_elementtree.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000127488 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\pyexpat.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000038912 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32inet.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000077824 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\wx._html2.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000036864 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_psutil_windows.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000524248 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows._lib_cacheinvalidation.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000011264 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32crypt.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000218624 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\PIL._imaging.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000027648 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_multiprocessing.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000020480 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\_yappi.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000035840 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32process.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000024064 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32pipe.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000010240 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\select.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000025600 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32pdh.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000059392 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\windows.device_monitor.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000017408 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32profile.pyd
2017-11-22 21:59 - 2017-11-22 21:59 - 000022528 _____ () C:\Users\Martin Z\AppData\Local\Temp\_MEI134842\win32ts.pyd
2016-12-24 19:54 - 2016-12-24 19:54 - 048920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\sharepoint.com -> hxxps://upolomouc-files.sharepoint.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\123simsen.com -> www.123simsen.com
There are 7871 more sites.
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 08:24 - 2016-02-21 20:07 - 000452933 ____R C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 www.msftncsi.com
127.0.0.1 pre.footprintpredict.com
127.0.0.1 cs1.wpc.v0cdn.net
127.0.0.1 a-0001.a-msedge.net
127.0.0.1 az361816.vo.msecnd.net
127.0.0.1 az512334.vo.msecnd.net
127.0.0.1 choice.microsoft.com
127.0.0.1 choice.microsoft.com.nsatc.net
127.0.0.1 compatexchange.cloudapp.net
127.0.0.1 corp.sts.microsoft.com
127.0.0.1 corpext.msitadfs.glbdns2.microsoft.com
127.0.0.1 df.telemetry.microsoft.com
127.0.0.1 diagnostics.support.microsoft.com
127.0.0.1 fe2.update.microsoft.com.akadns.net
127.0.0.1 feedback.microsoft-hohm.com
127.0.0.1 feedback.search.microsoft.com
127.0.0.1 feedback.windows.com
127.0.0.1 i1.services.social.microsoft.com
127.0.0.1 i1.services.social.microsoft.com.nsatc.net
127.0.0.1 oca.telemetry.microsoft.com
127.0.0.1 oca.telemetry.microsoft.com.nsatc.net
127.0.0.1 preview.msn.com
127.0.0.1 rad.msn.com
127.0.0.1 redir.metaservices.microsoft.com
127.0.0.1 reports.wes.df.telemetry.microsoft.com
127.0.0.1 services.wes.df.telemetry.microsoft.com
127.0.0.1 settings-sandbox.data.microsoft.com
127.0.0.1 sls.update.microsoft.com.akadns.net
127.0.0.1 sqm.df.telemetry.microsoft.com
127.0.0.1 sqm.telemetry.microsoft.com
There are 15521 more lines.
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: off)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\startupreg: Acronis Scheduler2 Service => "c:\program files (x86)\common files\acronis\schedule2\schedhlp.exe"
MSCONFIG\startupreg: AcronisTimounterMonitor => c:\program files (x86)\acronis\trueimagehome\timountermonitor.exe
MSCONFIG\startupreg: TrueImageMonitor.exe => c:\program files (x86)\acronis\trueimagehome\trueimagemonitor.exe
MSCONFIG\startupreg: Zoner Photo Studio Autoupdate => "c:\program files\zoner\photo studio 16\program32\zpstray.exe"
HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service"
HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "AcronisTimounterMonitor"
HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "Spybot-S&D Cleaning"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "cz.seznam.software.autoupdate"
HKU\S-1-5-21-3071303108-890137103-2170573570-1001\...\StartupApproved\Run: => "cz.seznam.software.szndesktop"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{67E01CCF-3552-4632-A11A-0D4F2354426A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\AutoUpdate.exe
FirewallRules: [{6759112F-3E5B-485C-AB8D-39ADD709D003}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\AutoUpdate.exe
FirewallRules: [{4274DCFB-CBBE-487B-A542-D107DBAD5FD8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DBDownloader.exe
FirewallRules: [{67D69ED7-5946-46E7-BDDB-6B2F1FCF7328}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DBDownloader.exe
FirewallRules: [{306D5F77-7FE8-4974-95A1-31BC4AC8515C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe
FirewallRules: [{EE438550-CDA3-45ED-83A7-C6573D7BFFEC}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe
FirewallRules: [{464FF4A0-A514-4E50-858A-F509C8338B08}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{69390D80-4842-4EB0-AB89-A0D4BC97FAE5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{81D8A9E3-260E-4DD4-A16F-7B35CF4EF2F9}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{22111238-8F6D-49FA-99AF-2A8B8B0C79C2}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [UDP Query User{70197930-53C1-400F-B30C-25644CB95291}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [TCP Query User{9C90A3DA-03CB-47EC-A52B-DE049B78D223}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [{20B4A504-8C1E-47A7-B8EC-C04F324DBFA7}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{2A4CCA8F-E4E8-4864-B82E-66BD31C5A721}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{D02D511B-D5DA-4A92-A0D4-17D023FD03B3}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{85D9138E-2D85-4CBB-8267-8D637436BA33}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{84489B66-60AF-4513-8036-58B86DA44DBA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{9FA22EE2-F306-481B-8D7E-19D9CCF8B421}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{9A4BE667-C28A-43E0-9706-CE8BCFCA62B9}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{963197F6-6FA7-4D81-B004-147458230A01}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [UDP Query User{FE11860E-E061-4C4B-8118-60E59A25CAC0}C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe] => (Allow) C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe
FirewallRules: [TCP Query User{FD8527F8-5322-46D3-B170-23CD67014B6F}C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe] => (Allow) C:\users\martin z\portable apps\portableapps\synkronportable\app\synkron\synkron.exe
FirewallRules: [{742ABC05-8128-4473-BAC2-D563573C1040}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{41FFAA41-4AB0-4724-B8F6-0897F10B1F1B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{49551A2A-27CA-4F27-BDE9-6E031B688089}C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe
FirewallRules: [TCP Query User{E31B3FAF-A60C-4A19-9BF0-9729565B32AF}C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_73\jre\bin\javaw.exe
FirewallRules: [{14F94817-5B25-46FA-9974-EF5273C3CD7D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{339B25D4-DDD4-4644-93EB-03AC93250A0A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{CC3BEFF5-B172-4A85-AE77-A00580A9B1C0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{FE5A7060-F60E-44A6-B5BA-5FD0C1A5F29B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{4AE0004F-8100-40FA-A29E-8E6D3FEBE0AA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{5ECED519-301D-453E-9CF2-7A05E3AEB3BA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Restore Points =========================
06-11-2017 16:54:18 Naplánovaný kontrolní bod
15-11-2017 18:52:41 Naplánovaný kontrolní bod
18-11-2017 09:00:14 Driver Booster : Realtek PCIe GBE Family Controller
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/22/2017 07:05:04 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/20/2017 08:40:08 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/20/2017 05:27:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.15063.0, časové razítko: 0xeee35298
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x8274fd8b
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000f775f
ID chybujícího procesu: 0x3784
Čas spuštění chybující aplikace: 0x01d361b7ed424f30
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 13b52900-bd77-4377-be23-afd023ed77c7
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/20/2017 05:27:50 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.15063.0, časové razítko: 0xeee35298
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x8274fd8b
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000f775f
ID chybujícího procesu: 0x184c
Čas spuštění chybující aplikace: 0x01d361b7d4726893
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 67936749-8e99-4c90-aec7-04bacc4951a3
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (11/19/2017 05:02:12 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/19/2017 04:01:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.15063.0, časové razítko: 0x58ccbd2e
Název chybujícího modulu: StartUI.dll, verze: 10.0.15063.502, časové razítko: 0x597abae6
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000a050b
ID chybujícího procesu: 0x2070
Čas spuštění chybující aplikace: 0x01d360f40b9aa31e
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\ShellExperiences\StartUI.dll
ID zprávy: 3d532f6a-1bc4-45c8-bbb2-55758b4194a4
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App
Error: (11/19/2017 04:01:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.15063.0, časové razítko: 0x58ccbd2e
Název chybujícího modulu: StartUI.dll, verze: 10.0.15063.502, časové razítko: 0x597abae6
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000a050b
ID chybujícího procesu: 0x2070
Čas spuštění chybující aplikace: 0x01d360f40b9aa31e
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\ShellExperiences\StartUI.dll
ID zprávy: 66e1155a-33d0-4960-8ece-341d9ffc3872
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App
Error: (11/18/2017 05:00:51 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (11/18/2017 02:57:05 PM) (Source: ESENT) (EventID: 476) (User: )
Description: svchost (11624) Unistore: Ověření načtení stránky databáze ze souboru C:\Users\Martin Z\AppData\Local\Comms\UnistoreDB\store.vol na posunu 37105664 (0x0000000002363000) (stránka databáze 9058 (0x2362)) o 4096 (0x00001000) bajtů selhalo. Stránka neobsahuje žádná data. Operace čtení selže a dojde k chybě -1019 (0xfffffc05). Pokud s tím budou dál problémy, obnovte prosím databázi z předchozí zálohy. Tento problém je pravděpodobně způsobený vadným hardwarem. O další pomoc s diagnostikováním problému požádejte dodavatele hardwaru.
Error: (11/18/2017 05:35:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.15063.0, časové razítko: 0xeee35298
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x8274fd8b
Kód výjimky: 0xc0000409
Posun chyby: 0x00000000000c9915
ID chybujícího procesu: 0x1824
Čas spuštění chybující aplikace: 0x01d360268ce16373
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 43867c7b-2bea-4e3f-a62b-b7f5599bfdee
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (11/22/2017 09:59:12 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
Error: (11/22/2017 09:59:11 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
Error: (11/22/2017 09:59:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba CldFlt neuspěla při spuštění v důsledku následující chyby:
Požadavek není podporován.
Error: (11/22/2017 09:58:33 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
Error: (11/22/2017 09:58:14 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:57:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:57:36 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:57:32 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 09:55:55 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (11/22/2017 06:36:21 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureActions s touto chybou:
Přístup byl odepřen.
CodeIntegrity:
===================================
Date: 2017-11-22 21:59:11.568
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\msvcp140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.525
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.525
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.427
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.415
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\msvcp140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:59:11.042
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 21:58:34.084
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 20:40:08.507
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 20:40:00.939
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-11-22 20:40:00.852
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 540 @ 3.07GHz
Percentage of memory in use: 46%
Total physical RAM: 8119.11 MB
Available physical RAM: 4378.3 MB
Total Virtual: 8319.11 MB
Available Virtual: 4359.6 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:231.95 GB) (Free:132.89 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (Old system) (Fixed) (Total:0.1 GB) (Free:0.05 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: (DATA DISC) (Fixed) (Total:584.51 GB) (Free:228.47 GB) NTFS
Drive f: (CHIPDVD_1217) (CDROM) (Total:7.7 GB) (Free:0 GB) CDFS
Drive g: (HP_RECOVERY) (Fixed) (Total:11.56 GB) (Free:1.4 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive h: () (Removable) (Total:1.83 GB) (Free:1.07 GB) FAT
Drive i: (WD SmartWare) (CDROM) (Total:0.63 GB) (Free:0 GB) UDF
Drive l: () (Removable) (Total:0.12 GB) (Free:0.02 GB) FAT
Drive n: () (Removable) (Total:15.1 GB) (Free:7.77 GB) FAT32
Drive z: (My Passport) (Fixed) (Total:297.44 GB) (Free:4.87 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: E9062E2A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=852 MB) - (Type=27)
========================================================
Disk: 1 (Size: 596.2 GB) (Disk ID: 26E2C48F)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=584.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=11.6 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 297.4 GB) (Disk ID: 14FC14FB)
Partition 1: (Active) - (Size=297.4 GB) - (Type=07 NTFS)
========================================================
Disk: 3 (MBR Code: Windows XP) (Size: 15.1 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=15.1 GB) - (Type=0C)
========================================================
Disk: 4 (Size: 1.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 8 (Size: 126.1 MB) (Disk ID: F92F470B)
Partition 1: (Active) - (Size=126 MB) - (Type=06)
==================== End of Addition.txt ============================