Prosím o kontrolu logu - "chroupe" Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 19 srp 2016 19:00

Odinstaluj:
Seznam.cz\listicka

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.

Stáhni si Memtest:

Políčko , ve kterém je napsáno:
All unused RAM -ponech , jak je.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
V případě vyšších kapacit RAM je třeba Memtest spustit několikrát , pro 2GB ( jednotlivá největší kapacita RAM) 2x , pro 4GB 3x , pro 8Gb 4x ap.

Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..

Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 19 srp 2016 20:26

Memtest 0 errors.


----------------------------------------------------------------------------
CrystalDiskInfo 7.0.2 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows XP Professional SP3 [5.1 Build 2600] (x86)
Date : 2016/08/19 20:25:20

-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- Primární kanál IDE (0)
- Sekundární kanál IDE (1)
+ NVIDIA nForce Serial ATA Controller [ATA]
- ST332062 0AS SCSI Disk Device
+ NVIDIA nForce Serial ATA Controller [ATA]
- TSSTcorp CD/DVDW SH-S183L SCSI CdRom Device
- NVIDIA nForce Serial ATA Controller [ATA]
- NERO IMAGEDRIVE SCSI Controller [SCSI]

-- Disk List ---------------------------------------------------------------
(1) ST3320620AS : 320,0 GB [0/2/0, pd1] - st
(2) ST1000LM025 HN-M101ABB : 1000,2 GB [1/X/X, sa1] (V=04E8, P=61B6) - st

----------------------------------------------------------------------------
(1) ST3320620AS
----------------------------------------------------------------------------
Model : ST3320620AS
Firmware : 3.AAK
Serial Number : 9QF3J17V
Disk Size : 320,0 GB (8,4/137,4/320,0/320,0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ----
Transfer Mode : ---- | SATA/300
Power On Hours : 39599 hod.
Power On Count : 3619 krát
Temperature : 43 C (109 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----
Drive Letter : C: E:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 117 _97 __6 00000899BD6C Počet chyb čtení
03 _95 _95 __0 000000000000 Čas na roztočení ploten
04 _97 _97 _20 000000000E98 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _89 _60 _30 0000323D0FB2 Počet chybných hledání
09 _55 _55 __0 000000009AAF Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _97 _97 _20 000000000E23 Počet cyklů zapnutí zařízení
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _57 _42 _45 00003017002B Teplota toku vzduchu
C2 _43 _58 __0 000E0000002B Teplota
C3 _62 _55 __0 00000131A03A Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 00000000000E Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
CA 100 253 __0 000000000000 Počet chyb při směrování údajů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3951 4633 4A31 3756
020: 0000 8000 0004 332E 4141 4B20 2020 5354 3333 3230
030: 3632 3041 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0506 0000 0048 0040
080: 00FE 0000 346B 7D01 4023 3469 3C01 4023 407F 0000
090: 0000 FEFE FFFE 0000 FE00 0000 0000 0000 0000 0000
100: EAB0 2542 0000 0000 0000 0000 4000 0000 0000 0000
110: 0000 0000 0000 0000 0000 0000 0000 0100 0000 0002
120: 0000 0000 0000 0000 0000 0000 0000 0000 0009 EAB0
130: 2542 EAB0 2542 2020 0002 02B6 0002 008A 3C06 3C0A
140: 0000 07C6 0100 0800 1314 3000 0002 0080 0000 0000
150: 00A0 0202 0000 0404 0000 0000 0000 0000 1200 000B
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 F4A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 75 61 6C BD 99 08 00 00 00 03 03
010: 00 5F 5F 00 00 00 00 00 00 00 04 32 00 61 61 98
020: 0E 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
030: 00 00 07 0F 00 59 3C B2 0F 3D 32 00 00 00 09 32
040: 00 37 37 AF 9A 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 61 61 23 0E 00 00 00
060: 00 00 BB 32 00 64 64 00 00 00 00 00 00 00 BD 3A
070: 00 64 64 00 00 00 00 00 00 00 BE 22 00 39 2A 2B
080: 00 17 30 00 00 00 C2 22 00 2B 3A 2B 00 00 00 0E
090: 00 00 C3 1A 00 3E 37 3A A0 31 01 00 00 00 C5 12
0A0: 00 64 64 00 00 00 00 00 00 00 C6 10 00 64 64 00
0B0: 00 00 00 00 00 00 C7 3E 00 C8 C8 0E 00 00 00 00
0C0: 00 00 C8 00 00 64 FD 00 00 00 00 00 00 00 CA 32
0D0: 00 64 FD 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 19 AE 01 00 5B
170: 03 00 01 85 01 73 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 07 05 05 05 05 05 05 05 05 00
190: 00 00 00 00 00 00 00 01 92 E2 B6 0E 85 00 00 00
1A0: 02 00 4F F6 5B B4 EF 10 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 92 E2 B6 0E 00 00 00 00 00 00 00 00
1C0: 02 00 01 00 00 00 0E 00 00 00 DA 51 66 55 09 00
1D0: 00 00 F8 33 9C 00 00 00 00 00 89 7C 00 00 00 00
1E0: 35 BA 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 B9

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BD 00
070: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C3 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 00 00 00 00 00 00 00 00 00 00 CA 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 26

----------------------------------------------------------------------------
(2) ST1000LM025 HN-M101ABB
----------------------------------------------------------------------------
Enclosure : Samsung M3 Portable USB Device (V=04E8, P=61B6, sa1) - st
Model : ST1000LM025 HN-M101ABB
Firmware : 2BA30001
Serial Number : F1743G94AA0QR3
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 551 hod.
Power On Count : 1115 krát
Temperature : 35 C (95 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0080h [OFF]
AAM Level : FE00h [OFF]
Drive Letter : F:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
02 252 252 __0 000000000000 Průchodnost disku
03 _90 _90 _25 000000000C48 Čas na roztočení ploten
04 _96 _96 __0 000000001277 Počet spuštění/zastavení
05 252 252 _10 000000000000 Počet přemapovaných sektorů
07 252 252 _51 000000000000 Počet chybných hledání
08 252 252 _15 000000000000 Čas potřebný na vyhledání
09 100 100 __0 000000000227 Hodin v činnosti
0A 252 252 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 00000000000B Počet pokusů o překalibrování
0C _99 _99 __0 00000000045B Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000001 Počet udalostí zaznamenaných otřesovým senzorem
C0 252 252 __0 000000000000 Počet vypnutí disku
C2 _64 _63 __0 002C000E0023 Teplota
C3 100 100 __0 000000000000 Počet oprav chybného čtení
C4 252 252 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 252 252 __0 000000000000 Počet podezřelých sektorů
C6 252 252 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 __0 000000000045 Počet chyb při zápisu sektorů
DF 100 100 __0 00000000000B Zatížení budiče magnetických hlav způsobené opakovanými úkony
E1 _99 _99 __0 0000000034CA Počet cyklů načítání/vymazání

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 4631 3734 3347 3934 4141 3051 5233 2020 2020 2020
020: 0000 8000 0004 3242 4133 3030 3031 5354 3130 3030
030: 4C4D 3032 3520 484E 2D4D 3130 3141 4242 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0000
060: FFFF 0FFF 0000 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 1D06 0004 004C 0000
080: 01FF 0028 746B 7F69 6123 7469 BC41 6123 007F 006A
090: 006A 0080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 0000 0000
110: 0000 0000 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003F 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0400 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 A9A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 64 64 00 00 00 00 00 00 00 02 26
010: 00 FC FC 00 00 00 00 00 00 00 03 23 00 5A 5A 48
020: 0C 00 00 00 00 00 04 32 00 60 60 77 12 00 00 00
030: 00 00 05 33 00 FC FC 00 00 00 00 00 00 00 07 2E
040: 00 FC FC 00 00 00 00 00 00 00 08 24 00 FC FC 00
050: 00 00 00 00 00 00 09 32 00 64 64 27 02 00 00 00
060: 00 00 0A 32 00 FC FC 00 00 00 00 00 00 00 0B 32
070: 00 64 64 0B 00 00 00 00 00 00 0C 32 00 63 63 5B
080: 04 00 00 00 00 00 BF 22 00 64 64 01 00 00 00 00
090: 00 00 C0 22 00 FC FC 00 00 00 00 00 00 00 C2 02
0A0: 00 40 3F 23 00 0E 00 2C 00 00 C3 3A 00 64 64 00
0B0: 00 00 00 00 00 00 C4 32 00 FC FC 00 00 00 00 00
0C0: 00 00 C5 32 00 FC FC 00 00 00 00 00 00 00 C6 30
0D0: 00 FC FC 00 00 00 00 00 00 00 C7 36 00 C8 C8 00
0E0: 00 00 00 00 00 00 C8 2A 00 64 64 45 00 00 00 00
0F0: 00 00 DF 32 00 64 64 0B 00 00 00 00 00 00 E1 32
100: 00 63 63 CA 34 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 90 33 00 5B
170: 03 00 01 00 02 DC 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 DC

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 00 00 00 00 00 00 00 00 00 00 02 00
010: 00 00 00 00 00 00 00 00 00 00 03 19 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 0A 00 00 00 00 00 00 00 00 00 00 07 33
040: 00 00 00 00 00 00 00 00 00 00 08 0F 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 33 00 00 00 00 00 00 00 00 00 00 0B 00
070: 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 00 00
080: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
090: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C3 00 00 00 00 00
0B0: 00 00 00 00 00 00 C4 00 00 00 00 00 00 00 00 00
0C0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00
0D0: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00
0E0: 00 00 00 00 00 00 C8 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E1 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3B

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 19 srp 2016 20:36

aswMBR version 1.0.1.2290 Copyright(c) 2014 AVAST Software
Run date: 2016-08-19 20:34:42
-----------------------------
20:34:42.156 OS Version: Windows 5.1.2600 Service Pack 3
20:34:42.156 Number of processors: 2 586 0x4B02
20:34:42.156 ComputerName: NONAME-ZIQKCX9Z UserName: Uživatel
20:34:44.265 Initialize success
20:34:44.390 VM: initialized successfully
20:34:44.390 VM: Amd CPU virtualization not supported
20:34:54.406 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Scsi\nvgts1Port2Path0Target0Lun0
20:34:54.406 Disk 0 Vendor: ST332062 3.AA Size: 305245MB BusType: 3
20:34:54.500 Disk 0 MBR read successfully
20:34:54.500 Disk 0 MBR scan
20:34:54.500 Disk 0 Windows XP default MBR code
20:34:54.500 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 131061 MB offset 63
20:34:54.500 Hidden System thread @ 0x87d85340
20:34:54.500 Disk 0 Boot: NTFS code=1
20:34:54.500 Disk 0 Partition - 00 0F Extended LBA 174181 MB offset 268414020
20:34:54.515 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 174181 MB offset 268414083
20:34:54.515 Disk 0 scanning sectors +625137345
20:34:54.531 Disk 0 scanning C:\WINDOWS\system32\drivers
20:35:04.718 Service scanning
20:35:07.187 Service ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys **LOCKED** 5
20:35:07.218 Service ekbdflt C:\WINDOWS\system32\DRIVERS\ekbdflt.sys **LOCKED** 5
20:35:07.328 Service epfw C:\WINDOWS\system32\DRIVERS\epfw.sys **LOCKED** 5
20:35:07.343 Service Epfwndis C:\WINDOWS\system32\DRIVERS\Epfwndis.sys **LOCKED** 5
20:35:07.359 Service epfwtdi C:\WINDOWS\system32\DRIVERS\epfwtdi.sys **LOCKED** 5
20:35:15.578 Modules scanning
20:35:15.578 \Driver\prodrv06 MajorFunction[ IRP_MJ_CREATE ] @ 0xe21073b8 suspicious
20:35:15.578 \Driver\prodrv06 MajorFunction[ IRP_MJ_CLOSE ] @ 0xe21073b8 suspicious
20:35:15.578 \Driver\prodrv06 MajorFunction[ IRP_MJ_DEVICE_CONTROL ] @ 0xe21073b8 suspicious
20:35:15.578 \Driver\prohlp02 MajorFunction[ IRP_MJ_CREATE ] @ 0xe1acf4f0 suspicious
20:35:15.578 \Driver\prohlp02 MajorFunction[ IRP_MJ_CLOSE ] @ 0xe1acf4f0 suspicious
20:35:15.578 \Driver\prohlp02 MajorFunction[ IRP_MJ_DEVICE_CONTROL ] @ 0xe1acf4f0 suspicious
20:35:15.578 Disk 0 trace - called modules:
20:35:15.593 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll prosync1.sys sfsync02.sys >>UNKNOWN [0x8a970f28]<<
20:35:15.593 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a8e61a0]
20:35:15.593 3 CLASSPNP.SYS[b80f8fd7] -> nt!IofCallDriver -> \Device\00000090[0x8a8ea678]
20:35:15.593 5 ACPI.sys[b7f7f620] -> nt!IofCallDriver -> \Device\Scsi\nvgts1Port2Path0Target0Lun0[0x8a94e030]
20:35:15.593 Disk 0 statistics 68814/0/0 @ 4,08 MB/s
20:35:15.609 Scan finished successfully
20:35:22.359 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Uživatel\Plocha\MBR.dat"
20:35:22.375 The log file has been saved successfully to "C:\Documents and Settings\Uživatel\Plocha\aswMBR.txt"

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 20 srp 2016 09:30

(2) ST1000LM025 HN-M101ABB
000000000C48 Čas na roztočení ploten
000000000001 Počet udalostí zaznamenaných otřesovým senzorem
000000000045 Počet chyb při zápisu sektorů

udělej ještě jednou CDI.

Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
NuM3Ro
Level 3.5
Level 3.5
Příspěvky: 664
Registrován: srpen 08
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod NuM3Ro » 20 srp 2016 09:39

Pokud v PC něco chroupe, odhaduju, že to bude HW záležitost a to konkrétně odcházející HDD.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 20 srp 2016 12:27

NuM3Ro: přečti si pravidla sekce HJT.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 20 srp 2016 19:19

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-08-2016
Ran by Uživatel (administrator) on NONAME-ZIQKCX9Z (20-08-2016 18:50:18)
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profiles: Uživatel & UpdatusUser (Available Profiles: Uživatel & UpdatusUser & Administrator)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(ali) C:\WINDOWS\UMStor\Res.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
() C:\WINDOWS\VMSnap23.exe
(Vimicro) C:\WINDOWS\Domino.exe
(Microsoft Corporation) C:\Program Files\Microsoft ActiveSync\wcescomm.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(Comodo Security Solutions, Inc.) C:\Program Files\Comodo\Dragon\dragon_updater.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Ralink Technology, Corp.) C:\Program Files\Ovislink\Common\RaRegistry.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [USB Storage Toolbox] => C:\WINDOWS\UMStor\Res.EXE [65536 2005-09-14] (ali)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15677728 2013-05-12] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] => C:\WINDOWS\system32\NvMCTray.dll [223008 2013-05-12] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2562848 2013-05-12] ()
HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [20143176 2013-04-02] (Realtek Semiconductor Corp.)
HKLM\...\Run: [BigDogPath323VMSnap] => C:\WINDOWS\VMSnap23.exe [212992 2006-09-19] ()
HKLM\...\Run: [BigDogPath323Domino] => C:\WINDOWS\Domino.exe [49152 2006-06-28] (Vimicro)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [H/PC Connection Agent] => C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE [401491 2004-02-24] (Microsoft Corporation)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6854360 2016-08-05] (Piriform Ltd)
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ACTUAL~1.SCR [111616 2008-06-06] ()
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\Run: [Nokia.PCSync] => E:\HUMUS\Nokia PC Suite 6\PcSync2.exe [1744896 2007-03-27] (Time Information Services Ltd.)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => E:\HUMUS\Nokia PC Suite 6\PcSync2.exe [1744896 2007-03-27] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187B Wireless LAN Utility.lnk [2013-06-27]
ShortcutTarget: REALTEK RTL8187B Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0100E881-AA8D-4A4C-B6F7-6D93DF16FF0E}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
URLSearchHook: HKU\S-1-5-21-1292428093-1965331169-725345543-1008 -> Default = {855F3B16-6D32-4fe6-8A56-BBB695989046}
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}&rlz=1I7ADSA_cs
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}&rlz=1I7ADSA_cs
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> {A6449408-719F-48B6-9B82-10E6783C412D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_5
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-08-19] (Google Inc.)
BHO: FlashGetBHO -> {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} -> C:\Documents and Settings\Uživatel\Data aplikací\FlashGetBHO\FlashGetBHO3.dll [2009-12-22] (Trend Media Group)
BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll [2010-10-07] ()
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-08-19] (Google Inc.)
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll [2014-02-25] (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> Nástroje Lištičky - {34AB3C4C-DA1A-4067-96F4-31452C7CFE65} - C:\Program Files\Seznam.cz\listicka.dll [2010-10-07] ()
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-08-19] (Google Inc.)
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://windowsupdate.microsoft.com/wind ... 2444724093
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} hxxp://office.microsoft.com/officeupdat ... /opuc4.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload.macromedia.com/get/sh ... wflash.cab
Handler: lid - {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\System32\msvidctl.dll [2008-04-14] (Microsoft Corporation)
Handler: mctp - {d7b95390-b1c5-11d0-b111-0080c712fe82} - C:\Program Files\Microsoft ActiveSync\aatp.dll [2004-02-24] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\osde3ijm.default-1361893236593
FF NewTab: about:newtab
FF Homepage: hxxps://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-08-15] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\npNxGameeu.dll [2009-12-07] (Nexon)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-19] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-19] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin: yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1 -> C:\Program Files\Yahoo!\Common\npyaxmpb.dll [No File]
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @facebook.com/FBPlugin,version=1.0.3 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll [2010-03-06] ( )
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: ubisoft.com/uplaypc -> E:\Hry\ac\Assassins Creed III\Orbit\npuplaypc.dll [No File]
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll [2009-06-25] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL [2007-03-22] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-09-02] [not signed]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => not found

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [402192 2013-12-20] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [385808 2013-12-20] (BlueStack Systems, Inc.)
R2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983264 2016-03-03] (ESET)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [450560 2008-09-08] () [File not signed]
S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [225280 2007-01-02] (Hewlett-Packard Co.) [File not signed]
S4 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S4 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [184320 2008-09-08] () [File not signed]
S4 ose; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [89136 2007-04-11] (Microsoft Corporation) [File not signed]
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2014-09-21] ()
R2 RalinkRegistryWriter; C:\Program Files\Ovislink\Common\RaRegistry.exe [185632 2009-12-17] (Ralink Technology, Corp.)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [241734 2008-04-07] () [File not signed]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21361 2013-06-27] (Cisco Systems, Inc.) [File not signed]
S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [281760 2010-03-23] ()
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [106256 2013-12-20] (BlueStack Systems)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Changer; C:\WINDOWS\system32\Drivers\Changer.sys [8192 2008-04-14] (Microsoft Corporation)
S3 Dot4Scan; C:\WINDOWS\System32\DRIVERS\Dot4Scan.sys [8704 2001-08-17] (Microsoft Corporation)
R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [242240 2013-08-16] (DT Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [206312 2016-04-14] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [146024 2016-04-14] (ESET)
R2 ekbdflt; C:\WINDOWS\System32\DRIVERS\ekbdflt.sys [111040 2016-04-14] (ESET)
R1 epfw; C:\WINDOWS\System32\DRIVERS\epfw.sys [152728 2016-04-14] (ESET)
R3 Epfwndis; C:\WINDOWS\System32\DRIVERS\Epfwndis.sys [47168 2016-04-14] (ESET)
R1 epfwtdi; C:\WINDOWS\System32\DRIVERS\epfwtdi.sys [69816 2016-04-14] (ESET)
S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 HPFXBULK; C:\WINDOWS\System32\drivers\hpfxbulk.sys [9344 2007-07-06] (Hewlett Packard)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49920 2005-10-21] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2005-10-21] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2005-10-21] (HP)
R0 imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [5888 2005-09-01] (Ahead Software AG) [File not signed]
R0 imagesrv; C:\WINDOWS\System32\DRIVERS\imagesrv.sys [127488 2005-09-01] (Ahead Software AG) [File not signed]
R3 irsir; C:\WINDOWS\System32\DRIVERS\irsir.sys [18688 2001-08-17] (Microsoft Corporation)
S1 lbrtfdc; C:\WINDOWS\system32\Drivers\lbrtfdc.sys [34688 2008-04-14] (Toshiba Corp.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2010-03-23] ()
R3 MarvinBus; C:\WINDOWS\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 MREMP50; C:\Program Files\Common Files\Motive\mremp50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\mresp50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-14] (Microsoft Corporation)
S3 nmwcd; C:\WINDOWS\System32\drivers\nmwcd.sys [137216 2007-02-22] (Nokia) [File not signed]
S3 nmwcdc; C:\WINDOWS\System32\drivers\nmwcdc.sys [8320 2007-02-22] (Nokia) [File not signed]
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [145952 2008-08-18] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation)
R1 PCLEPCI; C:\WINDOWS\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R1 prodrv06; C:\WINDOWS\System32\drivers\prodrv06.sys [53920 2004-08-09] (Protection Technology) [File not signed]
R0 prohlp02; C:\WINDOWS\System32\drivers\prohlp02.sys [114016 2004-08-09] (Protection Technology) [File not signed]
R0 prosync1; C:\WINDOWS\System32\drivers\prosync1.sys [7040 2004-07-19] (Protection Technology) [File not signed]
R3 Rasirda; C:\WINDOWS\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation)
S3 RT80x86; C:\WINDOWS\System32\DRIVERS\RT2860.sys [1069824 2009-10-07] (Ralink Technology, Corp.) [File not signed]
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
S3 s3legacy; C:\WINDOWS\System32\DRIVERS\s3legacy.sys [65664 2001-08-17] (Microsoft Corporation)
R2 Scutum50; C:\WINDOWS\System32\Drivers\Scutum50.sys [19072 2009-10-07] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
R0 sfdrv01; C:\WINDOWS\System32\drivers\sfdrv01.sys [50688 2005-08-10] (Protection Technology) [File not signed]
R0 sfdrv01a; C:\WINDOWS\System32\drivers\sfdrv01a.sys [63352 2006-07-05] (Protection Technology (StarForce))
R0 sfdrv02; C:\WINDOWS\System32\drivers\sfdrv02.sys [67960 2006-09-11] (Protection Technology (StarForce))
R0 sfhlp01; C:\WINDOWS\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) [File not signed]
R0 sfsync05; C:\WINDOWS\System32\drivers\sfsync05.sys [59776 2006-08-11] (Protection Technology (StarForce))
R0 sfvfs02; C:\WINDOWS\System32\drivers\sfvfs02.sys [82296 2007-01-12] (Protection Technology (StarForce))
S0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-02-16] (Duplex Secure Ltd.)
U3 TrueSight; C:\WINDOWS\system32\drivers\TrueSight.sys [24688 2016-08-17] ()
R3 vmfilter323; C:\WINDOWS\System32\drivers\vmfilter323.sys [476672 2006-08-08] (Vimicro Corporation)
S3 wceusbsh; C:\WINDOWS\System32\DRIVERS\wceusbsh.sys [31744 2008-04-14] (Microsoft Corporation)
R3 ZSMC326; C:\WINDOWS\System32\Drivers\usbvm323.sys [260096 2006-12-28] (Vimicro Corporation)
S3 AmdLLD; system32\DRIVERS\AmdLLD.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S4 hpt3xx; no ImagePath
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
S3 usbbus; system32\DRIVERS\lgusbbus.sys [X]
S3 UsbDiag; system32\DRIVERS\lgusbdiag.sys [X]
S3 USBModem; system32\DRIVERS\lgusbmodem.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-20 18:50 - 2016-08-20 18:50 - 00020203 _____ C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2016-08-20 18:50 - 2016-08-20 18:50 - 00000000 ____D C:\FRST
2016-08-20 18:48 - 2016-08-20 18:49 - 01745920 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2016-08-19 20:33 - 2016-08-19 20:33 - 05200384 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\aswmbr.exe
2016-08-19 20:24 - 2016-08-19 20:24 - 00001657 _____ C:\Documents and Settings\Uživatel\Plocha\CrystalDiskInfo.lnk
2016-08-19 20:24 - 2016-08-19 20:24 - 00000000 ____D C:\Program Files\CrystalDiskInfo
2016-08-19 20:24 - 2016-08-19 20:24 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\CrystalDiskInfo
2016-08-19 15:51 - 2016-05-26 16:25 - 00032768 _____ () C:\Documents and Settings\Uživatel\Plocha\memtest.exe
2016-08-19 15:21 - 2016-08-19 15:21 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2016-08-19 15:20 - 2016-08-20 18:31 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-19 15:20 - 2016-08-20 18:14 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-08-19 15:20 - 2016-08-19 15:21 - 00000000 ____D C:\Program Files\CCleaner
2016-08-17 22:21 - 2016-08-20 18:50 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\temp
2016-08-17 22:21 - 2016-08-20 18:17 - 00000000 ____D C:\Documents and Settings\UpdatusUser\Local Settings\temp
2016-08-17 22:21 - 2016-08-17 22:21 - 00013009 _____ C:\Documents and Settings\Uživatel\Plocha\combo.txt
2016-08-17 22:21 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\temp
2016-08-17 22:21 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\temp
2016-08-17 22:21 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\Default User\Local Settings\temp
2016-08-17 22:21 - 2016-08-17 22:21 - 00000000 ____D C:\Documents and Settings\Administrator\Local Settings\temp
2016-08-17 21:18 - 2016-08-19 15:28 - 00000000 ____D C:\WINDOWS\erdnt
2016-08-17 18:18 - 2016-08-17 18:18 - 00000000 ____D C:\zoek
2016-08-17 17:58 - 2016-08-17 18:23 - 00003240 _____ C:\runcheck.txt
2016-08-17 17:58 - 2016-08-17 18:21 - 00000000 ____D C:\zoek_backup
2016-08-17 17:55 - 2016-08-17 17:55 - 01309184 _____ C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2016-08-17 17:50 - 2016-08-17 19:29 - 00003270 _____ C:\Documents and Settings\Uživatel\Plocha\zoek.txt
2016-08-17 17:50 - 2016-08-17 17:53 - 00002002 _____ C:\Documents and Settings\Uživatel\Plocha\rk.txt
2016-08-16 18:18 - 2016-08-17 17:58 - 00000877 _____ C:\Documents and Settings\Uživatel\Plocha\xxx.txt
2016-08-16 15:56 - 2016-08-16 15:56 - 01610560 _____ (Malwarebytes) C:\Documents and Settings\Uživatel\Plocha\JRT.exe
2016-08-15 21:01 - 2016-08-15 21:01 - 00000601 _____ C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2016-08-15 21:01 - 2016-08-15 21:01 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
2016-08-15 20:43 - 2016-08-16 18:12 - 00000000 ____D C:\AdwCleaner
2016-08-15 20:42 - 2016-08-15 20:42 - 03784256 _____ C:\Documents and Settings\Uživatel\Plocha\adwcleaner_6.000.exe
2016-08-08 15:07 - 2016-08-08 15:39 - 00000000 ____D C:\Documents and Settings\Uživatel\Plocha\FF
2016-07-30 15:46 - 2016-07-30 15:46 - 00001933 _____ C:\Documents and Settings\Uživatel\Plocha\Seznam.cz.lnk
2016-07-30 15:46 - 2016-07-30 15:46 - 00001933 _____ C:\Documents and Settings\Uživatel\Nabídka Start\Seznam.cz.lnk
2016-07-30 15:46 - 2016-07-30 15:46 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Seznam.cz
2016-07-30 15:46 - 2016-07-30 15:46 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Crashpad

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-20 18:50 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Plocha
2016-08-20 18:48 - 2013-05-29 11:45 - 00029174 _____ C:\WINDOWS\system32\nvAppTimestamps
2016-08-20 18:47 - 2016-06-10 15:07 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-08-20 18:44 - 2008-06-06 11:56 - 00001517 _____ C:\WINDOWS\system32\sun_debug.txt
2016-08-20 18:44 - 2008-06-06 11:56 - 00000021 _____ C:\WINDOWS\system32\sun_debug1.txt
2016-08-20 18:15 - 2007-04-10 19:09 - 00000000 ___HD C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2016-08-20 18:14 - 2007-04-10 18:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-08-20 10:01 - 2011-09-24 07:01 - 00032592 _____ C:\WINDOWS\SchedLgU.Txt
2016-08-20 10:01 - 2007-04-10 19:09 - 00000272 ___SH C:\Documents and Settings\Uživatel\ntuser.ini
2016-08-20 07:48 - 2014-11-23 00:37 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\Seznam.cz
2016-08-19 20:24 - 2007-04-10 20:23 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2016-08-19 20:24 - 2007-04-10 19:22 - 00113280 _____ C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2016-08-19 15:53 - 2016-04-05 09:18 - 00002283 _____ C:\Documents and Settings\All Users\Plocha\Skype.lnk
2016-08-19 15:53 - 2007-04-11 19:52 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\Skype
2016-08-19 15:33 - 2007-04-10 20:23 - 00365712 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-19 15:29 - 2007-04-10 19:09 - 00000000 ____D C:\Documents and Settings\Uživatel
2016-08-19 15:25 - 2007-04-11 19:21 - 00000000 ___RD C:\Documents and Settings\Uživatel\Plocha\kontrola PC
2016-08-19 15:25 - 2007-04-10 20:23 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2016-08-19 15:21 - 2007-08-22 09:27 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google
2016-08-19 15:20 - 2007-08-21 16:45 - 00000000 ____D C:\Program Files\Google
2016-08-19 15:20 - 2007-08-21 16:45 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Google
2016-08-18 22:05 - 2007-04-10 19:09 - 00000000 __SHD C:\Documents and Settings\NetworkService
2016-08-17 22:17 - 2001-10-25 14:00 - 00000227 _____ C:\WINDOWS\system.ini
2016-08-17 21:24 - 2007-04-10 19:09 - 00000000 __RHD C:\Documents and Settings\Uživatel\Data aplikací
2016-08-17 18:23 - 2007-04-10 20:23 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2016-08-17 15:53 - 2014-09-19 09:08 - 00024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-08-16 18:22 - 2013-06-27 10:34 - 00000178 ___SH C:\Documents and Settings\UpdatusUser\ntuser.ini
2016-08-16 18:12 - 2007-04-10 20:23 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty
2016-08-15 22:01 - 2008-12-19 12:27 - 00000000 __SHD C:\WINDOWS\CSC
2016-08-15 21:45 - 2008-06-05 11:39 - 00000000 ____D C:\Program Files\Java
2016-08-15 19:13 - 2014-08-30 12:51 - 00000000 ____D C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2016-08-15 19:13 - 2012-04-25 16:01 - 00796352 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-08-15 19:13 - 2012-04-25 16:01 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-08-15 19:13 - 2011-11-23 19:33 - 00142528 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-08-14 20:23 - 2001-10-25 14:00 - 00002228 _____ C:\WINDOWS\system32\wpa.dbl
2016-08-08 15:46 - 2007-04-26 20:26 - 00000116 _____ C:\WINDOWS\NeroDigital.ini
2016-08-08 15:39 - 2007-04-22 16:47 - 00442880 ___SH C:\Documents and Settings\Uživatel\Plocha\Thumbs.db
2016-08-08 00:30 - 2012-11-04 02:52 - 07421376 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-1292428093-1965331169-725345543-1003-0.dat
2016-08-08 00:30 - 2012-11-04 02:52 - 00313846 _____ C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
2016-08-07 13:34 - 2016-07-04 13:22 - 00001803 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Bontia Studio.lnk
2016-08-07 13:34 - 2016-07-04 13:22 - 00001797 _____ C:\Documents and Settings\All Users\Plocha\Bontia Studio.lnk
2016-08-04 22:01 - 2014-04-10 12:45 - 00000000 ____D C:\Documents and Settings\Uživatel\Data aplikací\vlc
2016-08-03 19:49 - 2016-03-07 17:58 - 00011776 _____ C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-08-02 19:28 - 2010-04-18 20:57 - 00137176 _____ C:\WINDOWS\system32\Drivers\PnkBstrK.sys
2016-08-02 19:27 - 2010-04-18 20:57 - 00268952 _____ C:\WINDOWS\system32\PnkBstrB.exe
2016-08-02 19:27 - 2010-04-18 20:57 - 00268952 _____ C:\WINDOWS\system32\PnkBstrB.ex0
2016-08-02 19:27 - 2009-03-29 19:28 - 00268952 _____ C:\WINDOWS\system32\PnkBstrB.xtr
2016-08-02 09:36 - 2012-02-27 15:43 - 00000349 _____ C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI
2016-07-30 15:46 - 2007-04-10 19:09 - 00000000 ___RD C:\Documents and Settings\Uživatel\Nabídka Start
2016-07-27 15:04 - 2007-04-10 18:40 - 00000000 ____D C:\WINDOWS\system32\Macromed

==================== Files in the root of some directories =======

2007-11-28 16:49 - 2014-11-29 20:30 - 0022328 _____ () C:\Documents and Settings\Uživatel\Data aplikací\PnkBstrK.sys
2010-01-26 18:27 - 2010-01-26 18:27 - 0175104 _____ () C:\Documents and Settings\Uživatel\Data aplikací\SQLite3.dll
2016-03-07 17:58 - 2016-08-03 19:49 - 0011776 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2007-04-11 07:28 - 2007-04-11 07:28 - 0000128 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\fusioncache.dat
2011-01-18 12:17 - 2013-05-29 15:37 - 0001200 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\SRDownloader.nast
2009-05-11 19:59 - 2009-05-11 19:59 - 0000346 _____ () C:\Documents and Settings\All Users\Data aplikací\hpzinstall.log
2011-07-18 19:32 - 2011-12-11 12:15 - 0000012 _____ () C:\Documents and Settings\All Users\Data aplikací\ReminderNextRun

Some files in TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End of FRST.txt ============================

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 20 srp 2016 19:20

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 20-08-2016
Ran by Uživatel (20-08-2016 18:51:18)
Running from C:\Documents and Settings\Uživatel\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) (2013-06-26 13:11:59)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1292428093-1965331169-725345543-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
ASPNET (S-1-5-21-1292428093-1965331169-725345543-1004 - Limited - Enabled)
Guest (S-1-5-21-1292428093-1965331169-725345543-501 - Limited - Enabled)
HelpAssistant (S-1-5-21-1292428093-1965331169-725345543-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-1292428093-1965331169-725345543-1002 - Limited - Disabled)
UpdatusUser (S-1-5-21-1292428093-1965331169-725345543-1008 - Limited - Enabled) => %SystemDrive%\Documents and Settings\UpdatusUser
Uživatel (S-1-5-21-1292428093-1965331169-725345543-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Uživatel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 9.0.376.1 (Enabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personální firewall (Disabled) {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.7.700.202 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.08) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Airlive WN300PCI WLAN (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 1.5.5.0 - Ovislink)
Aktualizace NVIDIA 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2510531) (HKLM\...\KB2510531-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2909210) (HKLM\...\KB2909210-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2936068) (HKLM\...\KB2936068-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2964358) (HKLM\...\KB2964358-IE8) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows XP (KB923789) (HKLM\...\KB923789) (Version: - Microsoft Corporation)
aTube Catcher (HKLM\...\aTube Catcher) (Version: 2.9.4272 - DsNET Corp)
aTube Catcher verze 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.8.4.3036 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{44181DF6-2751-48C7-B918-72F14508F127}) (Version: 0.8.4.3036 - BlueStack Systems, Inc.)
Bontia Studio 5.2 (Version: 5.2.4285.0 - Bontia, a.s.) Hidden
Call of Duty(R) - World at War(TM) (Version: 1.0 - Cenega) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (Version: 1.00.0000 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (Version: 1.6 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (Version: 1.7 - Activision) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.21 - Piriform)
Comodo Dragon (HKLM\...\Comodo Dragon) (Version: 33.1.0.1 - Comodo)
CrystalDiskInfo 7.0.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 7.0.2 - Crystal Dew World)
CS Poker (HKLM\...\CS Poker 0) (Version: - )
CZShare Manager (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\7f4182272b52fd8f) (Version: 0.0.1.35 - CZShare)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
EAX4 Unified Redist (HKLM\...\{89661B04-C646-4412-B6D3-5E19F02F1F37}) (Version: 4.001 - Creative Labs)
ESET Smart Security (HKLM\...\{78703924-AE07-4AAB-B9A0-3CA1260FFB15}) (Version: 9.0.376.1 - ESET, spol. s r.o.)
EVEREST Ultimate Edition v5.30 (HKLM\...\EVEREST Ultimate Edition_is1) (Version: 5.30 - Lavalys, Inc.)
Facebook Plug-In (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\Facebook Plug-In) (Version: - Facebook, Inc.)
FlashGet 3.3 (HKLM\...\FlashGet 3.3) (Version: 3.3.0.1092 - hxxp://www.FlashGet.com)
FM Screen Capture Codec (Remove Only) (HKLM\...\FMCODEC) (Version: - )
Free Audio CD to MP3 Converter version 1.3.12.908 (HKLM\...\Free Audio CD to MP3 Converter_is1) (Version: - DVDVideoSoft Ltd.)
GameRanger (HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\GameRanger) (Version: - GameRanger Technologies)
Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7210.1528 - Google Inc.)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.21.169 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden
Hidden & Dangerous 2 (HKLM\...\H&D2_is1) (Version: - )
hppscan3390 (Version: 001.102.00071 - Hewlett-Packard) Hidden
ICQ7.5 (HKLM\...\{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}) (Version: 7.5 - ICQ)
LANGMaster ŠKOLA hrou - Dobrodružství poznání (HKLM\...\{9410CF72-35AA-4AAD-9ADA-38F44FA948F5}) (Version: - )
League of Legends (HKLM\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (Version: 3.0.1 - Riot Games) Hidden
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 Czech Language Pack (HKLM\...\{5E65E94D-69F2-4850-9E93-6459C53A0F50}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2656370) (HKLM\...\M2656370) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version: - )
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CSY (HKLM\...\{129DDEC1-A6A3-3D60-AABE-76E6E5334922}) (Version: 2.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - CSY (HKLM\...\{6FE8B722-4D7E-3CD7-BB3A-3AD1684B1295}) (Version: 3.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack - CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2003 (HKLM\...\{90AF0405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8305.0 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Minecraft (HKLM\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mozilla Firefox 47.0 (x86 cs) (HKLM\...\Mozilla Firefox 47.0 (x86 cs)) (Version: 47.0 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 6.0 Parser (KB933579) (HKLM\...\{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}) (Version: 6.10.1200.0 - Microsoft Corporation)
MSXML4 Parser (HKLM\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Nero 6 Ultra Edition (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - )
Nokia PC Suite (HKLM\...\Nokia PC Suite) (Version: 6.83.14.1 - Nokia)
Nokia PC Suite (Version: 6.83.14.1 - Nokia) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (HKLM\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.6793 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5 - NVIDIA Corporation)
NVIDIA nView 140.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.54 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.18 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
OpenAL (HKLM\...\OpenAL) (Version: - )
Ovládací panel NVIDIA 320.18 (Version: 320.18 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
ParadisePoker 1.0.0 (HKLM\...\ParadisePoker_is1) (Version: 1.0.0 - SBS)
partypoker (HKLM\...\PartyPoker) (Version: - PartyGaming)
PC-Draw 5.1 (HKLM\...\PC-Draw 5.1) (Version: - )
Pinnacle Studio 15 (HKLM\...\{1362E602-9625-42D3-B57F-CDA9D26F9DA8}) (Version: 15.0.0.7593 - Pinnacle Systems)
PokerStars (HKLM\...\PokerStars) (Version: - PokerStars)
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
QuickTime (HKLM\...\QuickTime) (Version: - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.6914 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver and Utility (HKLM\...\{BE686891-3C56-4714-AFEF-341A7867BA80}) (Version: 1.00.0145 - REALTEK Semiconductor Corp.)
Sada Compatibility Pack pro systém Office 2007 (HKLM\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
Scan (Version: 8.1.0.0 - Hewlett-Packard) Hidden
SDFormatter (HKLM\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
SEGA Rally AUTO BILD DEMO (Version: 1.00.0000 - SEGA) Hidden
Skype™ 7.24 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
SOAP3 and XML4 (Version: 1.0.0 - Xara - Microsoft) Hidden
Split/Second (HKLM\...\{28526951-55EF-4901-A0CA-B9AC966D1DD1}) (Version: 1.00.0000 - Disney Interactive Studios)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: - TeamSpeak Systems GmbH)
Testy Autoškola (HKLM\...\{E42D62BA-2D98-4D08-8242-9F410ACA4727}) (Version: 1.6.16 - Pythagoras s.r.o.)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: - )
Uplay (HKLM\...\Uplay) (Version: 2.0 - Ubisoft)
USB Disk Win98 Driver (HKLM\...\{BF5EE349-90CD-4422-A43B-661778180173}) (Version: - )
VIMICRO USB2.0 PC Camera (VC0323) (HKLM\...\{36820BCA-FC55-452E-9085-6E6F1F55508D}) (Version: 1.00.000 - )
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
WebFldrs XP (Version: 9.50.5318 - Microsoft Corporation) Hidden
Winamp (HKLM\...\Winamp) (Version: 5.581 - Nullsoft, Inc)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
Wolfenstein - Enemy Territory (HKLM\...\Wolfenstein - Enemy Territory) (Version: - )
WordPad (HKLM\...\WordPad) (Version: - )
World of Warcraft (HKLM\...\World of Warcraft) (Version: 3.3.5.12340 - Blizzard Entertainment)
XML Paper Specification Shared Components Pack 1.0 (Version: - Microsoft Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\PtContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{32C3FEAE-0877-4767-8C20-62A5829A0945}\InprocServer32 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\axfbootloader.dll ( )
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\UnityWebPlugi (the data entry has 18 more characters).
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\PtContainerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{5B004CDE-0211-469C-B9B5-0552E7E63917}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{77D8C8C7-6B46-4429-B876-DBC006C96EB1}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarAPI.dll (Playtech)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarManagerUI.dll (Playtech Ltd)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{C98FE784-B96E-41e1-8399-1337AE3E539F}\InprocServer32 -> C:\Documents and Settings\Uživatel\Data aplikací\Facebook\npfbplugin_1_0_3.dll ( )
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{CD37ED08-860C-4B86-AD25-5587D8386587}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH)
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Poker\Expekt Poker\widgetbar\WidgetbarAPI.dll (Playtech)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Documents and Settings\Uživatel\Okolní síť\Webové servery ve službě MSN\target.lnk -> hxxp://www.msnusers.com

==================== Loaded Modules (Whitelisted) ==============

2007-04-11 20:52 - 2006-12-03 14:53 - 00126464 _____ () C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarext.dll
2007-04-11 20:52 - 2006-12-06 18:13 - 00315392 _____ () C:\Documents and Settings\Uživatel\Plocha\HUMUS\Potřeba\Winrar\rarlng.dll
2013-06-27 10:33 - 2013-05-12 23:37 - 00455968 _____ () C:\Program Files\NVIDIA Corporation\nview\nvshell.dll
2010-11-07 16:06 - 2006-09-19 14:26 - 00212992 _____ () C:\WINDOWS\VMSnap23.exe
2008-04-14 08:51 - 2008-04-14 08:51 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2016-08-05 18:52 - 2016-08-05 18:52 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2013-06-27 11:31 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\EnumDevLib.dll
2013-06-27 11:31 - 2007-07-12 11:11 - 01163264 _____ () C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\acAuth.dll
2007-08-21 15:06 - 2014-09-21 20:48 - 00075136 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2008-06-03 15:20 - 2008-04-07 23:45 - 00241734 _____ () C:\Program Files\CyberLink\Shared files\RichVideo.exe
2008-09-08 11:10 - 2008-09-08 11:10 - 00450560 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
2008-09-08 10:57 - 2008-09-08 10:57 - 00102400 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll
2016-07-27 15:04 - 2016-08-15 19:13 - 19483328 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Documents and Settings\All Users\Plocha:$SS_DESCRIPTOR_LVVWVBGV0VFBTLX4D06YH7LVUTPXGJMBKE1R0WT1VH7E24F7PHCTVF4VMVFVVX4VM [85]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84 [127]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1 [112]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2 [220]
AlternateDataStreams: C:\Documents and Settings\Uživatel\Plocha\dTest_ Nezávislé testy, víc než jen recenze.pdf:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5} => ""=""

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\.DEFAULT\...\132.com -> www.132.com
IE restricted site: HKU\.DEFAULT\...\136136.net -> down.136136.net
IE restricted site: HKU\.DEFAULT\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\.DEFAULT\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\.DEFAULT\...\171203.com -> 171203.com
IE restricted site: HKU\.DEFAULT\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\.DEFAULT\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\.DEFAULT\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\.DEFAULT\...\1987324.com -> www.1987324.com

There are 4104 more sites.

IE restricted site: HKU\S-1-5-19\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-19\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-19\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-19\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-19\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-19\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-19\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-19\...\1-extreme.biz -> www.1-extreme.biz
IE restricted site: HKU\S-1-5-19\...\1001-search.info -> www.1001-search.info
IE restricted site: HKU\S-1-5-19\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-19\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-19\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-19\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-19\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-19\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-19\...\139mm.com -> www.139mm.com
IE restricted site: HKU\S-1-5-19\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-19\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-19\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-19\...\1800searchonline.com -> www.1800searchonline.com

There are 4127 more sites.

IE restricted site: HKU\S-1-5-20\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-20\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-20\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-20\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-20\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-20\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-20\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-20\...\1-extreme.biz -> www.1-extreme.biz
IE restricted site: HKU\S-1-5-20\...\1001-search.info -> www.1001-search.info
IE restricted site: HKU\S-1-5-20\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-20\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-20\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-20\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-20\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-20\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-20\...\139mm.com -> www.139mm.com
IE restricted site: HKU\S-1-5-20\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-20\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-20\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-20\...\1800searchonline.com -> www.1800searchonline.com

There are 4127 more sites.

IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1987324.com -> www.1987324.com

There are 4102 more sites.

IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com

There are 4104 more sites.


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2001-10-25 14:00 - 2016-08-17 18:04 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts


127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Control Panel\Desktop\\Wallpaper -> (Žádný)
DNS Servers: 10.0.0.138
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

DomainProfile\AuthorizedApplications: [C:\Nexon\Combat Arms EU\CombatArms.exe] => :*Enabled:CombatArms.exe
DomainProfile\AuthorizedApplications: [C:\Nexon\Combat Arms EU\Engine.exe] => :*Enabled:Engine.exe
DomainProfile\AuthorizedApplications: [C:\Program Files\ICQ7.5\ICQ.exe] => Enabled:ICQ7.5
StandardProfile\AuthorizedApplications: [C:\Program Files\Microsoft ActiveSync\wcescomm.exe] => Enabled:ActiveSync Connection Manager
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Plocha\Hry\ET\ET.exe] => Enabled:ET
StandardProfile\AuthorizedApplications: [C:\Program Files\xchat\xchat.exe] => Enabled:XChat IRC Client
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\PnkBstrA.exe] => Enabled:PnkBstrA
StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\PnkBstrB.exe] => Enabled:PnkBstrB
StandardProfile\AuthorizedApplications: [C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe] => Enabled:NEXON_EU_Downloader_Engine
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\All Users\Data aplikací\NexonEU\NGM\NGM.exe] => Enabled:Nexon Game Manager
StandardProfile\AuthorizedApplications: [C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe] => Enabled:Flashget3
StandardProfile\AuthorizedApplications: [C:\Program Files\ICQ7.5\ICQ.exe] => Enabled:ICQ7.5
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe] => Enabled:Render Manager
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe] => Enabled:Studio
StandardProfile\AuthorizedApplications: [C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe] => Enabled:umi
StandardProfile\AuthorizedApplications: [C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe] => Enabled:Daemonu.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe] => Enabled:RtWlan
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Data aplikací\GameRanger\GameRanger\GameRanger.exe] => Enabled:GameRanger
StandardProfile\AuthorizedApplications: [C:\Documents and Settings\Uživatel\Plocha\Hry\Carel\Prográmky\utorrent\utorrent.exe] => Enabled:µTorrent
StandardProfile\AuthorizedApplications: [E:\Hry\COD\iw3mp.exe] => Enabled:Call of Duty(R) 4 - Modern Warfare(TM)
StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Phone\Skype.exe] => Enabled:Skype
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
DomainProfile\GloballyOpenPorts: [139:TCP] => Enabled:@xpsp2res.dll,-22004
DomainProfile\GloballyOpenPorts: [445:TCP] => Enabled:@xpsp2res.dll,-22005
DomainProfile\GloballyOpenPorts: [137:UDP] => Enabled:@xpsp2res.dll,-22001
DomainProfile\GloballyOpenPorts: [138:UDP] => Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22008
StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22004
StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22005
StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22001
StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1542:TCP] => Enabled:Realtek WPS TCP Prot
StandardProfile\GloballyOpenPorts: [1542:UDP] => Enabled:Realtek WPS UDP Prot
StandardProfile\GloballyOpenPorts: [53:UDP] => Enabled:Realtek AP UDP Prot
StandardProfile\GloballyOpenPorts: [443:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [20010:UDP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [3478:UDP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7850:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7852:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [7853:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [27022:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [6881:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [33333:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [20443:TCP] => Enabled:War Thunder
StandardProfile\GloballyOpenPorts: [8090:TCP] => Enabled:War Thunder

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============

Name: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Description: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Class Guid: {4D36E96B-E325-11CE-BFC1-08002BE10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4D36E96F-E325-11CE-BFC1-08002BE10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (08/20/2016 06:15:05 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/20/2016 07:48:13 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/19/2016 03:54:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Zablokovaná aplikace Skype.exe, verze 7.24.85.104, zablokovaný modul hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error: (08/19/2016 03:33:41 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/19/2016 02:06:32 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/18/2016 08:07:36 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/17/2016 09:04:50 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/17/2016 03:08:42 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/16/2016 06:13:54 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (08/16/2016 03:07:05 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)


System errors:
=============
Error: (08/20/2016 06:15:22 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
i8042prt
sptd

Error: (08/20/2016 06:15:09 PM) (Source: 0) (EventID: 4) (User: )
Description:

Error: (08/20/2016 06:15:05 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
%%1064 = Při obsluze řídicí žádosti došlo ve službě k výjimce.

Error: (08/20/2016 07:48:36 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
i8042prt
sptd

Error: (08/20/2016 07:48:19 AM) (Source: 0) (EventID: 4) (User: )
Description:

Error: (08/20/2016 07:48:15 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
%%1064 = Při obsluze řídicí žádosti došlo ve službě k výjimce.

Error: (08/19/2016 03:33:53 PM) (Source: 0) (EventID: 4) (User: )
Description:

Error: (08/19/2016 03:33:48 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
i8042prt
sptd

Error: (08/19/2016 03:33:41 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BlueStacks Android Service byla ukončena s následující chybou:
%%1064 = Při obsluze řídicí žádosti došlo ve službě k výjimce.

Error: (08/19/2016 02:08:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
i8042prt
sptd


==================== Memory info ===========================

Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+
Percentage of memory in use: 60%
Total physical RAM: 2047.36 MB
Available physical RAM: 799.63 MB
Total Virtual: 3939.18 MB
Available Virtual: 2914.17 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:127.99 GB) (Free:13.44 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive e: () (Fixed) (Total:170.1 GB) (Free:28.91 GB) NTFS
Drive f: (SAMSUNG externí disk) (Fixed) (Total:931.51 GB) (Free:777.37 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 017F017E)
Partition 1: (Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=170.1 GB) - (Type=OF Extended)

========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 37EE35C4)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 20 srp 2016 19:22

----------------------------------------------------------------------------
CrystalDiskInfo 7.0.2 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows XP Professional SP3 [5.1 Build 2600] (x86)
Date : 2016/08/20 19:22:02

-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- Primární kanál IDE (0)
- Sekundární kanál IDE (1)
+ NVIDIA nForce Serial ATA Controller [ATA]
- ST332062 0AS SCSI Disk Device
+ NVIDIA nForce Serial ATA Controller [ATA]
- TSSTcorp CD/DVDW SH-S183L SCSI CdRom Device
- NVIDIA nForce Serial ATA Controller [ATA]
- NERO IMAGEDRIVE SCSI Controller [SCSI]

-- Disk List ---------------------------------------------------------------
(1) ST3320620AS : 320,0 GB [0/2/0, pd1] - st
(2) ST1000LM025 HN-M101ABB : 1000,2 GB [1/X/X, sa1] (V=04E8, P=61B6) - st

----------------------------------------------------------------------------
(1) ST3320620AS
----------------------------------------------------------------------------
Model : ST3320620AS
Firmware : 3.AAK
Serial Number : 9QF3J17V
Disk Size : 320,0 GB (8,4/137,4/320,0/320,0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ----
Transfer Mode : ---- | SATA/300
Power On Hours : 39604 hod.
Power On Count : 3621 krát
Temperature : 43 C (109 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----
Drive Letter : C: E:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 117 _97 __6 00000899BD6C Počet chyb čtení
03 _95 _95 __0 000000000000 Čas na roztočení ploten
04 _97 _97 _20 000000000E9A Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _89 _60 _30 0000324491E0 Počet chybných hledání
09 _55 _55 __0 000000009AB4 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _97 _97 _20 000000000E25 Počet cyklů zapnutí zařízení
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _57 _42 _45 00002B18002B Teplota toku vzduchu
C2 _43 _58 __0 000E0000002B Teplota
C3 _71 _55 __0 00000C8D05EB Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 00000000000E Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
CA 100 253 __0 000000000000 Počet chyb při směrování údajů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 3951 4633 4A31 3756
020: 0000 8000 0004 332E 4141 4B20 2020 5354 3333 3230
030: 3632 3041 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0506 0000 0048 0040
080: 00FE 0000 346B 7D01 4023 3469 3C01 4023 407F 0000
090: 0000 FEFE FFFE 0000 FE00 0000 0000 0000 0000 0000
100: EAB0 2542 0000 0000 0000 0000 4000 0000 0000 0000
110: 0000 0000 0000 0000 0000 0000 0000 0100 0000 0002
120: 0000 0000 0000 0000 0000 0000 0000 0000 0009 EAB0
130: 2542 EAB0 2542 2020 0002 02B6 0002 008A 3C06 3C0A
140: 0000 07C6 0100 0800 1314 3000 0002 0080 0000 0000
150: 00A0 0202 0000 0404 0000 0000 0000 0000 1200 000B
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 F4A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 75 61 6C BD 99 08 00 00 00 03 03
010: 00 5F 5F 00 00 00 00 00 00 00 04 32 00 61 61 9A
020: 0E 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
030: 00 00 07 0F 00 59 3C E0 91 44 32 00 00 00 09 32
040: 00 37 37 B4 9A 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 61 61 25 0E 00 00 00
060: 00 00 BB 32 00 64 64 00 00 00 00 00 00 00 BD 3A
070: 00 64 64 00 00 00 00 00 00 00 BE 22 00 39 2A 2B
080: 00 18 2B 00 00 00 C2 22 00 2B 3A 2B 00 00 00 0E
090: 00 00 C3 1A 00 47 37 EB 05 8D 0C 00 00 00 C5 12
0A0: 00 64 64 00 00 00 00 00 00 00 C6 10 00 64 64 00
0B0: 00 00 00 00 00 00 C7 3E 00 C8 C8 0E 00 00 00 00
0C0: 00 00 C8 00 00 64 FD 00 00 00 00 00 00 00 CA 32
0D0: 00 64 FD 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 19 AE 01 00 5B
170: 03 00 01 85 01 73 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 01 05 05 05 05 05 05 05 05 00
190: 00 00 00 00 00 00 00 01 92 E2 B6 0E 85 00 00 00
1A0: 02 00 98 30 73 47 F0 10 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 92 E2 B6 0E 00 00 00 00 00 00 00 00
1C0: 02 00 01 00 00 00 0E 00 00 00 56 F2 C2 55 09 00
1D0: 00 00 B6 59 3F 00 00 00 00 00 89 7C 00 00 00 00
1E0: D5 1F 01 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 48

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 24 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BD 00
070: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C3 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 00 00 00 00 00 00 00 00 00 00 CA 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 26

----------------------------------------------------------------------------
(2) ST1000LM025 HN-M101ABB
----------------------------------------------------------------------------
Enclosure : Samsung M3 Portable USB Device (V=04E8, P=61B6, sa1) - st
Model : ST1000LM025 HN-M101ABB
Firmware : 2BA30001
Serial Number : F1743G94AA0QR3
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 551 hod.
Power On Count : 1117 krát
Temperature : 35 C (95 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0080h [OFF]
AAM Level : FE00h [OFF]
Drive Letter : F:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
02 252 252 __0 000000000000 Průchodnost disku
03 _90 _90 _25 000000000C4A Čas na roztočení ploten
04 _96 _96 __0 00000000127E Počet spuštění/zastavení
05 252 252 _10 000000000000 Počet přemapovaných sektorů
07 252 252 _51 000000000000 Počet chybných hledání
08 252 252 _15 000000000000 Čas potřebný na vyhledání
09 100 100 __0 000000000227 Hodin v činnosti
0A 252 252 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 00000000000B Počet pokusů o překalibrování
0C _99 _99 __0 00000000045D Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000001 Počet udalostí zaznamenaných otřesovým senzorem
C0 252 252 __0 000000000000 Počet vypnutí disku
C2 _64 _63 __0 002C000E0023 Teplota
C3 100 100 __0 000000000000 Počet oprav chybného čtení
C4 252 252 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 252 252 __0 000000000000 Počet podezřelých sektorů
C6 252 252 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 __0 000000000045 Počet chyb při zápisu sektorů
DF 100 100 __0 00000000000B Zatížení budiče magnetických hlav způsobené opakovanými úkony
E1 _99 _99 __0 0000000034EB Počet cyklů načítání/vymazání

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 4631 3734 3347 3934 4141 3051 5233 2020 2020 2020
020: 0000 8000 0004 3242 4133 3030 3031 5354 3130 3030
030: 4C4D 3032 3520 484E 2D4D 3130 3141 4242 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0000
060: FFFF 0FFF 0000 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 1D06 0004 004C 0000
080: 01FF 0028 746B 7F69 6123 7469 BC41 6123 007F 006A
090: 006A 0080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 0000 0000
110: 0000 0000 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003F 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0400 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 A9A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 64 64 00 00 00 00 00 00 00 02 26
010: 00 FC FC 00 00 00 00 00 00 00 03 23 00 5A 5A 4A
020: 0C 00 00 00 00 00 04 32 00 60 60 7E 12 00 00 00
030: 00 00 05 33 00 FC FC 00 00 00 00 00 00 00 07 2E
040: 00 FC FC 00 00 00 00 00 00 00 08 24 00 FC FC 00
050: 00 00 00 00 00 00 09 32 00 64 64 27 02 00 00 00
060: 00 00 0A 32 00 FC FC 00 00 00 00 00 00 00 0B 32
070: 00 64 64 0B 00 00 00 00 00 00 0C 32 00 63 63 5D
080: 04 00 00 00 00 00 BF 22 00 64 64 01 00 00 00 00
090: 00 00 C0 22 00 FC FC 00 00 00 00 00 00 00 C2 02
0A0: 00 40 3F 23 00 0E 00 2C 00 00 C3 3A 00 64 64 00
0B0: 00 00 00 00 00 00 C4 32 00 FC FC 00 00 00 00 00
0C0: 00 00 C5 32 00 FC FC 00 00 00 00 00 00 00 C6 30
0D0: 00 FC FC 00 00 00 00 00 00 00 C7 36 00 C8 C8 00
0E0: 00 00 00 00 00 00 C8 2A 00 64 64 45 00 00 00 00
0F0: 00 00 DF 32 00 64 64 0B 00 00 00 00 00 00 E1 32
100: 00 63 63 EB 34 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 90 33 00 5B
170: 03 00 01 00 02 DC 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 B0

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 00 00 00 00 00 00 00 00 00 00 02 00
010: 00 00 00 00 00 00 00 00 00 00 03 19 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 0A 00 00 00 00 00 00 00 00 00 00 07 33
040: 00 00 00 00 00 00 00 00 00 00 08 0F 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 33 00 00 00 00 00 00 00 00 00 00 0B 00
070: 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 00 00
080: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
090: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C3 00 00 00 00 00
0B0: 00 00 00 00 00 00 C4 00 00 00 00 00 00 00 00 00
0C0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00
0D0: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00
0E0: 00 00 00 00 00 00 C8 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E1 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3B

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 21 srp 2016 10:30

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}&rlz=1I7ADSA_cs
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}&rlz=1I7ADSA_cs
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> {A6449408-719F-48B6-9B82-10E6783C412D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_5
BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll [2010-10-07] ()
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> Nástroje Lištičky - {34AB3C4C-DA1A-4067-96F4-31452C7CFE65} - C:\Program Files\Seznam.cz\listicka.dll [2010-10-07] ()
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload.macromedia.com/get/sh ... wflash.cab
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: ubisoft.com/uplaypc -> E:\Hry\ac\Assassins Creed III\Orbit\npuplaypc.dll [No File]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => not found
CHR HKLM\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
S4 hpt3xx; no ImagePath
2016-08-19 15:20 - 2016-08-20 18:31 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-19 15:20 - 2016-08-20 18:14 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Documents and Settings\Uživatel\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> no filepath
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84 [127]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1 [112]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2 [220]
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\.DEFAULT\...\132.com -> www.132.com
IE restricted site: HKU\.DEFAULT\...\136136.net -> down.136136.net
IE restricted site: HKU\.DEFAULT\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\.DEFAULT\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\.DEFAULT\...\171203.com -> 171203.com
IE restricted site: HKU\.DEFAULT\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\.DEFAULT\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\.DEFAULT\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\.DEFAULT\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-19\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-19\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-19\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-19\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-19\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-19\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-19\...\1-extreme.biz -> www.1-extreme.biz
IE restricted site: HKU\S-1-5-19\...\1001-search.info -> www.1001-search.info
IE restricted site: HKU\S-1-5-19\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-19\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-19\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-19\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-19\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-19\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-19\...\139mm.com -> www.139mm.com
IE restricted site: HKU\S-1-5-19\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-19\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-19\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-19\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-20\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-20\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-20\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-20\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-20\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-20\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-20\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-20\...\1-extreme.biz -> www.1-extreme.biz
IE restricted site: HKU\S-1-5-20\...\1001-search.info -> www.1001-search.info
IE restricted site: HKU\S-1-5-20\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-20\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-20\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-20\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-20\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-20\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-20\...\139mm.com -> www.139mm.com
IE restricted site: HKU\S-1-5-20\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-20\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-20\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-20\...\1800searchonline.com -> www.1800searchonline.com
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.

(2) ST1000LM025 HN-M101ABB
000000000C48 Čas na roztočení ploten
000000000C4A Čas na roztočení ploten
údaj se zvyšuje , v budoucnu budou problémy:
Spin Up Time
Čas potřebný k roztočení ploten. S časem se zhoršuje, avšak poměrně pomalu. Náhlá změna značí poškození motorku otáčejícího plotny.

Drive c: () (Fixed) (Total:127.99 GB) (Free:13.44 GB) NTFS
Totální nedostatek volného místa na disku!! Něco odinstaluj , smaž. Máš mít nejméně 15-20% volného místa na syst. disku , pro zajištění bezproblémového chodu windows!!
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
qviik
Level 2.5
Level 2.5
Příspěvky: 272
Registrován: říjen 06
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod qviik » 22 srp 2016 20:18

Fix result of Farbar Recovery Scan Tool (x86) Version: 20-08-2016
Ran by Uživatel (22-08-2016 16:12:32) Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profiles: Uživatel & UpdatusUser (Available Profiles: Uživatel & UpdatusUser & Administrator)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
URLSearchHook: [S-1-5-21-1292428093-1965331169-725345543-1008] ATTENTION => Default URLSearchHook is missing
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}&rlz=1I7ADSA_cs
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}&rlz=1I7ADSA_cs
SearchScopes: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> {A6449408-719F-48B6-9B82-10E6783C412D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_5
BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll [2010-10-07] ()
Toolbar: HKU\S-1-5-21-1292428093-1965331169-725345543-1003 -> Nástroje Lištičky - {34AB3C4C-DA1A-4067-96F4-31452C7CFE65} - C:\Program Files\Seznam.cz\listicka.dll [2010-10-07] ()
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload.macromedia.com/get/sh ... wflash.cab
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Plugin HKU\S-1-5-21-1292428093-1965331169-725345543-1003: ubisoft.com/uplaypc -> E:\Hry\ac\Assassins Creed III\Orbit\npuplaypc.dll [No File]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => not found
CHR HKLM\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
S4 hpt3xx; no ImagePath
2016-08-19 15:20 - 2016-08-20 18:31 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-19 15:20 - 2016-08-20 18:14 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Documents and Settings\Uživatel\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
CustomCLSID: HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> no filepath
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84 [127]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1 [112]
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2 [220]
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\.DEFAULT\...\132.com -> www.132.com
IE restricted site: HKU\.DEFAULT\...\136136.net -> down.136136.net
IE restricted site: HKU\.DEFAULT\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\.DEFAULT\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\.DEFAULT\...\171203.com -> 171203.com
IE restricted site: HKU\.DEFAULT\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\.DEFAULT\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\.DEFAULT\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\.DEFAULT\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-19\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-19\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-19\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-19\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-19\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-19\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-19\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-19\...\1-extreme.biz -> www.1-extreme.biz
IE restricted site: HKU\S-1-5-19\...\1001-search.info -> www.1001-search.info
IE restricted site: HKU\S-1-5-19\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-19\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-19\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-19\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-19\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-19\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-19\...\139mm.com -> www.139mm.com
IE restricted site: HKU\S-1-5-19\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-19\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-19\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-19\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-20\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-20\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-20\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-20\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-20\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-20\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-20\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-20\...\1-extreme.biz -> www.1-extreme.biz
IE restricted site: HKU\S-1-5-20\...\1001-search.info -> www.1001-search.info
IE restricted site: HKU\S-1-5-20\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-20\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-20\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-20\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-20\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-20\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-20\...\139mm.com -> www.139mm.com
IE restricted site: HKU\S-1-5-20\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-20\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-20\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-20\...\1800searchonline.com -> www.1800searchonline.com
IE trusted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1003\...\1987324.com -> www.1987324.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\171203.com -> 171203.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1800searchonline.com -> www.1800searchonline.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180searchassistant.com -> www.180searchassistant.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\180solutions.com -> bis.180solutions.com
IE restricted site: HKU\S-1-5-21-1292428093-1965331169-725345543-1008\...\1987324.com -> www.1987324.com

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
Could not restore Default URLSearchHook.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\Tabs => value restored successfully
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => key removed successfully.
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => key not found.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A6449408-719F-48B6-9B82-10E6783C412D}" => key removed successfully.
HKCR\CLSID\{A6449408-719F-48B6-9B82-10E6783C412D} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}" => key removed successfully.
"HKCR\CLSID\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}" => key removed successfully.
HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{34AB3C4C-DA1A-4067-96F4-31452C7CFE65} => value removed successfully.
"HKCR\CLSID\{34AB3C4C-DA1A-4067-96F4-31452C7CFE65}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}" => key removed successfully.
"HKCR\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0" => key removed successfully.
C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll => not found.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\MozillaPlugins\ubisoft.com/uplaypc" => key removed successfully.
E:\Hry\ac\Assassins Creed III\Orbit\npuplaypc.dll => not found.
HKLM\Software\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => value removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\SOFTWARE\Google\Chrome\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd" => key removed successfully.
hpt3xx => service removed successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Documents and Settings\Uživatel\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe => moved successfully
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}" => key removed successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => not found.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => not found.
C:\Documents and Settings\All Users\Data aplikací\TEMP => ":430C6D84" ADS removed successfully..
C:\Documents and Settings\All Users\Data aplikací\TEMP => ":D1B5B4F1" ADS removed successfully..
C:\Documents and Settings\All Users\Data aplikací\TEMP => ":DFC5A2B2" ADS removed successfully..
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com" => key removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-extreme.biz" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1001-search.info" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\139mm.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com" => key removed successfully.
"HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-extreme.biz" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1001-search.info" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\139mm.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com" => key removed successfully.
"HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mojebanka.cz" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com" => key removed successfully.
"HKU\S-1-5-21-1292428093-1965331169-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com" => key removed successfully.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123topsearch.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\132.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\136136.net => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\163ns.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\17-plus.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\171203.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1800searchonline.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180searchassistant.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\180solutions.com => key not found.
HKU\S-1-5-21-1292428093-1965331169-725345543-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com => key not found.

=========== EmptyTemp: ==========

BITS transfer queue => 10337 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache => 56694 B
Java, Flash, Steam htmlcache => 4649447 B
Windows/system/dllcache/drivers => 16225 B
Edge => 0 B
Chrome => 0 B
Firefox => 380161043 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default User => 16610 B
All Users => 0 B
systemprofile => 65852 B
LocalService => 360 B
NetworkService => 66164 B
Uživatel => 973738 B
UpdatusUser => 32994 B
UpdatusUser => 0 B
Administrator => 32994 B

RecycleBin => 93283 B
EmptyTemp: => 368.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:13:08 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - "chroupe"

Příspěvekod jaro3 » 23 srp 2016 09:17

Uvolnil sis místa na disku?

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 14 hostů