Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomalený počítač

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#16 Příspěvek od libork »

Zoek už pracuje 9 hodin, je to v pořádku?

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#17 Příspěvek od Márty84 »

Vetsinou je to rychlovka. Zkuste to spustit znovu, pripadne v nouzovem rezimu.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#18 Příspěvek od libork »

Tak v nouzovém režimu už to byla fakt rychlovka :)

Zoek.exe v5.0.0.1 Updated 27-09-2015
Tool run by Libor on ne 02.10.2016 at 11:07:00,12.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86
Running in: Safe Mode MINIMAL No Internet Access Detected
Launched: C:\Users\Libor\Desktop\zoek.exe [Scan all users] [Quick Scan] [Auto Clean]

==== Older Logs ======================

C:\zoek-results2016-10-01-201117.log 1307 bytes
C:\zoek-results2016-10-01-220540.log 1821 bytes

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default

user.js not found
---- Lines vfdownload removed from prefs.js ----
user_pref("extensions.vfdownload.installDate", "2013-08-02");
user_pref("extensions.vfdownload.installID", "{EA80EE66-B600-4E38-BDB1-B90D8F99B305}");
user_pref("extensions.vfdownload.installedProduct", "selectionlinks");
user_pref("extensions.vfdownload.installerVersion", "3.6");
user_pref("extensions.vfdownload.installpartner", "dlc");
user_pref("extensions.vfdownload.testgroup", "");
---- FireFox user.js and prefs.js backups ----

prefs_02.10.2016_1117_.backup

ProfilePath: C:\Users\Libor\AppData\Roaming\TomTom\HOME\Profiles\fl7b3mle.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_02.10.2016_1117_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\GreenApp deleted
C:\Users\Libor\AppData\LocalLow\{278608B9-AE4D-362A-AA12-6F2A6CF6AFC4} deleted
C:\Users\Libor\AppData\Local\MSGBOX.EXE deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====
====== C:\Users\Libor\AppData\Local\Temp ====
2016-10-01 18:23:10 E0DC8C6BBC787B972A9A468648DBFD85 1008128 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\libiconv2.dll
2016-10-01 18:23:10 D202BAA425176287017FFE1FB5D1B77C 103424 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\libintl3.dll
2016-10-01 18:23:10 BD59D8A4565D1D1AB3C7CF81948C8DBE 86840 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\CreateRestorePoint.exe
2016-10-01 18:23:10 57CAC848FA14AE38F14F9441F8933282 140288 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\pcre3.dll
2016-10-01 18:23:10 547C43567AB8C08EB30F6C6BACB479A3 79360 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\regex2.dll
2016-10-01 18:23:10 2F9C7FDA92C346CB5AA32091536AE0CB 43520 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\nfo\nircmdc.exe
====== Java Cache =====
====== C:\Windows\system32 =====
2016-09-20 17:47:34 9704C3ABF5163E67F6A6FCCA79DAD35C 2048 ----a-w- C:\Windows\System32\tzres.dll
====== C:\Windows\system32\drivers =====
2016-09-14 07:32:36 C7E41209132B9CF084CCEA8593F61328 1309928 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2016-09-14 07:32:36 A4BF8BE9D1F7D563C7868AC7B2561545 35840 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys
2016-09-14 07:32:36 9395E5EDB5811006F68E0F1FFA47A444 187624 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2016-09-14 07:32:36 349D0A5C6E769C06FF3D7D1DA5497570 240872 ----a-w- C:\Windows\System32\drivers\netio.sys
2016-09-14 07:32:34 D86EA722F3337AA3F0253B6E359E6796 310784 ----a-w- C:\Windows\System32\drivers\srv.sys
2016-09-14 07:32:34 50A2FC7B0408F15B77E056076BBB6252 116224 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2016-09-14 07:32:34 1931823AC05967E5F79B791E9FFC2398 313856 ----a-w- C:\Windows\System32\drivers\srv2.sys
2016-09-14 07:32:25 F8334AAA59AC666EA0A245AAAF08552A 50688 ----a-w- C:\Windows\System32\drivers\appid.sys
2016-09-14 07:32:25 45393EA9E405C8F69FB99AAA34427638 137960 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2016-09-14 07:32:25 13F50CAE511D4EA7C0188EB763517043 67304 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2016-09-14 07:32:24 953CB38E69B9512A77E25EE9AD9D0F02 124416 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2016-09-14 07:32:24 0CBCFB33ED7C637B9CA88317455F561A 226304 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2016-09-14 07:32:23 E875C23CDC131118062D1460490B1EE3 98304 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
====== C:\Windows\Tasks ======
====== C:\Windows\Temp ======
======= C:\Program Files =====
2016-10-01 07:15:44 -------- d-----w- C:\Program Files\Defraggler
2016-09-28 16:08:20 -------- d-----w- C:\Program Files\CrystalDiskInfo
======= C: =====
2016-10-01 07:03:49 BEBAABBC30BED0AD39DED9009E153482 1096 ----a-w- C:\DelFix.txt
====== C:\Users\Libor\AppData\Roaming ======
====== C:\Users\Libor ======
2016-10-01 18:21:02 B5EA1BE92B580D2AF03CD913D1E0C84E 1615456 ----a-w- C:\Users\Libor\Desktop\JRT.exe
2016-10-01 13:39:33 D0C3F0827A1CC0107E5D42E23F664A84 3861056 ----a-w- C:\Users\Libor\Downloads\adwcleaner_6.020 (1).exe
2016-10-01 07:15:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2016-10-01 07:14:27 93E4CD62447C06BB2FDC5AD087176DE5 4619752 ----a-w- C:\Users\Libor\Downloads\dfsetup221 (1).exe
2016-09-28 16:08:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2016-09-28 16:07:34 FBA3CD70701BD62F5B23C09B993DFA69 11407001 ----a-w- C:\Users\Libor\Downloads\CrystalDiskInfo7_0_3-en.exe

====== C: exe-files ==
2016-10-01 18:23:10 BD59D8A4565D1D1AB3C7CF81948C8DBE 86840 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\CreateRestorePoint.exe
2016-10-01 18:23:10 2F9C7FDA92C346CB5AA32091536AE0CB 43520 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\nfo\nircmdc.exe
2016-10-01 18:21:02 B5EA1BE92B580D2AF03CD913D1E0C84E 1615456 ----a-w- C:\Users\Libor\Desktop\JRT.exe
2016-10-01 13:39:33 D0C3F0827A1CC0107E5D42E23F664A84 3861056 ----a-w- C:\Users\Libor\Downloads\adwcleaner_6.020 (1).exe
2016-10-01 13:38:17 2DBB421E1F11AF5A724773B0DE7C855A 1279227 ----a-w- C:\Program Files\CrystalDiskInfo\unins000.exe
2016-10-01 07:14:27 93E4CD62447C06BB2FDC5AD087176DE5 4619752 ----a-w- C:\Users\Libor\Downloads\dfsetup221 (1).exe
2016-10-01 07:07:32 448DFA3A9ADCDACCBAF4108CDA08E37F 399472 ----a-w- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_64.exe
2016-10-01 07:07:30 448DFA3A9ADCDACCBAF4108CDA08E37F 399472 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarUser_64_BE5D89D8B9F08786.exe
2016-10-01 07:07:30 1F2AFAB903C0D48480561F3BBD4539C2 739640 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleUpdateSetup_5CC4B0F53D73AD88.exe
2016-10-01 07:07:23 C17B39275D8238E6D75A923F3D979C54 5031536 ----a-w- C:\Program Files\Google\Update\Download\{F69EABDD-A4BB-4555-BE7E-1EA5F59BBA24}\0.0.0.0\googletoolbarinstaller_en_signed.exe
2016-10-01 05:52:05 05D2BF8F5A9B228FB662E111144391C1 1667576 ----a-w- C:\Users\Libor\AppData\Local\Google\Chrome\User Data\SwReporter\11.70.2\software_reporter_tool.exe
2016-09-28 16:09:12 F2CCE55B9D1AF630D7B54D4A4AF0255F 51712 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\x64loader.exe
2016-09-28 16:08:27 244E4604DC6AA0A863944D0D75B8ACD7 3967408 ----a-w- C:\Program Files\CrystalDiskInfo\DiskInfo64.exe
2016-09-28 16:08:26 ED793556B9FB269EEB7324E61B5654E2 2962864 ----a-w- C:\Program Files\CrystalDiskInfo\DiskInfo32.exe
2016-09-28 16:08:26 7E919B00AEE429607FF663A6511F179F 73936 ----a-w- C:\Program Files\CrystalDiskInfo\CdiResource\AlertMail4.exe
2016-09-28 16:08:26 46A29DAB77E0C3FF5B7E0EA2F1E5B7C8 73424 ----a-w- C:\Program Files\CrystalDiskInfo\CdiResource\AlertMail.exe
2016-09-28 16:08:25 1F3CF9F2EDA491E461A44D956033D7FF 178688 ----a-w- C:\Program Files\CrystalDiskInfo\CdiResource\opus\opusdec.exe
2016-09-28 16:07:34 FBA3CD70701BD62F5B23C09B993DFA69 11407001 ----a-w- C:\Users\Libor\Downloads\CrystalDiskInfo7_0_3-en.exe
=== C: other files ==
2016-10-01 18:23:08 50010753E4D52EF06E0F47A66F08F436 129437 ----a-w- C:\Users\Libor\AppData\Local\Temp\jrt\get.bat
2016-09-28 16:09:13 CB58E149F6C042EC19D27C6670F8007D 289 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_chromelisticka_1_7_7.uninstall.bat
2016-09-28 16:09:13 1E97DF6A52D86D65ACB394B0884709A4 1106 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_chromelisticka_1_7_7.install.bat
2016-09-28 16:09:12 C206DCA6E849C4A7E9834ECBC272A07F 143 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub64_3_2_5.uninstall.bat
2016-09-28 16:09:12 ABCBAAF46341277F8951FB5BF133C383 26 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_ielisticka3_3_2_6.install.bat
2016-09-28 16:09:12 7A522080BFF68371130F0741A612C4E0 479 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub64_3_2_5.install.bat
2016-09-28 16:09:12 239F13333B848ECD8348E41C0A62046A 26 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_ielisticka3_3_2_6.uninstall.bat
2016-09-28 16:09:11 9F076A34053864B8E9A1B5FEE5C8A375 117 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_2_5.uninstall.bat
2016-09-28 16:09:11 9BBCD62FE1CD94EBEB3E5E0D265B1FAC 665 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_2_5.install.bat
2016-09-28 16:09:10 9B26AF8C30E05C5C887AE45340C86C66 2096 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub_3_2_6.install.bat
2016-09-28 16:09:10 7DA206C336BBE241FA88BB871711480E 447 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub_3_2_6.uninstall.bat
2016-09-28 16:09:09 CFB7FE84F6F3C98AB9B32ABE82F4F2D0 90 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libszndesktop_2_0_31.reconfigure.bat
2016-09-28 16:09:09 A4F113D2DDF779A13A65D3DF7D86E61B 290 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_szndesktop_2_0_31.install.bat
2016-09-28 16:09:09 90BFFA69EFC7FC85163ED2536726D942 293 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libszndesktop_2_0_31.uninstall.bat
2016-09-28 16:09:09 6F73BC97F458228B8DC66C578AD0558D 178 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_szndesktop_2_0_31.uninstall.bat
2016-09-28 16:09:09 6B5B33ACCAB99D9F69195776DDE81615 23 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_lightspeed_1210_12_10_17.uninstall.bat
2016-09-28 16:09:09 628C0001F72480BACC5461C706E89F69 30 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_lightspeed_1210_12_10_17.install.bat
2016-09-28 16:09:09 40C2C837374D982F9A14181E3FE772F3 328 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libszndesktop_2_0_31.install.bat
2016-09-28 16:09:08 275B053DDF715BAAE046DA79CB5E8D68 42 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\com_microsoft_msdn_msvcr110_11_0_51106_1.uninstall.bat
2016-09-28 16:09:08 07F8553EBC55FC91142A43993C01460B 56 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\com_microsoft_msdn_msvcr110_11_0_51106_1.install.bat
2016-09-28 16:09:07 74902A22D1ED54AD4E0824A772A5EEB8 1047 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\szn_software_fflisticka_3_1_4.uninstall.bat
2016-09-28 16:09:07 2BC002CEAC99E534480FC245270042F2 3001 ----a-w- C:\Users\Libor\AppData\Roaming\Seznam.cz\uninstall\szn_software_fflisticka_3_1_4.install.bat

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"
"MyDriveConnect.exe"="C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe -startwithoutDA"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"
"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s"
"LogitechQuickCamRibbon"="C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe /hide"
"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"
"APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"StatusAlerts"="C:\Program Files\HP\StatusAlerts\bin\HPStatusAlerts.exe /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"
"MyDriveConnect.exe"="C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe -startwithoutDA"

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\HPLJCustParticipation" ["C:\Program Files\HP\HPLJUT\HPLJUTSCH.exe"]
"C:\Windows\system32\tasks\{96567AE1-679E-4B32-AB18-866DD4813B74}" [C:\Program Files\Mozilla Firefox\firefox.exe]
"C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
user_pref("browser.startup.homepage", "http://www.seznam.cz/");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");

==== Firefox Extensions ======================

ProfilePath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

ProfilePath: C:\Users\Libor\AppData\Roaming\TomTom\HOME\Profiles\fl7b3mle.default
- Undetermined - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com
- Undetermined - C:\Program Files\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com

AppDir: C:\Program Files\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat
DB988B4550DB9BCE86F9199D961057FC - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
52CE0DBFD9738AE528CF525A0367EBEB - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
3EE8AE0ECFE5D79DE1737A855AD1E84C - C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll - Google Update
C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery
18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013
17852E9F0B8B4A730B5BFAAB3F6B1DDF - c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll - Silverlight Plug-In
0205ADAFFDDF04F0F69200E5CFB5FFD9 - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
7FB1DC8C464CAFC230E7AD6392AE859B - C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll - Shockwave Flash
521C32AB17871B02D84EEB057B180636 - c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrlui.dll - Microsoft® Silverlight


==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Guest\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Guest\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Guest\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Libor\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Libor\AppData\Local\Comodo\Dragon deleted

==== Chromium Look ======================

Google Chrome Version: 46.0.2490.86


Google Docs - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Docs Offline - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
Chrome Web Store Payments - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Chrome Media Router - Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkI ... id=UE07DHP"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkI ... id=UE07DHP"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"
{B11F5F4A-5285-4795-906C-0CF4761EA898} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_12454"
{E3472CF2-F332-4A9F-B906-F879FD3EC370} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_12454"

==== Empty IE Cache ======================

C:\Users\Libor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Libor\AppData\Local\Mozilla\Firefox\Profiles\cozz22r6.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Libor\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=6 folders=5 807306 bytes)

==== Empty Temp Folders ======================

C:\Users\Administrator\AppData\Local\temp emptied successfully
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Guest\AppData\Local\temp emptied successfully
C:\Users\HomeGroupUser$\AppData\Local\temp emptied successfully
C:\Users\Libor\AppData\Local\Temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Libor\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on ne 02.10.2016 at 11:25:40,45 ======================

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#19 Příspěvek od libork »

Jinak stav PC stejný, možná se trochu zrychlil, ale ve Firefoxu to stále místy dělá místo obrázků a textu ty čáry.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#20 Příspěvek od Márty84 »

:arrow: Zkuste firefox preinstalovat (zalozky muzete zazalohovat pomoci mozbackup http://www.stahuj.centrum.cz/utility_a_ ... mozbackup/ ). Musite ho odinstalovat komplet, vcetne nastaveni a profilu. Ze zalohy pak vratit jen ty zalozky, pokud je pouzivate.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#21 Příspěvek od libork »

Tak jsem Firefox přeinstaloval a dělá to pořád...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#22 Příspěvek od Márty84 »

A dela to pouze ve firefoxu? Zkuste znovu ADWCleaner, jsem zvedavy, jestli zase neco najde :?:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#23 Příspěvek od libork »

Dělá to jen Firefox.......ADWCleaner nic nenašel

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#24 Příspěvek od Márty84 »

libork píše:Dělá to jen Firefox
V tom pripade musi byt neco zazrane v nem. Znovu firefox odinstalujte a zatim pouzivejte jiny prohlizec.


:arrow: Stahnete SystemLook http://jpshortstuff.247fixes.com/SystemLook.exe a ulozte ho na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do okna zkopirujte tento skript

Kód: Vybrat vše

:filefind
*mozilla*
*firefox*

:regfind
mozilla
firefox

:folderfind
*mozilla*
*firefox*
kliknete na Look a chvili pockejte
Mel by na vas vyskocit log s nazvem Systemlook
Ten mi sem zkopirujte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#25 Příspěvek od libork »

SystemLook 30.07.11 by jpshortstuff
Log created at 19:44 on 02/10/2016 by Libor
Administrator - Elevation successful

========== filefind ==========

Searching for "*mozilla*"
C:\Program Files\OpenOffice 4\program\python-core-2.7.6\lib\_MozillaCookieJar.py --a---- 5809 bytes [09:59 21/10/2015] [09:59 21/10/2015] 53A021925CD7801FB4EF37BD52840B73
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\features\{2e0ba656-b965-4634-aa37-08f0e08f94b9}\e10srollout@mozilla.org.xpi --a---- 7076 bytes [17:57 24/09/2016] [17:57 24/09/2016] 095A9E59F9E0DE5C4CA42F46956E8D1B
C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\Browsers\mozilla.browser --a---- 13262 bytes [02:05 14/07/2009] [21:22 10/06/2009] 9FFA08AA85D403D9CC98CAC2956069AE
C:\Windows\winsxs\x86_netfx-aspnet_regbrowser_files_b03f5f7f11d50a3a_6.1.7600.16385_none_458b87598810c725\mozilla.browser --a---- 13262 bytes [20:46 13/07/2009] [21:22 10/06/2009] 9FFA08AA85D403D9CC98CAC2956069AE
C:\zoek_backup\C_Users_Libor_AppData_Roaming_Mozilla_Firefox_Profiles_cozz22r6.default_prefs_02.10.2016_1117_.backup.vir --a---- 40404 bytes [09:17 02/10/2016] [09:17 02/10/2016] C1A2F3808FE91EBB46924386C0221AB4

Searching for "*firefox*"
C:\Program Files\PDF Architect\FFPDFArchitectExt\content\firefoxextension.png --a---- 1545 bytes [15:24 09/01/2013] [15:24 09/01/2013] F07CBAEC63992A81A1BCB6649EA2D861
C:\Program Files\PDF Architect\FFPDFArchitectExt\locale\en-US\firefoxextension.dtd --a---- 230 bytes [15:24 09/01/2013] [15:24 09/01/2013] 6072E707B3BCF2198A6EDEA157912BAA
C:\Users\Libor\Desktop\Firefox Setup Stub 49.0.1.exe --a---- 243664 bytes [12:11 02/10/2016] [12:11 02/10/2016] 95D4249F8EC0ECC5CA3754B7E2E9B21C
C:\Users\Libor\Downloads\Firefox Setup 36.0.exe --a---- 40822464 bytes [08:01 28/02/2015] [08:01 28/02/2015] B88E0314C44FD9C097564AA919255C23
C:\Users\Libor\Downloads\Firefox Setup Stub 49.0.1 (1).exe --a---- 243664 bytes [12:11 02/10/2016] [12:11 02/10/2016] 95D4249F8EC0ECC5CA3754B7E2E9B21C
C:\Users\Libor\Downloads\seznam-firefox-win32-cs-20.0.1.exe --a---- 21847440 bytes [05:32 03/05/2013] [05:33 03/05/2013] 7113794FE1A550C0C2FC1B69F76013DC
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Config\Browsers\firefox.browser --a---- 2336 bytes [18:29 18/03/2013] [18:29 18/03/2013] 8E55C3D84FE4E59812B679FCCC8B6061
C:\Windows\Prefetch\FIREFOX.EXE-E60C0AA7.pf --a---- 66370 bytes [08:20 18/05/2014] [17:15 02/10/2016] 5AD0D79E38B006B7188BD36602ECB818
C:\zoek_backup\C_Users_Libor_AppData_Roaming_Mozilla_Firefox_Profiles_cozz22r6.default_prefs_02.10.2016_1117_.backup.vir --a---- 40404 bytes [09:17 02/10/2016] [09:17 02/10/2016] C1A2F3808FE91EBB46924386C0221AB4

========== regfind ==========

Searching for "mozilla"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE9"="Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE8"="Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE7"="Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE6"="Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE10-WP8"="Mozilla/5.0 (compatible; MSIE 10.0; Windows Phone 8.0; Trident/6.0; IEMobile/10.0; ARM; Touch)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE9-WP7"="Mozilla/5.0 (compatible; MSIE 9.0; Windows Phone OS 7.5; Trident/5.0; IEMobile/9.0)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE9-Xbox"="Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0; Xbox)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"Chrome"="Mozilla/5.0 (Windows NT 6.2) AppleWebKit/536.5 (KHTML, like Gecko) Chrome/19.0.1084.52 Safari/536.5"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"Firefox"="Mozilla/5.0 (Windows NT 6.2; rv:12.0) Gecko/20100101 Firefox/12.0"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IPad"="Mozilla/5.0 (iPad; CPU OS 5_0 like Mac OS X) AppleWebKit/534.46 (KHTML, like Gecko) Version/5.1 Mobile/9A334 Safari/7534.48.3"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"BingBot"="Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\2a9a344c_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\867cd978_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\9b0b299e_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\dd33eb0a_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 8.0; Win32)"
[HKEY_CURRENT_USER\Software\Mozilla]
[HKEY_CURRENT_USER\Software\Mozilla Backup]
[HKEY_CURRENT_USER\Software\MozillaPlugins]
[HKEY_CURRENT_USER\Software\Opera Software]
"Previous Default Browser"=""C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\15.0\ClickToRun\REGISTRY\MACHINE\Software\MozillaPlugins]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E239E79D0F3E43448AC9DC382C0BD62]
"68AB67CA7DA79201B744AA0100000010"="02:\Software\MozillaPlugins\Adobe Reader\Path"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E87D1A41198D84643B364DF72881D0AA]
"AF057718A6CED58499106038EAF6DF1F"="02:\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin\Path"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gathering Manager]
"UserAgent"="Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla]
[HKEY_LOCAL_MACHINE\SOFTWARE\mozilla.org]
[HKEY_LOCAL_MACHINE\SOFTWARE\mozilla.org\Mozilla]
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 8.0; Win32)"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 8.0; Win32)"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 8.0; Win32)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE9"="Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE8"="Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE7"="Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE6"="Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE10-WP8"="Mozilla/5.0 (compatible; MSIE 10.0; Windows Phone 8.0; Trident/6.0; IEMobile/10.0; ARM; Touch)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE9-WP7"="Mozilla/5.0 (compatible; MSIE 9.0; Windows Phone OS 7.5; Trident/5.0; IEMobile/9.0)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IE9-Xbox"="Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0; Xbox)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"Chrome"="Mozilla/5.0 (Windows NT 6.2) AppleWebKit/536.5 (KHTML, like Gecko) Chrome/19.0.1084.52 Safari/536.5"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"Firefox"="Mozilla/5.0 (Windows NT 6.2; rv:12.0) Gecko/20100101 Firefox/12.0"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"IPad"="Mozilla/5.0 (iPad; CPU OS 5_0 like Mac OS X) AppleWebKit/534.46 (KHTML, like Gecko) Version/5.1 Mobile/9A334 Safari/7534.48.3"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"BingBot"="Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\2a9a344c_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\867cd978_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\9b0b299e_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\dd33eb0a_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 8.0; Win32)"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla]
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla Backup]
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\MozillaPlugins]
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Opera Software]
"Previous Default Browser"=""C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1""
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"User Agent"="Mozilla/4.0 (compatible; MSIE 8.0; Win32)"

Searching for "firefox"
[HKEY_CURRENT_USER\Software\Clients\StartMenuInternet]
@="FIREFOX.EXE"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"Firefox"="Mozilla/5.0 (Windows NT 6.2; rv:12.0) Gecko/20100101 Firefox/12.0"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\2a9a344c_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\867cd978_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\9b0b299e_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\dd33eb0a_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.001\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.7z\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.a\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.asf\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.avi\OpenWithList]
"c"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dmg\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc\OpenWithList]
"c"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.docx\OpenWithList]
"g"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.epub\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.FLV\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithList]
"c"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.IMG\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\OpenWithList]
"e"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mid\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mkv\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mobi\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mov\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp3\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp4\OpenWithList]
"c"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpg\OpenWithList]
"d"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.msi\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.odt\OpenWithList]
"d"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\OpenWithList]
"c"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.php\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\OpenWithList]
"d"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ram\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rar\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rm\OpenWithList]
"g"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rtf\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ts\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithList]
"d"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wav\OpenWithList]
"f"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.webm\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wma\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmv\OpenWithList]
"f"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xdp\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xls\OpenWithList]
"e"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xlsx\OpenWithList]
"e"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.z\OpenWithList]
"a"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.zip\OpenWithList]
"b"="firefox.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\ftp\UserChoice]
"Progid"="FirefoxURL"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice]
"Progid"="FirefoxURL"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\https\UserChoice]
"Progid"="FirefoxURL"
[HKEY_CURRENT_USER\Software\Mozilla\Firefox]
[HKEY_CURRENT_USER\Software\Opera Software]
"Previous Default Browser"=""C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1""
[HKEY_CURRENT_USER\Software\Classes\.oga]
"VLC.backup"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Classes\.ogv]
"VLC.backup"="FirefoxHTML"
[HKEY_CURRENT_USER\Software\Classes\.webm]
"VLC.backup"="FirefoxHTML"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\44870A0846AC4ED4BA163DD7BD8E70F4]
"IntegrFirefox"="Complete"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\15.0\ClickToRun\REGISTRY\MACHINE\Software\Classes\TypeLib\{BDEADEF0-C265-11D0-BCED-00A0C90AB50F}\1.0]
@="Microsoft SharePoint Plug-in for Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\15.0\ClickToRun\REGISTRY\MACHINE\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"="Microsoft SharePoint Plug-in for Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\15.0\ClickToRun\REGISTRY\MACHINE\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"ProductName"="Microsoft SharePoint Plug-in for Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\firefox.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\44870A0846AC4ED4BA163DD7BD8E70F4\Features]
"IntegrFirefox"="6RC{0f8Vr95b!RnHQ-$DKC96Z6`es?J2c$]h'zBv=thhN})nA9P[kY3`tW18Y9qh6*(Z4=%u}+(_5FHVComplete"
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox]
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"="Microsoft SharePoint Plug-in for Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"ProductName"="Microsoft SharePoint Plug-in for Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"ProductName"="Adobe Reader Plugin for Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"="Handles PDFs in-place in Firefox"
[HKEY_LOCAL_MACHINE\SOFTWARE\Object\SelectionLinks]
"firefoxid"="{7C5DB08C-81D9-41FE-B43C-36133F26B54E}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Clients\StartMenuInternet]
@="FIREFOX.EXE"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\IEDevTools\Options\UAString]
"Firefox"="Mozilla/5.0 (Windows NT 6.2; rv:12.0) Gecko/20100101 Firefox/12.0"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\2a9a344c_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\867cd978_0]
@="{0.0.0.00000000}.{186a9c30-94a9-4593-b83b-337fc04c8073}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\9b0b299e_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\firefox.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\dd33eb0a_0]
@="{0.0.0.00000000}.{e70ef19c-07ff-4e8e-855d-52b7afb0c54c}|\Device\HarddiskVolume1\Program Files\Mozilla Firefox\plugin-container.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.001\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.7z\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.a\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.asf\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.avi\OpenWithList]
"c"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dmg\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc\OpenWithList]
"c"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.docx\OpenWithList]
"g"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.epub\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.FLV\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithList]
"c"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.IMG\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\OpenWithList]
"e"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mid\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mkv\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mobi\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mov\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp3\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp4\OpenWithList]
"c"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpg\OpenWithList]
"d"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.msi\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.odt\OpenWithList]
"d"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\OpenWithList]
"c"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.php\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\OpenWithList]
"d"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ram\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rar\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rm\OpenWithList]
"g"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rtf\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ts\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithList]
"d"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wav\OpenWithList]
"f"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.webm\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wma\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmv\OpenWithList]
"f"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xdp\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
"Progid"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xls\OpenWithList]
"e"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xlsx\OpenWithList]
"e"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.z\OpenWithList]
"a"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.zip\OpenWithList]
"b"="firefox.exe"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\ftp\UserChoice]
"Progid"="FirefoxURL"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice]
"Progid"="FirefoxURL"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\https\UserChoice]
"Progid"="FirefoxURL"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla\Firefox]
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Opera Software]
"Previous Default Browser"=""C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1""
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Classes\.oga]
"VLC.backup"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Classes\.ogv]
"VLC.backup"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Classes\.webm]
"VLC.backup"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000_Classes\.oga]
"VLC.backup"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000_Classes\.ogv]
"VLC.backup"="FirefoxHTML"
[HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000_Classes\.webm]
"VLC.backup"="FirefoxHTML"

========== folderfind ==========

Searching for "*mozilla*"
C:\Program Files\Mozilla Firefox d------ [22:13 23/09/2016]
C:\Users\Libor\AppData\Local\Mozilla d------ [08:12 05/04/2013]
C:\Users\Libor\AppData\Roaming\Mozilla d------ [08:12 05/04/2013]

Searching for "*firefox*"
C:\Program Files\Mozilla Firefox d------ [22:13 23/09/2016]
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_08625d2c d----c- [08:02 12/04/2014]
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_11daad7d d----c- [07:49 12/04/2014]
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_1216d8a2 d----c- [07:53 12/04/2014]
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_10283c66 d----c- [07:37 27/04/2014]
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_1345f9ba d----c- [21:01 26/04/2014]
C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_08625d2c d----c- [08:02 12/04/2014]
C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_11daad7d d----c- [07:49 12/04/2014]
C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_1216d8a2 d----c- [07:53 12/04/2014]
C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_10283c66 d----c- [07:37 27/04/2014]
C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_1345f9ba d----c- [21:01 26/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_2d9162f442d5381cb61c412f2fbef0f94edcb862_0981841d d----c- [14:57 08/02/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_2d9162f442d5381cb61c412f2fbef0f94edcb862_162e9cae d----c- [08:27 04/01/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_00c9624a d----c- [07:36 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_01f0f67e d----c- [07:35 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_01f8de8b d----c- [09:09 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_038cf1ec d----c- [08:27 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0508b6ef d----c- [09:09 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0a75b5d6 d----c- [07:36 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0b1f3e76 d----c- [09:42 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0b9fb9fc d----c- [09:43 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0f811e39 d----c- [07:35 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0f8ce667 d----c- [07:38 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_0f9d1370 d----c- [09:09 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_13675550 d----c- [09:42 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_151e6f55 d----c- [08:28 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_3fbda4dd5a148e7ea3202f95b3195a8b505c7f_15abcee2 d----c- [09:43 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_593f69699abebf565b874d7f94e73cca0477f2c_011d1831 d----c- [15:33 02/11/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_593f69699abebf565b874d7f94e73cca0477f2c_0ea71c27 d----c- [20:43 26/09/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_593f69699abebf565b874d7f94e73cca0477f2c_23d4d77a d----c- [00:31 14/09/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_601a3362c9b686b244a1344a184bb9182735797e_13ef55c1 d----c- [09:17 05/11/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_64e76f5c6eb39494f7c4895ad6f026b7c855be3_06a5bf2b d----c- [08:00 14/04/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_64e76f5c6eb39494f7c4895ad6f026b7c855be3_0b929b35 d----c- [20:17 24/04/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_64e76f5c6eb39494f7c4895ad6f026b7c855be3_16d63a9f d----c- [07:20 07/04/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_64e76f5c6eb39494f7c4895ad6f026b7c855be3_3204aad0 d----c- [09:57 20/04/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_0981eff6 d----c- [21:13 30/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_0e3950c1 d----c- [08:41 14/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_117e511d d----c- [06:32 20/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_12623a72 d----c- [06:18 23/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_129b41df d----c- [08:23 06/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_13fa4901 d----c- [06:59 07/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_14137bb5 d----c- [16:47 29/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_688179a6e96a52a2cf6f9853629ca67b99978f5_17bfa9b6 d----c- [20:18 29/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_0497e080 d----c- [07:33 01/05/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_0d27815f d----c- [19:49 05/05/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_16c74cc9 d----c- [06:06 12/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_7aba16c9dbbaf7d92274b4411e63037b58d3dad_16db2ae6 d----c- [07:29 29/04/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a55b1497f5d434663bf97e4ee6f393312a1fda_09592348 d----c- [08:20 24/05/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a55b1497f5d434663bf97e4ee6f393312a1fda_0bd7c093 d----c- [07:58 22/05/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a55b1497f5d434663bf97e4ee6f393312a1fda_0c32cf34 d----c- [10:19 26/05/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a55b1497f5d434663bf97e4ee6f393312a1fda_1641f556 d----c- [18:28 04/06/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a55b1497f5d434663bf97e4ee6f393312a1fda_1a3f259d d----c- [10:37 26/05/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a9274dd1683cbc795389d29b96252b174d522b_03b05d0d d----c- [17:29 23/11/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_a9274dd1683cbc795389d29b96252b174d522b_125c4fe5 d----c- [07:19 12/12/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0122ec73 d----c- [08:28 01/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_04ac6369 d----c- [19:14 13/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_06e63e09 d----c- [06:20 06/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_07bb31b9 d----c- [14:06 13/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_084eb02e d----c- [08:32 01/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0b117a5d d----c- [06:34 07/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0b30620d d----c- [13:46 24/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0da53aaf d----c- [15:29 16/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0f5f7d0c d----c- [13:49 12/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0f9f08a9 d----c- [13:52 14/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_0faa678c d----c- [18:14 26/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_10a47ef5 d----c- [12:23 07/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_10bc367b d----c- [05:36 02/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_10c39666 d----c- [20:23 12/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_10f33e08 d----c- [06:12 06/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_1148a1d9 d----c- [20:26 29/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_1231a3bf d----c- [16:31 23/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_136dced6 d----c- [09:20 01/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_138c4d06 d----c- [10:19 02/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_142188bf d----c- [20:26 12/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_1487b357 d----c- [05:18 09/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_14b30b37 d----c- [06:45 05/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_16a3583d d----c- [06:32 07/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_17a4014b d----c- [08:42 14/07/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_c9122312142097537c2199b77dd24d97f3b13fa_1e14d27d d----c- [08:50 08/08/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_d2e5fd767ef36c764a99d243ef6c5d11ccfef4f_10537cce d----c- [06:47 09/03/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_firefox.exe_d2e5fd767ef36c764a99d243ef6c5d11ccfef4f_109975ac d----c- [06:55 20/02/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_firefox.exe_2593065f2843443438dd77946cdd2e5afb460ce_13cb5294 d----c- [06:38 10/10/2013]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_firefox.exe_b1a4295e2883f6ab2b9b6997df3949c81a280_17955b4a d----c- [07:12 08/03/2015]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_firefox.exe_f8a122d75d37aa76f22719c31d1709a839f3bb5_0a468b60 d----c- [07:43 19/10/2014]
C:\Users\Libor\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_firefox.exe_a38a36f0f5dd4df4c28b6bcb0edfccf31e8fec_0d3247b9 d----c- [19:39 26/04/2014]
C:\Users\Libor\AppData\Local\Mozilla\Firefox d------ [08:12 05/04/2013]
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox d------ [08:12 05/04/2013]

-= EOF =-

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#26 Příspěvek od Márty84 »

:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Users\Libor\Desktop\Firefox Setup Stub 49.0.1.exe
C:\Users\Libor\Downloads\Firefox Setup 36.0.exe
C:\Users\Libor\Downloads\Firefox Setup Stub 49.0.1 (1).exe
C:\Users\Libor\Downloads\seznam-firefox-win32-cs-20.0.1.exe
C:\Windows\Prefetch\FIREFOX.EXE-E60C0AA7.pf
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\features\{2e0ba656-b965-4634-aa37-08f0e08f94b9}\e10srollout@mozilla.org.xpi
C:\Program Files\Mozilla Firefox
C:\Users\Libor\AppData\Local\Mozilla
C:\Users\Libor\AppData\Roaming\Mozilla

:reg
[-HKEY_CURRENT_USER\Software\Mozilla]
[-HKEY_CURRENT_USER\Software\Mozilla Backup]
[-HKEY_CURRENT_USER\Software\MozillaPlugins]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla]
[-HKEY_LOCAL_MACHINE\SOFTWARE\mozilla.org]
[-HKEY_LOCAL_MACHINE\SOFTWARE\mozilla.org\Mozilla]
[-HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins]
[-HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla]
[-HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla Backup]
[-HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\MozillaPlugins]
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#27 Příspěvek od libork »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Guest
->Temp folder emptied: 0 bytes

User: HomeGroupUser$
->Temp folder emptied: 0 bytes

User: Libor
->Temp folder emptied: 44134 bytes
->Temporary Internet Files folder emptied: 128 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 12686318 bytes
->Google Chrome cache emptied: 11732538 bytes
->Flash cache emptied: 42131 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 665522 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 24,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Guest

User: HomeGroupUser$

User: Libor
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTM Restore Point
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
File/Folder C:\Users\Libor\Desktop\Firefox Setup Stub 49.0.1.exe not found.
C:\Users\Libor\Downloads\Firefox Setup 36.0.exe moved successfully.
C:\Users\Libor\Downloads\Firefox Setup Stub 49.0.1 (1).exe moved successfully.
C:\Users\Libor\Downloads\seznam-firefox-win32-cs-20.0.1.exe moved successfully.
C:\Windows\Prefetch\FIREFOX.EXE-E60C0AA7.pf moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\features\{2e0ba656-b965-4634-aa37-08f0e08f94b9}\e10srollout@mozilla.org.xpi moved successfully.
C:\Program Files\Mozilla Firefox\defaults\preferences folder moved successfully.
C:\Program Files\Mozilla Firefox\defaults folder moved successfully.
C:\Program Files\Mozilla Firefox folder moved successfully.
C:\Users\Libor\AppData\Local\Mozilla\updates folder moved successfully.
C:\Users\Libor\AppData\Local\Mozilla\Firefox\Profiles folder moved successfully.
C:\Users\Libor\AppData\Local\Mozilla\Firefox folder moved successfully.
C:\Users\Libor\AppData\Local\Mozilla folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profilescozz22r6.default\speedanalysis03@SpeedAnalysis.com folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profilescozz22r6.default\7go@7go.com folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profilescozz22r6.default folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\webapps folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\weave\toFetch folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\weave\failed folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\weave\changes folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\weave folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\temporary folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\indexeddb+++fx-devtools\idb\478967115deegvatroootlss--cans.files folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\indexeddb+++fx-devtools\idb folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\indexeddb+++fx-devtools folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\chrome\idb\2918063365piupsah.files folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\chrome\idb\2588645841ssegtnti.files folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\chrome\idb folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent\chrome folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\permanent folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage\default folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\storage folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\sessionstore-backups folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\searchplugins folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\saved-telemetry-pings folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\minidumps folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\healthreport folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-widevinecdm\1.4.8.903 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-widevinecdm folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-gmpopenh264\1.6 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-gmpopenh264\1.1 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-gmpopenh264 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-eme-adobe\17 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp-eme-adobe folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp\WINNT_x86-msvc folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\gmp folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\features\{2e0ba656-b965-4634-aa37-08f0e08f94b9} folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\features folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\extensions folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived\2016-10 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived\2016-09 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived\2016-08 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived\2016-07 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived\2016-06 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived\2016-05 folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting\archived folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\datareporting folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\data folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\crashes\events folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\crashes folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\bookmarkbackups folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\adblockplus folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Crash Reports\submitted folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Crash Reports\events folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Crash Reports folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\Libor\AppData\Roaming\Mozilla folder moved successfully.
========== REGISTRY ==========
Registry key HKEY_CURRENT_USER\Software\Mozilla\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Mozilla Backup\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\mozilla.org\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\mozilla.org\Mozilla\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla\ not found.
Registry key HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Mozilla Backup\ not found.
Registry key HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\MozillaPlugins\ not found.

OTM by OldTimer - Version 3.1.21.0 log created on 10032016_200137

Files moved on Reboot...
File move failed. C:\Windows\temp\logishrd\LVPrcInj01.dll scheduled to be moved on reboot.
C:\Windows\temp\LIBOR-PC-20161003-1951.log moved successfully.
File C:\Windows\temp\officeclicktorun.exe_c2ruidll(20161003195129658).log not found!
File C:\Windows\temp\officeclicktorun.exe_streamserver(20161003195129658).log not found!
File move failed. C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#28 Příspěvek od Márty84 »

Procistete CCleanerem, vcetne registru, restartujte pc a zkuste nainstalovat mozillu.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Zpomalený počítač

#29 Příspěvek od libork »

Pročištěno, nainstalováno, ale potíže přetrvávají...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Zpomalený počítač

#30 Příspěvek od Márty84 »

Poslete nejakou fotku, at vidim, jak to vypada. Dela to na vsech strankach? Nebo jen na nekterych? A porad stejnych, nebo nahodne? Zkuste na chvili vypnout antivir. Dale zkuste, jestli se to deje i v nouzovem rezimu s praci v siti.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno