zavirovaný počítač

Antivirové programy, firewally, viry, spyware, aktuální hrozby

Moderátor: Moderátoři Živě.cz

Odeslat příspěvekod Pajusd 6. 2. 2018 16:39

Zdravím vás a prosím o pomoc
notebook je pomalý, nejde většina int.prohlížečů, používám prohlížeč od seznamu, jediný, který mi funguje. Posílám výpis z FRST

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27.01.2018
Ran by Pajuska (administrator) on PAJUSKA-PC (06-02-2018 16:14:34)
Running from C:\Users\Pajuska\Desktop
Loaded Profiles: Pajuska (Available Profiles: Pajuska)
Platform: Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 9 (Default browser: "C:\Users\Pajuska\AppData\Roaming\Seznam Browser\Seznam.cz.exe"-surl="%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
() C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files\ASUS\ASUS Live Update\ALU.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
() C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files\Cyberlink\Shared files\RichVideo.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(CyberLink Corp.) C:\Program Files\ASUSTek\ASUSDVD 8\PDVD8Serv.exe
(VIA) C:\Program Files\VIA\VIAudioi\VDeck\VDECK.EXE
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe
(ASUS) C:\Windows\AsScrPro.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\wpcumi.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Seznam.cz) C:\Users\Pajuska\AppData\Roaming\Seznam Browser\Seznam.cz.exe
(Seznam.cz) C:\Users\Pajuska\AppData\Roaming\Seznam Browser\Seznam.cz.exe
(Seznam.cz) C:\Users\Pajuska\AppData\Roaming\Seznam Browser\Seznam.cz.exe
(Seznam.cz) C:\Users\Pajuska\AppData\Roaming\Seznam Browser\Seznam.cz.exe
(Seznam.cz) C:\Users\Pajuska\AppData\Roaming\Seznam Browser\Seznam.cz.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RemoteControl8] => C:\Program Files\ASUSTek\ASUSDVD 8\PDVD8Serv.exe [91432 2009-04-16] (CyberLink Corp.)
HKLM\...\Run: [PDVD8LanguageShortcut] => C:\Program Files\ASUSTek\ASUSDVD 8\Language\Language.exe [50472 2009-04-16] (CyberLink Corp.)
HKLM\...\Run: [HDAudDeck] => C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [17149952 2009-03-23] (VIA)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [237568 2008-09-30] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2008-08-18] (ASUS)
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [8392704 2009-03-04] (ASUS)
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMedia.exe [159744 2008-12-29] (ASUS)
HKLM\...\Run: [Wireless Console 3] => C:\Program Files\ASUS\Wireless Console 3\wcourier.exe [1593344 2009-02-07] ()
HKLM\...\Run: [ASUS Screen Saver Protector] => C:\Windows\AsScrPro.exe [3054136 2009-07-15] (ASUS)
HKLM\...\Run: [ASUS Camera ScreenSaver] => C:\Windows\AsScrProlog.exe [47672 2009-07-15] ()
HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [424352 2009-03-06] (ELAN Microelectronic Corp.)
HKLM\...\Run: [OM2_Monitor] => C:\Program Files\OLYMPUS\OLYMPUS Master 2\FirstStart.exe [54576 2007-09-04] (OLYMPUS IMAGING CORP.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated)
HKLM\...\Run: [WPCUMI] => C:\Windows\system32\WpcUmi.exe [176128 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [246120 2018-01-04] (AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2008-06-09] (Hewlett-Packard Company)
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\Run: [SRS Premium Sound] => C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe [3261688 2009-03-20] (SRS Labs, Inc.)
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\Run: [OM2_Monitor] => C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe [95536 2007-09-04] (OLYMPUS IMAGING CORP.)
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\MountPoints2: {e0c34ce0-e73e-11df-a3d3-0026187512e8} - F:\setup.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2009-07-15]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{567C654B-7FE9-4970-8323-56E8191D1941}\_71A97E24F422AA49EDBF39.exe ()
Startup: C:\Users\Pajuska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk [2010-11-08]
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
GroupPolicy\User: Restriction ? <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 02 C:\Windows\system32\napinsp.dll [50176 2008-01-21] (Společnost Microsoft)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{26DAAFCA-41F0-41A7-8CD6-AFAB7EE430D0}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{59F1995E-7079-4D73-96E5-A30B3133BF86}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain ... &bmod=ASUS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain ... &bmod=ASUS
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain ... &bmod=ASUS
SearchScopes: HKLM -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUS
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUS
SearchScopes: HKU\S-1-5-21-1892572175-291764868-1612132196-1000 -> {36C9A38F-175C-49DF-A01B-EACB7EF2C00C} URL = hxxp://search.centrum.cz/index.php?utm_ ... er,IE-9&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1892572175-291764868-1612132196-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ADFA_csCZ404
SearchScopes: HKU\S-1-5-21-1892572175-291764868-1612132196-1000 -> {99B4188F-C655-4A8B-A392-1D96EFD3357A} URL = hxxp://www.google.cz/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-06-01] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-11-12] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-06-01] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-1892572175-291764868-1612132196-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

FireFox:
========
FF DefaultProfile: 3m4wq99p.default
FF ProfilePath: C:\Users\Pajuska\AppData\Roaming\Mozilla\SeaMonkey\Profiles\3m4wq99p.default [2018-02-06]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2010-11-03] [Legacy] [not signed]
FF HKLM\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\15.5.0.2 => not found
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2013-12-23] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-06-01] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-06-01] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-13] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-13] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1892572175-291764868-1612132196-1000: @kb-ext.cz/PKIComponent -> C:\Users\Pajuska\AppData\Roaming\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll [2016-08-22] (Komerční banka, a.s.)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.cz/
CHR Profile: C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default [2018-01-30]
CHR Extension: (Prezentace) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-16]
CHR Extension: (Dokumenty) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-16]
CHR Extension: (Disk Google) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-16]
CHR Extension: (YouTube) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-16]
CHR Extension: (Avast SafePrice) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-01-24]
CHR Extension: (Tabulky) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-16]
CHR Extension: (Dokumenty Google offline) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-07-16]
CHR Extension: (Avast Online Security) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-11-16]
CHR Extension: (AVG SafePrice) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2018-01-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-11-16]
CHR Extension: (Gmail) - C:\Users\Pajuska\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-16]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1892572175-291764868-1612132196-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2010-11-08] (Adobe Systems) [File not signed]
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2018-01-09] (Adobe Systems Incorporated) [File not signed]
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [100920 2008-08-14] ()
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5906816 2018-01-04] (AVAST Software)
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [301168 2018-01-04] (AVAST Software)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2008-06-09] (Hewlett-Packard Company) [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4563920 2017-11-01] (Malwarebytes)
R2 RichVideo; C:\Program Files\Cyberlink\Shared files\RichVideo.exe [271760 2009-04-15] ()
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [158224 2018-01-04] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [255584 2018-01-04] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [157376 2018-01-04] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [276696 2018-01-04] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [50344 2018-01-04] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [118144 2018-01-04] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42824 2018-01-04] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [39784 2017-08-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [123880 2018-01-10] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr.sys [70208 2018-01-04] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [70832 2018-01-04] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [783104 2018-01-04] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [390256 2018-01-10] (AVAST Software)
R3 aswStmXP; C:\Windows\System32\drivers\aswStmXP.sys [205360 2018-01-04] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [294680 2018-01-04] (AVAST Software)
S3 CRFILTER; C:\Windows\System32\DRIVERS\CRFILTER.sys [6656 2008-04-07] (Generic)
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [140800 2009-03-13] (ELAN Microelectronic Corp.)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2008-11-03] ( )
R3 L1E; C:\Windows\System32\DRIVERS\L1E60x86.sys [48128 2008-12-16] (Atheros Communications, Inc.)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [221112 2018-02-06] (Malwarebytes)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2008-12-24] (ATK0100)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
S3 PcaSp60; C:\Windows\System32\DRIVERS\PcaSp60.sys [28672 2010-09-07] (Printing Communications Assoc., Inc. (PCAUSA))
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1752704 2008-08-11] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-11-02] () [File not signed]
R3 SRS_PremiumSound_Service; C:\Windows\System32\drivers\srs_PremiumSound_i386.sys [230952 2009-01-14] ()
R3 VIAHdAudAddService; C:\Windows\System32\drivers\viahduaa.sys [984064 2009-03-20] (VIA Technologies, Inc.)
U3 a5w475yx; C:\Windows\system32\Drivers\a5w475yx.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
S3 ASUSProcObsrv; \??\E:\I386\AsProcOb.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S0 is3srv; system32\drivers\is3srv.sys [X]
S3 nmwcd; system32\drivers\ccdcmb.sys [X]
S3 nmwcdc; system32\drivers\ccdcmbo.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 StarOpen; no ImagePath
S0 szkg5; system32\drivers\szkg.sys [X]
S0 szkgfs; system32\drivers\szkgfs.sys [X]
S3 upperdev; system32\DRIVERS\usbser_lowerflt.sys [X]
S3 UsbserFilt; system32\DRIVERS\usbser_lowerfltj.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-02-06 16:14 - 2018-02-06 16:16 - 000020926 _____ C:\Users\Pajuska\Desktop\FRST.txt
2018-02-06 16:14 - 2018-02-06 16:14 - 000000000 ____D C:\FRST
2018-02-06 16:13 - 2018-02-06 16:13 - 001754112 _____ (Farbar) C:\Users\Pajuska\Desktop\FRST.exe
2018-02-06 14:50 - 2018-02-06 14:50 - 000000000 ___RD C:\Users\Pajuska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUSTek ASUSDVD 8
2018-02-06 13:33 - 2018-02-06 13:33 - 000000850 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Lark Anti-Spyware.lnk
2018-02-06 13:33 - 2018-02-06 13:33 - 000000844 _____ C:\Users\Public\Desktop\Lark Anti-Spyware.lnk
2018-02-06 13:33 - 2018-02-06 13:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lark Anti-Spyware
2018-02-06 13:33 - 2018-02-06 13:33 - 000000000 ____D C:\Program Files\Lark Anti-Spyware
2018-02-06 13:23 - 2018-02-06 13:23 - 000000000 ____D C:\ProgramData\SWCUTemp
2018-02-03 10:22 - 2018-02-06 14:50 - 000221112 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2018-02-01 11:28 - 2018-02-01 12:25 - 000020432 _____ C:\Users\Pajuska\Desktop\Přehled investičních nákladů_HÚ.XLSX
2018-01-31 12:45 - 2018-01-31 12:45 - 000000000 ____D C:\Users\Pajuska\AppData\Roaming\Seznam Browser
2018-01-09 22:50 - 2018-01-09 22:50 - 004448768 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-02-06 16:12 - 2017-07-19 10:35 - 000000000 ____D C:\Users\Pajuska\AppData\Local\Crashpad
2018-02-06 16:12 - 2006-11-02 13:45 - 000003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2018-02-06 16:12 - 2006-11-02 13:45 - 000003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2018-02-06 14:49 - 2006-11-02 13:58 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-02-06 14:02 - 2017-10-25 12:53 - 000000000 ____D C:\Users\Pajuska\AppData\LocalLow\Mozilla
2018-02-05 22:45 - 2006-11-02 13:58 - 000032600 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2018-02-03 22:41 - 2016-09-20 13:28 - 000000000 ____D C:\Users\Pajuska\Desktop\Domeček
2018-01-30 09:42 - 2008-04-17 07:11 - 000645320 _____ C:\Windows\system32\perfh005.dat
2018-01-30 09:42 - 2008-04-17 07:11 - 000137958 _____ C:\Windows\system32\perfc005.dat
2018-01-30 09:42 - 2006-11-02 12:18 - 000000000 ____D C:\Windows\inf
2018-01-30 09:42 - 2006-11-02 11:33 - 001532794 _____ C:\Windows\system32\PerfStringBackup.INI
2018-01-13 14:54 - 2016-11-12 21:21 - 000000000 ____D C:\Users\Pajuska\Desktop\Stavba
2018-01-13 14:53 - 2015-12-28 20:00 - 000000000 ____D C:\Users\Pajuska\Desktop\HOLKY
2018-01-13 14:15 - 2017-08-25 12:38 - 000000000 ____D C:\Users\Pajuska\Desktop\Nová fota
2018-01-10 19:27 - 2017-07-16 13:32 - 000390256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-01-10 19:27 - 2017-07-16 13:32 - 000123880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-01-09 22:50 - 2016-10-22 10:15 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2018-01-09 22:50 - 2016-10-22 10:15 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2018-01-09 22:50 - 2009-07-15 02:46 - 000000000 ____D C:\Windows\system32\Macromed

==================== Files in the root of some directories =======

2011-05-03 22:46 - 2017-07-16 08:03 - 000087608 _____ () C:\Users\Pajuska\AppData\Roaming\inst.exe
2011-05-03 22:46 - 2017-07-16 08:03 - 000007887 _____ () C:\Users\Pajuska\AppData\Roaming\pcouffin.cat
2011-05-03 22:46 - 2017-07-16 08:03 - 000001144 _____ () C:\Users\Pajuska\AppData\Roaming\pcouffin.inf
2011-05-03 22:46 - 2017-07-16 08:03 - 000000055 _____ () C:\Users\Pajuska\AppData\Roaming\pcouffin.log
2011-05-03 22:46 - 2017-07-16 08:03 - 000047360 _____ (VSO Software) C:\Users\Pajuska\AppData\Roaming\pcouffin.sys
2011-05-03 22:36 - 2015-08-14 14:36 - 000001057 _____ () C:\Users\Pajuska\AppData\Roaming\vso_ts_preview.xml
2011-07-20 14:15 - 2017-10-07 18:48 - 000000680 _____ () C:\Users\Pajuska\AppData\Local\d3d9caps.dat
2010-11-03 14:43 - 2017-04-18 17:42 - 000117248 _____ () C:\Users\Pajuska\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-13 19:03 - 2015-03-13 19:03 - 000000773 _____ () C:\Users\Pajuska\AppData\Local\recently-used.xbel
2016-10-08 13:12 - 2016-10-08 13:12 - 000032038 _____ () C:\Users\Pajuska\AppData\Local\SquareClock.Production_Home_Siko_WebIcon.ico
2014-01-10 21:25 - 2014-01-10 23:06 - 000002435 _____ () C:\Users\Pajuska\AppData\Local\SRDownloader.err
2014-01-10 21:14 - 2014-01-10 23:08 - 000001320 _____ () C:\Users\Pajuska\AppData\Local\SRDownloader.nast
2011-09-13 17:40 - 2011-09-13 17:40 - 000000000 _____ () C:\Users\Pajuska\AppData\Local\{F1C42991-1B2A-4747-8AC4-E001EBB2F4FC}

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-02-06 14:55

==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27.01.2018
Ran by Pajuska (06-02-2018 16:16:38)
Running from C:\Users\Pajuska\Desktop
Microsoft® Windows Vista™ Home Basic Service Pack 2 (X86) (2009-07-15 00:23:51)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1892572175-291764868-1612132196-500 - Administrator - Disabled)
Guest (S-1-5-21-1892572175-291764868-1612132196-501 - Limited - Disabled)
Pajuska (S-1-5-21-1892572175-291764868-1612132196-1000 - Administrator - Enabled) => C:\Users\Pajuska

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}) (Version: 1.0 - Microsoft Corporation) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version: - Microsoft Corporation)
Actualizare Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0418-0000-0000000FF1CE}_PROHYBRIDR_{6195740F-0C89-4CDD-ACAD-67CCE1495348}) (Version: - Microsoft)
Actualizare Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0418-0000-0000000FF1CE}_PROHYBRIDR_{E78703E2-69D3-4204-B101-9D8B7B72585C}) (Version: - Microsoft)
Actualizare Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0418-0000-0000000FF1CE}_PROHYBRIDR_{1531AE8C-8271-4A8C-9ABA-86AE70B0DA82}) (Version: - Microsoft)
Adobe Flash Player 28 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 28.0.0.137 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Reader 9.5.5 - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
AIMP3 (HKLM\...\AIMP3) (Version: v3.60.1470, 16.01.2015 - AIMP DevTeam)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_PROHYBRIDR_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_PROHYBRIDR_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_PROHYBRIDR_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Aktualizácia Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-041B-0000-0000000FF1CE}_PROHYBRIDR_{9A8C39B0-D27F-4F81-BE74-2FECF164707E}) (Version: - Microsoft)
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-041B-0000-0000000FF1CE}_PROHYBRIDR_{CE23B3DC-18CC-46FC-A309-81D6670F8D3D}) (Version: - Microsoft)
Aktualizácia Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-041B-0000-0000000FF1CE}_PROHYBRIDR_{D6DBF512-87C0-4F6A-8FB9-AC3A389D9DE5}) (Version: - Microsoft)
AmIcoSingLun (HKLM\...\{BF91B300-EEBC-4223-96F3-0FCBF7241B50}) (Version: 1.1.104.1 - Alcor Micro Co., Ltd.) Hidden
AmIcoSingLun (HKLM\...\InstallShield_{BF91B300-EEBC-4223-96F3-0FCBF7241B50}) (Version: 1.1.104.1 - Alcor Micro Co., Ltd.)
Apple Software Update (HKLM\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
ASUS FancyStart (HKLM\...\{567C654B-7FE9-4970-8323-56E8191D1941}) (Version: 1.0.2 - ASUSTeK Computer Inc.)
ASUS Live Update (HKLM\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.7 - ASUS)
ASUS MultiFrame (HKLM\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0018 - )
ASUS Splendid Video Enhancement Technology (HKLM\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0025 - ASUS)
ASUS Virtual Camera (HKLM\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.13 - ASUS)
Asus_Camera_ScreenSaver (HKLM\...\Asus_Camera_ScreenSaver) (Version: 2.0.0008 - ASUS)
ASUSTek ASUSDVD 8 (HKLM\...\{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}) (Version: 8.0.2815 - CyberLink Corp.) Hidden
ASUSTek ASUSDVD 8 (HKLM\...\InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}) (Version: 8.0.2815 - CyberLink Corp.)
Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - Atheros)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.5 - Atheros Communications Inc.)
ATK Generic Function Service (HKLM\...\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}) (Version: 1.00.0008 - ATK)
ATK Hotkey (HKLM\...\{7C05592D-424B-46CB-B505-E0013E8E75C9}) (Version: 1.0.0049 - ASUS)
ATK Media (HKLM\...\{D1E5870E-E3E5-4475-98A6-ADD614524ADF}) (Version: 2.0.0002 - ASUS)
ATKOSD2 (HKLM\...\{3B05F2FB-745B-4012-ADF2-439F36B2E70B}) (Version: 7.0.0003 - ASUS)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 17.9.2322 - AVAST Software)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 3.00 - Piriform)
CDBurnerXP (HKLM\...\{5932A5C4-BB44-4CFB-AD66-1B826F4D788B}) (Version: 4.3.8.2523 - Canneverbe Limited)
Cisco EAP-FAST Module (HKLM\...\{3F4BA3A2-7BE0-48EA-B4BC-CA4D842A409A}) (Version: 2.2.9 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{934B3B19-8193-467A-B356-E73F82647D38}) (Version: 1.0.15 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{BAD1449B-DF0C-4118-B76D-68C54009576C}) (Version: 1.1.2 - Cisco Systems, Inc.)
Corel Applications (HKLM\...\Corel Applications) (Version: - )
D3DX10 (HKLM\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
ETDWare PS/2-x86 7.0.5.1 WHQL (HKLM\...\Elantech) (Version: - )
Fotosvet TETA (HKLM\...\Fotosvet TETA) (Version: 5.0.6 - CEWE COLOR AG u Co. OHG)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation)
Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation)
Java 8 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Junk Mail filter update (HKLM\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
K-Lite Codec Pack 6.5.0 (Full) (HKLM\...\KLiteCodecPack_is1) (Version: 6.5.0 - )
Lark AntiSpyware 4.0 (HKLM\...\{92EF9F7D-D771-42E5-B235-B434AB2BF8F3}_is1) (Version: - Lark Anti-Spyware, Inc.)
ĹíçěĺńůěÝíç Ýęäďóç Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0408-0000-0000000FF1CE}_PROHYBRIDR_{08A4BDB3-7A63-4F59-B9FA-EE80ADE88DC2}) (Version: - Microsoft)
ĹíçěĺńůěÝíç Ýęäďóç Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0408-0000-0000000FF1CE}_PROHYBRIDR_{C52A655D-F8AE-485D-908D-62CEC754B6A4}) (Version: - Microsoft)
ĹíçěĺńůěÝíç Ýęäďóç Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0408-0000-0000000FF1CE}_PROHYBRIDR_{054186C0-F351-472E-84E8-D5E16FA08241}) (Version: - Microsoft)
LightScribe System Software 1.14.17.1 (HKLM\...\{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}) (Version: 1.14.17.1 - LightScribe)
Malwarebytes verze 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Mesh Runtime (HKLM\...\{8C6D6116-B724-4810-8F2D-D047E6B7D68E}) (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (HKLM\...\{B44F3823-52DD-45CA-A916-8B320778715D}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50906.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
MSVC80_x86_v2 (HKLM\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Multimedia Card Reader (HKLM\...\{DA41F9E9-B878-467F-95E7-27E4D1943533}) (Version: 1.01.0000.00 - ) Hidden
Multimedia Card Reader (HKLM\...\USB Mass Storage Filter Driver) (Version: 1.01.0000.00 - )
OLYMPUS Master 2 (HKLM\...\{45FCADDB-0B29-457E-83A1-D245C62A716C}) (Version: 1.0.6 - OLYMPUS IMAGING CORP.)
PatchCleaner (HKLM\...\{052AD9D9-A947-4914-BDA4-16AE0E91CC7C}) (Version: 1.1.0 - HomeDev)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Platform (HKLM\...\{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Hidden
Prohlížeč Seznam.cz (HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\Seznam Browser) (Version: 4.2.5 - Seznam.cz a.s.)
SafeZone Stable 1.48.2066.120 (HKLM\...\SafeZone 1.48.2066.120) (Version: 1.48.2066.120 - Avast Software) Hidden
SeaMonkey 2.48 (x86 cs) (HKLM\...\SeaMonkey 2.48 (x86 cs)) (Version: 2.48 - Mozilla)
Segoe UI (HKLM\...\{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}) (Version: 15.4.2271.0615 - Microsoft Corp) Hidden
SRS Premium Sound (HKLM\...\{4B6B024F-F6D4-4A7B-8ADA-F9F8370320CC}) (Version: 1.08.1300 - SRS Labs, Inc.)
Sweet Home 3D version 5.4 (HKLM\...\Sweet Home 3D_is1) (Version: 5.4 - eTeks)
Teta CEWE fotosvet (HKLM\...\Teta CEWE fotosvet) (Version: 6.1.5 - CEWE Stiftung u Co. KGaA)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 7.55a - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
USB 2.0 1.3M UVC WebCam (HKLM\...\USB 2.0 1.3M UVC WebCam) (Version: - )
VIA Platform Device Manager (HKLM\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.)
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{4B4451CE-D1E6-4BDE-B4B2-59F03BB83B7C}) (Version: 14.0.8050.1202 - Microsoft Corporation)
WinFlash (HKLM\...\{DE10AB76-4756-4913-BE25-55D1C1051F9A}) (Version: - )
Wireless Console 3 (HKLM\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.6 - ASUS)
World of Tanks (HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1892572175-291764868-1612132196-1000_Classes\CLSID\{be328dbe-9f5b-407f-BAFF-827fc6db1aa4}\InprocServer32 -> C:\Users\Pajuska\AppData\Roaming\KB-ext\lib\x86\PKIComponentAX-kbext.dll (Komerční banka, a.s.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-01-04] (AVAST Software)
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files\AIMP3\System\aimp_menu32.dll [2015-03-11] (AIMP DevTeam)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-01-04] (AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-01-04] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files\AIMP3\System\aimp_menu32.dll [2015-03-11] (AIMP DevTeam)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2010-08-25] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-01-04] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1F372452-FE7C-4D98-B339-E64A19A7F4F2} - System32\Tasks\ASUS Live Update => C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2007-11-30] ()
Task: {22373708-AF82-41CD-833A-47B8BC18DAFD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-01-09] (Adobe Systems Incorporated)
Task: {2411FA99-3984-4075-8344-04B209DF191D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2015-08-26] (Apple Inc.)
Task: {40DDDC90-0187-493B-AC47-5BDBB10BFA39} - \AVG-Secure-Search-Update_JUNE2013_HP_rmv -> No File <==== ATTENTION
Task: {4E404352-F41B-493A-AFEE-95F16425E895} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-01-05] (AVAST Software)
Task: {4F46482A-F35D-4321-8B40-191989713EF3} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-01-04] (AVAST Software)
Task: {60FC79D8-4F3C-482B-BC85-8F84F05CA85F} - System32\Tasks\{5B192B8A-1DE2-4932-9F79-7C17A80F4B48} => C:\Windows\system32\pcalua.exe -a C:\Users\Pajuska\Downloads\LEGOIndyCZ_x.exe -d C:\Users\Pajuska\Downloads
Task: {6FD66FB8-F288-4C14-93AC-5EEA0A0AAE23} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-10-05] (Google Inc.)
Task: {7A4EDB56-4F65-40DA-8B00-9F099A0043F0} - System32\Tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => C:\Windows\system32\RAServer.exe [2008-01-21] (Společnost Microsoft)
Task: {7A60FE5E-B627-4535-9576-2A9D042DEAAC} - \AVG-Secure-Search-Update_JUNE2013_TB_rmv -> No File <==== ATTENTION
Task: {9AFFC7D3-2405-4C32-870B-BF14832F10C5} - System32\Tasks\SafeZone scheduled Autoupdate 1500210565 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-08-12] (Avast Software)
Task: {D6AEEC9F-9211-4E0A-9410-16BDA485F6EB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-10-05] (Google Inc.)
Task: {DC724021-745A-40C0-AA85-57DABD838615} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_28_0_0_137_pepper.exe [2018-01-09] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-01-04 17:17 - 2018-01-04 17:17 - 000057504 _____ () C:\Program Files\AVAST Software\Avast\dll_loader.dll
2018-01-04 17:17 - 2018-01-04 17:17 - 000058016 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll
2008-08-14 04:59 - 2008-08-14 04:59 - 000100920 _____ () C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
2009-07-15 02:42 - 2007-08-08 08:08 - 000094208 _____ () C:\Program Files\ATKGFNEX\GFNEXSrv.exe
2018-01-04 17:18 - 2018-01-04 17:18 - 000206152 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2018-01-04 17:18 - 2018-01-04 17:18 - 000289272 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2018-01-04 17:18 - 2018-01-04 17:18 - 000196248 _____ () C:\Program Files\AVAST Software\Avast\network_notifications.dll
2018-02-06 13:24 - 2018-02-06 13:24 - 005777040 _____ () C:\Program Files\AVAST Software\Avast\defs\18020600\algo.dll
2018-01-04 17:18 - 2018-01-04 17:18 - 000745408 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2018-01-04 17:17 - 2018-01-04 17:17 - 000148936 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-01-04 17:18 - 2018-01-04 17:18 - 000293944 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2009-07-15 02:44 - 2007-11-30 19:20 - 000051768 _____ () C:\Program Files\ASUS\ASUS Live Update\ALU.exe
2009-02-07 00:13 - 2009-02-07 00:13 - 001593344 _____ () C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
2009-07-15 01:44 - 2009-04-15 16:56 - 000271760 _____ () C:\Program Files\Cyberlink\Shared files\RichVideo.exe
2017-12-11 11:20 - 2017-11-29 09:11 - 001934792 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-01-04 17:17 - 2018-01-04 17:17 - 000196816 _____ () c:\Program Files\AVAST Software\Avast\vaarclient.dll
2009-07-15 02:31 - 2008-03-17 10:49 - 000069632 _____ () C:\Program Files\VIA\VIAudioi\VDeck\QsApoApi.dll
2009-07-15 02:31 - 2009-01-06 10:11 - 000090112 _____ () C:\Program Files\VIA\VIAudioi\VDeck\Dts2ApoApi.dll
2009-07-15 02:31 - 2008-02-14 06:56 - 000094208 _____ () C:\Program Files\VIA\VIAudioi\VDeck\VMicApi.dll
2007-11-12 23:41 - 2007-11-12 23:41 - 000106496 _____ () C:\Program Files\ASUS\ATK Hotkey\MsgTran.dll
2007-07-12 21:55 - 2007-07-12 21:55 - 001581056 _____ () C:\Program Files\Common Files\LightScribe\QtCore4.dll
2007-08-14 21:59 - 2007-08-14 21:59 - 006365184 _____ () C:\Program Files\Common Files\LightScribe\QtGui4.dll
2007-07-12 21:55 - 2007-07-12 21:55 - 000131072 _____ () C:\Program Files\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2017-07-16 13:31 - 2017-07-16 13:31 - 048936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-01-04 17:17 - 2018-01-04 17:17 - 000282560 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2018-01-31 12:45 - 2018-01-10 00:10 - 001951232 _____ () C:\Users\Pajuska\AppData\Roaming\Seznam Browser\ffmpeg.dll
2008-12-02 01:16 - 2008-12-02 01:16 - 000184320 _____ () C:\Program Files\ASUS\VirtualCamera\virtualCamera.ax
2018-01-31 12:45 - 2018-01-10 00:10 - 003131392 _____ () C:\Users\Pajuska\AppData\Roaming\Seznam Browser\node.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Pajuska\Downloads\Ako-postavit-dom---Hruba-Stavba-(SK).avi:TOC.WMV [130]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1892572175-291764868-1612132196-1000\Software\Classes\exefile: <==== ATTENTION
HKU\S-1-5-21-1892572175-291764868-1612132196-1000\Software\Classes\.exe: exefile => <==== ATTENTION

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz
IE trusted site: HKU\S-1-5-21-1892572175-291764868-1612132196-1000\...\mojeplatba.cz -> hxxps://www.mojeplatba.cz

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2006-09-18 22:41 - 000000761 _____ C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1892572175-291764868-1612132196-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Pajuska\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [{65F6A91F-079E-43B1-A07D-4EB7F6CECAA0}] => (Allow) C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe
FirewallRules: [{9C208B78-43A0-41D6-A418-75F676A77E99}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{0DD48D2E-1B0E-4C92-9509-A8145D15E179}] => (Allow) LPort=2869
FirewallRules: [{490F5495-1FF1-447D-94CD-288B19ADB2EC}] => (Allow) LPort=1900
FirewallRules: [{E77CA8B2-7908-4B2E-9501-3B179661F7BE}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{20842059-8629-42E7-9EDD-E62C6D2A30F3}] => (Allow) C:\Program Files\Windows Live\Mesh\MOE.exe
FirewallRules: [{DF247BB8-E475-4027-A35A-EDCECB7A107C}] => (Allow) LPort=80
FirewallRules: [{AF37D0D4-E8D5-42FF-A54A-AE5697AF64CF}] => (Allow) LPort=80
FirewallRules: [{AB3C65A8-0E4D-4902-9A2C-F3FF3B440B7F}] => (Allow) LPort=80
FirewallRules: [TCP Query User{7AD4B95A-5C8B-4A27-B4BF-0A4980817582}C:\program files\internet explorer\iexplore.exe] => (Allow) C:\program files\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{07EFF119-0A17-4D54-BCC0-342BFA0FF4F8}C:\program files\internet explorer\iexplore.exe] => (Allow) C:\program files\internet explorer\iexplore.exe
FirewallRules: [{4B5D40D2-2B89-42C0-BA60-4EE79099344D}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{B6D766D2-1A25-4ADD-AF78-38F22B61B931}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{B75F6149-46C3-4873-8F0C-463982328041}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E98B0230-12F5-4D65-81A4-35872FE38BFC}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{37D36B4E-1558-47E5-B43D-5C09E5AD19A5}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe
FirewallRules: [UDP Query User{952DB3D8-1D12-465E-803E-B6C6BE8ACBE3}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe
FirewallRules: [TCP Query User{2D38F08E-E489-40AD-9B72-0BF489C70392}C:\users\pajuska\appdata\roaming\seznam browser\seznam.cz.exe] => (Allow) C:\users\pajuska\appdata\roaming\seznam browser\seznam.cz.exe
FirewallRules: [UDP Query User{15C5859A-48A8-45AD-946C-0B54B57CB7EC}C:\users\pajuska\appdata\roaming\seznam browser\seznam.cz.exe] => (Allow) C:\users\pajuska\appdata\roaming\seznam browser\seznam.cz.exe

==================== Restore Points =========================

06-02-2018 15:57:59 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\UNINSTALL ASUSDVD 8.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\UNINSTALL ASUSDVD 8.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\READ ME.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\READ ME.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\ONLINE REGISTRATION.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\ONLINE REGISTRATION.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\ASUSDVD 8 HELP FILE.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:39 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\ASUSDVD 8 HELP FILE.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:38 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\DESKTOP.INI> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)

Error: (02/06/2018 02:51:38 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Položka <C:\USERS\PAJUSKA\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ASUSTEK ASUSDVD 8\ASUSTEK ASUSDVD 8.LNK> v mapě algoritmu hash nebyla aktualizována.

Kontext: aplikace , katalog SystemIndex

Podrobnosti:
Zařízení připojené k systému nefunguje. (0x8007001f)


System errors:
=============
Error: (02/06/2018 02:50:18 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
is3srv
szkg5
szkgfs

Error: (02/06/2018 02:49:34 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (14:44:31, 6.2.2018) bylo neočekávané.

Error: (02/06/2018 01:25:19 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Microsoft .NET Framework NGEN v4.0.30319_X86 bylo dosaženo časového limitu (30000 ms).

Error: (02/06/2018 01:22:53 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
is3srv
szkg5
szkgfs

Error: (02/06/2018 01:22:47 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.1.26 pro síťovou kartu s adresou 0025D342B4C4 byla serverem DHCP 192.168.1.1 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error: (02/05/2018 10:28:52 PM) (Source: volsnap) (EventID: 14) (User: )
Description: Stínové kopie svazku C: byly přerušeny kvůli selhání V/V operace. ve svazku C:.

Error: (02/05/2018 10:22:53 PM) (Source: volsnap) (EventID: 14) (User: )
Description: Stínové kopie svazku C: byly přerušeny kvůli selhání V/V operace. ve svazku C:.

Error: (02/05/2018 08:20:15 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
is3srv
szkg5
szkgfs

Error: (02/05/2018 11:40:37 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
is3srv
szkg5
szkgfs

Error: (02/05/2018 11:40:21 AM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.1.26 pro síťovou kartu s adresou 0025D342B4C4 byla serverem DHCP 192.168.1.1 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).


CodeIntegrity:
===================================
Date: 2017-10-07 21:12:23.483
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET11A4.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:20.181
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET11A4.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:17.803
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET11A4.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:15.591
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET11A4.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:15.355
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETE8B0.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:11.884
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETE8B0.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:11.837
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MBAMChameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:09.284
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MBAMChameleon.sys because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:08.972
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETE8B0.tmp because the set of per-page image hashes could not be found on the system.

Date: 2017-10-07 21:12:06.253
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MBAMChameleon.sys because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Celeron(R) Dual-Core CPU T3000 @ 1.80GHz
Percentage of memory in use: 75%
Total physical RAM: 2012.35 MB
Available physical RAM: 489.26 MB
Total Virtual: 4267.98 MB
Available Virtual: 2604.16 MB

==================== Drives ================================

Drive c: (VistaOS) (Fixed) (Total:116.44 GB) (Free:16.22 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (DATA) (Fixed) (Total:104.73 GB) (Free:11.59 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 97646C29)
Partition 1: (Not Active) - (Size=11.7 GB) - (Type=1C)
Partition 2: (Active) - (Size=116.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=104.7 GB) - (Type=OF Extended)

==================== End of Addition.txt ============================
Pajusd
Kolemjdoucí

Odeslat příspěvekod D1rty 6. 2. 2018 20:55

Nikde nevidim otazku...
Vydrb vistu von "oknom" a daj si tam desinu.
Dalsia varianta je malwarebytes, nejaky scan od ESETu...
D1rty
Junior

Odeslat příspěvekod polda 6. 2. 2018 21:01

Tipuji na neustále spuštěny update. Visty nejde aktualizovat. Cca 2 měsíce zpět je tu thread jak se podaří Visty trochu zprovoznit přes ruční upgrade.
polda
Junior
Uživatelský avatar

Odeslat příspěvekod Milanr1 6. 2. 2018 21:38

Celá řada fatálních chyb admina:
1) poškozený NTFS v důsledku zanedbané údržby;
2) zničené indexy;
3) neoptimalizovaný OS;
4) BFU pracuje v účtu s admin právy;
5) nelegální licence sw;
6) Vista zaprasená nesmysly, zkaženými Jablíčky, exploity a rootkity = důsledek bodu (4) a (5).
Co s tím?
1) Vyhodit líný a ted už i poničený HDD.
2) Zapojit nový SSD*.
3) Instalovat OS z ověřeného originálního MS média Vista SP2.
4) Optimalizovat OS podle FAQ.
5) Vytvořit účet s právy skupiny USERS.
6) Pracovat pouze v tomto účtu.
7) Neinstalovat žádné ptákoviny, od zkažených Jablíček přes zbytečné BHO až po nepoužitelné i-prohlížeče od Seznamu a Googlu.
8 ) Prostudovat pečlivě FAQ:
https://faq.mople71.cz/cs/
9) Dodržovat.
Pokud to nezvládneš:
svěř to odborníkovi.
---
* SSD můžeš použít v novém PC po předání tohohle stařešiny do sběrného dvora.
Milan
Milanr1
Pokročilý
Uživatelský avatar

Odeslat příspěvekod mople71 6. 2. 2018 21:53

Windows Vista není podporovaný OS.
Administrátor fóra MobilMania.cz a moderátor fóra Živě.cz
Pokud neodpovím do dvou dní, připomeňte se.
mople71
Taťka moderátor
Uživatelský avatar

Odeslat příspěvekod Milanr1 6. 2. 2018 21:58

mople71:
nepodporovaný OS:
a/ výrobcem OS Vista?
b/ výrobcem utajeného hw?
Var. (a) = nezajímavá. Používají se v praxi i starší verze OS bez problémů.
Systémová podpora není nezbytně potřebná k provozu PC.
Stačí zakázat nepotřebné služby.
Var. (b) by byla ovšem fatální, ale pak by tam asi nikdo necpal nekompatibilní OS.
Milan
Milanr1
Pokročilý
Uživatelský avatar

Odeslat příspěvekod mople71 6. 2. 2018 23:04

Mnou. 8-)

Ad var. (a): Používat OS, který nedostává bezpečnostní záplaty pro známé zranitelnosti, při běžném využití BFU nelze doporučit.
Administrátor fóra MobilMania.cz a moderátor fóra Živě.cz
Pokud neodpovím do dvou dní, připomeňte se.
mople71
Taťka moderátor
Uživatelský avatar

Odeslat příspěvekod Milanr1 7. 2. 2018 05:04

mople71:
Jak jsi mohl vidět z přehledu zničeného OS výše:
bezpečnostní záplaty nezabrání BFU, který má admin práva, aby zlikvidoval OS vlastním přičiněním. :-)
Milan
Milanr1
Pokročilý
Uživatelský avatar

Odeslat příspěvekod Pajusd 7. 2. 2018 22:25

díky moc, zařídíme se podle vašich rad. Pěkný večer :)
Pajusd
Kolemjdoucí


Kdo je online

Uživatelé procházející toto fórum: Žádní registrovaní uživatelé a 0 návštevníků