﻿Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-12-2014 03
Ran by Honza at 2014-12-12 11:20:47 Run:1
Running from C:\Users\Honza\Desktop
Loaded Profile: Honza (Available profiles: Honza & postgres)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2013-12-29] ()
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2011-01-31] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [975952 2010-08-10] (Dritek System Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-09-21] (Adobe Systems Incorporated)
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [3872080 2010-04-16] (Microsoft Corporation)
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-01-15] (Google Inc.)
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\MountPoints2: F - F:\PuzzleKingdomsSetup.exe
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\MountPoints2: {2001adf6-7b35-11e2-897f-60eb69728b7f} - D:\LGAutoRun.exe
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\MountPoints2: {bc733c40-321b-11e1-ac99-806e6f6e6963} - G:\autoplay.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Windows\AutoKMS.exe

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.yahoo.com?fr=hp-avast&type=avastbcl
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.yhs4.search.yahoo.com/yhs/sea ... yhs-001&p={searchTerms}
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.yahoo.com?fr=hp-avast&type=avastbcl
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.yahoo.com?fr=hp-avast&type=avastbcl
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://us.yhs4.search.yahoo.com/yhs/sea ... yhs-001&p={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = https://www.yahoo.com?fr=hp-avast&type=avastbcl
URLSearchHook: HKLM-x32 - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: [S-1-5-21-1265453999-1008995523-2966152873-1000] ATTENTION ==> Default URLSearchHook is missing.
URLSearchHook: HKU\S-1-5-21-1265453999-1008995523-2966152873-1000 - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = http://us.yhs4.search.yahoo.com/yhs/sea ... yhs-001&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = http://us.yhs4.search.yahoo.com/yhs/sea ... yhs-001&p={searchTerms}
SearchScopes: HKU\.DEFAULT -> {33524C00-63FB-43DB-A6BF-0A4E14B24649} URL = http://www.basicscan.com/?prt=BASICSCAN115&keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1265453999-1008995523-2966152873-1000 -> DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL =
SearchScopes: HKU\S-1-5-21-1265453999-1008995523-2966152873-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO-x32: Skype Plug-In -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
C:\Program Files (x86)\Skype\Toolbars
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File

FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Bing Bar) - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll No File
CHR Extension: (PodoWeb) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgifjmpambcggfjjgbenfbkhifjalamp [2014-11-21]
CHR HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - No Path
CHR HKLM-x32\...\Chrome\Extension: [apgjagobplilmcdfelodhgefiidomnfl] - C:\Program Files (x86)\Inbox Toolbar\Chrome\ibxtoolbar_chr.crx [Not Found]
C:\Program Files (x86)\Inbox Toolbar
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X]

2014-12-07 14:58 - 2014-12-07 15:03 - 00000000 ____D () C:\AdwCleaner
2014-12-07 14:58 - 2014-12-07 14:59 - 00000110 _____ () C:\AdwCleanerDebug.txt
2014-12-07 14:57 - 2014-12-07 14:57 - 02153472 _____ () C:\Users\Honza\Downloads\adwcleaner_4.104.exe
2014-12-07 13:23 - 2014-12-07 16:07 - 00041949 _____ () C:\Users\Honza\Downloads\Addition.txt
2014-12-07 13:22 - 2014-12-07 16:07 - 00027626 _____ () C:\Users\Honza\Downloads\FRST.txt
2014-12-07 13:19 - 2014-12-07 13:19 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 638886.crdownload
2014-12-07 13:19 - 2014-12-07 13:19 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 571247.crdownload
2014-12-07 16:04 - 2014-12-07 16:04 - 02119680 _____ (Farbar) C:\Users\Honza\Downloads\FRST64 (2).exe
2014-12-07 13:10 - 2014-12-07 13:10 - 02119680 _____ (Farbar) C:\Users\Honza\Downloads\FRST64 (1).exe
2014-11-21 18:43 - 2014-12-07 14:52 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Seznam.cz
2014-11-21 18:42 - 2014-12-07 15:03 - 00000000 ____D () C:\Program Files (x86)\PodoWeb
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

AlternateDataStreams: C:\Program Files (x86)\Jetbull Poker:MID
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:1A60DE96
Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\BCSSync => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AutoKMS => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\LManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr => value deleted successfully.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value not found.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
"HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-1265453999-1008995523-2966152873-1000" => Key not found.
"HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2001adf6-7b35-11e2-897f-60eb69728b7f}" => Key deleted successfully.
"HKCR\CLSID\{2001adf6-7b35-11e2-897f-60eb69728b7f}" => Key not found.
"HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bc733c40-321b-11e1-ac99-806e6f6e6963}" => Key deleted successfully.
"HKCR\CLSID\{bc733c40-321b-11e1-ac99-806e6f6e6963}" => Key not found.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Windows\AutoKMS.exe => Moved successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
Error setting Default URLSearchHook.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}" => Key not found.
"HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33524C00-63FB-43DB-A6BF-0A4E14B24649}" => Key deleted successfully.
"HKCR\CLSID\{33524C00-63FB-43DB-A6BF-0A4E14B24649}" => Key not found.
HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully.
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ppGoogleNaClPluginChrome.dll not found.
C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll not found.
C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll not found.
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgifjmpambcggfjjgbenfbkhifjalamp => Moved successfully.
"HKU\S-1-5-21-1265453999-1008995523-2966152873-1000\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\apgjagobplilmcdfelodhgefiidomnfl" => Key deleted successfully.
"C:\Program Files (x86)\Inbox Toolbar" => File/Directory not found.
cpuz135 => Service deleted successfully.
C:\AdwCleaner => Moved successfully.
C:\AdwCleanerDebug.txt => Moved successfully.
C:\Users\Honza\Downloads\adwcleaner_4.104.exe => Moved successfully.
C:\Users\Honza\Downloads\Addition.txt => Moved successfully.
C:\Users\Honza\Downloads\FRST.txt => Moved successfully.
"C:\Users\Honza\Downloads\Nepotvrzeno 638886.crdownload" => File/Directory not found.
"C:\Users\Honza\Downloads\Nepotvrzeno 571247.crdownload" => File/Directory not found.
C:\Users\Honza\Downloads\FRST64 (2).exe => Moved successfully.
C:\Users\Honza\Downloads\FRST64 (1).exe => Moved successfully.
C:\Users\Honza\AppData\Roaming\Seznam.cz => Moved successfully.
C:\Program Files (x86)\PodoWeb => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Program Files (x86)\Jetbull Poker => ":MID" ADS removed successfully.
C:\ProgramData\Temp => ":0B9176C0" ADS removed successfully.
C:\ProgramData\Temp => ":1A60DE96" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 7.7 GB temporary data.


The system needed a reboot. 

==== End of Fixlog ====