Stránka 1 z 1

Pomalý a zaneřáděný Notebook

Napsal: 15 říj 2020 13:25
od HelcaDodo
Zdravím, už po předchozích návodech jsem udělala poslední scan z TDSSKiller.

Děkuji

Helča

Re: Pomalý a zaneřáděný Notebook

Napsal: 15 říj 2020 13:51
od Rudy
Zdravím!
Ještě bych potřeboval viděl logy FRST+Addition: https://forum.viry.cz/viewtopic.php?f=13&t=154679 . Děkuji.

Re: Pomalý a zaneřáděný Notebook

Napsal: 15 říj 2020 16:43
od HelcaDodo
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-10-2020
Ran by myska.smudlinka (15-10-2020 17:25:59)
Running from C:\Users\myska.smudlinka\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) (2008-04-10 16:04:25)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3508696740-1989622053-3731389356-500 - Administrator - Disabled)
Guest (S-1-5-21-3508696740-1989622053-3731389356-501 - Limited - Disabled) => C:\Users\Guest
myska.smudlinka (S-1-5-21-3508696740-1989622053-3731389356-1000 - Administrator - Enabled) => C:\Users\myska.smudlinka
UpdatusUser (S-1-5-21-3508696740-1989622053-3731389356-1003 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

32 Bit HP CIO Components Installer (HKLM\...\{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}) (Version: 1.0.0 - Hewlett-Packard) Hidden
602SQL 8.1 (HKLM\...\{29D52AA0-F621-4ED8-8F65-A1BEA7B112E3}) (Version: - )
ABBYY FineReader 9.0 Sprint (HKLM\...\{F9000000-0018-0000-0000-074957833700}) (Version: 9.01.513.58212 - ABBYY) Hidden
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ACDSee Photo Manager 2009 (HKLM\...\{300578F9-9EFF-4B93-9AB1-C0E5707EF463}) (Version: 11.0.113 - ACD Systems International)
Adobe Acrobat 9 Pro - English, Français, Deutsch (HKLM\...\{AC76BA86-1033-F400-7760-000000000004}{AC76BA86-1033-F400-7760-000000000004}) (Version: 9.5.0 - Adobe Systems)
Adobe Acrobat 9.5.0 - CPSID_83708 (HKLM\...\{AC76BA86-1033-F400-7760-000000000004}_950) (Version: - Adobe Systems Incorporated)
Adobe Reader 7.0.5 - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-A70500000002}) (Version: 7.0.5 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM\...\Advanced Audio FX Engine) (Version: - )
Advanced Video FX Engine (HKLM\...\Advanced Video FX Engine) (Version: - )
Aktualizace NVIDIA 1.4.28 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.4.28 - NVIDIA Corporation)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Atf Profi (HKLM\...\Atf) (Version: - )
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 18.8.2356 - AVAST Software)
Balíček ovladače systému Windows - Hewlett-Packard Image (12/27/2006 8.0.0.0) (HKLM\...\356A873A431ED6EAA7673257FC1A2B2476AD8628) (Version: 12/27/2006 8.0.0.0 - Hewlett-Packard)
Balíček ovladače systému Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0) (HKLM\...\3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F) (Version: 10/12/2007 6.85.4.0 - Nokia)
Broadcom Management Programs (HKLM\...\{C99C0593-3B48-41D9-B42F-6E035B320449}) (Version: 10.15.03 - Broadcom Corporation)
BufferChm (HKLM\...\{E2662C24-B31E-4349-A084-32EB76E8B760}) (Version: 90.0.146.000 - Hewlett-Packard) Hidden
Cisco EAP-FAST Module (HKLM\...\{6D3963B0-E13B-4FC3-B0FF-506A304BB043}) (Version: 2.1.3 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{83770D14-21B9-44B3-8689-F7B523F94560}) (Version: 1.0.12 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}) (Version: 1.0.13 - Cisco Systems, Inc.)
Conexant HDA D330 MDC V.92 Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F) (Version: - )
ConvertXtoDVD 3.3.2.100 (HKLM\...\{76C24F39-B161-498F-BD8B-C64789812D13}_is1) (Version: 3.3.2.100 - )
Dell Driver Download Manager (HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\f031ef6ac137efc5) (Version: 2.1.0.0 - Dell Inc.)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 9.1.18.6 - Synaptics)
Dell Webcam Center (HKLM\...\Dell Webcam Center) (Version: - )
Dell Webcam Manager (HKLM\...\Dell Webcam Manager) (Version: - )
Digital Line Detect (HKLM\...\{E646DCF0-5A68-11D5-B229-002078017FBF}) (Version: 1.21 - BVRP Software, Inc)
Disk Check 1.0 (HKLM\...\Disk Check_is1) (Version: - Puran Software)
eBay Icon (HKLM\...\eBay Icon) (Version: 1.0 - AD ON Multimedia Advertising GmbH)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
EPSON SX235 Series Printer Uninstall (HKLM\...\EPSON SX235 Series) (Version: - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION)
Firebird 1.5.5 (HKLM\...\FBDBServer_1_5_is1) (Version: - Firebird Project)
Free Mp3 Wma Converter V 2.2 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 2.2.0.0 - Koyote Soft)
Free WMA to MP3 Converter 1.16 (HKLM\...\Free WMA to MP3 Converter_is1) (Version: - Jodix Technologies Ltd.)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Chrome (HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
Guru Browser (HKLM\...\{1C4DF48D-4CCD-250D-FD4D-558D2DCD860D}) (Version: - )
HijackThis 2.0.2 (HKLM\...\HijackThis) (Version: 2.0.2 - TrendMicro)
Java 7 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.250 - Oracle)
Java(TM) 6 Update 22 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216014FF}) (Version: 6.0.220 - Sun Microsystems, Inc.)
Java(TM) SE Runtime Environment 6 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160000}) (Version: 1.6.0.0 - Sun Microsystems, Inc.)
JavaFX 2.1.1 (HKLM\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
Kořenové certifikáty I.CA (HKLM\...\icaroot) (Version: - První certifikační autorita, a.s.)
Laptop Integrated Webcam Driver (1.04.01.1011) (HKLM\...\Creative OEM002) (Version: - )
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.266.3 - McAfee, Inc.)
MediaDirect (HKLM\...\{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}) (Version: 3.5 - Dell)
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Modem Diagnostic Tool (HKLM\...\{F63A3748-B93D-4360-9AD4-B064481A5C7B}) (Version: 1.0.20.0 - Dell)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MuseScore 1.3 (HKLM\...\MuseScore) (Version: 1.3.0 - Werner Schweer and Others)
Nástroj pro bezdrátovou kartu WLAN Dell (HKLM\...\Broadcom 802.11b Network Adapter) (Version: 4.170.77.18 - Dell Inc.)
NetWaiting (HKLM\...\{3F92ABBB-6BBF-11D5-B229-002078017FBF}) (Version: 2.5.44 - BVRP Software, Inc)
NVIDIA Ovladač 3D Vision 280.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 280.26 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 280.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 280.19 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 280.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 280.26 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation)
OpenOffice.org 2.0 (HKLM\...\{E0B5C130-BE91-45F8-B9EA-79A96EF8BFEB}) (Version: 2.0.9011 - OpenOffice.org)
OutlookAddinSetup (HKLM\...\{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}) (Version: 1.0.0 - CyberLink)
Ovládací panel NVIDIA 280.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 280.26 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.029 - Pinnacle Systems)
PC Connectivity Solution (HKLM\...\{AC599724-5755-48C1-ABE7-ABB857652930}) (Version: 8.15.0.0 - Nokia)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.1 - Frank Heindörfer, Philip Chinery)
pdfforge Toolbar v1.1 (HKLM\...\{4EF8BE6A-899C-4196-94E7-297C5F7A203E}) (Version: 1.1 - Spigot, Inc.) <==== ATTENTION
Poradce - MAKFAC,AWD,MBI, verze 1.33/1 (HKLM\...\Hledik - Poradce - MAKFAC,AWD,MBI) (Version: 1.33/1 - )
Poradce - MAKFAC,SLS,MBI, verze 1.44/1 (HKLM\...\Hledik - Poradce - MAKFAC,SLS,MBI) (Version: 1.44/1 - )
Poradce - makléř FAC, verze 1.25/1 (HKLM\...\Hledik - Poradce - makléř FAC) (Version: 1.25/1 - )
PresS II (4.09.15) (HKLM\...\ST6UNST #1) (Version: - )
PrimoPDF (HKLM\...\PrimoPDF4.0.2.5) (Version: 4.0.2.5 - activePDF)
Příručka pro síť EPSON SX235 Series (HKLM\...\EPSON SX235 Series Netg) (Version: - )
QuickSet (HKLM\...\{0F95AA42-0FF6-4D48-9CA1-64C8D0777500}) (Version: 8.2.14 - Dell Inc.)
RealPlayer (HKLM\...\RealPlayer 12.0) (Version: - RealNetworks)
Roxio Creator Audio (HKLM\...\{83FFCFC7-88C6-41c6-8752-958A45325C82}) (Version: 3.3.0 - Roxio)
Roxio Creator BDAV Plugin (HKLM\...\{880AF49C-34F7-4285-A8AD-8F7A3D1C33DC}) (Version: 3.3.0 - Roxio)
Roxio Creator Copy (HKLM\...\{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}) (Version: 3.3.0 - Roxio)
Roxio Creator Data (HKLM\...\{0D397393-9B50-4c52-84D5-77E344289F87}) (Version: 3.3.0 - Roxio)
Roxio Creator DE (HKLM\...\{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}) (Version: 3.3.0 - Roxio)
Roxio Creator Tools (HKLM\...\{0394CDC8-FABD-4ed8-B104-03393876DFDF}) (Version: 3.3.0 - Roxio)
Roxio Express Labeler (HKLM\...\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}) (Version: 2.1.0 - Roxio)
Samsung New PC Studio USB Driver Installer (HKLM\...\{AF7E85DC-317C-47F5-810E-B82EE093A612}) (Version: 1.00.0000 - Samsung Electronics Co., Ltd.) Hidden
Samsung New PC Studio USB Driver Installer (HKLM\...\InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}) (Version: 1.00.0000 - Samsung Electronics Co., Ltd.)
SAMSUNG USB Mobile Device Software (HKLM\...\SAMSUNG USB Mobile Device) (Version: - )
SamsungConnectivityCableDriver (HKLM\...\{7E84FAC8-C518-40F9-9807-7455301D6D25}) (Version: 6.83.6.2.1 - Samsung)
Sonic Activation Module (HKLM\...\{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}) (Version: 1.0 - Sonic Solutions) Hidden
Spelling Dictionaries Support For Adobe Reader 8 (HKLM\...\{AC76BA86-7AD7-5464-3428-800000000003}) (Version: 8.0.0 - Adobe Systems)
Startup Delayer v2.3 (build 134) (HKLM\...\Startup Delayer) (Version: - )
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version: - )
TheSage (HKLM\...\TheSage) (Version: 1.4.0 - Sequence Publishing)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: - )
UnloadSupport (HKLM\...\{543E938C-BDC4-4933-A612-01293996845F}) (Version: 9.0.0 - Hewlett-Packard) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
User's Guides (HKLM\...\{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}) (Version: - )
Uživatelská příručka EPSON SX235 Series (HKLM\...\EPSON SX235 Series Useg) (Version: - )
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
VLC media player 0.9.4 (HKLM\...\VLC media player) (Version: 0.9.4 - VideoLAN Team)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\ChromeHTML: -> C:\Users\myska.smudlinka\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.25.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.27.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.23.9\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.442\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> "C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.23\GoogleUpdateOnDemand.exe" => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.422\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.30.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.31.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.28.1\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.34.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\psuser.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{6D7374DE-63AA-473C-8C02-60D9CDCD84C5}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.21.153\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{6DDCE70D-A4AE-4E97-908C-BE7B2DB750AD}\localserver32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.28.13\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.29.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.342\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\psuser.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.34.11\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.24.15\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{91EFB276-CEFE-48EC-BB3A-57795A7B4008}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.21.149\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{A45426FB-E444-42B2-AA56-419F8FBEEC61}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.22.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{A54D478D-4F70-4F72-9A74-17C9986E35AB}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.21.165\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.23\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.26.9\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.32.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.29.1\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.25.11\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.28.15\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{DE5ACF4B-1DA7-D808-2B0B-762CCC6E7F25}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\psuser.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.452\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.17\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{EB06378B-ABB6-4B3C-9B40-D488DD8A6E93}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.22.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.301\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.24.7\psuser.dll => No File
SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll (Microsoft Windows -> Microsoft Corporation)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:\Program Files\Adobe\Acrobat 9.0\Acrobat Elements\ContextMenu.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [ICQLiteMenu] -> {73B24247-042E-4EF5-ADC2-42F62E6FD654} => -> No File
ContextMenuHandlers1: [LavasoftShellExt] -> {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} => -> No File
ContextMenuHandlers1: [Sprint.ExplorerIntegration] -> {6F5C0F40-1419-4DC8-8D2F-D5EC5FCF07AB} => C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Integration\SprintIntegration.dll [2009-11-25] (ABBYY SOLUTIONS LIMITED -> ABBYY)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2008-09-16] () [File not signed]
ContextMenuHandlers2: [LavasoftShellExt] -> {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} => -> No File
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [ICQLiteMenu] -> {73B24247-042E-4EF5-ADC2-42F62E6FD654} => -> No File
ContextMenuHandlers4: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2008-09-16] () [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2011-08-03] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:\Program Files\Adobe\Acrobat 9.0\Acrobat Elements\ContextMenu.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [LavasoftShellExt] -> {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} => -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2008-09-16] () [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.ACDV] => ACDV.dll

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2008-04-10 18:22 - 2009-01-20 15:36 - 000055808 ____N () [File not signed] [File is in use] C:\Windows\System32\bcmwlrmt.dll
2020-03-18 09:09 - 2020-03-18 09:09 - 048936448 _____ () [File not signed] C:\Program Files\AVAST Software\Avast\libcef.dll
2009-07-06 18:30 - 2008-09-16 20:18 - 000132608 _____ () [File not signed] C:\Program Files\WinRAR\rarext.dll
2009-07-06 18:30 - 2008-10-11 22:18 - 000319488 _____ () [File not signed] C:\Program Files\WinRAR\rarlng.dll
2016-10-14 20:45 - 2016-09-06 12:00 - 000147456 _____ () [File not signed] C:\Users\myska.smudlinka\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libegl.dll
2016-10-14 20:45 - 2016-09-06 12:00 - 005197312 _____ () [File not signed] C:\Users\myska.smudlinka\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libglesv2.dll
2012-02-26 23:22 - 2001-10-28 18:42 - 000116224 ____N () [File not signed] C:\Windows\System32\pdfcmnnt.dll
2008-11-03 11:49 - 2006-12-11 23:12 - 000176235 ____N () [File not signed] C:\Windows\System32\Primomonnt.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000346720 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\arPot.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000376928 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswArray.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000523872 _____ (Avast Software s.r.o. -> AVAST Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswCmnBS.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000433768 _____ (Avast Software s.r.o. -> AVAST Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswCmnIS.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000160360 _____ (Avast Software s.r.o. -> AVAST Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswCmnOS.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 001638504 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswEngin.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000610400 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswFiDb.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000448096 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\aswRep.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000063080 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] [File is in use] C:\Program Files\AVAST Software\Avast\defs\20101500\uiExt.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 000538216 _____ (Avast Software s.r.o. -> Avast Software) [File not signed] C:\Program Files\AVAST Software\Avast\defs\20101500\aswCleanerDLL.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 005143136 _____ (Avast Software s.r.o. -> AVAST Software) [File not signed] C:\Program Files\AVAST Software\Avast\defs\20101500\bcuengine.dll
2020-10-15 12:42 - 2020-10-15 12:42 - 002105448 _____ (Avast Software s.r.o. -> AVAST Software) [File not signed] C:\Program Files\AVAST Software\Avast\defs\20101500\swhealthex2.dll
2020-03-18 09:00 - 2020-03-18 09:00 - 002387776 _____ (AVAST Software s.r.o. -> The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\AVAST Software\Avast\libcrypto-1_1.dll
2020-03-18 09:00 - 2020-03-18 09:00 - 000512832 _____ (AVAST Software s.r.o. -> The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\AVAST Software\Avast\libssl-1_1.dll
2008-04-10 18:22 - 2009-01-20 15:36 - 000065536 ____N (Broadcom Corporation) [File not signed] C:\Windows\System32\wltrynt.dll
2008-04-10 18:22 - 2009-01-20 15:36 - 000991232 ____N (Dell Inc.) [File not signed] [File is in use] C:\Windows\System32\BCMLogon.dll
2008-04-10 18:22 - 2009-01-20 15:36 - 006369280 ____N (Dell Inc.) [File not signed] [File is in use] C:\Windows\system32\BCMWLCPL.CPL
2008-10-23 15:55 - 2007-03-28 14:01 - 000117760 ____N (Hewlett-Packard Company) [File not signed] C:\Windows\System32\hpzll5ha.dll
2008-10-23 15:59 - 2007-03-28 14:57 - 000274944 ____N (Hewlett-Packard Corporation) [File not signed] C:\Windows\system32\spool\PRTPROCS\W32X86\hpzpp5ha.dll
2011-08-17 14:51 - 2011-08-17 14:51 - 000479232 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcm80.dll
2008-04-11 11:54 - 2008-04-11 11:54 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\MSVCR71.dll
2000-08-29 02:05 - 2000-08-29 02:05 - 000401462 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Firebird\bin\MSVCP60.dll
2006-10-09 17:07 - 2006-10-09 17:07 - 001060864 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\MFC71.DLL
2006-10-09 17:07 - 2006-10-09 17:07 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\MSVCR71.dll
2008-04-10 18:14 - 2007-08-29 08:06 - 000348160 ____N (Microsoft Corporation) [File not signed] C:\Windows\system32\MSVCR71.dll
2008-04-23 18:56 - 2003-06-19 01:31 - 000018944 ____N (Microsoft Corporation) [File not signed] C:\Windows\system32\spool\PRTPROCS\W32X86\mdippr.dll
2011-08-17 14:51 - 2011-08-17 14:51 - 000097280 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\ATL80.DLL
2011-08-17 14:51 - 2011-08-17 14:51 - 001101824 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80.DLL
2011-08-17 14:51 - 2011-08-17 14:51 - 001093120 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL
2011-08-16 10:32 - 2011-08-03 13:50 - 000941568 _____ (NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\NvUpdate\NVUPDTR.DLL
2010-01-21 23:49 - 2005-01-14 05:47 - 000049152 _____ (SEIKO EPSON CORP.) [File not signed] C:\Program Files\Epson Software\Event Manager\ESPSUTL.dll
2010-10-12 09:54 - 2010-10-12 09:54 - 000055808 _____ (SEIKO EPSON CORP.) [File not signed] C:\Program Files\Epson Software\Event Manager\ScnMgr10.dll
2010-11-19 11:06 - 2010-11-19 11:06 - 000112640 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Epson Software\Event Manager\epnsm.dll
2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Epson Software\Event Manager\LcMgr.dll
2010-10-12 09:58 - 2010-10-12 09:58 - 000136704 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Epson Software\Event Manager\ScanEngine30.dll
2010-01-21 23:44 - 2008-08-08 21:09 - 000086528 ____N (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\System32\E_FLBFDE.DLL
2012-09-21 10:55 - 2011-08-30 13:38 - 000475496 ____N (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\System32\enppmon.dll
2012-09-21 10:55 - 2011-08-01 18:24 - 000249344 ____N (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\System32\enpres.dll
2007-12-12 02:05 - 2007-12-12 02:05 - 000356437 _____ (The Firebird Project) [File not signed] C:\Program Files\Firebird\bin\fbclient.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\24328677.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\24328677.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Version 7) (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.searchnu.com/410
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www1.euro.dell.com/content/default.aspx?c=cz&l=cs&s=bsd
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\Software\Microsoft\Internet Explorer\Main,Start Page Restore = hxxp://www.seznam.cz/
URLSearchHook: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> Default = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKLM -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=0&systemid=410&sr=0&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=0&systemid=410&sr=0&q={searchTerms}
SearchScopes: HKLM -> {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = hxxp://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg-chrome&type=yahoo_avg_hs2-tb-web_chrome_us&p={searchTerms}
SearchScopes: HKU\.DEFAULT -> {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = hxxp://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg-chrome&type=yahoo_avg_hs2-tb-web_chrome_us&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> DefaultScope {D4858854-FCF4-4471-ADC9-9ED2BA200321} URL = hxxps://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=501549&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {3668362a-1722-4d13-a08d-dcbd3aa8cdb4} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=IEListicka_12
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {4806c532-9d33-43c2-8d02-0b627fc60b60} URL = hxxp://www.firmy.cz/phr/{searchTerms}?sourceid=IEListicka_12
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = hxxp://www.icq.com/search/results.php?q={searc ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {8A244612-A1F7-11E0-95C0-E71F4824019B} URL = hxxp://badoo.com/startpage/?source=bsb&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=0&systemid=410&sr=0&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {a1eadf56-e602-4d34-a851-9348c66d9aab} URL = hxxp://www.mapy.cz/?query={searchTerms}&sourceid=IEListicka_12
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {BE9654C9-9D79-42ec-B55A-3CAEB12DBF58} URL = hxxp://www.icq.com/search/results.php?q={searc ... &ch_id=osd
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=971163&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {ccffa941-70f6-4b95-9e34-630dccb29fd5} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... isticka_12
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {D4858854-FCF4-4471-ADC9-9ED2BA200321} URL = hxxps://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=501549&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> {E977DF1B-46B5-B449-EE8E-6143A3D0FA23} URL = hxxp://iws.asksearch.com/s/?q={searchTerms}&iesrc={referrer:source?}&cfg=2-347-0-...
BHO: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2005-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2013-07-15] (Oracle America, Inc. -> Oracle Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [File not signed]
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-07-15] (Oracle America, Inc. -> Oracle Corporation)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [File not signed]
Toolbar: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> No Name - {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
Toolbar: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} hxxp://www.nvidia.com/content/DriverDownload/s ... ab_nvd.cab
DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1243850606812
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\mojebanka.cz -> hxxps://www.mojebanka.cz

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 12:23 - 2020-10-15 16:49 - 000000000 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\NVIDIA Corporation\PhysX\Common;C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\myska.smudlinka\AppData\Roaming\ACD Systems\ACDSee\ACD Wallpaper.bmp
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\startupreg: Badoo Desktop => "C:\ProgramData\Badoo\Badoo Desktop\1.2.22.828\Badoo.Desktop.exe"
MSCONFIG\startupreg: Seznam Postak => "C:\Program Files\Seznam.cz\postak.exe" -s

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) C:\Windows\system32\dfsr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) C:\Windows\system32\dfsr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [WinCollab-In-TCP] => (Allow) C:\Program Files\Windows Collaboration\WinCollab.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [WinCollab-Out-TCP] => (Allow) C:\Program Files\Windows Collaboration\WinCollab.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [WinCollab-In-UDP] => (Allow) C:\Program Files\Windows Collaboration\WinCollab.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [WinCollab-Out-UDP] => (Allow) C:\Program Files\Windows Collaboration\WinCollab.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{D0459990-EA6C-43E7-8F8D-209DEC6DA0B2}] => (Allow) C:\Program Files\Dell\MediaDirect\MediaDirect.exe => No File
FirewallRules: [{F6CB62F5-2F2C-4FEB-ADE0-B89C175D479F}] => (Allow) C:\Program Files\Dell\MediaDirect\PCMService.exe (CyberLink -> CyberLink Corp.)
FirewallRules: [{BBA55A4E-6AB5-420F-91F1-6326C98D5FE8}] => (Allow) C:\Program Files\Dell\MediaDirect\Kernel\DMP\CLBrowserEngine.exe => No File
FirewallRules: [{7D95A7A0-FDE9-4D44-A679-5480ACF3119E}] => (Allow) C:\Program Files\Dell\MediaDirect\Kernel\DMS\CLMSService.exe => No File
FirewallRules: [TCP Query User{20FDFFB1-0F84-45C7-A45C-8BEC63D31BD0}C:\program files\icqlite\icqlite.exe] => (Allow) C:\program files\icqlite\icqlite.exe => No File
FirewallRules: [UDP Query User{17A88EB5-B67F-4C9C-B081-4D7BC309CF75}C:\program files\icqlite\icqlite.exe] => (Allow) C:\program files\icqlite\icqlite.exe => No File
FirewallRules: [TCP Query User{C4E14DB0-8F79-4640-AFB1-328BAFD638DF}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [UDP Query User{76627CC0-262C-4772-9F18-F05CD941E676}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [TCP Query User{511C8B60-F5C0-42DF-8EC3-7EFC27AA730D}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [UDP Query User{A62C9B36-012E-45F9-91F1-CACF01B3F21B}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [TCP Query User{91B14991-2D26-4E09-A94D-C9FF11CED47F}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [UDP Query User{F2258490-D499-41AF-95B2-CB024A5A4721}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [TCP Query User{E2239F2B-F0AB-4568-AA91-C3C4FE31DCC6}C:\program files\internet explorer\iexplore.exe] => (Allow) C:\program files\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{C792B472-E4D8-4BA1-B28E-9C24E0634B85}C:\program files\internet explorer\iexplore.exe] => (Allow) C:\program files\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{B9AE2468-34CD-48DB-A2C0-93E4449B0FD5}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [UDP Query User{3E48A9B1-CFDC-47A2-8A74-44F6E733C0F8}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [TCP Query User{A9A209C4-E4E0-4F7E-BBAE-33AFD89D3B2D}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [UDP Query User{DCA43E85-7926-49B8-BAB6-FDCA6E635C99}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [TCP Query User{247AF7C4-A425-4216-9753-ABDC40922109}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [UDP Query User{46439AE1-0F99-4351-937E-98A0F9ED1B74}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [TCP Query User{E69CEA32-E280-4ACE-AD74-103ED4E4A852}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [UDP Query User{1DAB55A4-B655-4248-B6DD-01348ED0B3D2}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [TCP Query User{5728F975-4376-41F4-9C7B-1D79BFEBC3F7}C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe] => (Block) C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe => No File
FirewallRules: [UDP Query User{C89F26FA-5AD6-4D45-91CB-C3FE3BDADECF}C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe] => (Block) C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe => No File
FirewallRules: [TCP Query User{9308E7A8-BA13-407C-8268-42732BAC9B97}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [UDP Query User{1D5ED353-FCDE-4B85-A730-6DDDDCD420D4}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [TCP Query User{2A88EF99-C17C-45EB-ACC7-07B1187AA246}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe (C. Ghisler & Co. -> C. Ghisler & Co.)
FirewallRules: [UDP Query User{9BF5000A-458F-4441-80CF-05A447522CCE}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe (C. Ghisler & Co. -> C. Ghisler & Co.)
FirewallRules: [{C69FC742-D3B4-46F5-99F3-EA443D42FBB7}] => (Allow) C:\Program Files\uTorrent\utorrent.exe => No File
FirewallRules: [{DAFA4ECE-F627-468F-9C68-0EA5D68541C9}] => (Allow) C:\Program Files\uTorrent\utorrent.exe => No File
FirewallRules: [TCP Query User{C4A5B507-5EC3-4015-8DB9-4316DB39E3FA}C:\program files\dc++\dcplusplus.exe] => (Allow) C:\program files\dc++\dcplusplus.exe => No File
FirewallRules: [UDP Query User{B18EA72A-FCA6-41F2-9F98-F770F078F80F}C:\program files\dc++\dcplusplus.exe] => (Allow) C:\program files\dc++\dcplusplus.exe => No File
FirewallRules: [TCP Query User{B76B4FE5-6EBB-44FD-8CBC-D730C5B80963}C:\programdata\macrovision\flexnet connect\6\agent.exe] => (Allow) C:\programdata\macrovision\flexnet connect\6\agent.exe (Macrovision Corporation -> Macrovision Corporation)
FirewallRules: [UDP Query User{224E89B9-4254-49B5-87C9-AFFBBFE88949}C:\programdata\macrovision\flexnet connect\6\agent.exe] => (Allow) C:\programdata\macrovision\flexnet connect\6\agent.exe (Macrovision Corporation -> Macrovision Corporation)
FirewallRules: [{36AB1065-F9A7-4E25-BC7E-E97EA8BF0322}] => (Allow) C:\Program Files\AVG\AVG8\avgupd.exe => No File
FirewallRules: [{AEC7BAC2-A94D-4F57-BF8B-7B53C5208B17}] => (Allow) C:\Program Files\AVG\AVG8\avgnsx.exe => No File
FirewallRules: [TCP Query User{81B1D192-E690-40C9-99DC-8C269917E340}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe (C. Ghisler & Co. -> C. Ghisler & Co.)
FirewallRules: [UDP Query User{D35B5163-2E8B-4694-96E2-770377612731}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe (C. Ghisler & Co. -> C. Ghisler & Co.)
FirewallRules: [TCP Query User{14D283B0-AFCC-4BC5-89B2-DC2577A3785F}C:\program files\utorrent\utorrent.exe] => (Block) C:\program files\utorrent\utorrent.exe => No File
FirewallRules: [UDP Query User{50A68FEC-7A67-4587-979A-B7F949B6704E}C:\program files\utorrent\utorrent.exe] => (Block) C:\program files\utorrent\utorrent.exe => No File
FirewallRules: [TCP Query User{C659CAE0-6E83-47A7-8CBE-B02709EFEB31}C:\program files\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{EA576B9A-8391-459E-B355-9575CDC9C5F5}C:\program files\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{F38541BE-A693-41FC-9AB4-667C5A908436}C:\program files\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{BF45B868-1E89-4E81-8225-CD2071AAEA8F}C:\program files\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [{638AE0ED-D517-49C8-B2F0-86CB3D479B62}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\RM.exe => No File
FirewallRules: [{D55FF12C-F5B2-4A50-96B2-59A5CA5FD590}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\RM.exe => No File
FirewallRules: [{387CA577-08DD-438F-87D4-2882DA26F574}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\Studio.exe => No File
FirewallRules: [{577982C3-E5DB-45E2-B78F-60595682D919}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\Studio.exe => No File
FirewallRules: [{EFF3592B-A1B9-4A35-861F-4D31DB9D58ED}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\umi.exe => No File
FirewallRules: [{FDA58DCA-C880-4223-8059-EA393622E831}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\umi.exe => No File
FirewallRules: [{A0EC3AC8-E73A-4EBF-BF37-D7BB4EF05A88}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe => No File
FirewallRules: [{710E4570-05C1-49F1-99B4-FDEFAD68BECF}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe => No File
FirewallRules: [{2A99893E-EA4D-41C3-8F0D-E196AFAAE29F}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe => No File
FirewallRules: [{43069732-67DF-4F28-98E7-F302F149F691}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe => No File
FirewallRules: [TCP Query User{C1097DE4-D3C8-403A-A3AE-17691838736F}C:\program files\winamp\winamp.exe] => (Allow) C:\program files\winamp\winamp.exe => No File
FirewallRules: [UDP Query User{C31A10C3-39DB-4027-97AA-521112D71EC6}C:\program files\winamp\winamp.exe] => (Allow) C:\program files\winamp\winamp.exe => No File
FirewallRules: [{53A046C4-C3E2-400B-B739-575AEE9395D8}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B4F1AFDB-BA63-407F-99C6-0B2611D39A11}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BC59C81D-EC5D-4656-BE5F-43E3579E241E}] => (Allow) LPort=80
FirewallRules: [{F467C2DD-F889-4FFB-88BF-FF0C077BD0DD}] => (Allow) LPort=80
FirewallRules: [{72AE6748-AF20-4119-84C0-E0B3C2425C9E}] => (Allow) LPort=80
FirewallRules: [TCP Query User{106A8CC6-5677-40B3-B5F8-4D1D173C101D}C:\program files\icq7.1\icq.exe] => (Allow) C:\program files\icq7.1\icq.exe => No File
FirewallRules: [UDP Query User{7990D836-1205-443E-87C5-C3B206129DE3}C:\program files\icq7.1\icq.exe] => (Allow) C:\program files\icq7.1\icq.exe => No File
FirewallRules: [{C6596485-BC64-4927-B9CC-AF8ED85D5E6D}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{80AEE775-2347-4D2B-9CB4-480E8B2A79C7}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [{EE5515BA-A691-472A-9113-55740ABBAE12}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [{4A8DAF82-17B6-4297-BD8F-A936D3DE0B90}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [{2FE0CF51-0EF6-4C68-93A7-35A99697E177}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [TCP Query User{52476695-932E-4DC9-96FF-F5AD282F2060}C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [UDP Query User{1BFE9DA4-C8C8-465F-8EBC-AC1539755475}C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [TCP Query User{B86F7D3D-D300-47D5-A437-8CB40CB823C1}C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [UDP Query User{92094C50-B14A-4296-8B74-EE844B15C4E1}C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [{80B2E08D-0FCF-402B-A847-06C933684011}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{6BD62D1F-CCC9-449F-B821-28E72F40AA6C}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{9E8EF399-800F-4D5E-8181-45F5F1200F4F}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{033B9787-E940-4177-8AE1-54F400547888}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{1E205DE9-C238-4F82-9EF2-D3783B8BCCE2}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{4A0EBC7F-DFF3-4A38-935E-5EC8C2326774}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{EACF2CB6-08A6-4F8D-9A75-CA0E507063B4}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.)

==================== Restore Points =========================

01-07-2019 10:08:07 Instalace balíčku ovladače zařízení: EPSON Zařízení pro zpracování obrázků
01-07-2019 10:14:12 Instalace balíčku ovladače zařízení: EPSON Tiskárny
18-03-2020 09:03:12 Odstraněno JOS - WEPOS.
18-03-2020 09:28:14 Removed Roxio MyDVD DE
18-03-2020 09:51:04 Removed Roxio MyDVD DE
06-05-2020 13:08:55 Removed Adobe Reader XI - Czech.
11-05-2020 18:25:27 Nainstalováno: Adobe Reader 7.0.5 - Czech

==================== Faulty Device Manager Devices ============

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (10/15/2020 05:18:41 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:29 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:27 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:26 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:23 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.

Error: (10/15/2020 05:18:21 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 11) (User: )
Description: Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou aktualizaci v <http://ctldl.windowsupdate.com/msdownlo ... ootstl.cab> se nezdařila. Došlo k chybě Certifikační řetěz byl zpracován, ale byl ukončen v kořenovém certifikátu, který nemá důvěru zprostředkovatele důvěryhodnosti.
.


System errors:
=============
Error: (10/15/2020 12:36:55 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby stisvc bylo dosaženo časového limitu (30000 ms).

Error: (10/02/2020 11:40:21 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby avast! Antivirus bylo dosaženo časového limitu (30000 ms).

Error: (08/10/2020 05:16:22 PM) (Source: Dhcp) (EventID: 1001) (User: )
Description: Počítači nebyla přiřazena síťová adresa (serverem DHCP) pro síťovou kartu se síťovou adresou 001644B2ED9A. Došlo k následující chybě:
Uživatel operaci zrušil.
. Počítač se bude pokoušet získat síťovou adresu samostatně ze serveru DHCP.

Error: (08/03/2020 01:51:54 PM) (Source: Dhcp) (EventID: 1001) (User: )
Description: Počítači nebyla přiřazena síťová adresa (serverem DHCP) pro síťovou kartu se síťovou adresou 001644B2ED9A. Došlo k následující chybě:
Uživatel operaci zrušil.
. Počítač se bude pokoušet získat síťovou adresu samostatně ze serveru DHCP.

Error: (06/22/2020 10:58:33 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby STacSV bylo dosaženo časového limitu (30000 ms).

Error: (06/12/2020 08:56:46 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Update přestala během spouštění reagovat.

Error: (06/12/2020 08:55:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Windows Media Player Network Sharing neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (06/12/2020 08:55:10 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Windows Media Player Network Sharing bylo dosaženo časového limitu (30000 ms).


CodeIntegrity:
===================================

Date: 2017-12-26 17:49:27.984
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_win8_x86\klif.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:25.015
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_win8_x86\klif.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:21.402
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_win8_x86\klif.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:18.563
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_win8_x86\klif.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:12.770
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_wlh_x86\klhk.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:06.873
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_wlh_x86\klhk.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:04.079
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_wlh_x86\klhk.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-12-26 17:49:01.817
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\CheckPoint\ZoneAlarm\avsys\install\instdrivers\mklif\fre_wlh_x86\klhk.sys because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: Dell Inc. A05 02/03/2008
Motherboard: Dell Inc. 0WY040
Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 89%
Total physical RAM: 2045.31 MB
Available physical RAM: 213.92 MB
Total Virtual: 4327.87 MB
Available Virtual: 1481.31 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:220.27 GB) (Free:75.13 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (RECOVERY) (Fixed) (Total:10 GB) (Free:5.97 GB) NTFS


==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: 40000000)
Partition 1: (Not Active) - (Size=118 MB) - (Type=DE)
Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS)
Partition 3: (Active) - (Size=220.3 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=2.5 GB) - (Type=0F Extended)

==================== End of Addition.txt =======================

Re: Pomalý a zaneřáděný Notebook

Napsal: 15 říj 2020 16:44
od HelcaDodo
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-10-2020
Ran by myska.smudlinka (administrator) on HELENA-PC (Dell Inc. Vostro 1500) (15-10-2020 17:14:59)
Running from C:\Users\myska.smudlinka\Desktop
Loaded Profiles: myska.smudlinka
Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\Kooperativa\Services\KoopPDFServer.exe
() [File not signed] C:\Windows\System32\WLTRYSVC.EXE
(ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Dell Inc.) [File not signed] [File is in use] C:\Windows\System32\WLTRAY.EXE
(Dell Inc.) [File not signed] C:\Windows\System32\BCMWLTRY.EXE
(Google Inc -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Google LLC -> Google LLC) C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\GoogleCrashHandler.exe
(Macrovision Corporation -> Macrovision Corporation) C:\ProgramData\Macrovision\FLEXnet Connect\6\ISUSPM.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\conime.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Andrea Electronics Corporation) C:\Windows\System32\AEstSrv.exe
(Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) C:\Windows\OEM02Mon.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Windows\System32\stacsv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Pinnacle Systems GmbH -> Pinnacle Systems GmbH) [File not signed] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Synaptics Incorporated -> Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(The Firebird Project) [File not signed] C:\Program Files\Firebird\bin\fbguard.exe
(The Firebird Project) [File not signed] C:\Program Files\Firebird\bin\fbserver.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-19] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [OEM02Mon.exe] => C:\Windows\OEM02Mon.exe [36864 2007-12-03] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
HKLM\...\Run: [DELL Webcam Manager] => C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe [118784 2007-07-27] (Creative Technology Ltd.) [File not signed]
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Windows\system32\WLTRAY.exe [3563520 2009-01-20] (Dell Inc.) [File not signed] [File is in use]
HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [81920 2006-10-03] (Macrovision Corporation) [File not signed]
HKLM\...\Run: [PCMService] => C:\Program Files\Dell\MediaDirect\PCMService.exe [189736 2007-11-01] (CyberLink -> CyberLink Corp.)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [857648 2007-06-04] (Synaptics Incorporated -> Synaptics, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKLM\...\Run: [USBToolTip] => C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH -> Pinnacle Systems GmbH) [File not signed]
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [WinampAgent] => "C:\Program Files\Winamp\winampa.exe"
HKLM\...\Run: [NVHotkey] => C:\Windows\system32\nvHotkey.dll [309352 2011-08-03] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Run: [SigmatelSysTrayApp] => C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe [405504 2008-01-02] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
HKLM\...\Run: [NBKeyScan] => "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => C:\Windows\system32\oobefldr.dll [2153472 2009-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => C:\Windows\system32\oobefldr.dll [2153472 2009-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\Run: [ISUSPM] => C:\ProgramData\Macrovision\FLEXnet Connect\6\ISUSPM.exe [222128 2007-03-29] (Macrovision Corporation -> Macrovision Corporation)
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\Run: [Google Update] => C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateCore.exe [219592 2020-10-15] (Google LLC -> Google LLC)
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: G - G:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {095af0f5-5486-11dd-ac92-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {095af110-5486-11dd-ac92-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {6aa33d4b-4e48-11e1-8b6c-001f3ae3099c} - F:\LaunchU3.exe -a
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {6f655b1b-8b11-11dd-98c8-001f3ae3099c} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled\ctfmon.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657a5-54f8-11dd-af87-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657a6-54f8-11dd-af87-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657b1-54f8-11dd-af87-001f3ae3099c} - G:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657b2-54f8-11dd-af87-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657b9-54f8-11dd-af87-001f3ae3099c} - G:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {a26e8ef9-a811-11de-86b7-001f3ae3099c} - F:\LaunchU3.exe -a
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {a26e8efa-a811-11de-86b7-001f3ae3099c} - G:\060ptrm.com
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {b9a65702-d645-11e6-ac90-001f3ae3099c} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {cedb8ba9-3650-11e6-aa59-001f3ae3099c} - G:\HiSuiteDownLoader.exe
HKLM\...\Windows NT x86\Print Processors\BJ Print Processor3: C:\Windows\System32\spool\prtprocs\W32X86\CNBPP3.DLL [70144 2006-11-02] (Microsoft Windows -> CANON INC.)
HKLM\...\Windows NT x86\Print Processors\Epson Inkjet: C:\Windows\System32\spool\prtprocs\W32X86\EP0NPP01.DLL [32768 2006-11-02] (Microsoft Windows -> SEIKO EPSON CORPORATION)
HKLM\...\Windows NT x86\Print Processors\hpzpp5ha: C:\Windows\System32\spool\prtprocs\W32X86\hpzpp5ha.dll [274944 2007-03-28] (Hewlett-Packard Corporation) [File not signed]
HKLM\...\Windows NT x86\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\W32X86\hpzpplhn.dll [89600 2008-01-19] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Windows NT x86\Print Processors\ModiPrint: C:\Windows\System32\spool\prtprocs\W32X86\mdippr.dll [18944 2003-06-19] (Microsoft Corporation) [File not signed]
HKLM\...\Windows NT x86\Print Processors\OneNotePrint2007: C:\Windows\System32\spool\prtprocs\W32X86\msonpppr.dll [33104 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows NT x86\Print Processors\winprint: localspl.dll
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [46928 2009-08-19] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\...\Print\Monitors\BJ Language Monitor3_2: C:\Windows\system32\CNBLM3_2.DLL [172544 2006-11-02] (Microsoft Windows -> CANON INC.)
HKLM\...\Print\Monitors\Epson Inbox Language Monitor: C:\Windows\system32\EP0SLM00.DLL [62976 2006-11-02] (Microsoft Windows -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EPSON SX210 Series 32MonitorBE: C:\Windows\system32\E_FLBFDE.DLL [86528 2008-08-08] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\...\Print\Monitors\EPSON SX235 Series 32MonitorBE: C:\Windows\system32\E_FLBHLE.DLL [95232 2011-04-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [475496 2011-08-30] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\...\Print\Monitors\LIDIL hpzll5ha: C:\Windows\system32\hpzll5ha.dll [117760 2007-03-28] (Hewlett-Packard Company) [File not signed]
HKLM\...\Print\Monitors\LIDIL hpzlllhn: C:\Windows\system32\hpzlllhn.dll [37376 2008-01-19] (Microsoft Windows -> Hewlett-Packard Company)
HKLM\...\Print\Monitors\PDFCreator: C:\Windows\system32\pdfcmnnt.dll [116224 2001-10-28] () [File not signed]
HKLM\...\Print\Monitors\PrimoMon: C:\Windows\system32\Primomonnt.dll [176235 2006-12-11] () [File not signed]
HKLM\...\Print\Monitors\Send To Microsoft OneNote Monitor: C:\Windows\system32\msonpmon.dll [31640 2009-02-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] ->
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\49.0.2623.112\Installer\chrmstp.exe [2020-10-15] (Google Inc -> Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [2020-05-11]
ShortcutTarget: Adobe Reader Speed Launch.lnk -> C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated) [File not signed]

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0A085C08-FBCA-49BA-A3E3-CE362BFE1E4E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [156104 2020-02-03] (Google LLC -> Google LLC)
Task: {142270CF-2A98-4159-8A19-E4184782248F} - System32\Tasks\{178C43E1-F7B7-41CE-A2BD-2C92CF18A976} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\Poradce1.24.1.MAKFAC.exe -d C:\Users\myska.smudlinka\Desktop
Task: {1B8BBF3F-8F1C-4C13-96D7-5D7D6458E162} - System32\Tasks\{7EA692C0-4F58-4857-A619-6953AEB79778} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\notak046.exe -d C:\Users\myska.smudlinka\Desktop
Task: {23FD6FB4-1A27-4933-9801-0EE7CDB9DEE6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3508696740-1989622053-3731389356-1000Core => C:\Users\myska.smudlinka\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-01] (Google Inc -> Google Inc.)
Task: {38006232-6912-4C12-A064-2E50F94C1C8B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3508696740-1989622053-3731389356-1000UA => C:\Users\myska.smudlinka\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-01] (Google Inc -> Google Inc.)
Task: {39149DD6-9586-41D6-8243-B8069DC4028A} - System32\Tasks\{201CC57A-7EA5-4A7D-831F-D80582A02B77} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\QIP\unqip.exe"
Task: {3AE0E820-F6E8-4769-AB24-08D295F795C8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [156104 2020-02-03] (Google LLC -> Google LLC)
Task: {3B04E54F-F9AC-47F5-A718-260A8DD9B706} - System32\Tasks\{5F9A08CA-B0A8-40D9-81D3-926F66B0E455} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\Poradce1.23.1.MAKFAC.exe -d C:\Users\myska.smudlinka\Desktop
Task: {4E1798B7-47D9-4C7F-97DD-9EE7591C2A25} - System32\Tasks\{293CC089-096B-42CF-970E-AD9F3FE30928} => C:\Windows\system32\pcalua.exe -a "C:\PROGRAM FILES\uninst.exe"
Task: {55AC69E7-FCBB-4507-A971-157AB18B1636} - System32\Tasks\{7CC97595-DEBF-462A-B000-F5CE94099A25} => C:\Windows\system32\pcalua.exe -a C:\\uninst.exe
Task: {56BFD99C-00B3-4F81-BAD9-0210780387B4} - System32\Tasks\{53A3E384-B058-4766-B99C-F725B1D46E0F} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\Modelova_Hypoteka_HB_508_b2b.exe -d C:\Users\myska.smudlinka\Downloads
Task: {6484FEA1-0C4B-4EA5-BEBC-2CB22D15F034} - System32\Tasks\{1FBA3B46-34E0-48ED-8159-CEEEBF12DB79} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\AppData\Local\Temp\Temp1_wepos_upg_37.zip\wepos_upg.exe <==== ATTENTION
Task: {64E04B1C-4112-46F9-B350-E1179BBC13E8} - System32\Tasks\{9540D365-C6E8-4689-8D4B-A77B7F0EFA84} => C:\Windows\system32\pcalua.exe -a C:\UNINST.exe -d C:\Windows\system32
Task: {65C6BA38-9EDF-4770-8275-CC5510755214} - System32\Tasks\{04D8FC7D-8996-4131-8DD0-562DE6A81E9C} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\AppData\Local\Temp\Temp1_povhav_1_88.zip\povhav.exe <==== ATTENTION
Task: {73449332-4E44-4603-9A81-9323B8203A0A} - System32\Tasks\{35D6FB5B-DF25-4F4B-996E-9B7D13A0DC24} => C:\Windows\system32\pcalua.exe -a "C:\Users\myska.smudlinka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7GFEQGT6\Poradce1.22.1.MAKFAC[1].exe" -d C:\Users\myska.smudlinka
Task: {74E4BD95-3967-446E-9A95-00DF816E0E78} - System32\Tasks\{7BFACF6A-A298-45F4-9693-0CF3BCD888A7} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\ACDSee40CZ_program.exe -d C:\Users\myska.smudlinka\Downloads
Task: {89D88A9A-821C-4F03-BB52-E3464AE1EC7F} - System32\Tasks\{E2AA2AAF-4FFB-4EF8-8DA3-57D6B835BCF0} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\setup_basic_3770.exe -d C:\Users\myska.smudlinka\Downloads
Task: {939EBC55-6B3D-4C5A-8A9F-60F873C9F58F} - System32\Tasks\{3BFDF937-831A-494D-B81F-0063DFEE898C} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\3100_216\Win32\Setup.exe -d C:\Users\myska.smudlinka\Desktop\3100_216\Win32
Task: {9EE1B78E-C88F-4F03-AB86-657C2EDC1C35} - System32\Tasks\{0FB7C149-D009-497A-91D7-E43E550EBD82} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\Modelova_Hypoteka_HB_510_b5.exe -d C:\Users\myska.smudlinka\Desktop
Task: {AF29A26A-3286-4D59-A145-12E21242F5A6} - System32\Tasks\{DA233C59-D4CE-445B-988A-5B398C0D8558} => C:\Program Files\Skype\Phone\Skype.exe
Task: {B08F8964-C997-4462-8098-B7861830AC2E} - System32\Tasks\{6977813C-7BF9-4503-9859-0D3A7D282FC2} => C:\Windows\system32\pcalua.exe -a C:\dell\drivers\R140135\3100_216\Setup.exe -d C:\dell\drivers\R140135\3100_216
Task: {B45DD636-D0E2-4E68-BFCB-2E947C7853D9} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {B77FE8AB-C19D-4CAB-85A6-A2D1FF095F9C} - System32\Tasks\{0E249459-4A0C-4B6F-B127-773AE9D23EA4} => "c:\users\myska.smudlinka\appdata\local\google\chrome\application\chrome.exe" http://ui.skype.com/ui/0/5.9.0.123/en/a ... age=tsMain
Task: {BE447424-7053-4240-98BA-17EDBBBEE90C} - System32\Tasks\{A5430FD3-0B99-42AA-84C8-C0251EDBD97B} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\ZivotVista\zivot_acc2007.exe -d C:\Users\myska.smudlinka\Downloads\ZivotVista
Task: {C3B613A2-37AF-4E83-B802-0D2AF3E26C8F} - System32\Tasks\{9BE25760-63AB-4A89-A6C9-3F693C707383} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\wepos_upg.exe -d C:\Users\myska.smudlinka\Desktop
Task: {C71B4BE1-B471-4F3D-BDE7-ADA17E071A19} - System32\Tasks\{6E605691-DD52-4AD6-A87B-DC0D1AFBF40A} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\3100_216\Setup.exe -d C:\Users\myska.smudlinka\Desktop\3100_216
Task: {D45F0485-4356-4E2E-A07C-9ED26F456A66} - System32\Tasks\{714FC74D-FD2E-4BA4-B0B6-2F9BEE0F8B2B} => C:\Windows\system32\pcalua.exe -a "C:\Users\myska.smudlinka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q2D4NIO1\agsetup[1].exe" -d C:\Windows\system32
Task: {D702235A-89AC-44C5-A1AD-D353EA91347C} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2762968 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {DE56D92D-6C7A-4A17-9BAB-5CD0137E93B8} - System32\Tasks\{8D8BDBF6-2DBD-401D-8E31-4419C6117728} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\PoradceOprava1.22.1o2.exe -d C:\Users\myska.smudlinka\Desktop
Task: {ED60FCB7-19EF-4FDF-8349-7A2196BAA39B} - System32\Tasks\MotiveReportingUninstall => C:\Program Files\Common Files\Motive\InstallHelper.exe [540672 2007-11-29] (Motive Communications, Inc.) [File not signed] -> /UninstallVendor=TO2SAM /Dir=%PROGRAMFILES%
Task: {FAAC4387-01ED-4F5A-9446-D2591D4BAD8E} - System32\Tasks\{285C9BDA-7849-4B42-B090-7C9A3EF898F7} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Documents\Dokumenty\OVB\Software\Autopojisteni\kasetup122.exe -d C:\Users\myska.smudlinka\Documents\Dokumenty\OVB\Software\Autopojisteni
Task: {FC41B85A-C8E3-4460-A51B-CD3D03A54EAA} - System32\Tasks\{05834092-8869-4CF7-9458-E3CD3F19251D} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Documents\Dokumenty\OVB\Software\PoradceOprava1.22.1o2.exe
Task: {FCF296E9-AD57-4F3A-8D00-CC682F06288F} - System32\Tasks\{4A1E5BC2-F24E-4558-B423-483D267E1C55} => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\MUINST_Y.EXE -c /PRN:"KONICA MINOLTA PagePro 1400W"

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\User_Feed_Synchronization-{E2384B99-79B8-4AA9-9B8A-1B75D39B387D}.job => C:\Windows\system32\msfeedssync.exesyn C:\Windows\system32myska.smu

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 02 C:\Windows\system32\napinsp.dll [50176 2008-01-19] (Microsoft Windows -> Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{F9A804B2-1527-47AE-8059-47323869620F}: [DhcpNameServer] 192.168.1.1 192.168.1.1

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-06-25] [Legacy] [not signed]
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-07-15] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-07-15] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2011-08-03] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2011-08-03] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin: @real.com/nppl3260;version=6.0.12.338 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [2009-07-22] (RealNetworks, Inc. -> RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=1.0.3.338 -> C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll [2009-07-22] (RealNetworks, Inc.) [File not signed]
FF Plugin: @real.com/nprpjplug;version=6.0.12.338 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll [2009-07-22] (RealNetworks, Inc.) [File not signed]
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll [2012-01-03] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3508696740-1989622053-3731389356-1000: @facebook.com/FBPlugin,version=1.0.3 -> C:\Users\myska.smudlinka\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll [2010-06-09] () [File not signed]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\myska.smudlinka\AppData\Local\Google\Chrome\User Data\Default [2020-10-15]
CHR DownloadDir: C:\Users\myska.smudlinka\Desktop
CHR Notifications: Default -> hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://facebook.com/","hxxp://seznam.cz/","hxxp://uloz.to/"
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\myska.smudlinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-04]
CHR HKLM\...\Chrome\Extension: [fcebahaopmklkfaaacddffiomjjldmkk]
CHR HKLM\...\Chrome\Extension: [ocphobfcfafpclibolpjdafgaffkaoci] - C:\Program Files\Browser Plugin\gplplugin.crx [2011-02-21]
CHR HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcebahaopmklkfaaacddffiomjjldmkk]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
R2 AESTFilters; C:\Windows\system32\aestsrv.exe [73728 2008-01-02] (Microsoft Windows Hardware Compatibility Publisher -> Andrea Electronics Corporation)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6799632 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\bin\fbguard.exe [65536 2007-12-12] (The Firebird Project) [File not signed]
R3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\bin\fbserver.exe [1531989 2007-12-12] (The Firebird Project) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2009-07-06] (Macrovision Corporation -> Macrovision Europe Ltd.) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 KoopPdfService; C:\Program Files\Kooperativa\Services\KoopPDFServer.exe [2454016 2012-01-01] () [File not signed]
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.266\McCHSvc.exe [235696 2015-12-02] (McAfee, Inc. -> McAfee, Inc.)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2006-11-08] (Hewlett-Packard) [File not signed]
S2 nvUpdatusService; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2255464 2011-08-03] (NVIDIA Corporation -> NVIDIA Corporation)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2006-11-08] (Hewlett-Packard) [File not signed]
S3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [430592 2008-04-07] (Nokia.) [File not signed]
R2 STacSV; C:\Windows\system32\STacSV.exe [102400 2008-01-02] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [73728 2006-09-14] (MicroVision Development, Inc.) [File not signed]
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Windows -> Microsoft Corporation)
R2 wltrysvc; C:\Windows\System32\bcmwltry.exe [2654208 2009-01-20] (Dell Inc.) [File not signed]
R2 XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [386560 2007-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
S3 602SQL 8 FastCGI Client; c:\Program Files\ALEX\602FSVC8.EXE [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [167480 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [188976 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [165384 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [284256 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [57904 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [183176 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42736 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40688 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [135200 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr.sys [70640 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72800 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [784552 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [397984 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R3 aswStmXP; C:\Windows\System32\drivers\aswStmXP.sys [146584 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [310200 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
R3 BCM42RLY; C:\Windows\System32\drivers\BCM42RLY.sys [18424 2009-01-20] (Broadcom Corporation -> Broadcom Corporation)
R3 BCM43XX; C:\Windows\System32\DRIVERS\bcmwl6.sys [1207288 2009-01-20] (Broadcom Corporation -> Broadcom Corporation)
R3 bcm4sbxp; C:\Windows\System32\DRIVERS\bcm4sbxp.sys [45568 2007-05-11] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
S3 btwaudio; C:\Windows\System32\drivers\btwaudio.sys [78128 2006-11-07] (Broadcom Corporation -> Broadcom Corporation.)
S3 btwavdt; C:\Windows\System32\drivers\btwavdt.sys [80176 2006-11-07] (Broadcom Corporation -> Broadcom Corporation.)
S3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [16560 2006-11-07] (Broadcom Corporation -> Broadcom Corporation.)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Microsoft Windows -> Společnost Microsoft)
S3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36608 2009-03-31] () [File not signed]
R3 HSF_DPV; C:\Windows\System32\DRIVERS\HSX_DPV.sys [986624 2007-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
R3 HSXHWAZL; C:\Windows\System32\DRIVERS\HSXHWAZL.sys [206848 2007-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
S4 iteatapi; C:\Windows\system32\drivers\iteatapi.sys [35944 2006-11-02] (Microsoft Windows -> Integrated Technology Express, Inc.)
S4 iteraid; C:\Windows\system32\drivers\iteraid.sys [35944 2006-11-02] (Microsoft Windows -> Integrated Technology Express, Inc.)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Pinnacle Systems GmbH)
R2 mdmxsdk; C:\Windows\System32\DRIVERS\mdmxsdk.sys [12672 2007-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant)
S4 Mraid35x; C:\Windows\system32\drivers\mraid35x.sys [33384 2006-11-02] (Microsoft Windows -> LSI Logic Corporation)
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
R3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1082232 2013-03-03] (Microsoft Windows -> Společnost Microsoft)
S4 ntrigdigi; C:\Windows\system32\drivers\ntrigdigi.sys [20608 2006-11-02] (Microsoft Windows -> N-trig Innovative Technologies)
R3 OEM02Dev; C:\Windows\System32\DRIVERS\OEM02Dev.sys [235648 2007-12-03] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
R3 OEM02Vfx; C:\Windows\System32\DRIVERS\OEM02Vfx.sys [7424 2007-12-03] (Microsoft Windows Hardware Compatibility Publisher -> EyePower Games Pte. Ltd.)
S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfd.sys [21632 2007-09-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 R300; C:\Windows\System32\DRIVERS\atikmdag.sys [2028032 2006-11-02] (Microsoft Windows -> ATI Technologies Inc.)
R2 rimmptsk; C:\Windows\System32\DRIVERS\rimmptsk.sys [32256 2007-05-09] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
R2 rimsptsk; C:\Windows\System32\DRIVERS\rimsptsk.sys [43520 2007-05-09] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
R2 rismxdp; C:\Windows\System32\DRIVERS\rixdptsk.sys [37376 2007-05-09] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [90112 2009-03-20] (MCCI Corporation -> MCCI)
S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14976 2009-03-20] (MCCI Corporation -> MCCI Corporation)
S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [121856 2009-03-20] (MCCI Corporation -> MCCI Corporation)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [330240 2008-01-02] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S4 uliahci; C:\Windows\system32\drivers\uliahci.sys [235112 2006-11-02] (Microsoft Windows -> ULi Electronics Inc.)
S4 UlSata; C:\Windows\system32\drivers\ulsata.sys [98408 2006-11-02] (Microsoft Windows -> Promise Technology, Inc.)
S4 ulsata2; C:\Windows\system32\drivers\ulsata2.sys [115816 2006-11-02] (Microsoft Windows -> Promise Technology, Inc.)
R3 winachsf; C:\Windows\System32\DRIVERS\HSX_CNXT.sys [659968 2007-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
R2 XAudio; C:\Windows\System32\DRIVERS\xaudio.sys [8192 2007-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.)
U3 avgbdisk; no ImagePath
U3 avgStm; no ImagePath
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
U3 iswSvc; no ImagePath
S3 Lavasoft Kernexplorer; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [X]
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 SliceDisk5; \??\C:\Program Files\A-FF Find and Mount\slicedisk.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-10-15 13:11 - 2020-10-15 13:30 - 000973166 _____ C:\TDSSKiller.3.1.0.28_15.10.2020_13.11.11_log.txt
2020-10-02 12:24 - 2020-10-02 12:35 - 000670736 _____ C:\TDSSKiller.3.1.0.28_02.10.2020_12.24.34_log.txt
2020-10-02 12:13 - 2020-10-02 12:13 - 000005582 _____ C:\TDSSKiller.3.1.0.28_02.10.2020_12.13.07_log.txt

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-10-15 17:17 - 2020-03-18 13:20 - 000000000 ____D C:\FRST
2020-10-15 16:35 - 2006-11-02 14:47 - 000003568 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2020-10-15 16:35 - 2006-11-02 14:47 - 000003568 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2020-10-15 15:17 - 2020-02-03 16:21 - 000001945 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-10-15 15:15 - 2009-07-22 10:59 - 000003374 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-10-15 15:15 - 2009-07-22 10:59 - 000003246 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-10-15 12:43 - 2013-07-11 16:36 - 000003498 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3508696740-1989622053-3731389356-1000UA
2020-10-15 12:43 - 2013-07-11 16:36 - 000003226 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3508696740-1989622053-3731389356-1000Core
2020-10-15 12:40 - 2010-12-05 14:34 - 000000412 ____H C:\Windows\Tasks\User_Feed_Synchronization-{E2384B99-79B8-4AA9-9B8A-1B75D39B387D}.job
2020-10-15 12:40 - 2008-04-23 16:22 - 000003980 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{E2384B99-79B8-4AA9-9B8A-1B75D39B387D}
2020-10-15 12:39 - 2020-03-18 09:01 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2020-10-02 13:05 - 2007-01-08 23:09 - 001237074 _____ C:\Windows\system32\perfh005.dat
2020-10-02 13:05 - 2007-01-08 23:09 - 000349968 _____ C:\Windows\system32\perfc005.dat
2020-10-02 13:05 - 2006-11-02 12:33 - 000653424 _____ C:\Windows\system32\PerfStringBackup.INI
2020-10-02 12:21 - 2008-04-23 16:12 - 000000000 ____D C:\ProgramData\NVIDIA
2020-10-02 12:21 - 2006-11-02 15:01 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-10-02 12:15 - 2008-04-10 18:03 - 000001076 _____ C:\Windows\bthservsdp.dat
2020-10-02 12:15 - 2006-11-02 15:01 - 000032526 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2020-10-02 12:13 - 2008-04-23 16:10 - 000000000 ____D C:\Users\myska.smudlinka

==================== Files in the root of some directories ========

2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ADR.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\AGT.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\AGTSAZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\AUTOMODEL.TMP
2005-03-04 16:42 - 2005-03-04 16:42 - 000011531 _____ () C:\Program Files\AutoModel.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\AUTOMODELNAKL.TMP
2005-11-10 11:16 - 2005-11-10 11:16 - 000002067 _____ () C:\Program Files\AutoModelnakl.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\AUTOVYROBA.TMP
2005-06-30 06:15 - 2005-06-30 06:15 - 000005918 _____ () C:\Program Files\AutoVyroba.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\AUTOVYROBANAKL.TMP
2006-01-26 07:12 - 2006-01-26 07:12 - 000000504 _____ () C:\Program Files\Autovyrobanakl.tx
2011-10-18 08:53 - 2011-10-18 08:53 - 001015808 _____ () C:\Program Files\BMContact.dll
2012-04-04 08:10 - 2012-04-04 08:10 - 000952320 _____ () C:\Program Files\BMContact12.dll
2012-09-26 07:20 - 2012-09-26 07:20 - 000960512 _____ () C:\Program Files\BMContact13.dll
2012-11-20 17:56 - 2012-11-20 17:56 - 000960512 _____ () C:\Program Files\BMContact14.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\BTNMENU.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\BUTTON.TMP
2007-01-10 10:28 - 2007-01-10 10:28 - 000541184 _____ () C:\Program Files\CALC.exe
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\CISLOZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\CNAVRH.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\DAVKA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\DOPOR.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\DOTAZNIKODP.TMP
1999-06-23 10:06 - 1999-06-23 10:06 - 000110592 _____ (Inner Media, Inc.) C:\Program Files\DUNZIP32.DLL
1999-06-23 10:06 - 1999-06-23 10:06 - 000126976 _____ (Inner Media, Inc.) C:\Program Files\dzip32.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\DZISK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIDOTAZNIKODP.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIKALIZP.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIMISTOPOJ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKBUD.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKCENY.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKNAV.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKPRVRIZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKRIZIK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKST.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKVYBAVY.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKZAUTO.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIRADEKZEMTECH.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EISCHUZKA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EISMLFOND.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIZAUTO.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EIZISK2.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\EKAT.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ENT.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ETIK.TMP
2009-10-06 01:05 - 2009-10-06 01:05 - 001527903 _____ (The Firebird Project) C:\Program Files\FBClient15.dll
2012-10-25 11:05 - 2012-10-25 11:05 - 000020495 _____ () C:\Program Files\firebird.conf
2009-10-06 01:05 - 2009-10-06 01:05 - 000132796 _____ () C:\Program Files\firebird.msg
2012-11-14 00:00 - 2012-11-14 00:00 - 003705153 _____ () C:\Program Files\FireBirdEmbedded.zip
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\FNABIDKA.TMP
2009-10-06 01:05 - 2009-10-06 01:05 - 001527903 _____ (The Firebird Project) C:\Program Files\gds32.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\HLSAZBA.TMP
2009-10-06 01:05 - 2009-10-06 01:05 - 000024576 _____ (The Firebird Project) C:\Program Files\ib_util.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\IMPORTDAT.TMP
2012-08-16 09:17 - 2012-08-16 09:17 - 000948736 _____ () C:\Program Files\ImportHUGO.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\INTERV.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\KALIZP.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\KATAGT.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\KATSAZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\KATZISK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\KLIENT.TMP
2011-11-04 10:47 - 2011-11-04 10:47 - 000980992 _____ () C:\Program Files\KlientInfo.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\KPOBEC.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\LEASSPOL.TMP
2010-06-15 18:02 - 2010-06-15 18:02 - 000001276 _____ () C:\Program Files\Leasspol.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\LVOSOBA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\MAJOBEC.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\MAKDOLOZKA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\MISTOPOJ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\NABRADEK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\NASTIMPORT.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\NEMOC.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\NZSP.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\OBCE.TMP
2008-03-19 13:13 - 2008-03-19 13:13 - 000333570 _____ () C:\Program Files\obce.tx
2013-07-24 20:23 - 2013-07-24 20:23 - 000000000 _____ () C:\Program Files\OBCEPOV.TMP
2011-10-10 08:17 - 2011-10-10 08:17 - 000818212 _____ () C:\Program Files\ObcePov.tx
2006-07-28 22:51 - 2006-07-28 22:51 - 000023112 _____ () C:\Program Files\ocrb10.ttf
2013-07-24 20:23 - 2013-07-24 20:23 - 000000000 _____ () C:\Program Files\OKRES.TMP
2012-04-05 07:40 - 2012-04-05 07:40 - 000990720 _____ () C:\Program Files\OnLineTisk.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PARAM.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PFOND.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PLANY.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PODSL.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\POMMPOJIST.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\POMRADEKBUD.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\POMRADEKPRVRIZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\POMRADEKZEMTECH.TMP
2011-12-29 17:26 - 2012-03-02 11:51 - 000000137 _____ () C:\Program Files\Poradce - MAKFAC,AWD,MBI.INI
2013-07-24 20:38 - 2013-07-24 20:42 - 000000137 _____ () C:\Program Files\Poradce - MAKFAC,SLS,MBI.INI
2010-03-28 19:38 - 2010-03-28 19:38 - 000000137 _____ () C:\Program Files\Poradce - makléř FAC.INI
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETCIN.TMP
2006-01-27 07:13 - 2006-01-27 07:13 - 000010596 _____ () C:\Program Files\PredmetCin.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETCINNEW.TMP
2010-09-04 16:15 - 2010-09-04 16:15 - 000022444 _____ () C:\Program Files\Predmetcinnew.tx
2013-05-02 12:48 - 2013-05-02 12:48 - 000032630 _____ () C:\Program Files\PredmetCinNew2012.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETCINODP.TMP
2006-03-22 09:45 - 2006-03-22 09:45 - 000007585 _____ () C:\Program Files\PredmetCinOdp.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETCINPODNIKM.TMP
2006-08-24 22:34 - 2006-08-24 22:34 - 000007557 _____ () C:\Program Files\PredmetCinPodnikM.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETODPPROF.TMP
2011-05-27 12:35 - 2011-05-27 12:35 - 000001615 _____ () C:\Program Files\PredmetOdpProf.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETODPPROF_L.TMP
2011-01-25 13:05 - 2011-01-25 13:05 - 000001210 _____ () C:\Program Files\PredmetOdpProf_L.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETPRVRIZ.TMP
2005-11-08 10:22 - 2005-11-08 10:22 - 000003658 _____ () C:\Program Files\PredmetPrvRiz.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETPRVRIZNEW.TMP
2012-09-12 12:54 - 2012-09-12 12:54 - 000004995 _____ () C:\Program Files\PredmetPrvRizNew.tx
2013-07-10 15:57 - 2013-07-10 15:57 - 000004736 _____ () C:\Program Files\PredmetPrvRizNew12.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETPRVRIZREGION.TMP
2011-07-14 08:04 - 2011-07-14 08:04 - 000003207 _____ () C:\Program Files\PredmetPrvRizRegion.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETSTROJE.TMP
2012-11-20 15:38 - 2012-11-20 15:38 - 000001527 _____ () C:\Program Files\PredmetStroje.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PREDMETSTROJEREG.TMP
2008-11-03 23:40 - 2008-11-03 23:40 - 000000351 _____ () C:\Program Files\PredmetStrojeReg.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PRIPOJODP.TMP
2013-04-01 15:15 - 2013-04-01 15:15 - 000006212 _____ () C:\Program Files\PripojOdp.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PRIPOJODPI.TMP
2012-09-09 20:39 - 2012-09-09 20:39 - 000008674 _____ () C:\Program Files\PripojOdpI.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PRIPOJODPZAMZAM.TMP
2011-07-13 21:37 - 2011-07-13 21:37 - 000000597 _____ () C:\Program Files\PripojOdpZamZam.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\PSCHEMA.TMP
2013-06-14 12:23 - 2013-06-14 12:23 - 000946688 _____ () C:\Program Files\PSPHugo.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKBUD.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKCENY.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKNABRS.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKNAV.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKPRVRIZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKRIZIK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKST.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKVYBAVY.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKZAUTO.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RADEKZEMTECH.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RDETIK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\RSZSML.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SAZBA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SAZIS.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SAZISODM.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SAZODM.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SCHUZKA.TMP
2013-07-24 10:40 - 2013-07-24 10:40 - 000008337 _____ () C:\Program Files\setup.ini
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SMLFOND.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SP.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SPOLFPOV.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SPORT.TMP
2011-04-08 12:43 - 2011-04-08 12:43 - 000003297 _____ () C:\Program Files\sport.tx
2012-11-12 19:41 - 2012-11-12 19:41 - 000005141 _____ () C:\Program Files\SportN.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SPR.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SSPL.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SSPLZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\STAV.TMP
2010-01-23 13:00 - 2010-01-23 13:00 - 000000604 ____H () C:\Program Files\STLL Notifier
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SUB.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SUBSAZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\SUBZISK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\TARIF.TMP
2012-03-27 07:51 - 2012-03-27 07:51 - 000990720 _____ () C:\Program Files\TestAktual.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\TEXTINFORM.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\TEXTY.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\TISKOPIS.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\TYPIC.TMP
2005-02-21 12:18 - 2005-02-21 12:18 - 001057792 _____ () C:\Program Files\UNINST.exe
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\URAZ.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\UROVEN.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\US.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\VARIANTA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\VYBER.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\VZISK.TMP
2012-09-10 15:35 - 2012-09-10 15:35 - 000081920 _____ () C:\Program Files\VZOR_ImportFlotil.xls
2010-11-29 12:28 - 2010-11-29 12:28 - 000029184 _____ () C:\Program Files\VZOR_ImportKlientu.xls
2006-01-20 17:38 - 2006-01-20 17:38 - 000014336 _____ () C:\Program Files\Vzor_SeznamVlastníkůReality.xls
2013-01-13 12:28 - 2013-01-13 12:28 - 000037376 _____ () C:\Program Files\Vzor_SeznamZamZam.xls
2013-01-18 11:43 - 2013-01-18 11:43 - 000024477 _____ () C:\Program Files\Vzor_SeznamZamZam.xlsm
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\VZTAH.TMP
2013-07-24 10:37 - 2013-07-24 10:37 - 020865536 _____ () C:\Program Files\winpos.exe
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZAM.TMP
2013-01-22 12:18 - 2013-01-22 12:18 - 000011977 _____ () C:\Program Files\Zam.tx
2013-01-22 12:18 - 2013-01-22 12:18 - 000011313 _____ () C:\Program Files\zam12.tx
2013-01-22 12:18 - 2013-01-22 12:18 - 000011119 _____ () C:\Program Files\ZamN.tx
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZAUTO.TMP
2013-02-26 22:14 - 2013-02-26 22:14 - 000377869 _____ () C:\Program Files\ZEOS.ST
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZEOS.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZISK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZISK2.TMP
2012-11-02 03:23 - 2012-11-02 03:23 - 000396288 _____ () C:\Program Files\zivot33.dll
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZK.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZMENA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZOSOBA.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZSML.TMP
2012-03-02 11:46 - 2012-03-02 11:46 - 000000000 _____ () C:\Program Files\ZVLULOZ.TMP
2012-12-23 09:41 - 2012-12-23 09:41 - 000000288 _____ () C:\Users\myska.smudlinka\AppData\Roaming\.backup.dm
2008-11-03 11:52 - 2019-03-17 15:28 - 000000310 _____ () C:\Users\myska.smudlinka\AppData\Roaming\APUSet.xml
2010-02-12 14:40 - 2010-12-28 00:55 - 000000091 _____ () C:\Users\myska.smudlinka\AppData\Roaming\default.pls
2010-04-17 09:59 - 2010-10-26 14:59 - 000087608 _____ () C:\Users\myska.smudlinka\AppData\Roaming\inst.exe
2010-02-09 23:46 - 2010-02-09 23:46 - 000000019 _____ () C:\Users\myska.smudlinka\AppData\Roaming\mdbu.bin
2008-05-26 16:52 - 2011-08-16 09:55 - 000120329 _____ () C:\Users\myska.smudlinka\AppData\Roaming\nvModes.001
2008-05-26 14:14 - 2011-08-01 19:56 - 000120329 _____ () C:\Users\myska.smudlinka\AppData\Roaming\nvModes.dat
2010-04-17 09:59 - 2010-10-26 14:59 - 000007887 _____ () C:\Users\myska.smudlinka\AppData\Roaming\pcouffin.cat
2010-04-17 09:59 - 2010-10-26 14:59 - 000001144 _____ () C:\Users\myska.smudlinka\AppData\Roaming\pcouffin.inf
2010-04-17 10:01 - 2010-10-26 14:59 - 000000034 _____ () C:\Users\myska.smudlinka\AppData\Roaming\pcouffin.log
2010-04-17 09:59 - 2010-10-26 14:59 - 000047360 _____ (VSO Software) C:\Users\myska.smudlinka\AppData\Roaming\pcouffin.sys
2008-11-03 11:52 - 2020-03-20 15:25 - 000006076 _____ () C:\Users\myska.smudlinka\AppData\Roaming\PrimoPDFSet.xml
2008-06-11 18:40 - 2008-06-11 18:40 - 000031007 _____ () C:\Users\myska.smudlinka\AppData\Roaming\UserTile.png
2010-04-17 10:02 - 2014-02-02 17:34 - 000001044 _____ () C:\Users\myska.smudlinka\AppData\Roaming\vso_ts_preview.xml
2018-11-03 08:31 - 2019-07-12 13:13 - 000000250 _____ () C:\Users\myska.smudlinka\AppData\Roaming\WB.CFG
2008-11-23 21:05 - 2020-03-17 15:28 - 000000680 _____ () C:\Users\myska.smudlinka\AppData\Local\d3d9caps.dat
2008-05-26 14:11 - 2019-08-09 07:43 - 000053248 _____ () C:\Users\myska.smudlinka\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2009-08-24 21:57 - 2009-08-24 21:57 - 000004096 ____H () C:\Users\myska.smudlinka\AppData\Local\keyfile3.drm
2008-12-30 10:33 - 2008-12-30 10:45 - 000000109 _____ () C:\Users\myska.smudlinka\AppData\Local\Model7.env
2008-10-21 17:05 - 2009-07-14 18:58 - 000000100 _____ () C:\Users\myska.smudlinka\AppData\Local\Model_he.ini
2010-04-07 21:43 - 2010-12-04 13:54 - 000000000 _____ () C:\Users\myska.smudlinka\AppData\Local\prvlcl.dat
2008-10-21 16:59 - 2009-07-14 18:52 - 000000663 _____ () C:\Users\myska.smudlinka\AppData\Local\User_he.cds

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2020-10-02 12:34
==================== End of FRST.txt ========================

Re: Pomalý a zaneřáděný Notebook

Napsal: 15 říj 2020 16:54
od Rudy
Teď spusťte tuto utiltiu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 16:50
od HelcaDodo
Bohužel, nejde spustit :-( Zareaguje, ale není pak ani vidět ve správci úloh, když se po delší době, kdy se nic neděje, podívám tam.

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 17:25
od Rudy
To je divné. Tak budeme muset ručně. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: G - G:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {095af0f5-5486-11dd-ac92-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {095af110-5486-11dd-ac92-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {6aa33d4b-4e48-11e1-8b6c-001f3ae3099c} - F:\LaunchU3.exe -a
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {6f655b1b-8b11-11dd-98c8-001f3ae3099c} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled\ctfmon.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657a5-54f8-11dd-af87-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657a6-54f8-11dd-af87-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657b1-54f8-11dd-af87-001f3ae3099c} - G:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657b2-54f8-11dd-af87-001f3ae3099c} - F:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {8de657b9-54f8-11dd-af87-001f3ae3099c} - G:\StartVMCLite.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {a26e8ef9-a811-11de-86b7-001f3ae3099c} - F:\LaunchU3.exe -a
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {a26e8efa-a811-11de-86b7-001f3ae3099c} - G:\060ptrm.com
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {b9a65702-d645-11e6-ac90-001f3ae3099c} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3508696740-1989622053-3731389356-1000\...\MountPoints2: {cedb8ba9-3650-11e6-aa59-001f3ae3099c} - G:\HiSuiteDownLoader.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] ->
Task: {0A085C08-FBCA-49BA-A3E3-CE362BFE1E4E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [156104 2020-02-03] (Google LLC -> Google LLC)
Task: {142270CF-2A98-4159-8A19-E4184782248F} - System32\Tasks\{178C43E1-F7B7-41CE-A2BD-2C92CF18A976} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\Poradce1.24.1.MAKFAC.exe -d C:\Users\myska.smudlinka\Desktop
Task: {1B8BBF3F-8F1C-4C13-96D7-5D7D6458E162} - System32\Tasks\{7EA692C0-4F58-4857-A619-6953AEB79778} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\notak046.exe -d C:\Users\myska.smudlinka\Desktop
ask: {39149DD6-9586-41D6-8243-B8069DC4028A} - System32\Tasks\{201CC57A-7EA5-4A7D-831F-D80582A02B77} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\QIP\unqip.exe"
Task: {3AE0E820-F6E8-4769-AB24-08D295F795C8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [156104 2020-02-03] (Google LLC -> Google LLC)
Task: {3B04E54F-F9AC-47F5-A718-260A8DD9B706} - System32\Tasks\{5F9A08CA-B0A8-40D9-81D3-926F66B0E455} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\Poradce1.23.1.MAKFAC.exe -d C:\Users\myska.smudlinka\Desktop
Task: {4E1798B7-47D9-4C7F-97DD-9EE7591C2A25} - System32\Tasks\{293CC089-096B-42CF-970E-AD9F3FE30928} => C:\Windows\system32\pcalua.exe -a "C:\PROGRAM FILES\uninst.exe"
Task: {55AC69E7-FCBB-4507-A971-157AB18B1636} - System32\Tasks\{7CC97595-DEBF-462A-B000-F5CE94099A25} => C:\Windows\system32\pcalua.exe -a C:\\uninst.exe
Task: {56BFD99C-00B3-4F81-BAD9-0210780387B4} - System32\Tasks\{53A3E384-B058-4766-B99C-F725B1D46E0F} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\Modelova_Hypoteka_HB_508_b2b.exe -d C:\Users\myska.smudlinka\Downloads
Task: {6484FEA1-0C4B-4EA5-BEBC-2CB22D15F034} - System32\Tasks\{1FBA3B46-34E0-48ED-8159-CEEEBF12DB79} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\AppData\Local\Temp\Temp1_wepos_upg_37.zip\wepos_upg.exe <==== ATTENTION
Task: {64E04B1C-4112-46F9-B350-E1179BBC13E8} - System32\Tasks\{9540D365-C6E8-4689-8D4B-A77B7F0EFA84} => C:\Windows\system32\pcalua.exe -a C:\UNINST.exe -d C:\Windows\system32
Task: {65C6BA38-9EDF-4770-8275-CC5510755214} - System32\Tasks\{04D8FC7D-8996-4131-8DD0-562DE6A81E9C} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\AppData\Local\Temp\Temp1_povhav_1_88.zip\povhav.exe <==== ATTENTION
Task: {73449332-4E44-4603-9A81-9323B8203A0A} - System32\Tasks\{35D6FB5B-DF25-4F4B-996E-9B7D13A0DC24} => C:\Windows\system32\pcalua.exe -a "C:\Users\myska.smudlinka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7GFEQGT6\Poradce1.22.1.MAKFAC[1].exe" -d C:\Users\myska.smudlinka
Task: {74E4BD95-3967-446E-9A95-00DF816E0E78} - System32\Tasks\{7BFACF6A-A298-45F4-9693-0CF3BCD888A7} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\ACDSee40CZ_program.exe -d C:\Users\myska.smudlinka\Downloads
Task: {89D88A9A-821C-4F03-BB52-E3464AE1EC7F} - System32\Tasks\{E2AA2AAF-4FFB-4EF8-8DA3-57D6B835BCF0} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\setup_basic_3770.exe -d C:\Users\myska.smudlinka\Downloads
Task: {939EBC55-6B3D-4C5A-8A9F-60F873C9F58F} - System32\Tasks\{3BFDF937-831A-494D-B81F-0063DFEE898C} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\3100_216\Win32\Setup.exe -d C:\Users\myska.smudlinka\Desktop\3100_216\Win32
Task: {9EE1B78E-C88F-4F03-AB86-657C2EDC1C35} - System32\Tasks\{0FB7C149-D009-497A-91D7-E43E550EBD82} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\Modelova_Hypoteka_HB_510_b5.exe -d C:\Users\myska.smudlinka\Desktop
Task: {B08F8964-C997-4462-8098-B7861830AC2E} - System32\Tasks\{6977813C-7BF9-4503-9859-0D3A7D282FC2} => C:\Windows\system32\pcalua.exe -a C:\dell\drivers\R140135\3100_216\Setup.exe -d C:\dell\drivers\R140135\3100_216
Task: {BE447424-7053-4240-98BA-17EDBBBEE90C} - System32\Tasks\{A5430FD3-0B99-42AA-84C8-C0251EDBD97B} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Downloads\ZivotVista\zivot_acc2007.exe -d C:\Users\myska.smudlinka\Downloads\ZivotVista
Task: {C3B613A2-37AF-4E83-B802-0D2AF3E26C8F} - System32\Tasks\{9BE25760-63AB-4A89-A6C9-3F693C707383} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\wepos_upg.exe -d C:\Users\myska.smudlinka\Desktop
Task: {C71B4BE1-B471-4F3D-BDE7-ADA17E071A19} - System32\Tasks\{6E605691-DD52-4AD6-A87B-DC0D1AFBF40A} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\3100_216\Setup.exe -d C:\Users\myska.smudlinka\Desktop\3100_216
Task: {D45F0485-4356-4E2E-A07C-9ED26F456A66} - System32\Tasks\{714FC74D-FD2E-4BA4-B0B6-2F9BEE0F8B2B} => C:\Windows\system32\pcalua.exe -a "C:\Users\myska.smudlinka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q2D4NIO1\agsetup[1].exe" -d C:\Windows\system32
Task: {D702235A-89AC-44C5-A1AD-D353EA91347C} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2762968 2020-03-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {DE56D92D-6C7A-4A17-9BAB-5CD0137E93B8} - System32\Tasks\{8D8BDBF6-2DBD-401D-8E31-4419C6117728} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Desktop\PoradceOprava1.22.1o2.exe -d C:\Users\myska.smudlinka\Desktop
Task: {ED60FCB7-19EF-4FDF-8349-7A2196BAA39B} - System32\Tasks\MotiveReportingUninstall => C:\Program Files\Common Files\Motive\InstallHelper.exe [540672 2007-11-29] (Motive Communications, Inc.) [File not signed] -> /UninstallVendor=TO2SAM /Dir=%PROGRAMFILES%
Task: {FAAC4387-01ED-4F5A-9446-D2591D4BAD8E} - System32\Tasks\{285C9BDA-7849-4B42-B090-7C9A3EF898F7} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Documents\Dokumenty\OVB\Software\Autopojisteni\kasetup122.exe -d C:\Users\myska.smudlinka\Documents\Dokumenty\OVB\Software\Autopojisteni
Task: {FC41B85A-C8E3-4460-A51B-CD3D03A54EAA} - System32\Tasks\{05834092-8869-4CF7-9458-E3CD3F19251D} => C:\Windows\system32\pcalua.exe -a C:\Users\myska.smudlinka\Documents\Dokumenty\OVB\Software\PoradceOprava1.22.1o2.exe
Task: {FCF296E9-AD57-4F3A-8D00-CC682F06288F} - System32\Tasks\{4A1E5BC2-F24E-4558-B423-483D267E1C55} => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\MUINST_Y.EXE -c /PRN:"KONICA MINOLTA PagePro 1400W"
U3 avgbdisk; no ImagePath
U3 avgStm; no ImagePath
U3 iswSvc; no ImagePath
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3508696740-1989622053-3731389356-1000UA
C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3508696740-1989622053-3731389356-1000Core
C:\Program Files\ADR.TMP
C:\Program Files\AGT.TMP
C:\Program Files\AGTSAZ.TMP
C:\Program Files\AUTOMODEL.TMP
C:\Program Files\AUTOMODELNAKL.TMP
C:\Program Files\AUTOVYROBA.TMP
C:\Program Files\AUTOVYROBANAKL.TMP
C:\Program Files\BTNMENU.TMP
C:\Program Files\BUTTON.TMP
C:\Program Files\CISLOZ.TMP
C:\Program Files\CNAVRH.TMP
C:\Program Files\DAVKA.TMP
C:\Program Files\DOPOR.TMP
C:\Program Files\DOTAZNIKODP.TMP
C:\Program Files\DZISK.TMP
C:\Program Files\EIDOTAZNIKODP.TMP
C:\Program Files\EIKALIZP.TMP
C:\Program Files\EIMISTOPOJ.TMP
C:\Program Files\EIRADEKBUD.TMP
C:\Program Files\EIRADEKCENY.TMP
C:\Program Files\EIRADEKNAV.TMP
C:\Program Files\EIRADEKPRVRIZ.TMP
C:\Program Files\EIRADEKRIZIK.TMP
C:\Program Files\EIRADEKST.TMP
C:\Program Files\EIRADEKVYBAVY.TMP
C:\Program Files\EIRADEKZAUTO.TMP
C:\Program Files\EIRADEKZEMTECH.TMP
C:\Program Files\EISCHUZKA.TMP
C:\Program Files\EISMLFOND.TMP
C:\Program Files\EIZAUTO.TMP
C:\Program Files\EIZISK2.TMP
C:\Program Files\EKAT.TMP
C:\Program Files\ENT.TMP
C:\Program Files\ETIK.TMP
C:\Program Files\INTERV.TMP
C:\Program Files\KALIZP.TMP
C:\Program Files\KATAGT.TMP
C:\Program Files\KATSAZ.TMP
C:\Program Files\KATZISK.TMP
C:\Program Files\KLIENT.TMP
C:\Program Files\IMPORTDAT.TMP
C:\Program Files\INTERV.TMP
C:\Program Files\KALIZP.TMP
C:\Program Files\KATAGT.TMP
C:\Program Files\KATSAZ.TMP
C:\Program Files\KATZISK.TMP
C:\Program Files\KLIENT.TMP
C:\Program Files\KPOBEC.TMP
C:\Program Files\LEASSPOL.TMP
C:\Program Files\LVOSOBA.TMP
C:\Program Files\MAJOBEC.TMP
C:\Program Files\MAKDOLOZKA.TMP
C:\Program Files\MISTOPOJ.TMP
C:\Program Files\NABRADEK.TMP
C:\Program Files\NASTIMPORT.TMP
C:\Program Files\NEMOC.TMP
C:\Program Files\NZSP.TMP
C:\Program Files\OBCE.TMP
C:\Program Files\OBCEPOV.TMP
C:\Program Files\OKRES.TMP
C:\Program Files\PARAM.TMP
C:\Program Files\PFOND.TMP
C:\Program Files\PLANY.TMP
C:\Program Files\PODSL.TMP
C:\Program Files\POMMPOJIST.TMP
C:\Program Files\POMRADEKBUD.TMP
C:\Program Files\POMRADEKZEMTECH.TMP
C:\Program Files\PREDMETCIN.TMP
C:\Program Files\PREDMETCINNEW.TMP
C:\Program Files\PREDMETCINODP.TMP
C:\Program Files\PREDMETCINPODNIKM.TMP
C:\Program Files\PREDMETODPPROF.TMP
C:\Program Files\PREDMETODPPROF_L.TMP
C:\Program Files\PREDMETPRVRIZ.TMP
C:\Program Files\PREDMETPRVRIZREGION.TMP
C:\Program Files\PREDMETSTROJE.TMP
C:\Program Files\PREDMETSTROJEREG.TMP
C:\Program Files\PRIPOJODP.TMP
C:\Program Files\PRIPOJODPI.TMP
C:\Program Files\PRIPOJODPZAMZAM.TMP
C:\Program Files\PSCHEMA.TMP
C:\Program Files\RADEKBUD.TMP
C:\Program Files\RADEKCENY.TMP
C:\Program Files\RADEKNABRS.TMP
C:\Program Files\RADEKNAV.TMP
C:\Program Files\RADEKPRVRIZ.TMP
C:\Program Files\RADEKRIZIK.TMP
C:\Program Files\RADEKST.TMP
C:\Program Files\RADEKVYBAVY.TMP
C:\Program Files\RADEKZAUTO.TMP
C:\Program Files\RADEKZEMTECH.TMP
C:\Program Files\RDETIK.TMP
C:\Program Files\RSZSML.TMP
C:\Program Files\SAZBA.TMP
C:\Program Files\SAZIS.TMP
C:\Program Files\SAZISODM.TMP
C:\Program Files\SAZODM.TMP
C:\Program Files\SCHUZKA.TMP
C:\Program Files\SMLFOND.TMP
C:\Program Files\SP.TMP
C:\Program Files\SPOLFPOV.TMP
C:\Program Files\SPORT.TMP
C:\Program Files\SPR.TMP
C:\Program Files\SSPL.TMP
C:\Program Files\SSPLZ.TMP
C:\Program Files\STAV.TMP
C:\Program Files\SUB.TMP
C:\Program Files\SUBSAZ.TMP
C:\Program Files\SUBZISK.TMP
C:\Program Files\TARIF.TMP
C:\Program Files\TEXTINFORM.TMP
C:\Program Files\TEXTY.TMP
C:\Program Files\TISKOPIS.TMP
C:\Program Files\TYPIC.TMP
C:\Program Files\UNINST.exe
C:\Program Files\URAZ.TMP
C:\Program Files\UROVEN.TMP
C:\Program Files\US.TMP
C:\Program Files\VARIANTA.TMP
C:\Program Files\VYBER.TMP
C:\Program Files\VZISK.TMP
C:\Program Files\VZTAH.TMP
C:\Program Files\ZAM.TMP
C:\Program Files\ZAUTO.TMP
C:\Program Files\ZEOS.TMP
C:\Program Files\ZISK.TMP
C:\Program Files\ZISK2.TMP
C:\Program Files\ZK.TMP
C:\Program Files\ZMENA.TMP
C:\Program Files\ZOSOBA.TMP
C:\Program Files\ZSML.TMP
C:\Program Files\ZVLULOZ.TMP
C:\Users\myska.smudlinka\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.25.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.27.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.23.9\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.442\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> "C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.23\GoogleUpdateOnDemand.exe" => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.422\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.30.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.31.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.28.1\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.34.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{6D7374DE-63AA-473C-8C02-60D9CDCD84C5}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.21.153\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.28.13\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.29.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.342\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.34.11\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.24.15\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{91EFB276-CEFE-48EC-BB3A-57795A7B4008}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.21.149\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{A45426FB-E444-42B2-AA56-419F8FBEEC61}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.22.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{A54D478D-4F70-4F72-9A74-17C9986E35AB}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.21.165\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.23\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.26.9\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.32.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.29.1\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.25.11\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.28.15\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.452\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.33.17\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{EB06378B-ABB6-4B3C-9B40-D488DD8A6E93}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.22.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.35.301\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\myska.smudlinka\AppData\Local\Google\Update\1.3.24.7\psuser.dll => No File
ContextMenuHandlers1: [ICQLiteMenu] -> {73B24247-042E-4EF5-ADC2-42F62E6FD654} => -> No File
ContextMenuHandlers1: [LavasoftShellExt] -> {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} => -> No File
ContextMenuHandlers2: [LavasoftShellExt] -> {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} => -> No File
ContextMenuHandlers4: [ICQLiteMenu] -> {73B24247-042E-4EF5-ADC2-42F62E6FD654} => -> No File
ContextMenuHandlers6: [LavasoftShellExt] -> {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} => -> No File
Toolbar: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> No Name - {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
Toolbar: HKU\S-1-5-21-3508696740-1989622053-3731389356-1000 -> No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
FirewallRules: [{D0459990-EA6C-43E7-8F8D-209DEC6DA0B2}] => (Allow) C:\Program Files\Dell\MediaDirect\MediaDirect.exe => No File
FirewallRules: [{BBA55A4E-6AB5-420F-91F1-6326C98D5FE8}] => (Allow) C:\Program Files\Dell\MediaDirect\Kernel\DMP\CLBrowserEngine.exe => No File
FirewallRules: [{7D95A7A0-FDE9-4D44-A679-5480ACF3119E}] => (Allow) C:\Program Files\Dell\MediaDirect\Kernel\DMS\CLMSService.exe => No File
FirewallRules: [TCP Query User{20FDFFB1-0F84-45C7-A45C-8BEC63D31BD0}C:\program files\icqlite\icqlite.exe] => (Allow) C:\program files\icqlite\icqlite.exe => No File
FirewallRules: [UDP Query User{17A88EB5-B67F-4C9C-B081-4D7BC309CF75}C:\program files\icqlite\icqlite.exe] => (Allow) C:\program files\icqlite\icqlite.exe => No File
FirewallRules: [TCP Query User{C4E14DB0-8F79-4640-AFB1-328BAFD638DF}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [UDP Query User{76627CC0-262C-4772-9F18-F05CD941E676}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [TCP Query User{B9AE2468-34CD-48DB-A2C0-93E4449B0FD5}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [UDP Query User{3E48A9B1-CFDC-47A2-8A74-44F6E733C0F8}C:\program files\skype\phone\skype.exe] => (Allow) C:\program files\skype\phone\skype.exe => No File
FirewallRules: [TCP Query User{A9A209C4-E4E0-4F7E-BBAE-33AFD89D3B2D}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [UDP Query User{DCA43E85-7926-49B8-BAB6-FDCA6E635C99}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [TCP Query User{247AF7C4-A425-4216-9753-ABDC40922109}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [UDP Query User{46439AE1-0F99-4351-937E-98A0F9ED1B74}C:\program files\qip\qip.exe] => (Block) C:\program files\qip\qip.exe => No File
FirewallRules: [TCP Query User{E69CEA32-E280-4ACE-AD74-103ED4E4A852}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [UDP Query User{1DAB55A4-B655-4248-B6DD-01348ED0B3D2}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [TCP Query User{5728F975-4376-41F4-9C7B-1D79BFEBC3F7}C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe] => (Block) C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe => No File
FirewallRules: [UDP Query User{C89F26FA-5AD6-4D45-91CB-C3FE3BDADECF}C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe] => (Block) C:\program files\common files\roxio shared\9.0\sharedcom\roxwatchtray9.exe => No File
FirewallRules: [TCP Query User{9308E7A8-BA13-407C-8268-42732BAC9B97}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [UDP Query User{1D5ED353-FCDE-4B85-A730-6DDDDCD420D4}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe => No File
FirewallRules: [{C69FC742-D3B4-46F5-99F3-EA443D42FBB7}] => (Allow) C:\Program Files\uTorrent\utorrent.exe => No File
FirewallRules: [{DAFA4ECE-F627-468F-9C68-0EA5D68541C9}] => (Allow) C:\Program Files\uTorrent\utorrent.exe => No File
FirewallRules: [TCP Query User{C4A5B507-5EC3-4015-8DB9-4316DB39E3FA}C:\program files\dc++\dcplusplus.exe] => (Allow) C:\program files\dc++\dcplusplus.exe => No File
FirewallRules: [UDP Query User{B18EA72A-FCA6-41F2-9F98-F770F078F80F}C:\program files\dc++\dcplusplus.exe] => (Allow) C:\program files\dc++\dcplusplus.exe => No File
FirewallRules: [{36AB1065-F9A7-4E25-BC7E-E97EA8BF0322}] => (Allow) C:\Program Files\AVG\AVG8\avgupd.exe => No File
FirewallRules: [{AEC7BAC2-A94D-4F57-BF8B-7B53C5208B17}] => (Allow) C:\Program Files\AVG\AVG8\avgnsx.exe => No File
irewallRules: [TCP Query User{14D283B0-AFCC-4BC5-89B2-DC2577A3785F}C:\program files\utorrent\utorrent.exe] => (Block) C:\program files\utorrent\utorrent.exe => No File
FirewallRules: [UDP Query User{50A68FEC-7A67-4587-979A-B7F949B6704E}C:\program files\utorrent\utorrent.exe] => (Block) C:\program files\utorrent\utorrent.exe => No File
FirewallRules: [{638AE0ED-D517-49C8-B2F0-86CB3D479B62}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\RM.exe => No File
FirewallRules: [{D55FF12C-F5B2-4A50-96B2-59A5CA5FD590}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\RM.exe => No File
FirewallRules: [{387CA577-08DD-438F-87D4-2882DA26F574}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\Studio.exe => No File
FirewallRules: [{577982C3-E5DB-45E2-B78F-60595682D919}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\Studio.exe => No File
FirewallRules: [{EFF3592B-A1B9-4A35-861F-4D31DB9D58ED}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\umi.exe => No File
FirewallRules: [{FDA58DCA-C880-4223-8059-EA393622E831}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\umi.exe => No File
FirewallRules: [{A0EC3AC8-E73A-4EBF-BF37-D7BB4EF05A88}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe => No File
FirewallRules: [{710E4570-05C1-49F1-99B4-FDEFAD68BECF}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe => No File
FirewallRules: [{2A99893E-EA4D-41C3-8F0D-E196AFAAE29F}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe => No File
FirewallRules: [{43069732-67DF-4F28-98E7-F302F149F691}] => (Allow) C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe => No File
FirewallRules: [TCP Query User{C1097DE4-D3C8-403A-A3AE-17691838736F}C:\program files\winamp\winamp.exe] => (Allow) C:\program files\winamp\winamp.exe => No File
FirewallRules: [UDP Query User{C31A10C3-39DB-4027-97AA-521112D71EC6}C:\program files\winamp\winamp.exe] => (Allow) C:\program files\winamp\winamp.exe => No File
FirewallRules: [{80AEE775-2347-4D2B-9CB4-480E8B2A79C7}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [{EE5515BA-A691-472A-9113-55740ABBAE12}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [{4A8DAF82-17B6-4297-BD8F-A936D3DE0B90}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [{2FE0CF51-0EF6-4C68-93A7-35A99697E177}] => (Allow) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe => No File
FirewallRules: [TCP Query User{106A8CC6-5677-40B3-B5F8-4D1D173C101D}C:\program files\icq7.1\icq.exe] => (Allow) C:\program files\icq7.1\icq.exe => No File
FirewallRules: [UDP Query User{7990D836-1205-443E-87C5-C3B206129DE3}C:\program files\icq7.1\icq.exe] => (Allow) C:\program files\icq7.1\icq.exe => No File
FirewallRules: [{80B2E08D-0FCF-402B-A847-06C933684011}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{6BD62D1F-CCC9-449F-B821-28E72F40AA6C}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{9E8EF399-800F-4D5E-8181-45F5F1200F4F}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [{033B9787-E940-4177-8AE1-54F400547888}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe => No File
FirewallRules: [TCP Query User{511C8B60-F5C0-42DF-8EC3-7EFC27AA730D}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [UDP Query User{A62C9B36-012E-45F9-91F1-CACF01B3F21B}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [TCP Query User{91B14991-2D26-4E09-A94D-C9FF11CED47F}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File
FirewallRules: [UDP Query User{F2258490-D499-41AF-95B2-CB024A5A4721}C:\program files\icq6\icq.exe] => (Block) C:\program files\icq6\icq.exe => No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 18:36
od HelcaDodo
Bohužel, vyjelo okno, po kterém se Noťas restartoval a když to chci spustit znovu, tak už mě to nepustí...

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 19:00
od Rudy
Divné. V tom případě bude poškozen systém a podle toho, že nešel spustit ani ADW, bude zřejmě staršího data. Lze spustit alespoň nouz. režim?

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 19:25
od HelcaDodo
V původním příspěvku z léta, mi bylo napsáno, že tak brutální nákazu už jsem dlouho neřešil... Nouzový stav mi to nabízí a myslím, že se dokázal spustit...

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 19:26
od HelcaDodo
Poslala jsem pak za dlouho scan, který jsem přidávala zde jako první. Takže jsme to nedořešili...

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 19:28
od HelcaDodo

Re: Pomalý a zaneřáděný Notebook

Napsal: 16 říj 2020 19:53
od Rudy
OK. Pokud spustíte nouz. režim, zkuste obnovu systému k datu, kdy korektně fungoval. Obávam se poškození systému, proto nejde spustit do plného chodu.