zpomalený počítač Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: memphisto, Mods_senior, Security team

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 20 říj 2020 23:15

Fajn, ale pokračovat budu zase až zítra. Pro dnešek toho bylo dost.



Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41285
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: zpomalený počítač

Příspěvekod jaro3 » 20 říj 2020 23:40

OK.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 21 říj 2020 09:52

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-10-2020
Ran by Intel (administrator) on INTEL-PC (21-10-2020 09:46:30)
Running from C:\Users\Intel\Desktop
Loaded Profiles: Intel & UpdatusUser
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PowerPanel Personal.exe
() [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ppped.exe
() [File not signed] C:\Program Files\CyberPower PowerPanel Personal\pppServiceMonitor.exe
(ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(Canon Inc. -> ) C:\Program Files\Canon\IJPLM\ijplmsvc.exe
(Canon Inc. -> CANON INC.) C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Cyber Power Systems, Inc.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\bin\ppuser.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <14>
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(Pinnacle Systems GmbH -> Pinnacle Systems GmbH) [File not signed] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE
(SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [USBToolTip] => C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH -> Pinnacle Systems GmbH) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [98408 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [235624 2015-01-09] (Canon Inc. -> CANON INC.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [354304 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [25492152 2020-09-22] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\MountPoints2: {1d13b8e7-531e-11e2-8e7e-806e6f6e6963} - D:\setup.exe
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\MountPoints2: {3cc6fe37-895c-11e7-a975-002522cc5db0} - E:\LGAutoRun.exe
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\MountPoints2: {4c88391d-279e-11e5-9139-002522cc5db0} - E:\LGAutoRun.exe
HKLM\...\Windows NT x86\Print Processors\Canon MG5700 series Print Processor: C:\Windows\System32\spool\prtprocs\W32X86\CNMPDCS.DLL [29184 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows NT x86\Print Processors\OneNotePrint2007: C:\Windows\System32\spool\prtprocs\W32X86\msonpppr.dll [33104 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\Windows\system32\CNMLMCS.DLL [329728 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMNPPM.DLL [380928 2015-03-17] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\EPSON XP-302 303 305 306 Series 32MonitorBE: C:\Windows\system32\E_FLBIKE.DLL [95232 2011-04-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\Send To Microsoft OneNote Monitor: C:\Windows\system32\msonpmon.dll [32592 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\86.0.4240.75\Installer\chrmstp.exe [2020-10-13] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2020-05-04] (Adobe Inc. -> Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PowerPanel Personal.exe.lnk [2020-10-20]
ShortcutTarget: PowerPanel Personal.exe.lnk -> C:\Program Files\CyberPower PowerPanel Personal\PowerPanel Personal.exe () [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ppuser.exe.lnk [2020-10-20]
ShortcutTarget: ppuser.exe.lnk -> C:\Program Files\CyberPower PowerPanel Personal\bin\ppuser.exe (Cyber Power Systems, Inc.) [File not signed]
BootExecute: autocheck autochk /p \??\C:autocheck autochk * sdnclean.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0059FB46-8102-48A9-9891-629A12DCAECC} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {06C4B6E0-77E5-4393-B2D0-F7FDBE60EE56} - System32\Tasks\{0A574EDC-32C2-47EF-96A9-FA616CFA785B} => G:\RQMONEY\rqMoney.exe
Task: {06FADEF3-75AE-4B13-9739-597B806D5C96} - \Microsoft\Windows\Media Center\mcupdate -> No File <==== ATTENTION
Task: {0B0602FD-4C1C-4C2E-AA6F-F85FF4575F4F} - System32\Tasks\{DDD1000A-1A31-4420-8F87-71D18386A6A1} => C:\Windows\system32\pcalua.exe -a C:\Users\Intel\Desktop\STAŽENÉ\FacebookGameroom.exe -d C:\Users\Intel\Desktop\STAŽENÉ
Task: {10C3870F-2512-48A9-A8F5-61286360E6FF} - System32\Tasks\{D2F00E8C-3566-4324-A441-D8F419774BB7} => G:\RQMONEY\rqMoney.exe
Task: {1CBBD720-0C43-46AD-92F5-91736FD66014} - System32\Tasks\{1415C3A2-AA1E-4060-B300-736D2E421B35} => C:\Program Files\Screen+\Screen+.exe
Task: {1D2C972A-D464-4ECA-A2CE-3B378D3059A2} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> No File <==== ATTENTION
Task: {1E39F49B-6D5E-4791-B812-14C9C7629F38} - \Microsoft\Windows\Media Center\PeriodicScanRetry -> No File <==== ATTENTION
Task: {2E6871AC-922A-4BE3-B44A-CA51FB243E63} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3918440 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
Task: {2F215052-7DFD-408F-83E1-31CEE47049FE} - System32\Tasks\{59ED6C61-EC5A-4EB8-88FA-FEA0F6FD070E} => G:\RQMONEY\rqMoney.exe
Task: {3EF78351-7369-4FA8-A4F0-BA97FF2E097C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000UA => C:\Users\Intel\AppData\Local\Google\Update\GoogleUpdate.exe [153752 2017-01-28] (Google Inc -> Google Inc.)
Task: {453FB517-47C9-42FC-992D-C1726BD240B5} - System32\Tasks\{36CC4BAD-7313-4C8B-A7F2-B89E00E69D28} => G:\RQMONEY\rqMoney.exe
Task: {461E8EE3-730E-434B-AFA7-06C723B8E358} - System32\Tasks\{0A6411D2-33A2-4C88-8D0F-28127D72E1C1} => G:\RQMONEY\rqMoney.exe
Task: {4681955E-7063-4131-9504-787F81980212} - System32\Tasks\{24F1CEA6-9A3E-4FB4-823B-5ED22A31E3E8} => G:\RQMONEY\rqMoney.exe
Task: {4710A664-A499-4B5C-8BDF-870572DCA6D0} - System32\Tasks\{40AAC2AC-20D9-4F1B-88B9-FCC655B4B7FF} => G:\RQMONEY\rqMoney.exe
Task: {4E4F8D2D-0BD1-4F75-B297-E1C6E3320D65} - System32\Tasks\{5170504A-A7E5-4E36-8A88-2A693DDA13AA} => G:\RQMONEY\rqMoney.exe
Task: {50385C74-5419-4301-8CFD-78801842A89C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {6450843C-038D-4182-A96B-55D6203EDE69} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1499240 2020-09-18] (Avast Software s.r.o. -> Avast Software)
Task: {73520410-AB11-481B-B6F4-D71087BB1904} - \Microsoft\Windows\Media Center\PvrRecoveryTask -> No File <==== ATTENTION
Task: {77D1289F-F792-40F4-96AF-91735A14B2F2} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000Core => C:\Users\Intel\AppData\Local\Google\Update\GoogleUpdate.exe [153752 2017-01-28] (Google Inc -> Google Inc.)
Task: {86CE9F2B-13E1-4C2B-95AF-70E5039F2DED} - \Microsoft\Windows\Media Center\mcupdate_scheduled -> No File <==== ATTENTION
Task: {95F23B0C-485F-4381-AD5E-83070B7BE0AF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1341008 2020-09-06] (Adobe Inc. -> Adobe Inc.)
Task: {9D586BE3-1093-4A4B-817B-A269BFBC89DB} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_414_Plugin.exe [1475640 2020-08-28] (Adobe Inc. -> Adobe)
Task: {9D8A182D-E885-4691-8BB9-EDCDFF781595} - System32\Tasks\{276E1618-6400-4E6A-BCDA-144C04E1B4D3} => C:\Windows\system32\pcalua.exe -a D:\Setup.exe -d D:\
Task: {A41E333A-537E-4F0B-A9B5-8DAA885B7F8D} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> No File <==== ATTENTION
Task: {AF2EC8E4-DB3C-4382-B2DD-3FDC9BDA5360} - System32\Tasks\Defraggler Volume C Task => C:\Program Files\Defraggler\df.exe [1312424 2018-05-02] (Piriform Ltd -> Piriform Ltd) -> "C:" /ts /user "Intel" /appPath "C:\Program Files\Defraggler"
Task: {B28A1B4A-F517-4B47-A525-4E82DA472A64} - System32\Tasks\Opera scheduled Autoupdate 1457645462 => C:\Program Files\Opera\launcher.exe
Task: {B44ED93A-CAC9-4B13-B80B-E50AFCFCE06E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [25492152 2020-09-22] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BAAC666E-7892-4EB6-A08E-85B2FE5B9C53} - System32\Tasks\{03C8C398-CD03-4DB1-A224-5813808E2A52} => G:\RQMONEY\rqMoney.exe
Task: {BF876428-B9DB-483C-9E90-48637D32F46D} - System32\Tasks\AMHelper => C:\Program Files\Zemana\AntiMalware\AntiMalware.exe [658808 2020-07-29] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {C08A7396-140B-42EC-90E5-AF294FE1C2B2} - System32\Tasks\{D344807B-C1EC-4C3F-8737-049BAE86D346} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\AdorageI-SAL\uninstall.exe" -d "C:\Program Files\AdorageI-SAL"
Task: {C5A1F728-4DE9-47DD-9FAB-A2016118F317} - System32\Tasks\{B5BAAB5D-18CF-4B17-9D0C-07C70D655307} => G:\RQMONEY\rqMoney.exe
Task: {CFEDBC18-2528-4A63-B826-F87A7A06367C} - System32\Tasks\{961F100F-6E99-40C9-8AB4-B57B1E187EE2} => G:\RQMONEY\rqMoney.exe
Task: {D4036AE8-6723-4086-AB7F-B260F188CC7C} - System32\Tasks\{A408080A-5030-429E-801B-A8553F9D60FD} => C:\Windows\system32\pcalua.exe -a C:\Windows\unvise32qt.exe -c C:\Windows\system32\QuickTime\Uninstall.log
Task: {E6899645-CB8A-4AF5-ACC0-A7E9074BAC99} - System32\Tasks\{BB556B1C-A743-44E2-823B-C5F42F39BB91} => G:\RQMONEY\rqMoney.exe
Task: {E692DA33-754C-4FCE-B6CC-F0D1112533E8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-09-01] (Adobe Inc. -> Adobe)
Task: {E80B5483-EA99-461C-B8E9-E1519FBC16B9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {ECB73143-1C9F-4381-B34D-783F0996708E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-09-22] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {EDC587F5-30A6-4501-8BA6-E395E9F7D911} - System32\Tasks\{9D26F6B1-A005-4BDA-98A6-EDB941D330FF} => C:\Windows\system32\pcalua.exe -a C:\Users\Intel\Desktop\dotnetfx35.exe -d C:\Users\Intel\Desktop
Task: {F01BCAB3-3045-4191-A087-275A54536DBB} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> No File <==== ATTENTION
Task: {F1EE9D3A-3D5E-4272-AF22-E224F6FF220A} - \Microsoft\Windows\Media Center\PvrScheduleTask -> No File <==== ATTENTION
Task: {F3FD7603-67B8-413E-9213-7A0E994C84FC} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_414_pepper.exe [1471032 2020-09-01] (Adobe Inc. -> Adobe)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Defraggler Volume C Task.job => C:\Program Files\Defraggler\df.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{AAFB7044-D31E-4F0B-874D-1C94438C213C}: [DhcpNameServer] 10.0.1.138

FireFox:
========
FF ProfilePath: C:\Users\Intel\AppData\Roaming\Mozilla\Sunbird\Profiles\8r8xrm5b.default [2020-10-20]
FF Homepage: Mozilla\Sunbird\Profiles\8r8xrm5b.default -> about:home
FF NewTab: Mozilla\Sunbird\Profiles\8r8xrm5b.default -> about:newtab
FF Extension: (No Name) - C:\Program Files\Mozilla Sunbird\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} [not found]
FF Extension: (No Name) - C:\Program Files\Mozilla Sunbird\extensions\calendar-timezones@mozilla.org [not found]
FF Extension: (No Name) - C:\Program Files\Mozilla Sunbird\extensions\talkback@mozilla.org [not found]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_32_0_0_414.dll [2020-08-28] (Adobe Inc. -> )
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2017-10-17] (CANON INC.) [File not signed]
FF Plugin: @java.com/DTPlugin,version=10.21.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-11] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll [2012-03-29] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2012-12-01] (NVIDIA CORPORATION -> NVIDIA Corporation) [File not signed]
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2012-12-01] (NVIDIA CORPORATION -> NVIDIA Corporation) [File not signed]
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-09-11] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3643734996-1694586397-727135667-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Intel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default [2020-10-21]
CHR Notifications: Default -> hxxps://calendar.google.com
CHR HomePage: Default -> www.google.com
CHR StartupUrls: Default -> "hxxps://calendar.google.com/calendar/u/0/r?tab=wc","hxxp://www.mesto-nymburk.cz/"
CHR Extension: (Prezentace) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-10-20]
CHR Extension: (Dokumenty) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-10-20]
CHR Extension: (Disk Google) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-20]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-10-20]
CHR Extension: (YouTube) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-10-20]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-10-20]
CHR Extension: (Tipli do prohlížeče) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2020-10-20]
CHR Extension: (Adobe Acrobat) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-10-20]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-10-20]
CHR Extension: (Tabulky) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-10-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-20]
CHR Extension: (Avast Online Security) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-10-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-10-20]
CHR Extension: (Gmail) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-20]
CHR Extension: (Chrome Media Router) - C:\Users\Intel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-20]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
R2 AdobeARMservice; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [169544 2020-09-06] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-09-01] (Adobe Inc. -> Adobe)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [7522208 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [332344 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R2 EpsonBidirectionalService; C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [File not signed]
R2 EPSON_EB_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE [167520 2011-11-01] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [397256 2018-11-19] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [5748400 2020-10-19] (Malwarebytes Inc -> Malwarebytes)
R2 PowerPanel Personal Service; C:\Program Files\CyberPower PowerPanel Personal\ppped.exe [11264 2020-07-17] () [File not signed]
R2 PowerPanel Personal Service Monitor; C:\Program Files\CyberPower PowerPanel Personal\pppServiceMonitor.exe [601088 2020-07-17] () [File not signed]
S3 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [11920952 2020-09-15] (Adlice -> )
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
U4 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [46976 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R1 amsdk; C:\Windows\system32\drivers\amsdk.sys [208824 2020-10-20] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [26112 2010-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Google Inc)
U5 ASAPIW2K; C:\Windows\System32\Drivers\ASAPIW2K.sys [11264 2005-02-23] (VOB Computersysteme GmbH) [File not signed]
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [35040 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [175776 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [189520 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [154696 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [55888 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40736 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [147712 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [375192 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [36104 2020-04-15] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [94192 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72840 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [691064 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [396616 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [163312 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [277960 2020-10-15] (Avast Software s.r.o. -> AVAST Software)
S3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [22528 2009-08-13] (Microsoft Windows Hardware Compatibility Publisher -> CSR, plc)
R3 EtronHub3; C:\Windows\System32\Drivers\EtronHub3.sys [32384 2013-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Etron Technology Inc)
R3 EtronXHCI; C:\Windows\System32\Drivers\EtronXHCI.sys [52352 2013-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Etron Technology Inc)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Pinnacle Systems GmbH)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [182032 2020-10-19] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [213912 2020-10-19] (Malwarebytes Inc -> Malwarebytes)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [41088 2010-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R2 mi2c; C:\Windows\system32\drivers\mi2c.sys [18224 2018-05-18] (AOC International (Europe) GmbH -> Nicomsoft Ltd.)
R1 networx; C:\Windows\System32\drivers\networx.sys [85176 2018-09-23] (SoftPerfect Pty. Ltd. -> Windows (R) Win 7 DDK provider)
R1 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [98432 2009-09-19] (MCCI Corporation -> MCCI)
S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14848 2009-09-19] (MCCI Corporation -> MCCI Corporation)
S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [123648 2009-09-19] (MCCI Corporation -> MCCI Corporation)
U4 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-10-21 09:46 - 2020-10-21 09:47 - 000026470 _____ C:\Users\Intel\Desktop\FRST.txt
2020-10-21 09:46 - 2020-10-21 09:46 - 000000000 ____D C:\FRST
2020-10-21 09:33 - 2020-10-21 09:33 - 002013696 _____ (Farbar) C:\Users\Intel\Desktop\FRST.exe
2020-10-20 22:31 - 2020-10-20 22:31 - 000000000 ____D C:\Users\Intel\Desktop\backups
2020-10-20 18:12 - 2020-10-20 18:14 - 000000000 ____D C:\Users\Intel\Desktop\CrystalDiskInfo8_8_7
2020-10-20 17:54 - 2020-10-20 17:54 - 000000000 ____D C:\Users\Intel\Desktop\MemTest
2020-10-20 17:38 - 2020-10-20 17:38 - 000388608 _____ (Trend Micro Inc.) C:\Users\Intel\Desktop\HijackThis.exe
2020-10-20 14:47 - 2020-10-20 14:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberPower PowerPanel Personal
2020-10-20 14:46 - 2020-10-20 14:47 - 000000000 ____D C:\Program Files\CyberPower PowerPanel Personal
2020-10-20 14:46 - 2020-10-20 14:46 - 000000000 ____D C:\Users\Intel\AppData\Local\PowerPanel Personal Edition
2020-10-20 10:00 - 2020-10-21 09:47 - 000062927 _____ C:\Windows\ZAM.krnl.trace
2020-10-20 10:00 - 2020-10-20 21:07 - 000003462 _____ C:\Windows\system32\Tasks\AMHelper
2020-10-20 10:00 - 2020-10-20 10:00 - 000208824 _____ (Copyright 2018.) C:\Windows\system32\Drivers\amsdk.sys
2020-10-20 10:00 - 2020-10-20 10:00 - 000001960 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2020-10-20 10:00 - 2020-10-20 10:00 - 000001960 _____ C:\ProgramData\Desktop\Zemana AntiMalware.lnk
2020-10-20 10:00 - 2020-10-20 10:00 - 000000000 ____D C:\Users\Intel\AppData\Local\Zemana
2020-10-20 10:00 - 2020-10-20 10:00 - 000000000 ____D C:\Users\Intel\AppData\Local\AMSDK
2020-10-20 10:00 - 2020-10-20 10:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2020-10-20 10:00 - 2020-10-20 10:00 - 000000000 ____D C:\Program Files\Zemana
2020-10-20 01:01 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2020-10-20 00:26 - 2020-10-20 00:59 - 000000000 ____D C:\zoek_backup
2020-10-19 23:02 - 2020-10-19 23:02 - 000000965 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2020-10-19 23:02 - 2020-10-19 23:02 - 000000965 _____ C:\ProgramData\Desktop\RogueKiller.lnk
2020-10-19 23:02 - 2020-10-19 23:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2020-10-19 23:01 - 2020-10-19 23:08 - 000000000 ____D C:\ProgramData\RogueKiller
2020-10-19 23:01 - 2020-10-19 23:02 - 000000000 ____D C:\Program Files\RogueKiller
2020-10-19 21:35 - 2020-10-19 21:35 - 000002747 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2020-10-19 21:35 - 2020-10-19 21:35 - 000002747 _____ C:\ProgramData\Desktop\Sophos Virus Removal Tool.lnk
2020-10-19 21:35 - 2020-10-19 21:35 - 000000000 ____D C:\ProgramData\Sophos
2020-10-19 21:35 - 2020-10-19 21:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2020-10-19 21:34 - 2020-10-19 21:34 - 000000000 ____D C:\Program Files\Sophos
2020-10-19 21:05 - 2020-10-19 21:05 - 001790024 _____ (Malwarebytes) C:\Users\Intel\Desktop\JRT.exe
2020-10-19 18:20 - 2020-10-21 08:56 - 000000000 ____D C:\Users\Intel\AppData\LocalLow\IGDump
2020-10-19 18:18 - 2020-10-19 18:18 - 000182032 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-10-19 18:18 - 2020-10-19 18:18 - 000001924 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-10-19 18:18 - 2020-10-19 18:18 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-10-19 18:18 - 2020-10-19 18:18 - 000001912 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-10-19 18:18 - 2020-10-19 18:18 - 000000000 ____D C:\Users\Intel\AppData\Local\mbam
2020-10-19 18:17 - 2020-10-19 18:17 - 000213912 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-10-19 18:17 - 2020-10-19 18:17 - 000129056 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae.sys
2020-10-19 18:10 - 2020-10-19 18:10 - 008414384 _____ (Malwarebytes) C:\Users\Intel\Desktop\adwcleaner_8.0.7.exe
2020-10-19 18:06 - 2020-10-19 20:51 - 000000000 ____D C:\AdwCleaner
2020-10-19 17:46 - 2020-10-19 17:46 - 000448512 _____ (OldTimer Tools) C:\Users\Intel\Desktop\TFC.exe
2020-10-19 14:10 - 2020-10-19 14:10 - 000000017 _____ C:\Users\Intel\AppData\Local\resmon.resmoncfg
2020-10-15 11:50 - 2020-10-15 11:50 - 000285280 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2020-10-15 11:50 - 2020-10-15 11:50 - 000163312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2020-10-15 11:50 - 2020-10-15 11:50 - 000147712 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2020-10-09 23:43 - 2020-10-09 23:43 - 000001990 _____ C:\Users\Intel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP3Studio CENZURA.lnk
2020-10-09 23:43 - 2020-10-09 23:43 - 000000000 ____D C:\Program Files\MP3Studio CENZURA

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-10-21 08:59 - 2009-07-14 06:34 - 000032432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-10-21 08:59 - 2009-07-14 06:34 - 000032432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-10-21 08:56 - 2012-12-31 10:41 - 000000000 ____D C:\ProgramData\AVAST Software
2020-10-21 08:46 - 2020-06-05 00:22 - 000000400 _____ C:\Windows\Tasks\Defraggler Volume C Task.job
2020-10-21 08:46 - 2012-12-31 10:50 - 000000000 ____D C:\ProgramData\NVIDIA
2020-10-21 08:46 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-10-20 21:07 - 2020-06-05 00:22 - 000003736 _____ C:\Windows\system32\Tasks\Defraggler Volume C Task
2020-10-20 21:07 - 2018-10-21 19:34 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-10-20 21:07 - 2018-10-21 19:34 - 000002790 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-10-20 21:07 - 2017-01-28 00:10 - 000003562 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000UA
2020-10-20 21:07 - 2017-01-28 00:10 - 000003290 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000Core
2020-10-20 21:07 - 2015-12-03 15:42 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2020-10-20 21:07 - 2014-12-25 11:01 - 000004464 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-10-20 21:07 - 2012-12-31 10:10 - 000003374 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-10-20 21:07 - 2012-12-31 10:10 - 000003246 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-10-20 18:21 - 2020-02-16 12:30 - 000002130 _____ C:\Users\Intel\Desktop\Veřejné – zástupce.lnk
2020-10-20 14:22 - 2017-03-02 10:22 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2020-10-19 18:17 - 2017-12-17 23:55 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-10-19 18:17 - 2017-12-17 23:55 - 000000000 ____D C:\Program Files\Malwarebytes
2020-10-19 14:06 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2020-10-16 09:21 - 2020-02-16 12:25 - 000023040 ___SH C:\Users\Public\Thumbs.db
2020-10-16 09:21 - 2016-05-11 10:54 - 001523712 ___SH C:\Users\Intel\Desktop\Thumbs.db
2020-10-15 11:56 - 2020-04-15 08:45 - 000375192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2020-10-15 11:50 - 2019-01-06 19:30 - 000154696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2020-10-15 11:50 - 2019-01-06 19:30 - 000055888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2020-10-15 11:50 - 2018-10-20 08:32 - 000040736 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2020-10-15 11:50 - 2013-03-14 10:23 - 000277960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2020-10-15 11:50 - 2013-03-14 10:23 - 000072840 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2020-10-15 11:50 - 2012-12-31 10:42 - 000396616 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2020-10-15 11:50 - 2012-12-31 10:42 - 000094192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2020-10-15 11:48 - 2017-11-11 09:42 - 000175776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2020-10-15 11:47 - 2019-01-14 17:25 - 000189520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2020-10-15 11:47 - 2019-01-06 19:30 - 000035040 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2020-10-15 11:47 - 2012-12-31 10:42 - 000691064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2020-10-13 10:25 - 2012-12-31 10:13 - 000002134 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-10-10 09:00 - 2019-09-15 11:05 - 000000000 ____D C:\Users\Intel\Desktop\STAŽENÉ
2020-10-01 18:56 - 2019-04-05 17:27 - 000000000 ____D C:\ProgramData\CanonIJPLM
2020-10-01 16:47 - 2013-01-03 10:31 - 000000000 ____D C:\Program Files\Defraggler
2020-09-26 10:17 - 2015-12-04 13:31 - 000001993 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-09-24 13:07 - 2013-01-08 18:05 - 000000000 ____D C:\Users\Intel\AppData\Roaming\Mozilla
2020-09-24 13:07 - 2013-01-08 18:05 - 000000000 ____D C:\Users\Intel\AppData\Local\Mozilla
2020-09-24 13:02 - 2019-05-03 10:03 - 000001151 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2020-09-24 13:02 - 2019-05-03 10:03 - 000001151 _____ C:\ProgramData\Desktop\Revo Uninstaller.lnk
2020-09-24 13:02 - 2019-05-03 10:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2020-09-24 12:22 - 2016-11-16 12:23 - 000000000 ____D C:\Users\Intel\AppData\LocalLow\Mozilla
2020-09-24 10:12 - 2013-01-08 18:05 - 000000000 ____D C:\ProgramData\Mozilla
2020-09-24 08:50 - 2018-10-26 16:36 - 000000929 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-09-24 08:50 - 2018-10-26 16:36 - 000000929 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-09-23 11:11 - 2011-04-12 03:37 - 000698644 _____ C:\Windows\system32\perfh005.dat
2020-09-23 11:11 - 2011-04-12 03:37 - 000155284 _____ C:\Windows\system32\perfc005.dat
2020-09-23 11:11 - 2010-11-20 23:01 - 001672304 _____ C:\Windows\system32\PerfStringBackup.INI

==================== Files in the root of some directories ========

2016-04-14 10:08 - 2016-04-14 10:08 - 000000082 _____ () C:\Users\Guest\cc_20160414_100753.reg
2013-05-01 14:27 - 2013-05-01 14:27 - 000000057 _____ () C:\Users\Intel\AppData\Roaming\AVSDVDPlayer.m3u
2014-01-18 17:56 - 2015-12-15 01:00 - 000026545 _____ () C:\Users\Intel\AppData\Roaming\Hodnoty oddělené čárkami (Windows).ADR
2013-02-05 14:43 - 2013-02-05 14:43 - 000000093 _____ () C:\Users\Intel\AppData\Local\fusioncache.dat
2020-10-19 14:10 - 2020-10-19 14:10 - 000000017 _____ () C:\Users\Intel\AppData\Local\resmon.resmoncfg
2016-03-14 14:49 - 2016-03-15 14:04 - 000032038 _____ () C:\Users\Intel\AppData\Local\SquareClock.Production_Home_Siko_WebIcon.ico
2015-07-19 00:20 - 2015-07-19 00:35 - 000000059 _____ () C:\Users\Intel\AppData\Local\UserProducts.xml

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2020-10-14 18:59
==================== End of FRST.txt ========================

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 21 říj 2020 10:00

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 19-10-2020
Ran by Intel (21-10-2020 09:47:36)
Running from C:\Users\Intel\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) (2012-12-31 07:50:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3643734996-1694586397-727135667-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3643734996-1694586397-727135667-1004 - Limited - Enabled)
Guest (S-1-5-21-3643734996-1694586397-727135667-501 - Limited - Enabled) => C:\Users\Guest
Intel (S-1-5-21-3643734996-1694586397-727135667-1000 - Administrator - Enabled) => C:\Users\Intel
Ivan (S-1-5-21-3643734996-1694586397-727135667-1002 - Limited - Enabled) => C:\Users\Ivan
UpdatusUser (S-1-5-21-3643734996-1694586397-727135667-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 15.14 (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
7-Zip 19.00 (HKLM\...\{23170F69-40C1-2701-1900-000001000000}) (Version: 19.00.00.0 - Igor Pavlov)
ABBYY FineReader 9.0 Sprint (HKLM\...\{F9000000-0018-0000-0000-074957833700}) (Version: 9.01.513.58212 - ABBYY) Hidden
Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.012.20048 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 32.0.0.321 - Adobe)
Adobe Flash Player 32 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 32.0.0.414 - Adobe)
Adobe Flash Player 32 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 32.0.0.414 - Adobe)
Aktualizace NVIDIA 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation)
Any Video Converter 5 5.0.4 (HKLM\...\Any Video Converter 5_is1) (Version: - Any-Video-Converter.com)
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 20.8.2432 - Avast Software)
Canon Easy-WebPrint EX (HKLM\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: 1.5.4.4 - Canon Inc.)
Canon IJ Network Tool (HKLM\...\Canon_IJ_Network_UTILITY) (Version: 3.7.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM\...\CANONIJPLM100) (Version: 6.0.1 - Canon Inc.)
Canon MG5700 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5700_series) (Version: 1.00 - Canon Inc.)
Canon MG5700 series On-screen Manual (HKLM\...\Canon MG5700 series On-screen Manual) (Version: 7.8.0 - Canon Inc.)
Canon My Image Garden (HKLM\...\Canon My Image Garden) (Version: 3.6.1 - Canon Inc.)
Canon My Image Garden Design Files (HKLM\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon My Printer (HKLM\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Quick Menu (HKLM\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.72 - Piriform)
Crystal Reports Basic Runtime for Visual Studio 2008 (HKLM\...\{CE26F10F-C80F-4377-908B-1B7882AE2CE3}) (Version: 10.5.0.0 - Business Objects)
CyberPower PowerPanel Personal 2.2.2 (HKLM\...\5708-0475-1423-7128) (Version: 2.2.2 - CyberPower Systems, Inc.)
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
Doplněk Microsoft Save as PDF or XPS pro aplikace sady Microsoft Office 2007 (HKLM\...\{90120000-00B2-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1025 - Microsoft Corporation)
Etron USB3.0 Host Controller (HKLM\...\{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology) Hidden
Etron USB3.0 Host Controller (HKLM\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology)
Euro Truck Simulator 2 (HKLM\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.2.5 - SCS Software)
FormatFactory 3.8.0.0 (HKLM\...\FormatFactory) (Version: 3.8.0.0 - Free Time)
Google Earth Pro (HKLM\...\{59F21DFB-6977-434B-9CB9-67783D6E7B6B}) (Version: 7.3.3.7786 - Google)
Google Chrome (HKLM\...\Google Chrome) (Version: 86.0.4240.75 - Google LLC)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
HFX Volume 1 (HKLM\...\{468B359F-BAEF-466F-BB82-5EDEA1D8B2FB}) (Version: 11.00.0000 - Pinnacle Systems)
HFX Volume 2 (HKLM\...\{37F79692-6F8A-487E-BF5A-A1E3227D9830}) (Version: 11.00.0000 - Pinnacle Systems)
Indeo® software (HKLM\...\Indeo® software) (Version: - )
IZArc 4.1.7 (HKLM\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1.7 - Ivan Zahariev)
LAME v3.99.3 (for Windows) (HKLM\...\LAME_is1) (Version: - )
Malwarebytes version 4.2.1.89 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.2.1.89 - Malwarebytes)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
Microsoft .NET Framework 1.1 Czech Language Pack (HKLM\...\{5E65E94D-69F2-4850-9E93-6459C53A0F50}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.1.10329.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MP3Studio CENZURA (HKLM\...\{2e84754d-1df7-46ab-88f3-3e2f0c63e48f}) (Version: 1.5.9.0 - MP3Studio)
MP3Studio CENZURA (HKLM\...\{D99486D6-6F9B-4BF7-B719-A347A3EC28B0}) (Version: 1.5.9.0 - MP3Studio/) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Need for Speed Underground 2 (HKLM\...\{909F8EBC-EC7F-48FF-0085-475D818F0F31}) (Version: - )
NVIDIA Ovladač 3D Vision 310.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 310.70 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.18.0 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 310.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 310.70 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 310.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 310.70 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
Ovládací panel NVIDIA 310.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 310.70 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
oZone3D.Net FurMark v1.6.5 (HKLM\...\oZone3D.Net FurMark_is1) (Version: - oZone3D.Net)
PhotoFiltre (HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\PhotoFiltre) (Version: - )
Pinnacle Instant DVD Recorder (HKLM\...\{EF781A5C-58F5-4BFD-87F9-E4F14D382F25}) (Version: - )
Pinnacle Studio 15 (HKLM\...\{1362E602-9625-42D3-B57F-CDA9D26F9DA8}) (Version: 15.0.0.7593 - Pinnacle Systems)
Pinnacle Studio 15 Ultimate Plugins (HKLM\...\{EB5DF19E-75D5-4FF1-AE23-2A9A2E0F2BDD}) (Version: 15.0.0.7593 - Pinnacle Systems)
Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
Red Giant ToonIt Studio 15 (HKLM\...\Red Giant ToonIt Studio 15) (Version: - )
Registrace uživatele zařízení Canon MG5700 series (HKLM\...\Registrace uživatele zařízení Canon MG5700 series) (Version: - ‭Canon Inc.)
Revo Uninstaller 2.1.7 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.7 - VS Revo Group, Ltd.)
RogueKiller version 14.7.3.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 14.7.3.0 - Adlice Software)
Sophos Virus Removal Tool (HKLM\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.7.0 - Sophos Limited)
Widevine Media Optimizer Chrome 6.0.0 (HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\optimizer_chrome) (Version: 6.0.0.12757 - Widevine Technologies)
Zemana AntiMalware verze 3.2.27 (HKLM\...\{4E1F3677-C72E-4F7D-B66E-85467B1A289E}_is1) (Version: 3.2.27 - Zemana)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\Intel\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Intel\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{5B004CDE-0211-469C-B9B5-0552E7E63917}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) [File not signed]
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\psuser.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{6DDCE70D-A4AE-4E97-908C-BE7B2DB750AD}\localserver32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{76E4F6D9-763A-7C9F-E573-BCBAAAEC43B7}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{77D8C8C7-6B46-4429-B876-DBC006C96EB1}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) [File not signed]
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\psuser.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{CD37ED08-860C-4B86-AD25-5587D8386587}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) [File not signed]
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\GoogleUpdateOnDemand.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Intel\AppData\Local\Google\Update\1.3.36.32\psuser.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{16753564-CEFD-4C69-9F32-850B30421898}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{1CE60B82-AB98-4235-A05E-34D677E3CA37}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{1F274CE7-6D10-4ED8-B8CB-F6E6CF588D2B}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{217A615D-E1AC-4564-B44E-D3009F910BDB}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{24DD3FD9-494E-46C1-BA88-CC5767A11057}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{2B53FE7F-472A-4610-90FB-A7197FB2A516}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\IDiscSDK2.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\UpdatusUser\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{541A942C-CE11-494B-A577-89265B8AEE2D}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{59216462-CA07-4FFE-9877-0ECB98D7606B}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\datrans.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{5B004CDE-0211-469C-B9B5-0552E7E63917}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) [File not signed]
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{5BAF0283-793D-4A38-AA0D-11EDD499A334}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{600E7B70-2A8E-4D30-BA32-90B8E4D220BC}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{609EC0E6-3054-4D06-A2FA-9957E26351A7}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{61A04DD2-C5C8-44A5-8001-14FB85DD994E}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\PCLEmsl.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{68A874E7-8EF6-423F-8E37-C5785FB735D3}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{7244EEEC-C949-4D71-9E91-5DCA7CAFE766}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{764575F8-C8F3-491E-94E9-9EC8F8A88005}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{76E4F6D9-763A-7C9F-E573-BCBAAAEC43B7}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{77D8C8C7-6B46-4429-B876-DBC006C96EB1}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) [File not signed]
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{7E509275-B08C-49B2-9422-B0AF845A3EE8}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\IDiscSDK2.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{9617017E-A373-472E-8973-B3B143922EEA}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{9705ECE3-137C-41B1-8F9A-C32B3AC4C777}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{B12625F9-2B2A-41CF-BDD2-D64E3F332504}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{B63545AB-0EB7-4E99-9AFF-1EB43624B0DF}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{CD37ED08-860C-4B86-AD25-5587D8386587}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) [File not signed]
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{D1232BBD-55E7-4D36-936C-681137957356}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\DAL.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{D7FD0D2C-1C00-4D6B-80E4-3583A9CC3180}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{E1911E0C-F857-4C42-AE4A-DBCBEEDB3283}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files\Zemana\AntiMalware\AM_ShellExt32.dll [2020-07-29] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1: [IMMenuShellExt] -> {F8984111-38B6-11D5-8725-0050DA2761C4} => -> No File
ContextMenuHandlers1: [IZArcCM] -> {BC593DF5-466F-44EC-8FFD-C4DBC603B917} => C:\Program Files\IZArc\IZArcCM.dll [2012-07-20] () [File not signed]
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-10-19] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [IZArcCM] -> {BC593DF5-466F-44EC-8FFD-C4DBC603B917} => C:\Program Files\IZArc\IZArcCM.dll [2012-07-20] () [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2012-12-01] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files\Zemana\AntiMalware\AM_ShellExt32.dll [2020-07-29] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-10-19] (Malwarebytes Corporation -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.iv31] => C:\Windows\system32\ir32_32.dll [197632 2009-07-14] (Microsoft Windows -> Intel(R) Corporation)
HKLM\...\Drivers32: [vidc.iv32] => C:\Windows\system32\ir32_32.dll [197632 2009-07-14] (Microsoft Windows -> Intel(R) Corporation)
HKLM\...\Drivers32: [vidc.mjpg] => pvmjpg30.dll
HKLM\...\Drivers32: [msacm.voxacm160] => C:\Windows\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [File not signed]
HKLM\...\Drivers32: [msacm.scg726] => C:\Windows\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [File not signed]
HKLM\...\Drivers32: [msacm.alf2cd] => C:\Windows\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [File not signed]
HKLM\...\Drivers32: [vidc.dvsd] => C:\Windows\system32\mcdvd_32.dll [261632 2007-09-27] (MainConcept) [File not signed]
HKLM\...\Drivers32: [vidc.xvid] => C:\Windows\system32\xvidvfw.dll [139264 2007-09-27] () [File not signed]
HKLM\...\Drivers32: [vidc.DIVX] => C:\Windows\system32\DivX.dll [638976 2007-09-27] (DivXNetworks, Inc.) [File not signed]
HKLM\...\Drivers32: [vidc.mpg4] => C:\Windows\system32\mpg4c32.dll [413760 2007-09-27] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.mp42] => C:\Windows\system32\mpg4c32.dll [413760 2007-09-27] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.mp43] => C:\Windows\system32\mpg4c32.dll [413760 2007-09-27] (Microsoft Corporation) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

==================== Loaded Modules (Whitelisted) =============

2020-10-20 14:46 - 2017-09-15 07:35 - 000128512 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\_cffi_backend.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:09 - 001196032 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\bin\ppbedrv.dll
2020-10-20 14:46 - 2020-07-17 11:09 - 000163840 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\bin\ppbedrvc.dll
2020-10-20 14:46 - 2020-07-17 11:16 - 000021504 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\AdvancedHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000015360 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\AppTrayHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\DeviceConfigHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000016896 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\DevicePropHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000020992 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\DeviceStatusHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000023552 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\EnergyHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000020480 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\EventLogsHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000016384 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\MenuHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000029696 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\NotificationHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000017408 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\RuntimeHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000019968 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\SelfTestHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000024064 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\ScheduleHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000019456 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\SummaryHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000014336 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientHandler\VoltageHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000016384 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\ClientModel\DaemonStatus.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\BypassEventCount.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000017920 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\DesktopInteractiveServer.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000023552 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\DeviceConfigure.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000015360 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\DeviceLogHelper.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:12 - 000098816 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\DeviceMonitor.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:13 - 000052224 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\DevicePropertiesFetcher.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:13 - 000024064 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\EnergyRecorder.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:14 - 000077824 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\EventAnalyzer.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:14 - 000092160 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\MobileDataProvider.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:14 - 000024064 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\TransactionHelper.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:14 - 000055808 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\controllers\WebAppController.cp36-win32.pyd
2020-10-20 14:46 - 2017-09-15 07:35 - 000009728 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\cryptography\hazmat\bindings\_constant_time.pyd
2020-10-20 14:46 - 2017-09-15 07:35 - 002095616 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\cryptography\hazmat\bindings\_openssl.pyd
2020-10-20 14:46 - 2017-09-15 07:35 - 000009728 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\cryptography\hazmat\bindings\_padding.pyd
2020-10-20 14:46 - 2020-07-17 11:17 - 000015360 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Events\Event.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:17 - 000034816 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Events\EventsMobile.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000041984 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\AdvancedHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000017408 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\AppTrayHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000018944 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\DevicePropHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\DeviceStatusHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\EnergyHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000017408 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\EventLogsHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000026624 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\NotificationHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000016896 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\RuntimeHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000016384 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\SelfTestHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000033792 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\ScheduleHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000014848 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\SummaryHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\handler_refactor\VoltageHandler.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:17 - 000073728 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\major\AppClient.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:18 - 000072704 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\major\AppServer.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:18 - 000009728 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\major\Command.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:18 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\major\Verification.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000092672 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\DataSource2.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:14 - 000016896 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\DBSession.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000034816 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\Device.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000029696 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\DevicePropertiesData.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000035840 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\DevicePushMessageData.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000029184 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\DeviceStatusData.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000016896 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\DriverTransaction.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000015872 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\Statement.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000014336 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\Transaction.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:15 - 000033792 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\model_Json\WebAppData.cp36-win32.pyd
2020-10-20 14:46 - 2017-12-07 13:05 - 001751040 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\QtCore.pyd
2020-10-20 14:46 - 2017-12-07 13:05 - 001879040 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\QtGui.pyd
2020-10-20 14:46 - 2017-12-07 13:05 - 000513024 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\QtNetwork.pyd
2020-10-20 14:46 - 2017-12-07 13:05 - 003814400 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel =============

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 21 říj 2020 10:00

Personal\PyQt5\QtWidgets.pyd
2020-10-20 14:46 - 2017-06-21 08:02 - 000111616 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\pywintypes36.dll
2020-10-20 14:46 - 2017-03-13 21:15 - 000033792 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\servicemanager.pyd
2020-10-20 14:46 - 2017-12-07 13:06 - 000084992 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\sip.pyd
2020-10-20 14:46 - 2017-07-05 17:30 - 000013824 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\sqlalchemy\cprocessors.cp36-win32.pyd
2020-10-20 14:46 - 2017-07-05 17:30 - 000014848 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\sqlalchemy\cresultproxy.cp36-win32.pyd
2020-10-20 14:46 - 2017-07-05 17:30 - 000009728 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\sqlalchemy\cutils.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000008192 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\System\buildConfig.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000014336 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\System\module.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000014336 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\System\settings.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000017408 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\System\systemDefine.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000034304 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\System\systemFunction.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:11 - 000021504 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\System\ValueId.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000017408 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\DataCryptor.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000043520 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\EmailSender.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000016384 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\HelpOpener.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000014336 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\HibernateMac.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000014336 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\HibernateWin.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:17 - 000017920 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\i18nTranslater.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000023552 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\Logger.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000024576 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\OAuthManagement.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000018944 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\OSOperator.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000020480 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\RequestImp.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000012800 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\ShutdownMac.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000016384 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\ShutdownUtil.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000012800 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\ShutdownWin.cp36-win32.pyd
2020-10-20 14:46 - 2020-07-17 11:16 - 000066048 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Utility\Scheduler.cp36-win32.pyd
2020-10-20 14:47 - 2017-03-13 21:15 - 000103424 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\win32api.pyd
2020-10-20 14:47 - 2017-03-13 21:14 - 000021504 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\win32event.pyd
2020-10-20 14:47 - 2017-03-13 21:15 - 000173568 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\win32gui.pyd
2020-10-20 14:47 - 2017-03-13 21:15 - 000046592 _____ () [File not signed] C:\Program Files\CyberPower PowerPanel Personal\win32service.pyd
2019-04-05 18:33 - 2015-01-09 08:45 - 000008192 _____ (CANON INC.) [File not signed] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNSS_CSY.DLL
2019-04-05 18:33 - 2015-01-09 08:44 - 000104960 _____ (CANON INC.) [File not signed] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNSS_IMG.dll
2019-04-05 17:27 - 2017-12-07 11:25 - 000219648 _____ (CANON INC.) [File not signed] C:\Program Files\Canon\IJPLM\cnmpu2.dll
2019-04-05 18:32 - 2015-03-17 08:50 - 000380928 _____ (CANON INC.) [File not signed] C:\Windows\System32\CNMNPPM.DLL
2008-04-11 11:54 - 2008-04-11 11:54 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\MSVCR71.dll
2006-10-09 16:07 - 2006-10-09 16:07 - 001060864 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\MFC71.DLL
2006-10-09 16:07 - 2006-10-09 16:07 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\MSVCR71.dll
2013-06-03 14:42 - 2013-06-03 14:42 - 000097280 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\ATL80.DLL
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\ucrtbase.DLL
2020-07-10 08:42 - 2020-07-10 08:42 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\1029\avast.local_vc142.crt\VCRUNTIME140.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-environment-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-filesystem-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-locale-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-math-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-multibyte-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-time-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\api-ms-win-crt-utility-l1-1-0.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\MSVCP140.dll
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\ucrtbase.DLL
2020-10-20 13:35 - 2020-10-20 13:35 - 000000000 ____L (Microsoft Corporation) C:\Program Files\AVAST Software\Avast\defs\20102000\avast.local_vc142.crt\VCRUNTIME140.dll
2015-04-13 16:23 - 2007-09-18 16:44 - 000421888 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Common Files\EPSON\EBAPI\eEBIPDev.dll
2015-04-13 16:23 - 2005-09-06 08:50 - 000102400 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Common Files\EPSON\EBAPI\eEBLPDev.dll
2015-04-13 16:23 - 2006-12-26 14:58 - 000233544 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Common Files\EPSON\EBAPI\eEBMSDev.dll
2015-04-13 16:23 - 2004-11-17 16:56 - 000286720 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Common Files\EPSON\EBAPI\eEBNWDev.dll
2015-04-13 16:23 - 2007-09-10 15:32 - 000135168 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files\Common Files\EPSON\EBAPI\eEBRSVC.dll
2015-04-13 16:23 - 2007-03-28 18:26 - 000065536 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\system32\eEBUtil.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qgif.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000033280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qicns.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000027648 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qico.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000243712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qjpeg.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000020992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qtga.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000327680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qtiff.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000019968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qwbmp.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000401408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\imageformats\qwebp.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 001096704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\platforms\qwindows.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 004770816 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\Qt\bin\Qt5Core.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 004964352 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\Qt\bin\Qt5Gui.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000960000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\Qt\bin\Qt5Network.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 004460544 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\PyQt5\Qt\bin\Qt5Widgets.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 004770816 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Qt5Core.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 004964352 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Qt5Gui.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 000960000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Qt5Network.dll
2020-10-20 14:46 - 2017-12-07 13:05 - 004460544 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\CyberPower PowerPanel Personal\Qt5Widgets.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Version 11) (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
SearchScopes: HKLM -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL =
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {0B1D3EBC-FC3A-4D6F-8E4B-B2BAFA2E8AA4} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {1172AE2C-39F2-4FA8-A37B-C5B353AC64E1} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {30F713B3-FB22-45E5-B2C0-FA1CB8351124} URL = hxxp://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {9B1CB922-C6AB-42FB-B04F-E32D81D291F5} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {C39EF198-85EB-4558-A6F7-67800A91B78F} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {E7A2C2F0-67AB-4FEB-B32C-0FC66851BD47} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {EB43BE7B-0DC1-44D4-9025-F56404DE9895} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {EC23F09E-2025-4082-9E42-CC2D30F4B290} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2020-10-20 22:31 - 000000813 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Pinnacle\Shared Files\
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Intel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.1.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\startupfolder: C:^Users^Intel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk => C:\Windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk.Startup
MSCONFIG\startupreg: ABBYY Screenshot Reader Bonus => "C:\Program Files\ABBYY FineReader 9.0 Sprint\Bonus.ScreenshotReader.exe" -autorun
MSCONFIG\startupreg: Adobe Reader Synchronizer => "C:\Program Files\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe"
MSCONFIG\startupreg: CanonQuickMenu => C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE /logon

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{60DD174B-B183-4CE8-A882-ED67D6649BF3}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{081FE4BC-6BED-479B-95D5-2369370AC67C}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BF75D277-1DD4-4BA0-BFF1-9B66B5CEBA23}] => (Allow) C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{2B9869FB-2BBC-4140-B283-4533E429CEF1}] => (Allow) C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{D8ABAEF5-AEA7-4CB9-A92E-DEF26657500E}] => (Allow) C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{FC4D7A57-971F-4103-BC3E-1DE7B3B35984}] => (Allow) C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{1457294C-E526-44CA-9883-8A44C8E5956A}] => (Allow) C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{555A0A81-D01F-4364-ADCB-7A4AA3CF01A9}] => (Allow) C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{AEC242E1-DC3E-4D59-A806-E33411902905}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{03B61270-E4AC-43A6-8AE7-70C389DEDBF0}C:\program files\ea games\need for speed underground 2\speed2.exe] => (Allow) C:\program files\ea games\need for speed underground 2\speed2.exe () [File not signed]
FirewallRules: [UDP Query User{1F28D9EB-96E8-4F67-9B0D-431AD6319DDC}C:\program files\ea games\need for speed underground 2\speed2.exe] => (Allow) C:\program files\ea games\need for speed underground 2\speed2.exe () [File not signed]
FirewallRules: [TCP Query User{EEA9F9F1-FB6E-495C-8AC9-E4D35ED14AAC}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{8F18E34D-6976-4258-B17D-C2CD6A0AD4C6}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{0FFC31D0-1054-4918-870B-64BD42F6D73F}C:\program files\pinnacle\studio 15\programs\studio.exe] => (Block) C:\program files\pinnacle\studio 15\programs\studio.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [UDP Query User{9B37F687-5E98-424D-97B6-0743B5B67875}C:\program files\pinnacle\studio 15\programs\studio.exe] => (Block) C:\program files\pinnacle\studio 15\programs\studio.exe (Avid Technology, Inc. -> Pinnacle Systems)
FirewallRules: [{FAFFE3F8-3FD3-489D-9D30-B143B99D8020}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe => No File
FirewallRules: [{3C0AC5E9-2345-48B9-80F7-D4C5DFB5A92E}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe => No File
FirewallRules: [{B821BE14-DF23-4F51-BBDF-951D684A3933}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{1E630B0F-D9F1-4190-A851-7BCC7B413E2C}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{92B829C4-3E89-4E79-A33E-80C3826B9F45}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{BE430D8A-9758-4A07-8029-4CAFEBE855DA}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{4C6AFDB4-4B69-4791-AAFB-3741663B588F}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{C95604D9-CC66-4B6C-8F12-4A758AE0EAEA}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{BDB3AE63-A689-4B54-A13C-327EB75B99C4}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{A0B70D90-1120-4257-B2DB-5B5DCB466B36}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (chen jun hao -> Free Time) [File not signed]
FirewallRules: [{5F2165F8-FC7E-4711-B67C-5C9F01C50F39}] => (Allow) C:\Program Files\FormatFactory\FFModules\Package\PTInstOnline.exe (Free Time) [File not signed]
FirewallRules: [TCP Query User{B22EFDA0-048D-479B-9298-8C8B2E19092D}C:\users\ivan\counter-strike 1.6\hl.exe] => (Block) C:\users\ivan\counter-strike 1.6\hl.exe (Valve) [File not signed]
FirewallRules: [UDP Query User{43F4FFA1-B156-48A7-9888-6F81343B7648}C:\users\ivan\counter-strike 1.6\hl.exe] => (Block) C:\users\ivan\counter-strike 1.6\hl.exe (Valve) [File not signed]
FirewallRules: [{CF2E5946-0D62-4A28-9E29-860409388993}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{B2BA7347-2821-45BF-8389-10F78EAB040A}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{3328C45F-8715-4E6B-AEBC-0E2A2E8A2B56}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

02-10-2020 10:57:41 Naplánovaný kontrolní bod
09-10-2020 12:39:33 Naplánovaný kontrolní bod
17-10-2020 11:06:54 Naplánovaný kontrolní bod
19-10-2020 21:08:48 JRT Pre-Junkware Removal
19-10-2020 21:34:22 Installed Sophos Virus Removal Tool.
20-10-2020 00:30:48 zoek.exe restore point
20-10-2020 14:40:41 Installed CyberPower PowerPanel Personal Edition 1.3.4
20-10-2020 14:43:48 Revo Uninstaller's restore point - CyberPower PowerPanel Personal Edition 1.3.4
20-10-2020 14:44:22 Installed CyberPower PowerPanel Personal Edition 1.3.4

==================== Faulty Device Manager Devices ============

Name: Adaptér tunelového režimu Microsoft Teredo
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (10/21/2020 08:46:56 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/20/2020 05:41:43 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program HijackThis.exe verze 2.0.0.5 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1ed8

Čas spuštění: 01d6a6f740ca1728

Čas ukončení: 15

Cesta k aplikaci: C:\Users\Intel\Desktop\HijackThis.exe

ID hlášení: 8fe5db99-12ea-11eb-8cc1-002522cc5db0

Error: (10/20/2020 02:20:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/20/2020 09:24:35 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/20/2020 01:42:29 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/19/2020 08:56:38 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (10/19/2020 08:54:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MBAMService.exe, verze: 3.2.0.920, časové razítko: 0x5f4fe1c8
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.24545, časové razítko: 0x5e0eb7a5
Kód výjimky: 0xc0000005
Posun chyby: 0x00031d3a
ID chybujícího procesu: 0x198c
Čas spuštění chybující aplikace: 0x01d6a633654e35b2
Cesta k chybující aplikaci: C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: 907edd19-123c-11eb-9a3f-002522cc5db0

Error: (10/19/2020 05:50:46 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.


System errors:
=============
Error: (10/21/2020 08:49:32 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Microsoft .NET Framework NGEN v4.0.30319_X86 bylo dosaženo časového limitu (30000 ms).

Error: (10/21/2020 08:47:52 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Seskupování v sítích peer-to-peer závisí na službě Protokol PNRP (Peer Name Resolution Protocol), která neuspěla při spuštění v důsledku následující chyby:
%%-2140993535

Error: (10/21/2020 08:47:52 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Protokol PNRP (Peer Name Resolution Protocol) byla ukončena s následující chybou:
%%-2140993535

Error: (10/21/2020 08:47:52 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Seskupování v sítích peer-to-peer závisí na službě Protokol PNRP (Peer Name Resolution Protocol), která neuspěla při spuštění v důsledku následující chyby:
%%-2140993535

Error: (10/21/2020 08:47:52 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Protokol PNRP (Peer Name Resolution Protocol) byla ukončena s následující chybou:
%%-2140993535

Error: (10/21/2020 08:47:51 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Protokol PNRP (Peer Name Resolution Protocol) byla ukončena s následující chybou:
%%-2140993535

Error: (10/21/2020 08:47:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Seskupování v sítích peer-to-peer závisí na službě Protokol PNRP (Peer Name Resolution Protocol), která neuspěla při spuštění v důsledku následující chyby:
%%-2140993535

Error: (10/21/2020 08:47:52 AM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Protokol PNRP (Peer Name Resolution Protocol) nebylo možné spustit, protože se nezdařilo vytvoření nové identity. Kód chyby: 0x80630801.


==================== Memory info ===========================

BIOS: American Megatrends Inc. P1.00 04/26/2011
Motherboard: ASRock P67 Performance
Processor: Intel(R) Core(TM) i3-2125 CPU @ 3.30GHz
Percentage of memory in use: 73%
Total physical RAM: 3574.69 MB
Available physical RAM: 937.13 MB
Total Virtual: 7145.64 MB
Available Virtual: 4123 MB

==================== Drives ================================

Drive c: (Win7) (Fixed) (Total:465.66 GB) (Free:163.66 GB) NTFS

\\?\Volume{1d13b8dc-531e-11e2-8e7e-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: EAC5AD97)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ==========

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41285
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: zpomalený počítač

Příspěvekod jaro3 » 21 říj 2020 17:29

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\MountPoints2: {1d13b8e7-531e-11e2-8e7e-806e6f6e6963} - D:\setup.exe
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\MountPoints2: {3cc6fe37-895c-11e7-a975-002522cc5db0} - E:\LGAutoRun.exe
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\...\MountPoints2: {4c88391d-279e-11e5-9139-002522cc5db0} - E:\LGAutoRun.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
BootExecute: autocheck autochk /p \??\C:autocheck autochk * sdnclean.exe
Task: {06FADEF3-75AE-4B13-9739-597B806D5C96} - \Microsoft\Windows\Media Center\mcupdate -> No File <==== ATTENTION
Task: {1D2C972A-D464-4ECA-A2CE-3B378D3059A2} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> No File <==== ATTENTION
Task: {1E39F49B-6D5E-4791-B812-14C9C7629F38} - \Microsoft\Windows\Media Center\PeriodicScanRetry -> No File <==== ATTENTION
Task: {3EF78351-7369-4FA8-A4F0-BA97FF2E097C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000UA => C:\Users\Intel\AppData\Local\Google\Update\GoogleUpdate.exe [153752 2017-01-28] (Google Inc -> Google Inc.)
Task: {50385C74-5419-4301-8CFD-78801842A89C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {73520410-AB11-481B-B6F4-D71087BB1904} - \Microsoft\Windows\Media Center\PvrRecoveryTask -> No File <==== ATTENTION
Task: {77D1289F-F792-40F4-96AF-91735A14B2F2} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000Core => C:\Users\Intel\AppData\Local\Google\Update\GoogleUpdate.exe [153752 2017-01-28] (Google Inc -> Google Inc.)
Task: {86CE9F2B-13E1-4C2B-95AF-70E5039F2DED} - \Microsoft\Windows\Media Center\mcupdate_scheduled -> No File <==== ATTENTION
Task: {9D8A182D-E885-4691-8BB9-EDCDFF781595} - System32\Tasks\{276E1618-6400-4E6A-BCDA-144C04E1B4D3} => C:\Windows\system32\pcalua.exe -a D:\Setup.exe -d D:\
Task: {A41E333A-537E-4F0B-A9B5-8DAA885B7F8D} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> No File <==== ATTENTION
Task: {E80B5483-EA99-461C-B8E9-E1519FBC16B9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {F01BCAB3-3045-4191-A087-275A54536DBB} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> No File <==== ATTENTION
Task: {F1EE9D3A-3D5E-4272-AF22-E224F6FF220A} - \Microsoft\Windows\Media Center\PvrScheduleTask -> No File <==== ATTENTION
FF Extension: (No Name) - C:\Program Files\Mozilla Sunbird\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} [not found]
FF Extension: (No Name) - C:\Program Files\Mozilla Sunbird\extensions\calendar-timezones@mozilla.org [not found]
FF Extension: (No Name) - C:\Program Files\Mozilla Sunbird\extensions\talkback@mozilla.org [not found]
FF Plugin HKU\S-1-5-21-3643734996-1694586397-727135667-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Intel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Intel\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{16753564-CEFD-4C69-9F32-850B30421898}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{1CE60B82-AB98-4235-A05E-34D677E3CA37}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{1F274CE7-6D10-4ED8-B8CB-F6E6CF588D2B}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{217A615D-E1AC-4564-B44E-D3009F910BDB}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{24DD3FD9-494E-46C1-BA88-CC5767A11057}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{2B53FE7F-472A-4610-90FB-A7197FB2A516}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\IDiscSDK2.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\UpdatusUser\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{541A942C-CE11-494B-A577-89265B8AEE2D}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{59216462-CA07-4FFE-9877-0ECB98D7606B}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\datrans.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{5BAF0283-793D-4A38-AA0D-11EDD499A334}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{600E7B70-2A8E-4D30-BA32-90B8E4D220BC}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{609EC0E6-3054-4D06-A2FA-9957E26351A7}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{61A04DD2-C5C8-44A5-8001-14FB85DD994E}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\PCLEmsl.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{68A874E7-8EF6-423F-8E37-C5785FB735D3}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{7244EEEC-C949-4D71-9E91-5DCA7CAFE766}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\pcledial.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{764575F8-C8F3-491E-94E9-9EC8F8A88005}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{7E509275-B08C-49B2-9422-B0AF845A3EE8}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\IDiscSDK2.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{9617017E-A373-472E-8973-B3B143922EEA}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{9705ECE3-137C-41B1-8F9A-C32B3AC4C777}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{B12625F9-2B2A-41CF-BDD2-D64E3F332504}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{B63545AB-0EB7-4E99-9AFF-1EB43624B0DF}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{D1232BBD-55E7-4D36-936C-681137957356}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\RecordingAPI\DAL.dll => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{D7FD0D2C-1C00-4D6B-80E4-3583A9CC3180}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
CustomCLSID: HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{E1911E0C-F857-4C42-AE4A-DBCBEEDB3283}\InprocServer32 -> C:\Windows\system32\Codejock.Calendar.Unicode.v13.4.1.ocx => No File
ContextMenuHandlers1: [IMMenuShellExt] -> {F8984111-38B6-11D5-8725-0050DA2761C4} => -> No File
SearchScopes: HKLM -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL =
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {0B1D3EBC-FC3A-4D6F-8E4B-B2BAFA2E8AA4} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {1172AE2C-39F2-4FA8-A37B-C5B353AC64E1} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {30F713B3-FB22-45E5-B2C0-FA1CB8351124} URL = hxxp://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {9B1CB922-C6AB-42FB-B04F-E32D81D291F5} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {C39EF198-85EB-4558-A6F7-67800A91B78F} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {E7A2C2F0-67AB-4FEB-B32C-0FC66851BD47} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {EB43BE7B-0DC1-44D4-9025-F56404DE9895} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3643734996-1694586397-727135667-1000 -> {EC23F09E-2025-4082-9E42-CC2D30F4B290} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
FirewallRules: [{FAFFE3F8-3FD3-489D-9D30-B143B99D8020}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe => No File
FirewallRules: [{3C0AC5E9-2345-48B9-80F7-D4C5DFB5A92E}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe => No File

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 21 říj 2020 17:57

Restore point was successfully created.
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1d13b8e7-531e-11e2-8e7e-806e6f6e6963} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3cc6fe37-895c-11e7-a975-002522cc5db0} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4c88391d-279e-11e5-9139-002522cc5db0} => removed successfully.
HKLM\SOFTWARE\Policies\Mozilla => removed successfully.
HKLM\System\CurrentControlSet\Control\Session Manager\\"BootExecute"="autocheck autochk *" => value restored successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{06FADEF3-75AE-4B13-9739-597B806D5C96}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06FADEF3-75AE-4B13-9739-597B806D5C96}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1D2C972A-D464-4ECA-A2CE-3B378D3059A2}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D2C972A-D464-4ECA-A2CE-3B378D3059A2}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\MediaCenterRecoveryTask" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1E39F49B-6D5E-4791-B812-14C9C7629F38}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1E39F49B-6D5E-4791-B812-14C9C7629F38}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PeriodicScanRetry" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3EF78351-7369-4FA8-A4F0-BA97FF2E097C}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3EF78351-7369-4FA8-A4F0-BA97FF2E097C}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000UA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000UA" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{50385C74-5419-4301-8CFD-78801842A89C}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{50385C74-5419-4301-8CFD-78801842A89C}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{73520410-AB11-481B-B6F4-D71087BB1904}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{73520410-AB11-481B-B6F4-D71087BB1904}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrRecoveryTask" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77D1289F-F792-40F4-96AF-91735A14B2F2}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77D1289F-F792-40F4-96AF-91735A14B2F2}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000Core => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3643734996-1694586397-727135667-1000Core" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{86CE9F2B-13E1-4C2B-95AF-70E5039F2DED}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86CE9F2B-13E1-4C2B-95AF-70E5039F2DED}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate_scheduled" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9D8A182D-E885-4691-8BB9-EDCDFF781595}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D8A182D-E885-4691-8BB9-EDCDFF781595}" => removed successfully.
C:\Windows\System32\Tasks\{276E1618-6400-4E6A-BCDA-144C04E1B4D3} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{276E1618-6400-4E6A-BCDA-144C04E1B4D3}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A41E333A-537E-4F0B-A9B5-8DAA885B7F8D}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A41E333A-537E-4F0B-A9B5-8DAA885B7F8D}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E80B5483-EA99-461C-B8E9-E1519FBC16B9}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E80B5483-EA99-461C-B8E9-E1519FBC16B9}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F01BCAB3-3045-4191-A087-275A54536DBB}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F01BCAB3-3045-4191-A087-275A54536DBB}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\SqlLiteRecoveryTask" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F1EE9D3A-3D5E-4272-AF22-E224F6FF220A}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F1EE9D3A-3D5E-4272-AF22-E224F6FF220A}" => removed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrScheduleTask" => removed successfully.
C:\Program Files\Mozilla Sunbird\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} => path removed successfully.
C:\Program Files\Mozilla Sunbird\extensions\calendar-timezones@mozilla.org => path removed successfully.
C:\Program Files\Mozilla Sunbird\extensions\talkback@mozilla.org => path removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0 => removed successfully.
"C:\Users\Intel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll" => not found
HKLM\SOFTWARE\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => removed successfully.
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
HKU\S-1-5-21-3643734996-1694586397-727135667-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394} => removed successfully.
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{16753564-CEFD-4C69-9F32-850B30421898}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{1CE60B82-AB98-4235-A05E-34D677E3CA37}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{1F274CE7-6D10-4ED8-B8CB-F6E6CF588D2B}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{217A615D-E1AC-4564-B44E-D3009F910BDB}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{24DD3FD9-494E-46C1-BA88-CC5767A11057}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{2B53FE7F-472A-4610-90FB-A7197FB2A516}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{541A942C-CE11-494B-A577-89265B8AEE2D}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{59216462-CA07-4FFE-9877-0ECB98D7606B}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{5BAF0283-793D-4A38-AA0D-11EDD499A334}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{600E7B70-2A8E-4D30-BA32-90B8E4D220BC}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{609EC0E6-3054-4D06-A2FA-9957E26351A7}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{61A04DD2-C5C8-44A5-8001-14FB85DD994E}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{68A874E7-8EF6-423F-8E37-C5785FB735D3}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{7244EEEC-C949-4D71-9E91-5DCA7CAFE766}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{764575F8-C8F3-491E-94E9-9EC8F8A88005}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{7E509275-B08C-49B2-9422-B0AF845A3EE8}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{9617017E-A373-472E-8973-B3B143922EEA}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{9705ECE3-137C-41B1-8F9A-C32B3AC4C777}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{B12625F9-2B2A-41CF-BDD2-D64E3F332504}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{B63545AB-0EB7-4E99-9AFF-1EB43624B0DF}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{D1232BBD-55E7-4D36-936C-681137957356}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{D7FD0D2C-1C00-4D6B-80E4-3583A9CC3180}" => not found
"HKU\S-1-5-21-3643734996-1694586397-727135667-1001_Classes\CLSID\{E1911E0C-F857-4C42-AE4A-DBCBEEDB3283}" => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IMMenuShellExt => removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0B1D3EBC-FC3A-4D6F-8E4B-B2BAFA2E8AA4} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1172AE2C-39F2-4FA8-A37B-C5B353AC64E1} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{30F713B3-FB22-45E5-B2C0-FA1CB8351124} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9B1CB922-C6AB-42FB-B04F-E32D81D291F5} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C39EF198-85EB-4558-A6F7-67800A91B78F} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E7A2C2F0-67AB-4FEB-B32C-0FC66851BD47} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EB43BE7B-0DC1-44D4-9025-F56404DE9895} => removed successfully.
HKU\S-1-5-21-3643734996-1694586397-727135667-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EC23F09E-2025-4082-9E42-CC2D30F4B290} => removed successfully.
HKLM\Software\Classes\PROTOCOLS\Handler\skype4com => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FAFFE3F8-3FD3-489D-9D30-B143B99D8020}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3C0AC5E9-2345-48B9-80F7-D4C5DFB5A92E}" => removed successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8172505 B
Java, Flash, Steam htmlcache => 524 B
Windows/system/drivers => 0 B
Edge => 0 B
Chrome => 470903120 B
Firefox => 0 B
Opera => 2253168 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 50230 B
LocalService => 83355 B
NetworkService => 83355 B
Intel => 25746292 B
UpdatusUser => 25746292 B
Ivan => 26004879 B
Guest => 26077129 B

RecycleBin => 183918843 B
EmptyTemp: => 741.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:40:06 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41285
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: zpomalený počítač

Příspěvekod jaro3 » 21 říj 2020 20:58

Co problémy? Je to lepší?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 21 říj 2020 21:24

Počítač jako takový šlape dobře, s tou hrou je to pořád stejné, Ale na fóru si sem tam taky někdo stěžuje, že se dokonce ani nenačte, jako mně teď - s tím zatím asi nic neuděláme, buďto se jim to do konce roku podaří zprovoznit tak aby to šlo i na počítačích nevytuněných pro náročné hry, nebo holt přestanu hrát a budu mít víc času pro sebe :-)
Uvidíme, když tak si v lednu poprosím znovu o pomoc.

Jinak všechny ty teď nainstalované a stažené programy asi odmazat a odinstalovat a dát si sem nějaký free antimalware, kterým občas projedu počítač?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41285
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: zpomalený počítač

Příspěvekod jaro3 » 21 říj 2020 22:14

Stáhni si zde DelFix
Další odkazy:
https://toolslib.net/downloads/viewdownload/2-delfix/
http://ccm.net/download/download-24087-delfix
https://www.bleepingcomputer.com/download/delfix/

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7, 8 a10 musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt

ostatní odinstaluj.

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač

Příspěvekod mirakoud » 21 říj 2020 22:22

# DelFix v1.013 - Logfile created 21/10/2020 at 22:20:06
# Updated 17/04/2016 by Xplode
# Username : Intel - INTEL-PC
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\Intel\Desktop\adwcleaner_8.0.7.exe
Deleted : C:\Users\Intel\Desktop\Fixlog.txt
Deleted : C:\Users\Intel\Desktop\FRST.exe
Deleted : C:\Users\Intel\Desktop\JRT.exe
Deleted : C:\Users\Intel\Desktop\HijackThis.exe
Deleted : C:\Users\Intel\Desktop\TFC.exe
Deleted : C:\Users\Public\Desktop\RogueKiller.lnk
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

~ Cleaning system restore ...

Deleted : RP #729 [Naplánovaný kontrolní bod | 10/02/2020 08:57:41]
Deleted : RP #730 [Naplánovaný kontrolní bod | 10/09/2020 10:39:33]
Deleted : RP #731 [Naplánovaný kontrolní bod | 10/17/2020 09:06:54]
Deleted : RP #732 [JRT Pre-Junkware Removal | 10/19/2020 19:08:48]
Deleted : RP #733 [Installed Sophos Virus Removal Tool. | 10/19/2020 19:34:22]
Deleted : RP #734 [zoek.exe restore point | 10/19/2020 22:30:48]
Deleted : RP #735 [Installed CyberPower PowerPanel Personal Edition 1.3.4 | 10/20/2020 12:40:41]
Deleted : RP #737 [Revo Uninstaller's restore point - CyberPower PowerPanel Personal Edition 1.3.4 | 10/20/2020 12:43:48]
Deleted : RP #738 [Installed CyberPower PowerPanel Personal Edition 1.3.4 | 10/20/2020 12:44:22]
Deleted : RP #740 [Restore Point Created by FRST | 10/21/2020 15:36:52]

New restore point created !

########## - EOF - ##########

mirakoud
nováček
Příspěvky: 32
Registrován: říjen 20
Pohlaví: Nespecifikováno

Re: zpomalený počítač  Vyřešeno

Příspěvekod mirakoud » 21 říj 2020 22:49

Díky za čas, který jsi mi věnoval :-)


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: CommonCrawl [Bot] a 4 hosti