Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Příspěvky: 144
Registrován: 04 zář 2006 14:43

Preventivní kontrola

#1 Příspěvek od jasanek »

Prosím o preventivní kontrolu a děkuji.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10.10.2018
Ran by Aneta (administrator) on ANETA (19-10-2018 10:01:42)
Running from C:\Users\Aneta\Desktop
Loaded Profiles: Aneta (Available Profiles: Aneta & Administrator)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Portal\CCDMonitorService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(TODO: <Company name>) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Pokki) C:\Users\Aneta\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe
(Pokki) C:\Users\Aneta\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2890056 2013-09-06] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-07-25] (McAfee, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] (Qualcomm®Atheros®)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer]
Tcpip\..\Interfaces\{647ECE58-78D4-4B2A-AD7E-573D4EA579C4}: [DhcpNameServer]

Internet Explorer:
HKU\S-1-5-21-593838731-3450188784-3437352602-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com/?pc=ACJB
HKU\S-1-5-21-593838731-3450188784-3437352602-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\S-1-5-21-593838731-3450188784-3437352602-1001 -> DefaultScope {3B4CC749-8AEC-4E04-BE57-B674322B566E} URL =
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2013-07-22] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2013-07-22] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2013-07-22] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2013-07-22] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2013-07-25] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2013-07-25] (McAfee, Inc.)

FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor [2018-10-19] [Legacy] [not signed]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2018-10-13] [Legacy] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2013-07-25] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2013-07-25] ()
FF Plugin-x32: @mcafee.com/SAFFPlugin -> C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll [2013-07-22] (McAfee, Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-07-13] ()

CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2013-10-15]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows (R) Win 7 DDK provider) [File not signed]
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Portal\CCDMonitorService.exe [2650696 2013-07-27] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [663592 2013-07-06] (Acer Incorporated)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [101192 2013-09-06] (ELAN Microelectronics Corp.)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [235008 2013-07-16] (TODO: <Company name>) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [457768 2013-08-03] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [175464 2013-07-25] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-25] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-07-06] (McAfee, Inc.)
R2 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1017016 2013-08-05] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-08-07] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-08-07] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [326856 2013-07-10] (McAfee, Inc.)
S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4278112 2013-08-02] (Symantec Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457768 2013-08-03] (Acer Incorporate)
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [448040 2013-08-03] (Acer Incorporate)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\system32\DRIVERS\athwbx.sys [3859968 2013-08-16] (Qualcomm Atheros Communications, Inc.)
S3 BTATH_LWFLT; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros)
S3 ccSet_NARA; C:\WINDOWS\system32\drivers\NARAx64\0405000.009\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation)
R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [70112 2013-08-07] (McAfee, Inc.)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [197264 2012-05-28] (McAfee, Inc.)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [179664 2013-08-07] (McAfee, Inc.)
R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [310224 2013-08-07] (McAfee, Inc.)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [69264 2013-08-07] (McAfee, Inc.)
R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [519064 2013-08-07] (McAfee, Inc.)
R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [776168 2013-08-07] (McAfee, Inc.)
R3 mfencbdc; C:\WINDOWS\system32\DRIVERS\mfencbdc.sys [377040 2013-07-09] (McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [95984 2013-07-09] (McAfee, Inc.)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [343568 2013-08-07] (McAfee, Inc.)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-10-19 09:48 - 2018-10-19 09:50 - 000031286 _____ C:\Users\Aneta\Desktop\Addition.txt
2018-10-19 09:47 - 2018-10-19 10:02 - 000013849 _____ C:\Users\Aneta\Desktop\FRST.txt
2018-10-19 09:46 - 2018-10-19 10:01 - 000000000 ____D C:\FRST
2018-10-19 09:46 - 2018-10-19 09:46 - 002414592 _____ (Farbar) C:\Users\Aneta\Desktop\FRST64.exe
2018-10-19 09:41 - 2018-10-19 09:43 - 000002400 _____ C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2018-10-19 09:38 - 2018-10-19 09:38 - 000000000 ____D C:\Users\Aneta\AppData\Local\Acer Aspire R7 Tutorial
2018-10-19 09:36 - 2018-10-19 09:36 - 000002246 _____ C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
2018-10-19 09:33 - 2018-10-19 09:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2018-10-19 09:31 - 2018-10-19 09:31 - 000003292 _____ C:\WINDOWS\System32\Tasks\SweetLabs App Platform
2018-10-14 12:31 - 2018-10-14 12:31 - 000003690 _____ C:\WINDOWS\System32\Tasks\ALU_SelfUpgrade
2018-10-14 06:56 - 2018-10-14 13:10 - 000000000 ____D C:\Windows.old
2018-10-14 06:56 - 2018-10-14 06:56 - 000262144 _____ C:\WINDOWS\system32\config\userdiff
2018-10-14 06:32 - 2018-10-14 12:50 - 000000000 ___HD C:\$SysReset
2018-10-13 21:18 - 2018-10-19 09:57 - 000003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-593838731-3450188784-3437352602-1001
2018-10-13 21:10 - 2018-10-13 21:10 - 000000000 ____D C:\Users\Public\Pokki
2018-10-13 21:08 - 2018-10-13 21:08 - 000001276 _____ C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2018-10-13 21:08 - 2018-10-13 21:08 - 000000000 ____D C:\Users\Aneta\AppData\Roaming\Atheros
2018-10-13 21:06 - 2018-10-13 21:07 - 000000000 ____D C:\Users\Aneta\AppData\Local\clear.fi
2018-10-13 21:06 - 2018-10-13 21:06 - 000022468 _____ C:\Users\Aneta\Desktop\Odebrané aplikace.html
2018-10-13 21:06 - 2018-10-13 21:06 - 000000000 ____D C:\ProgramData\OEM_YAHOO
2018-10-13 21:04 - 2018-10-13 21:04 - 000001426 _____ C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2018-10-13 21:04 - 2018-10-13 21:04 - 000000000 ____D C:\Users\Aneta\AppData\Roaming\Adobe
2018-10-13 21:04 - 2018-10-13 21:04 - 000000000 ____D C:\Users\Aneta\AppData\Local\VirtualStore
2018-10-13 21:03 - 2018-10-13 21:03 - 000000020 ___SH C:\Users\Aneta\ntuser.ini
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Šablony
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Poslední
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Okolní síť
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Dokumenty
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\Data aplikací
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\ProgramData\Šablony
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\ProgramData\Plocha
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\ProgramData\Dokumenty
2018-10-13 21:03 - 2018-10-13 21:03 - 000000000 _SHDL C:\ProgramData\Data aplikací
2018-10-13 21:02 - 2018-10-13 21:02 - 000005804 _____ C:\Users\Administrator\AppData\Local\Application.xml
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Šablony
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Soubory cookie
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Poslední
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Okolní tiskárny
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Okolní síť
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Nabídka Start
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Dokumenty
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Documents\Obrázky
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Documents\Hudba
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Documents\Filmy
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\Data aplikací
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2018-10-13 21:01 - 2018-10-13 21:01 - 000000000 _SHDL C:\Users\Aneta\AppData\Local\Data aplikací
2018-10-13 21:00 - 2018-10-19 09:43 - 000000000 ____D C:\Users\Aneta\AppData\Local\SweetLabs App Platform
2018-10-13 21:00 - 2018-10-19 09:28 - 000000000 ____D C:\Users\Aneta
2018-10-13 21:00 - 2018-10-13 21:02 - 000024768 _____ C:\WINDOWS\diagwrn.xml
2018-10-13 21:00 - 2018-10-13 21:02 - 000024768 _____ C:\WINDOWS\diagerr.xml
2018-10-11 17:18 - 2018-10-11 18:31 - 813456154 _____ C:\Users\Aneta\Downloads\KMOTR-1-cz.-.avi
2018-10-07 12:12 - 2018-10-07 12:12 - 000023461 _____ C:\Users\Aneta\Downloads\vysledky-voleb.pdf
2018-09-27 17:59 - 2018-09-27 17:59 - 007026103 _____ C:\Users\Aneta\Downloads\Professional-English---Marketing.PDF
2018-09-24 18:34 - 2018-09-24 18:44 - 000000000 ____D C:\Users\Aneta\Documents\Soubory aplikace Outlook

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-21 15:36 - 2014-01-23 19:24 - 000000852 _____ C:\WINDOWS\system32\Drivers\RTKHDRC.dat
2021-10-04 09:34 - 2014-01-23 19:24 - 000000712 _____ C:\WINDOWS\system32\Drivers\RTMICEQ0.dat
2018-10-19 09:36 - 2014-01-23 19:48 - 000739924 _____ C:\WINDOWS\system32\perfh005.dat
2018-10-19 09:36 - 2014-01-23 19:48 - 000151610 _____ C:\WINDOWS\system32\perfc005.dat
2018-10-19 09:36 - 2013-10-15 16:30 - 001745984 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-10-19 09:36 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf
2018-10-19 09:33 - 2013-10-15 16:45 - 000001864 _____ C:\Users\Public\Desktop\McAfee LiveSafe – Internet Security.lnk
2018-10-19 09:28 - 2014-09-07 03:58 - 000000000 __RDO C:\Users\Aneta\SkyDrive
2018-10-19 09:27 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-10-14 13:11 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2018-10-14 12:18 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-10-14 12:17 - 2013-10-15 16:43 - 000000000 ____D C:\ProgramData\McAfee
2018-10-14 12:17 - 2013-10-15 16:43 - 000000000 ____D C:\Program Files\Common Files\mcafee
2018-10-14 12:11 - 2013-08-22 16:44 - 000336416 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-10-14 06:56 - 2013-08-22 17:36 - 000262144 _____ C:\WINDOWS\system32\config\BCD-Template
2018-10-13 21:26 - 2013-08-22 15:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI
2018-10-13 21:25 - 2014-09-07 03:52 - 000000000 ____D C:\Users\Aneta\AppData\Local\Packages
2018-10-13 21:09 - 2014-01-23 19:45 - 000003546 _____ C:\WINDOWS\System32\Tasks\Norton Online Backup ARA
2018-10-13 21:09 - 2014-01-23 19:45 - 000000000 ____D C:\ProgramData\Norton
2018-10-13 21:08 - 2013-08-22 15:25 - 000262144 ___SH C:\WINDOWS\system32\config\ELAM
2018-10-13 21:06 - 2013-10-15 17:14 - 000000000 ___HD C:\OEM
2018-10-13 21:05 - 2013-10-15 17:21 - 000000000 ___DC C:\WINDOWS\Panther
2018-10-13 21:04 - 2013-08-22 17:36 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-10-13 21:04 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\WinStore
2018-10-13 21:04 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\FileManager
2018-10-13 21:04 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\Camera
2018-10-13 21:02 - 2013-08-22 17:36 - 000000000 __RHD C:\Users\Public\Libraries
2018-10-03 20:00 - 2017-02-20 19:16 - 000000000 ____D C:\Users\Aneta\Desktop\David
2018-09-24 19:40 - 2017-01-21 14:05 - 000000000 ____D C:\Users\Aneta\AppData\LocalLow\Mozilla

Some files in TEMP:
2018-10-14 12:17 - 2018-10-14 12:17 - 041561472 _____ (SweetLabs,Inc.) C:\Users\Aneta\AppData\Local\Temp\octC568.tmp.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2013-10-15 16:21

==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10.10.2018
Ran by Aneta (19-10-2018 10:03:04)
Running from C:\Users\Aneta\Desktop
Windows 8.1 (X64) (2018-10-13 19:03:42)
Boot Mode: Normal

==================== Accounts: =============================

Administrator (S-1-5-21-593838731-3450188784-3437352602-500 - Administrator - Disabled) => C:\Users\Administrator
Aneta (S-1-5-21-593838731-3450188784-3437352602-1001 - Administrator - Enabled) => C:\Users\Aneta
Guest (S-1-5-21-593838731-3450188784-3437352602-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: McAfee Anti-Virus and Antispyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus and Antispyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.3006 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8101 - Acer Incorporated)
Acer Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.3104.3 - Acer Incorporated)
Acer Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.3104.6 - Acer Incorporated)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.3104 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8100 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.00.3000 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8100 - Acer Incorporated)
Acer Remote Files (HKLM\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 1.00.3007 - Acer Incorporated)
Aloha TriPeaks (HKLM-x32\...\WTA-0f03559c-cc80-4a33-9dfc-c40a4c6f9d97) (Version: - WildTangent) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{67AA948F-8D83-4566-B84A-7CAABCF64E3F}) (Version: - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{D1D7ED66-5C08-40A0-AEC0-B6DF977697BB}) (Version: - Broadcom Corporation)
Cradle Of Egypt Collector's Edition (HKLM-x32\...\WTA-214585e8-ecf8-46ae-94f8-5fb40ad5667b) (Version: - WildTangent) Hidden
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3126.57 - CyberLink Corp.)
ETDWare PS/2-X64 (HKLM\...\Elantech) (Version: - ELAN Microelectronic Corp.)
Governor of Poker 2 Premium Edition (HKLM-x32\...\WTA-de4899a6-1380-42b5-bf57-f6ae30229cfb) (Version: - WildTangent) Hidden
Host App Service (HKU\S-1-5-21-593838731-3450188784-3437352602-1001\...\SweetLabs_AP) (Version: - Pokki) <==== ATTENTION
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.8100 - Acer Incorporated)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: - Intel Corporation)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.8100 - Acer Incorporated)
Luxor Evolved (HKLM-x32\...\WTA-5996a106-5f2b-4599-b64a-82491a51a819) (Version: - WildTangent) Hidden
Magic Academy (HKLM-x32\...\WTA-cfb0fe8e-ae12-48cf-9cd5-10dce3562934) (Version: - WildTangent) Hidden
McAfee LiveSafe – Internet Security (HKLM-x32\...\MSC) (Version: 12.8.397 - McAfee, Inc.)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{551AC8F2-FEA2-4B45-ACF7-C98681233CC9}) (Version: 12.5.01200 - Nero AG)
Norton Online Backup (HKLM-x32\...\{E625FCA0-E43E-4D3B-92FF-4851308A0366}) (Version: - Symantec Corporation)
Norton Online Backup (HKLM-x32\...\NARA) (Version: - Symantec Corporation) Hidden
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2009 - Acer)
Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2009 - Acer)
Peggle Nights (HKLM-x32\...\WTA-7c68a40c-6ea3-4c42-acab-24a101d494fc) (Version: - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (HKLM-x32\...\WTA-86b9c6dc-98d6-487c-a102-024f3a3c9551) (Version: - WildTangent) Hidden
Pokki Start Menu (HKU\S-1-5-21-593838731-3450188784-3437352602-1001\...\SweetLabs_Start_Menu) (Version: - Pokki)
Prerequisite installer (HKLM-x32\...\{3AAB08A3-F129-4BD5-B409-AE674F93759D}) (Version: 12.0.0003 - Nero AG) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.07 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
Spotify (HKLM-x32\...\Spotify) (Version: - Spotify AB)
The Chronicles of Emerland Solitaire (HKLM-x32\...\WTA-85609db7-4eb0-4eb3-8911-5325f3f734de) (Version: - WildTangent) Hidden
Trinklit Supreme (HKLM-x32\...\WTA-f3552c84-e3e0-4c47-9b2a-25466f94dbf7) (Version: - WildTangent) Hidden
Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: - WildTangent)
WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer) (Version: - WildTangent) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvAppExt.dll [2013-09-07] (Qualcomm®Atheros®)
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll [2013-07-25] (McAfee, Inc.)
ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ShellContextExt.dll [2013-09-07] (Qualcomm®Atheros®)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2013-09-09] (Intel Corporation)
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll [2013-07-25] (McAfee, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {273E690B-ED52-4013-8A5E-C3D6CE0A26D1} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2013-08-03] (Acer Incorporate)
Task: {5F08A9E1-1096-43ED-9EB7-F91BE6B1364B} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe [2013-07-27] (Acer Incorporated)
Task: {73F1BE7C-E680-4B47-85E9-456F6B9325E4} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2013-08-03] (Acer Incorporate)
Task: {81C5280C-EDD3-4A73-92F2-490CFCA30CD9} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {9351EAD0-8952-40BF-B0A3-14C4BC86425E} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-07-06] (Acer Incorporated)
Task: {A41774F9-4EF4-4796-9C0D-067A56069F1D} - System32\Tasks\SweetLabs App Platform => C:\Users\Aneta\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe [2018-03-16] (Pokki)
Task: {AD08E39C-0C7B-4967-BB35-46A3CFA32521} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-07-08] ()
Task: {AFD4824D-E2BA-4CA8-855F-E5907E94B216} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2013-07-10] (Acer Incorporated)
Task: {C8113E56-3BFC-49B5-B7E3-B9CA39B7BEBB} - System32\Tasks\ALU_SelfUpgrade => C:\ProgramData\Acer\updater2\Download\52971980\D\UpgradeDownload.exe [2018-10-14] ()
Task: {CA1F5D7D-04D4-44BC-8A91-C1343A977563} - System32\Tasks\Norton Online Backup ARA => C:\Program Files (x86)\Norton Online Backup ARA\Engine\\\Ara.exe [2013-08-07] (Symantec Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2013-09-07 11:48 - 2013-09-07 11:48 - 000011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-09-07 11:45 - 2013-09-07 11:45 - 000086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2013-09-07 11:52 - 2013-09-07 11:52 - 000012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2013-10-15 17:14 - 2013-09-03 21:45 - 000094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-01-23 19:18 - 2013-09-04 01:53 - 001242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2018-03-16 17:43 - 2018-03-16 17:43 - 044752080 _____ () C:\Users\Aneta\AppData\Local\SweetLabs App Platform\Engine\libPokki.dll
2014-01-23 19:48 - 2013-07-31 04:11 - 000088648 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-593838731-3450188784-3437352602-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Aneta\Desktop\mobil Anet\20160620_182903.jpg
DNS Servers:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2609FBA7-671A-4BC6-9F91-730E2E3050C5}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{43150078-9F69-4DC0-834E-804B7AB2993F}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{D21C286E-FD1B-46DC-B241-E11742B2315E}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{69BBC7E5-6CAE-4975-8E1F-13AE006B377B}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{B0A9DD72-F745-427D-B1A1-7F7A4642496C}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{C2A885AF-9FA7-4C1B-8107-8232BF9A5774}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{F5054058-ED11-453D-83D0-FF1352C99378}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{39EDE66B-2A09-4792-B4DE-ADFAAF20E798}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{6C4A55EF-0235-48C4-AF53-68BB6888174F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{BB059E0E-15D8-4434-9DE9-E96F462445C3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{AEFA80C6-D0A6-4ABD-9F7F-1F615A016BED}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{2E4513AA-B2F2-4610-B29F-CD35853B2203}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{97036F79-28E7-4287-8817-992BE694347D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{E8FB70C5-1904-4E4F-9A53-6B48E693C646}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{EA2E9561-F6BC-4490-8C20-3CF23E76156D}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{6F4E1AAE-D6EF-42A0-BC2B-508AF87584E1}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{E15E5842-106B-4B3E-80ED-164140EDAE02}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{3FA78E27-0D3F-4E2D-9B3E-A64BB674004A}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{A4A4649D-F3F6-48FD-BCD7-C0A53891C8D4}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{A6EC24D5-4D90-4A62-A8C7-C6C4458CF53D}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{A4C0C8E8-1D90-4546-8491-E930C934EDC4}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{135EDD8F-32D1-4DA0-93D3-0EC6FE9E1875}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{113C64EC-5DAF-4CFF-B537-DC3BFEA3C178}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{B1BF5BAF-003D-4E18-9FE9-243FF300F791}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{8AC182C3-3FA8-473F-8EF3-3C35891EB4D6}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{6BE59F6B-A7F6-4413-8115-A6342068B461}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{1A2A251A-6902-488E-9B0E-47801C9E2426}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{2AF3B3F8-2E08-4DF7-AA7B-EAB79AD5B81D}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{C3F1137C-15B8-417F-A99B-FFC93960010C}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{7BDAEE6C-5C2E-433A-A4FF-131F29A25906}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{C3BB666A-2211-45D9-AA94-D92442FDB08C}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{8C0DA48A-8108-425E-A166-E3F42BB6100A}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{2078E06D-B9CD-4E31-9E6A-370B408D7245}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\Sdd.exe
FirewallRules: [{082AA9FD-0A6D-4F54-A659-C7873A2AFEE7}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\Sdd.exe
FirewallRules: [{C4613A40-A230-4E4F-85F3-0AF1F6D557B2}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\virtualdrive.exe
FirewallRules: [{0546304B-D725-4A48-BF10-794E441BE80C}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\virtualdrive.exe
FirewallRules: [{805070F3-A712-4257-BDEF-8ACAD1B09C29}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{A74240D4-CF77-4E18-847A-06E4CFCF132E}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe

==================== Restore Points =========================

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
Error: (10/14/2018 01:17:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16384, časové razítko: 0x52157231
Název chybujícího modulu: jscript9.dll, verze: 11.0.9600.16384, časové razítko: 0x52158459
Kód výjimky: 0xc0000005
Posun chyby: 0x0035628b
ID chybujícího procesu: 0x14cc
Čas spuštění chybující aplikace: 0x01d463a734c1ff44
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\jscript9.dll
ID zprávy: cbb7647b-cfa2-11e8-8258-201a06d1ff0c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/14/2018 01:17:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16384, časové razítko: 0x52157231
Název chybujícího modulu: jscript9.dll, verze: 11.0.9600.16384, časové razítko: 0x52158459
Kód výjimky: 0xc0000005
Posun chyby: 0x0035628b
ID chybujícího procesu: 0x14ac
Čas spuštění chybující aplikace: 0x01d463af83586cf4
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\jscript9.dll
ID zprávy: c25ecd5f-cfa2-11e8-8258-201a06d1ff0c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/14/2018 01:17:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16384, časové razítko: 0x52157231
Název chybujícího modulu: jscript9.dll, verze: 11.0.9600.16384, časové razítko: 0x52158459
Kód výjimky: 0xc0000005
Posun chyby: 0x0035628b
ID chybujícího procesu: 0x15b0
Čas spuštění chybující aplikace: 0x01d463af73b29df1
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\jscript9.dll
ID zprávy: be08b4b3-cfa2-11e8-8258-201a06d1ff0c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/14/2018 01:17:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16384, časové razítko: 0x52157231
Název chybujícího modulu: jscript9.dll, verze: 11.0.9600.16384, časové razítko: 0x52158459
Kód výjimky: 0xc0000005
Posun chyby: 0x0035628b
ID chybujícího procesu: 0x15c8
Čas spuštění chybující aplikace: 0x01d463af73a91469
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\jscript9.dll
ID zprávy: b2d10f90-cfa2-11e8-8258-201a06d1ff0c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/14/2018 01:16:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16384, časové razítko: 0x52157231
Název chybujícího modulu: jscript9.dll, verze: 11.0.9600.16384, časové razítko: 0x52158459
Kód výjimky: 0xc0000005
Posun chyby: 0x0035628b
ID chybujícího procesu: 0x40c
Čas spuštění chybující aplikace: 0x01d463af642ca153
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\jscript9.dll
ID zprávy: a8765428-cfa2-11e8-8258-201a06d1ff0c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/14/2018 12:22:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Notification.exe, verze: 6.0.3009.0, časové razítko: 0x51db7eda
Název chybujícího modulu: KERNELBASE.dll, verze: 6.3.9600.16384, časové razítko: 0x5215fa76
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000008384
ID chybujícího procesu: 0xef8
Čas spuštění chybující aplikace: 0x01d463a7b519c42e
Cesta k chybující aplikaci: C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\KERNELBASE.dll
ID zprávy: 00033f6c-cf9b-11e8-8258-201a06d1ff0c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/14/2018 12:22:05 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Notification.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.InvalidOperationException
na System.Diagnostics.Process.GetProcessHandle(Int32, Boolean)
na System.Diagnostics.Process.OpenProcessHandle(Int32)
na System.Diagnostics.Process.get_Handle()
na Notification.Form1.CheckAppContainer(System.Diagnostics.Process)
na Notification.Form1.CheckResolution()
na Notification.Form1..ctor()
na Notification.Program.Main()

Error: (10/13/2018 09:07:34 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANETA)
Description: Aplikaci Microsoft.WindowsAlarms_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

System errors:
Error: (10/19/2018 09:27:48 AM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

Error: (10/19/2018 09:27:48 AM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

Error: (10/19/2018 09:27:53 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (1:11:29 PM, ‎10/‎14/‎2018) bylo neočekávané.

Error: (10/14/2018 12:11:21 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

Error: (10/14/2018 12:11:21 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

Error: (10/13/2018 09:08:10 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {209500FC-6B45-4693-8871-6296C4843751} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/13/2018 09:05:50 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service přestala během spouštění reagovat.

Error: (10/13/2018 08:57:58 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

==================== Memory info ===========================

Processor: Intel(R) Pentium(R) CPU 2117U @ 1.80GHz
Percentage of memory in use: 66%
Total physical RAM: 3985.27 MB
Available physical RAM: 1339.75 MB
Total Virtual: 5393.27 MB
Available Virtual: 2179.7 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:448.19 GB) (Free:353.01 GB) NTFS

\\?\Volume{bca69ea2-438f-436d-a99a-d63296606d87}\ (Recovery) (Fixed) (Total:0.39 GB) (Free:0.12 GB) NTFS
\\?\Volume{796f9533-201f-4ebf-a7e3-5c5880f20dbd}\ (Push Button Reset) (Fixed) (Total:16.76 GB) (Free:1.99 GB) NTFS

==================== MBR & Partition Table ==================

Disk: 0 (Size: 465.8 GB) (Disk ID: A8CF0A07)

Partition: GPT.

==================== End of Addition.txt ============================

Příspěvky: 15238
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Preventivní kontrola

#2 Příspěvek od JaRon »

vycisti PC s ADWCleanerom
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum

Příspěvky: 144
Registrován: 04 zář 2006 14:43

Re: Preventivní kontrola

#3 Příspěvek od jasanek »

# -------------------------------
# Malwarebytes AdwCleaner
# -------------------------------
# Build: 09-25-2018
# Database: 2018-10-12.1 (Cloud)
# Support: https://www.malwarebytes.com/support
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 10-19-2018
# Duration: 00:00:16
# OS: Windows 8.1
# Cleaned: 9
# Failed: 1

***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\Public\Pokki
Not Deleted C:\Users\Aneta\AppData\Local\SweetLabs App Platform

***** [ Files ] *****

Deleted C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
Deleted C:\Users\Aneta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted C:\Windows\System32\Tasks\SweetLabs App Platform

***** [ Registry ] *****

Deleted HKCU\Software\SweetLabs App Platform
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A41774F9-4EF4-4796-9C0D-067A56069F1D}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SweetLabs App Platform

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


[+] Delete Tracing Keys
[+] Reset Winsock


AdwCleaner[S00].txt - [2151 octets] - [19/10/2018 11:07:04]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Příspěvky: 15238
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Preventivní kontrola

#4 Příspěvek od JaRon »

fajn a mame cisto :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum

Příspěvky: 144
Registrován: 04 zář 2006 14:43

Re: Preventivní kontrola

#5 Příspěvek od jasanek »


Příspěvky: 15238
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Preventivní kontrola

#6 Příspěvek od JaRon »

za malo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
