Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prohlížeč zahlcený reklamou

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Prohlížeč zahlcený reklamou

#1 Příspěvek od SpeederBB »

Dobrý den. Prosím o pomoc s vyčištěním systému od havěti. Opera je plná reklam a nedá se téměř nic dělat. Děkuji.

Log z RSIT zde:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-05-16 15:45:28
Microsoft Windows 10 Home
System drive C: has 179 GB (37%) free of 476 GB
Total RAM: 3327 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:45:39, on 16.5.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\system32\rundll32.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\taskeng.exe
C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe
C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\CyberLink\Shared files\brs.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Users\Roman\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Windows\System32\rundll32.exe
C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files\Opera\opera.exe
C:\Windows\System32\SystemSettingsBroker.exe
C:\Program Files\TeamViewer\TeamViewer.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Roman\Desktop\RSIT.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.tsbohemia.cz
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com/?pc=COSP&ptag=G3A0B ... =CT3210127
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - (no file)
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
R3 - URLSearchHook: uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll
O2 - BHO: CrossriderApp0035578 - {11111111-1111-1111-1111-110311551178} - C:\Program Files\Torntv 2\Torntv 2-bho.dll
O2 - BHO: CrossriderApp0061752 - {11111111-1111-1111-1111-110611171152} - C:\Program Files\Internet Speed Checker\Internet Speed Checker-bho.dll
O2 - BHO: CrossriderApp0061788 - {11111111-1111-1111-1111-110611171188} - C:\Program Files\HD-V1.9\HD-V1.9-bho.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: uTorrentControl_v6 - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll
O3 - Toolbar: (no name) - {ec2bae47-25af-4ce9-9e78-10627a49c9ea} - (no file)
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"
O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe
O4 - HKLM\..\Run: [iMON] C:\Program Files\SOUNDGRAPH\iMON\iMON.exe /startup
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Roman\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Roman\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [BackgroundContainerV3] "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Roman\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll",DllRun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{45bbb41d-a8f8-4cb6-aeba-31ca5d5b6108}: NameServer = 10.255.255.10,10.255.255.20
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O20 - AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\VC32Loader.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Technology Access Software Asset Manager (Intel(R) TA SAM) - Intel Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: Intel(R) Technology Access Legacy CS Loader (Intel(R) TechnologyAccessLegacyCSLoader) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
O23 - Service: Intel(R) Technology Access Service (Intel(R) TechnologyAccessService) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Update Manager (iumsvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\Windows\system32\nethtsrv.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\Windows\system32\netupdsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files\TeamViewer\TeamViewer_Service.exe
O23 - Service: @oem17.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\WINDOWS\system32\viakaraokesrv.exe

--
End of file - 11820 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-1.job - C:\Program Files\HD-V1.9\HD-V1.9-codedownloader.exe /KzGuFDW /adepjG=task /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /dHHHj=http://js.infodatacloud.com /xKHfWST=opera /fBMlejGk='HD-V1.9' /nGbrdDcED=http://js.clientdemocloud.com /nJYRmLkf /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /bpjkz='http://update.infodatacloud.com/ie_code ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-10.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-10.exe /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /SOPIiyoPp='HD-V1.9' /vKhqKT=1000 /FmhGj=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /oZeiZf=http://logs.infodatacloud.com /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-11.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-11.exe 001859 091FA445CA1B42E8957AB9C909A935EAIE 61788 1406303171 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 HD-V1.9
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-3.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-3.exe /BRTTCmOs=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
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-4.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-4.exe /tgRdYb /XgSfzIe='HD-V1.9' /lQPxA='C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000.xpi' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /kfcGr=300 /LTuahUIC=caseyvelez@aol.com /TteHyTNZ=0.95 /IgCed=acaseyvelezaolcom61788 /cNcJbtG=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /61788.rdf /SOPIiyoPp='HD-V1.9' /sQZKrc='Lights out for YouTube' /ViHXghEM='InfoHD-V1.8' /xKHfWST=opera /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /nJYRmLkf /SUiPntY /czazt /bpjkz='http://update.infodatacloud.com/ff_agen ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5.exe /rawdata=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
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5_user.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5.exe /rawdata=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
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-6.job - C:\Program Files\HD-V1.9\HD-V1.9-novainstaller.exe /rFxvxqMPa /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /dHHHj=http://js.infodatacloud.com /xKHfWST=opera /zYjaexnT /fBMlejGk=HD-V1.9 /VmCtVd='nova' /nGbrdDcED=http://js.clientdemocloud.com /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /adepjG=task /bpjkz='http://update.infodatacloud.com/novacod ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-7.job - C:\Program Files\HD-V1.9\HD-V1.9-nova.exe /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /dHHHj=http://js.infodatacloud.com /xKHfWST=opera /zYjaexnT /fBMlejGk=HD-V1.9 /VmCtVd='nova' /nGbrdDcED=http://js.clientdemocloud.com /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /bpjkz='http://update.infodatacloud.com/novarun ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\alpha_shopper_helper_service.job - C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe /installationtime=1432826160 /AppName="Alpha Shopper"
C:\WINDOWS\tasks\AmiUpdXp.job - C:\Users\Roman\AppData\Local\1442\Updater.exe
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-1.job - C:\Program Files\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /HoyqPi /MAGgqANL=task /UaAWyMn='Internet Speed Checker' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /vCPdB=http://js.infodatacloud.com /hfluxTZV=opera /BSwJiJYMh='Internet Speed Checker' /wwygaqe=http://js.clientdemocloud.com /dbXGQ /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /GPZolrO='http://update.infodatacloud.com/ie_code ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11.exe /uVqcDhzky=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
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4.exe /UCAegI /UaAWyMn='Internet Speed Checker' /TsDnwjNm='C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9.xpi' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /cDGVzFh=300 /CgsOmbg=sepherdwilbur@aol.com /tPSDe=0.95 /GWvEow=asepherdwilburaolcom61752 /OjBbR=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /61752.rdf /fLMrwytr='Internet Speed Checker' /TzFNLzwuA='Test your internet speed with 1-click' /OttCZ='Speedchecker' /hfluxTZV=opera /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /dbXGQ /yZQbR /eUCakHC /GPZolrO='http://update.infodatacloud.com/ff_agen ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5.exe /rawdata=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
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5_user.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5.exe /rawdata=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
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-6.job - C:\Program Files\Internet Speed Checker\Internet Speed Checker-novainstaller.exe /bERJOkXm /UaAWyMn='Internet Speed Checker' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /vCPdB=http://js.infodatacloud.com /hfluxTZV=opera /SWAbytbxz /BSwJiJYMh=Internet Speed Checker /UMqECx='nova' /wwygaqe=http://js.clientdemocloud.com /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /MAGgqANL=task /GPZolrO='http://update.infodatacloud.com/novacod ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-7.job - C:\Program Files\Internet Speed Checker\Internet Speed Checker-nova.exe /UaAWyMn='Internet Speed Checker' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /vCPdB=http://js.infodatacloud.com /hfluxTZV=opera /SWAbytbxz /BSwJiJYMh=Internet Speed Checker /UMqECx='nova' /wwygaqe=http://js.clientdemocloud.com /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /GPZolrO='http://update.infodatacloud.com/novarun ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\disco_savings_notification_service.job - C:\Program Files\disco savings\disco_savings_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='disco savings' /appid='73143' /srcid='2913' /bic='da7c8a53bba89ba19732f3633bf5551b' /verifier='6992a7e0a13cdbfcba3b56492c810aa8' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1428030920' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\disco_savings_updating_service.job - C:\Program Files\disco savings\disco_savings_updating_service.exe /campid=2913 /verid=1 /url=http://cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=disco_savings_updating_service /funurl=http://stats.buildomserv.com
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\helper_king_notification_service.job - C:\Program Files\helper king\helper_king_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='helper king' /appid='73143' /srcid='2913' /bic='da7c8a53bba89ba19732f3633bf5551b' /verifier='6992a7e0a13cdbfcba3b56492c810aa8' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1427987789' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\helper_king_updating_service.job - C:\Program Files\helper king\helper_king_updating_service.exe /campid=2913 /verid=1 /url=http://cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=helper_king_updating_service /funurl=http://stats.buildomserv.com
C:\WINDOWS\tasks\Norton Security Scan for Roman.job - C:\PROGRA~1\NORTON~2\Engine\430~1.43\Nss.exe /scan-quick /scheduled
C:\WINDOWS\tasks\omega_buyer_helper_service.job - C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe /installationtime=1432761340 /AppName='Omega Buyer'
C:\WINDOWS\tasks\Torntv 2-codedownloader.job - C:\Program Files\Torntv 2\Torntv 2-codedownloader.exe /reinstallapp /agentregpath='Torntv 2' /appid=35578 /srcid='000181' /subid='0' /zdata='0' /bic=091FA445CA1B42E8957AB9C909A935EAIE /verifier=d71012d990b5bcdfcfc1c9bda932cc88 /installerversion=1_27_153 /installerfullversion=1.27.153.8 /installationtime=1375618502 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /codedownloaddomain=http://cr.install-daddy.com /allusers /externallog=''
C:\WINDOWS\tasks\Torntv 2-updater.job - C:\Program Files\Torntv 2\Torntv 2-updater.exe /runupdater /agentregpath='Torntv 2' /appid=35578 /srcid='000181' /subid='0' /zdata='0' /bic=091FA445CA1B42E8957AB9C909A935EAIE /verifier=d71012d990b5bcdfcfc1c9bda932cc88 /installerversion=1_27_153 /installationtime=1375618502 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.datasrvstats.com /updaterversion=2 /externallog=''

=========Mozilla firefox=========

ProfilePath - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... ource=2&q="

"ext@RichMediaViewV1release7864.net"=C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.242 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1223183.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\
caseyvelez@aol.com
E6fXtz9@gmail.com
engine@conduit.com
fasttrans@kemot
fbchathistory@firechm.com
HDdGUBo@gmail.com
jid0-hyjN250ZzTOOX3evFwwAQBxE4ik@jetpack
l7rFhLjqa@gmail.com
memoryrestart@teamextension.com
pbupload@photobucket.com
sepherdwilbur@aol.com
speedtest4354@BestOffers
webrank-toolbar@probcomp.com
XudsW@gmail.com
{ce18769b-c7fa-42d2-860d-17c4662c70ad}
{ea614400-e918-4741-9a97-7a972ff7c30b}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\
Ask.xml
bingp.xml
bs-player-customized-web-search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}]
Torntv 2 - C:\Program Files\Torntv 2\Torntv 2-bho.dll [2013-08-04 748032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
Internet Speed Checker - C:\Program Files\Internet Speed Checker\Internet Speed Checker-bho.dll [2014-07-26 555880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171188}]
HD-V1.9 - C:\Program Files\HD-V1.9\HD-V1.9-bho.dll [2014-07-25 612712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96f454ea-9d38-474f-b504-56193e00c1a5}]
uTorrentControl_v6 Toolbar - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23 423744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
{96f454ea-9d38-474f-b504-56193e00c1a5} - uTorrentControl_v6 Toolbar - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23 423744]
{ec2bae47-25af-4ce9-9e78-10627a49c9ea}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2009-12-11 1474560]
"RemoteControl9"=C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [2009-04-27 87336]
"PDVD9LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [2009-04-27 50472]
"BDRegion"=C:\Program Files\Cyberlink\Shared Files\brs.exe [2009-05-07 75048]
"iMON"=C:\Program Files\SOUNDGRAPH\iMON\iMON.exe [2007-08-30 2560000]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"cz.seznam.software.autoupdate"=C:\Users\Roman\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"OneDrive"=C:\Users\Roman\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-21 554176]
"BackgroundContainerV3"=C:\Users\Roman\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll [2016-04-20 300352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\SearchProtect\SearchProtect\bin\VC32Loader.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=64

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2063-09-19 07:50:50 ----A---- C:\WINDOWS\system32\rtclmg32.dll
2016-05-16 15:45:29 ----D---- C:\Program Files\trend micro
2016-05-16 15:45:28 ----D---- C:\rsit
2016-05-16 15:37:25 ----D---- C:\Users\Roman\AppData\Roaming\TeamViewer
2016-05-16 15:37:17 ----D---- C:\Program Files\TeamViewer
2016-05-15 19:07:14 ----D---- C:\WINDOWS\Panther
2016-05-10 20:38:48 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\moshost.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-05-10 20:38:42 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-05-10 20:38:42 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-05-10 20:38:42 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-05-10 20:38:41 ----A---- C:\WINDOWS\system32\mos.dll
2016-05-10 20:38:40 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-05-10 20:38:36 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-05-10 20:38:35 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-05-10 20:38:27 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-10 20:38:26 ----A---- C:\WINDOWS\system32\twinui.dll
2016-05-10 20:38:26 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-10 20:38:24 ----A---- C:\WINDOWS\system32\shell32.dll
2016-05-10 20:38:22 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-05-10 20:38:22 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-05-10 20:38:21 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-05-10 20:38:20 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-05-10 20:38:19 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-10 20:38:18 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-05-10 20:38:17 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-05-10 20:38:16 ----A---- C:\WINDOWS\explorer.exe
2016-05-10 20:38:15 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-05-10 20:38:15 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-05-10 20:38:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-05-10 20:38:14 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-05-10 20:38:13 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-05-10 20:38:13 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-10 20:38:13 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-05-10 20:38:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-05-10 20:38:11 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-05-10 20:38:11 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-10 20:38:10 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-05-10 20:38:10 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-05-10 20:38:10 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-05-10 20:38:09 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-10 20:38:09 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-05-10 20:38:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-10 20:38:08 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-10 20:38:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-10 20:38:07 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-05-10 20:38:07 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-05-10 20:38:06 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-05-10 20:38:06 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-05-10 20:38:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-05-10 20:38:05 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-05-10 20:38:05 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-05-10 20:38:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-05-10 20:38:03 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-05-10 20:38:03 ----A---- C:\WINDOWS\system32\invagent.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\jscript.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-05-10 20:38:01 ----A---- C:\WINDOWS\system32\user32.dll
2016-05-10 20:38:01 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-10 20:38:01 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-05-10 20:38:00 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-05-10 20:38:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-05-10 20:38:00 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-05-10 20:37:59 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-05-10 20:37:59 ----A---- C:\WINDOWS\system32\schannel.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\aepic.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-10 20:37:56 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-05-10 20:37:56 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-05-10 20:37:56 ----A---- C:\WINDOWS\system32\provengine.dll
2016-05-10 20:37:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-10 20:37:55 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-05-10 20:37:55 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\drivers\sdport.sys
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-05-10 20:37:53 ----A---- C:\WINDOWS\system32\shacct.dll
2016-05-10 20:37:53 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-05-10 20:37:53 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\wininit.exe
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-10 20:37:49 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-10 20:37:49 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-05-10 20:37:49 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-10 20:37:48 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-10 20:37:48 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-05-10 20:37:48 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-10 20:37:47 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-05-10 20:37:47 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-05-10 20:37:47 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\dwminit.dll
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\hmkd.dll
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\drivers\UcmCx.sys
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\drivers\filecrypt.sys
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-05-10 20:37:42 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-05-10 20:37:42 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-05-10 20:37:42 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-10 20:37:41 ----A---- C:\WINDOWS\system32\wups.dll
2016-05-10 20:37:41 ----A---- C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-10 20:37:38 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-10 20:37:38 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-10 20:37:37 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-05-10 20:37:36 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-05-10 20:37:36 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-10 20:37:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-10 20:37:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-05-10 20:37:35 ----A---- C:\WINDOWS\system32\AppCapture.dll

======List of files/folders modified in the last 1 month======

2016-05-16 15:45:36 ----D---- C:\WINDOWS\Prefetch
2016-05-16 15:45:29 ----RD---- C:\Program Files
2016-05-16 15:37:28 ----RSD---- C:\WINDOWS\Fonts
2016-05-16 15:37:17 ----D---- C:\WINDOWS\system32\Tasks
2016-05-16 15:32:47 ----D---- C:\WINDOWS\Temp
2016-05-16 15:20:08 ----D---- C:\Users\Roman\AppData\Roaming\Seznam.cz
2016-05-16 15:16:41 ----AD---- C:\WINDOWS\System32
2016-05-16 15:15:27 ----D---- C:\Users\Roman\AppData\Roaming\SOUNDGRAPH
2016-05-16 15:12:21 ----D---- C:\WINDOWS\system32\sru
2016-05-16 14:55:54 ----D---- C:\Users\Roman\AppData\Roaming\uTorrent
2016-05-16 14:53:39 ----D---- C:\Users\Roman\AppData\Roaming\Skype
2016-05-16 12:14:12 ----D---- C:\Filmy
2016-05-16 12:12:50 ----D---- C:\Audioknihy
2016-05-16 12:12:26 ----D---- C:\Hry
2016-05-15 19:08:27 ----D---- C:\WINDOWS\Microsoft.NET
2016-05-15 19:07:14 ----D---- C:\Windows
2016-05-15 15:18:31 ----D---- C:\WINDOWS\system32\config
2016-05-14 15:52:46 ----D---- C:\WINDOWS\system32\DriverStore
2016-05-14 15:32:37 ----D---- C:\WINDOWS\INF
2016-05-14 15:32:32 ----D---- C:\WINDOWS\WinSxS
2016-05-14 15:29:12 ----D---- C:\WINDOWS\system32\catroot2
2016-05-14 12:07:18 ----D---- C:\WINDOWS\AppReadiness
2016-05-14 04:05:17 ----D---- C:\WINDOWS\CbsTemp
2016-05-13 11:37:24 ----HD---- C:\Program Files\WindowsApps
2016-05-12 14:58:35 ----AD---- C:\Program Files\Opera
2016-05-12 12:48:08 ----D---- C:\WINDOWS\rescache
2016-05-12 12:09:25 ----RD---- C:\WINDOWS\assembly
2016-05-12 00:21:57 ----D---- C:\WINDOWS\system32\drivers
2016-05-11 21:57:14 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\oobe
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\migration
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\cs-CZ
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\appraiser
2016-05-11 20:41:16 ----D---- C:\WINDOWS\Provisioning
2016-05-11 20:41:16 ----D---- C:\WINDOWS\bcastdvr
2016-05-11 20:41:16 ----D---- C:\WINDOWS\apppatch
2016-05-11 20:41:16 ----D---- C:\Program Files\Windows Journal
2016-05-11 20:41:16 ----D---- C:\Program Files\Internet Explorer
2016-05-11 13:03:29 ----SHD---- C:\WINDOWS\Installer
2016-05-11 13:03:26 ----SHD---- C:\Config.Msi
2016-05-11 13:03:26 ----D---- C:\ProgramData\Microsoft Help
2016-05-11 07:04:07 ----D---- C:\WINDOWS\system32\MRT
2016-05-11 06:48:56 ----A---- C:\WINDOWS\system32\MRT.exe
2016-05-10 23:13:22 ----D---- C:\WINDOWS\Tasks
2016-04-30 22:23:12 ----D---- C:\ProgramData\Norton
2016-04-30 20:15:34 ----D---- C:\ProgramData\Skype
2016-04-30 20:15:24 ----RD---- C:\Program Files\Skype
2016-04-23 20:25:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-22 09:57:44 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-04-19 21:55:03 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-04-19 14:21:27 ----SHD---- C:\$Recycle.Bin

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AtiPcie;@oem4.inf,%ATIPCIE_svcdesc%;AMD PCI Express (3GIO) Filter; C:\WINDOWS\System32\drivers\AtiPcie.sys [2009-12-11 14392]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2016-05-07 388848]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys [2007-11-03 68096]
R1 ndisrd;@oem13.inf,%ndisrfl_Desc%;Intel(R) Technology Access Filter Driver; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [2015-04-30 35544]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2010-02-24 185472]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2013-01-05 25888]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 npf;npf; \??\C:\Windows\system32\drivers\npf.sys [2010-03-22 50704]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 3xHybrid;@oem15.inf,%SERVICE_NAME%;SAA713x TV Card Service; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [2010-12-01 1141888]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-01-13 10070016]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-01-13 290304]
R3 AtiHdmiService;@oem0.inf,%ATIHdAudioDriver.SvcDesc%;ATI Service for HD Audio Codec; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-12-11 99856]
R3 fcdabus;fcdabus; C:\WINDOWS\System32\drivers\fcdabus.sys [2003-08-07 10899]
R3 fvdscsi;fvdscsi; C:\WINDOWS\System32\drivers\fvdscsi.sys [2003-08-09 60008]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 L1E;@netl1e86.inf,%L1E.Service.DispName%;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1E62x86.sys [2015-10-30 55296]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-04-12 130560]
R3 MTsensor;@oem5.inf,%ASACPI.DisplayName%;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S1 nethfdrv;nethfdrv; \??\C:\WINDOWS\system32\drivers\nethfdrv.sys []
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 96768]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 SGHIDI;SGHIDI; C:\WINDOWS\system32\drivers\TG_iMON.sys [2003-12-30 45060]
S3 SGIR;SGIR; C:\WINDOWS\system32\drivers\iMON_PAD.sys [2004-12-22 18090]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-04-23 46080]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 33792]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 32768]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-03-29 203104]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 74080]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-04-23 104800]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 42840]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 21856]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 21856]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-01-13 217088]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R2 Intel(R) TechnologyAccessLegacyCSLoader;Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [2016-03-15 129696]
R2 Intel(R) TechnologyAccessService;Intel(R) Technology Access Service; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [2016-03-15 460960]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-04-12 25088]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NetHttpService;Network HTTP Support Service; C:\Windows\system32\nethtsrv.exe [2015-05-10 338944]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_386d2;Hostitel synchronizace_386d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2009-04-27 271760]
R2 ServiceUpdater;Network Support Service Updater; C:\Windows\system32\netupdsrv.exe [2015-05-10 190464]
R2 TeamViewer;TeamViewer 11; C:\Program Files\TeamViewer\TeamViewer_Service.exe [2016-05-02 7031056]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-07-26 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-13 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-07-26 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Intel(R) TA SAM;Intel(R) Technology Access Software Asset Manager; C:\Program Files\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-08-12 19088]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-05-31 553288]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25 178312]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_386d2;Služba zasílání zpráv_386d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-29 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_386d2;Data kontaktů_386d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_386d2;Úložiště uživatelských dat_386d2; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prohlížeč zahlcený reklamou

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Re: Prohlížeč zahlcený reklamou

#3 Příspěvek od SpeederBB »

První polovina logu zde:

# AdwCleaner v5.117 - Log soubor vytvořen 16/05/2016 o 19:43:38
# Aktualizováno 15/05/2016 by Xplode
# Databáze : 2016-05-15.2 [Server]
# Operační systém : Windows 10 Home (X86)
# Jméno uživatele : Roman - ROMAN-PC
# Spuštěno z : C:\Users\Roman\Desktop\adwcleaner_5.117.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum

***** [ Služby ] *****

[-] Služba smazáno : globalUpdate
[-] Služba smazáno : globalUpdatem
[-] Služba smazáno : nethfdrv
[-] Služba smazáno : NethxxpService
[-] Služba smazáno : ServiceUpdater

***** [ Složky ] *****

[-] Složka smazáno : C:\ProgramData\apn
[+] Složka smazáno : C:\ProgramData\BitGuard
[+] Složka smazáno : C:\ProgramData\Browser Manager
[+] Složka smazáno : C:\ProgramData\BrowserProtect
[-] Složka smazáno : C:\ProgramData\torchcrashhandler
[-] Složka smazáno : C:\ProgramData\wincert
[-] Složka smazáno : C:\ProgramData\ytd video downloader
[-] Složka smazáno : C:\ProgramData\0f0480db-9306-4d87-bd8b-566368082ef1
[-] Složka smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Converter
[-] Složka smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
[-] Složka smazáno : C:\Program Files\Babylon
[-] Složka smazáno : C:\Program Files\BS_Player
[-] Složka smazáno : C:\Program Files\Conduit
[-] Složka smazáno : C:\Program Files\disco savings
[-] Složka smazáno : C:\Program Files\globalUpdate
[-] Složka smazáno : C:\Program Files\GreenTree Applications
[-] Složka smazáno : C:\Program Files\helper king
[-] Složka smazáno : C:\Program Files\Internet Speed Checker
[-] Složka smazáno : C:\Program Files\MyPC Backup
[-] Složka smazáno : C:\Program Files\Torntv 2
[-] Složka smazáno : C:\Program Files\TornTV.com
[-] Složka smazáno : C:\Program Files\VideoConverter
[-] Složka smazáno : C:\Program Files\ytd
[-] Složka smazáno : C:\Program Files\HD-V1.9
[#] Složka smazáno : C:\Program Files\Internet Speed Checker
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Conduit
[-] Složka smazáno : C:\Users\Roman\AppData\Local\globalUpdate
[-] Složka smazáno : C:\Users\Roman\AppData\Local\iLivid
[-] Složka smazáno : C:\Users\Roman\AppData\Local\ilividmoviestoolbardla
[-] Složka smazáno : C:\Users\Roman\AppData\Local\torch
[-] Složka smazáno : C:\Users\Roman\AppData\Local\24742
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\BS_Player
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\Conduit
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\ilividmoviestoolbardla
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\Internet Speed Checker
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\PriceGong
[#] Složka smazáno : C:\Users\Roman\AppData\LocalLow\Internet Speed Checker
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Browser Tab Search by Ask
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\FirefoxToolbar
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\OpenCandy
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\PerformerSoft
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\freegames111
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\torch
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Converter
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\Conduit
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ConduitCommon
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ConduitEngine
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ilividmoviestoolbardla
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\Smartbar
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ValueApps
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\engine@conduit.com
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com
[#] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\jljheddigenhleadfofeccneimcmlefp
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\agkocbbjgcfpodcpdfpenidadocpcmlj
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gijpiklekffjdhakddncmmfoljbopjka
[#] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi
[#] Složka smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi

***** [ Soubory ] *****

[-] Soubor smazáno : C:\Users\Public\Desktop\YTD Video Downloader.lnk
[-] Soubor smazáno : C:\Program Files\Mozilla Firefox\my.cfg
[-] Soubor smazáno : C:\Program Files\Common Files\config\uninstinethnfd.exe
[-] Soubor smazáno : C:\WINDOWS\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
[-] Soubor smazáno : C:\WINDOWS\system32\hfnapi.dll
[-] Soubor smazáno : C:\WINDOWS\system32\hfpapi.dll
[-] Soubor smazáno : C:\WINDOWS\system32\installd.exe
[-] Soubor smazáno : C:\WINDOWS\system32\nethtsrv.exe
[-] Soubor smazáno : C:\WINDOWS\system32\netupdsrv.exe
[-] Soubor smazáno : C:\WINDOWS\system32\roboot.exe
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iLivid.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\trtv3@trtv.com.xpi
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\Ask.xml
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\bingp.xml
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bicnnkjibmphdeigoodpjlcklcnaobdj_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bicnnkjibmphdeigoodpjlcklcnaobdj_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bbglkiiiofelplniblholffbhhjmdhhi
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bbglkiiiofelplniblholffbhhjmdhhi
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_foxi69.tlscdn.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_foxi69.tlscdn.com_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_pstatic.bestpriceninja.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_land.pckeeper.software_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_land.pckeeper.software_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.terraclicks.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.terraclicks.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.tradeadexchange.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.tradeadexchange.com_0.localstorage-journal

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úkoly ] *****

[-] Úkol smazáno : AmiUpdXp
[-] Úkol smazáno : globalUpdateUpdateTaskMachineCore
[-] Úkol smazáno : globalUpdateUpdateTaskMachineUA
[-] Úkol smazáno : disco_savings_notification_service
[-] Úkol smazáno : disco_savings_updating_service
[-] Úkol smazáno : helper_king_updating_service
[-] Úkol smazáno : helper_king_notification_service
[-] Úkol smazáno : Pokki
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-1
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-10
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-11
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-3
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-4
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5_user
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-6
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-7
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-1
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5_user
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-6
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-7
[-] Úkol smazáno : Torntv 2-codedownloader
[-] Úkol smazáno : Torntv 2-updater
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-1
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-10
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-11
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-3
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-4
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5_user
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-6
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-7
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-1
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5_user
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-6
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-7
[-] Úkol smazáno : Torntv 2-codedownloader
[-] Úkol smazáno : Torntv 2-updater

***** [ Registr ] *****

[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Applications\Torch.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Clients\StartMenuInternet\Torch
[-] Hodnota smazáno : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\chrome.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Hodnota smazáno : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\firefox.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Hodnota smazáno : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\iexplore.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}
[-] Klávesa smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Klávesa smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\s
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [HD-V1.9-bg.exe]
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.BHO
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.BHO.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.Sandbox
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.Sandbox.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.BHO
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.BHO.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.Sandbox
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.Sandbox.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.BHO
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.BHO.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.Sandbox
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.Sandbox.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Toolbar.CT3289075
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r707-n-bo.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\jljheddigenhleadfofeccneimcmlefp
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\kiplfnciaokpcennlkldkdaeaaomamof
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
[-] Klávesa smazáno : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Klávesa smazáno : HKCU\Software\Classes\pokki
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\dream.capture
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\dream.capture.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Prod.cap
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Speed Test 127.BackgroundHostObject
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Speed Test 127.BackgroundHostObject.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
[-] Klávesa smazáno : HKCU\Software\Classes\CLSID\{66E8DCC7-97D2-4A89-8E08-D0610FF0878C}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{75CC1BBE-D96F-45DF-A622-D60BFA8AF49E}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{C430996F-4AA8-4AA8-81DE-F54432CD5786}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{117270FA-48AC-45BB-9171-B63D1B42A910}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172288}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175588}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174452}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174488}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11C8C9C0-D918-44C0-8B5E-D297DA42F2C7}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C45EC9F0-8333-465D-9728-074BD41985C9}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}]
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Klávesa smazáno : HKCU\Software\1ClickDownload
[-] Klávesa smazáno : HKCU\Software\APN DTX
[-] Klávesa smazáno : HKCU\Software\BackgroundContainer
[-] Klávesa smazáno : HKCU\Software\BackgroundContainerV2
[-] Klávesa smazáno : HKCU\Software\Conduit
[-] Klávesa smazáno : HKCU\Software\DataMngr
[-] Klávesa smazáno : HKCU\Software\GlobalUpdate
[-] Klávesa smazáno : HKCU\Software\ilivid
[-] Klávesa smazáno : HKCU\Software\ilividmoviestoolbardla
[-] Klávesa smazáno : HKCU\Software\InstalledBrowserExtensions
[-] Klávesa smazáno : HKCU\Software\performersoft llc
[-] Klávesa smazáno : HKCU\Software\Pokki
[-] Klávesa smazáno : HKCU\Software\SweetIM
[-] Klávesa smazáno : HKCU\Software\Tbccint_HKLM
[-] Klávesa smazáno : HKCU\Software\torch
[-] Klávesa smazáno : HKCU\Software\GreenTree Applications\YTD
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Toolbar
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Conduit
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Crossrider
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Internet Speed Checker
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\PriceGong
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Torntv 2
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\HD-V1.9
[-] Klávesa smazáno : HKLM\SOFTWARE\Conduit
[-] Klávesa smazáno : HKLM\SOFTWARE\DataMngr
[-] Klávesa smazáno : HKLM\SOFTWARE\GlobalUpdate
[-] Klávesa smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Klávesa smazáno : HKLM\SOFTWARE\Internet Speed Checker
[-] Klávesa smazáno : HKLM\SOFTWARE\SafetyNut
[-] Klávesa smazáno : HKLM\SOFTWARE\SweetIM
[-] Klávesa smazáno : HKLM\SOFTWARE\torch
[-] Klávesa smazáno : HKLM\SOFTWARE\Torntv 2
[-] Klávesa smazáno : HKLM\SOFTWARE\HD-V1.9
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9563BC59-9556-4805-8CD4-886781779D8D}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player Toolbar
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\inethnfd
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Speed Checker
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Torntv 2
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HD-V1.9
[-] Klávesa smazáno : HKU\.DEFAULT\Software\AskPartnerNetwork
[-] Klávesa smazáno : HKU\.DEFAULT\Software\DataMngr
[-] Klávesa smazáno : HKU\.DEFAULT\Software\VNT
[-] Klávesa smazáno : HKU\.DEFAULT\Software\AppDataLow\Software\Internet Speed Checker
[-] Klávesa smazáno : HKU\.DEFAULT\Software\AppDataLow\Software\HD-V1.9
[-] Klávesa smazáno : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Internet Speed Checker
[-] Klávesa smazáno : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\HD-V1.9
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-844245518-2522841152-2584056038-1000\Software\AskPartnerNetwork
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{38100CFA-350A-4891-A9D1-1D732BE95769}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7C642E2E-18F6-47E4-BF21-DF1EBEB31E5E}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}
[-] Data Obnoveno : HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\eshopcomp.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\hdapp1008-a.akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pstatic.eshopcomp.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\app.mam.conduit.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduitapps.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hdapp1008-a.akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\televisionfanatic.dl.tb.ask.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com

SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Re: Prohlížeč zahlcený reklamou

#4 Příspěvek od SpeederBB »

Druhá polovina logu zde:

***** [ Webové prohlížeče ] *****

[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559..clientLogIsEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559..clientLogServiceUrl", "hxxp://clientlog.users.tbccint.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559..uninstallLogServiceUrl", "hxxp://uninstall.users.tbccint.com/Uninstall.asmx/RegisterToolbarUninstallation");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000082.isPlayDisplay", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000082.state", "{\"state\":\"stopped\",\"text\":\"1.FM Dance\",\"description\":\"1.FM Dance\",\"url\":\"mms://dance.1.fm/energydance128k?MSWMExt=.asf\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000234.TWC_locId", "EZXX0012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000234.TWC_temp_dis", "c");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/default.aspx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.AppTrackingLastCheckTime", "Sun Aug 12 2012 01:32:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.BrowserCompStateIsOpen_129502713039250930", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.BrowserCompStateIsOpen_129544988592463877", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.BrowserCompStateIsOpen_129634080503807015", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.CT1750559", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.CurrentServerDate", "26-8-2015");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSChangedManually", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSInstall", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSProtectChoice", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSProtectCount", 2);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DialogsAlignMode", "LTR");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DialogsGetterLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DownloadReferralCookieData", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstServerDate", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstTime", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstTimeFF3", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstTimeHiddenVer", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FixPageNotFoundErrors", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.GroupingServerCheckInterval", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.GroupingServiceUrl", "hxxp://grouping.tbccint.com/");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPChangedManually", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPInstall", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPProtectChoice", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPProtectCount", 4);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HasUserGlobalKeys", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HomePageProtectorEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HomepageBeforeUnload", "hxxp://www.seznam.cz/");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.Initialize", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InitializeCommonPrefs", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InstallationAndCookieDataSentCount", 3);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InstallationType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InstalledDate", "Mon Jul 02 2012 19:26:42 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InvalidateCache", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsAlertDBUpdated", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsGrouping", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsInitSetupIni", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsMulticommunity", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsOpenThankYouPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsOpenUninstallPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsProtectorsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LanguagePackLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LanguagePackReloadIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LanguagePackServiceUrl", "hxxp://translation.users.tbccint.com/Translation.ashx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LastLogin_3.13.0.6", "Sun Jul 15 2012 17:18:22 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LastLogin_3.14.1.0", "Thu Aug 23 2012 19:27:28 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LastLogin_3.15.1.0", "Wed Aug 26 2015 16:41:53 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LatestVersion", "3.20.0.4");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.Locale", "en-us");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MCDetectTooltipHeight", "83");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MCDetectTooltipWidth", "295");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MyStuffEnabledAtInstallation", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.OriginalFirstVersion", "3.13.0.6");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioIsPodcast", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioLastCheckTime", "Wed Aug 26 2015 12:41:03 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioLastUpdateIPServer", "3");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioLastUpdateServer", "128929877726170000");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioMediaID", "11237206");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioMediaType", "Media Player");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioMenuSelectedID", "EBRadioMenu_CT175055911237206");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioStationName", "1.FM%20Dance");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioStationURL", "hxxp://dance.1.fm/energydance128k?MSWMExt=.asf");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RestartDialogFirstTime", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RestartDialogShouldDisplay", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SavedHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchCaption", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchEngineBeforeUnload", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchFromAddressBarIsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchProtectorEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchProtectorToolbarDisabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SendProtectorDataViaLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ServiceMapLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SettingsLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SettingsLastUpdate", "1440568819");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ThirdPartyComponentsInterval", 504);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ThirdPartyComponentsLastCheck", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ThirdPartyComponentsLastUpdate", "1331805997");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ToolbarShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.TrusteLinkUrl", "hxxp://trust.cpccint.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,tbclient.tbccint.com,codefuel.com,tbccint.com,trovi.com,seccint.com,cpccint.com,appstrm.com,OurToolbar.co[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.UserID", "UN48648799102277925");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.WeatherNetwork", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.WeatherPollDate", "Wed Aug 26 2015 18:17:20 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.WeatherUnit", "C");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.addressBarTakeOverEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.alertChannelId", "31130");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.appbuttondisablenull.from_oldbar.enc", "MA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.backendstorage.appbuttondisablenull", "30");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.backendstorage.twitter_v1.8.0_twitter_app_open_t_f", "66616C7365");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.browser.search.defaultthis.engineName", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.countryCode", "CZ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.enableAlerts", "always");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.firstTimeDialogOpened", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.fixPageNotFoundErrorByUser", "TRUE");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.fixPageNotFoundErrorInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.fullUserID", "UN48648799102277925.UP.20150826192835");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.globalFirstTimeInfoLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.homepageProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.initDone", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.installType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isAppTrackingManagerOn", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isCheckedStartAsHidden", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isFirstRadioInstallation", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isFirstTimeToolbarLoading", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isPerformedSmartBarTransition", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.keyword", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://www.trovigo.com/?gd=&ctid=CT1750559&oct ... &Lay=1&UM=[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.lastVersion", "10.38.0.509");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffEnabled", "€");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffPublihserMinWidth", 400);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffSearchUrl", "hxxp://appstrm.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffServiceIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.navigateToUrlOnSearch", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about%3Ablank\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://BSPlayerControlBar.OurToo[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.oldAppsList", "128515954179600320,128520273115419467,111,129646277731078772,128798613156656718,129242840850880190,128798615652125058,1000234,1000082,129634080503807015,12977575788[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.originalHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.originalSearchAddressUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.originalSearchEngine", "chrome://browser-region/locale/region.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.performedDomainChangesMigration", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.revertSettingsEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.search.searchAppId", "128520273115419467");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.search.searchCount", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchFromAddressBarEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabRestore", "about:newtab");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabValue", "hxxps://www.trovigo.com/?gd=&ctid=CT1750559&oct ... A&SAT=FNTS");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchProtectorDialogDelayInSec", 10);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchSuggestEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT1750559\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://BSPlayerControlBar.OurToolbar.com//xpi\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"BS Player ControlBar \"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_Configuration_lastUpdate", "1454489590821");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1454489587064");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_appsMetadata_lastUpdate", "1454489587630");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1454489586977");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_login_10.20.101.5_lastUpdate", "1440669332243");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_login_10.38.0.509_lastUpdate", "1454489586119");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1454489587030");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_searchAPI_lastUpdate", "1454489590082");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_serviceMap_lastUpdate", "1454489587561");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_toolbarContextMenu_lastUpdate", "1454489586943");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_toolbarSettings_lastUpdate", "1454489587090");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_translation_lastUpdate", "1454489586930");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.settingsINI", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.showToolbarPermission", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.smartbar.CTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.smartbar.Uninstall", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.smartbar.toolbarName", "BS Player ControlBar ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.testingCtid", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarAppMetaDataLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarBornServerTime", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarContextMenuLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarCurrentServerTime", "3-2-2016");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarLoginClientTime", "Wed Aug 26 2015 19:28:45 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.upgradeFromOBVersion", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.usagesFlag", 2);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1454489580230,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081..clientLogIsEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081..clientLogServiceUrl", "hxxp://clientlog.users.tbccint.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081..uninstallLogServiceUrl", "hxxp://uninstall.users.tbccint.com/Uninstall.asmx/RegisterToolbarUninstallation");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000082.isPlayDisplay", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000082.state", "{\"state\":\"stopped\",\"text\":\"AHL - Gra...\",\"description\":\"AHL - Grand Rapids Griffins\",\"url\":\"mms://cdncon.wm.llnwd.net/cdncon_neulion1_ahl_griffins?[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000234.TWC_locId", "PLXX0002");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000234.TWC_temp_dis", "c");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/default.aspx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.BrowserCompStateIsOpen_130040904124880871", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.CT2720081", "CT2720081");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.CurrentServerDate", "26-8-2015");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DSInstall", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DialogsAlignMode", "LTR");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DialogsGetterLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DownloadReferralCookieData", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.EMailNotifierPollDate", "Wed Aug 26 2015 18:17:29 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedLastCount129248891425073064", 200);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129225116238185771", "Sat Aug 02 2014 00:17:50 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129225147492879732", "Sat Aug 02 2014 00:17:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129245643951202078", "Sat Aug 02 2014 00:17:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129245643951202084", "Sat Aug 02 2014 00:17:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129225116238185771", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129225147492879732", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129245643951202078", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129245643951202084", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstServerDate", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstTime", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstTimeFF3", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstTimeHiddenVer", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FixPageNotFoundErrors", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.GroupingServerCheckInterval", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.GroupingServiceUrl", "hxxp://grouping.tbccint.com/");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HPInstall", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HasUserGlobalKeys", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HomePageProtectorEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HomepageBeforeUnload", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.Initialize", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InitializeCommonPrefs", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InstallationAndCookieDataSentCount", 3);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InstallationType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InstalledDate", "Mon Jul 02 2012 19:26:36 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InvalidateCache", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsAlertDBUpdated", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsGrouping", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsInitSetupIni", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsMulticommunity", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsOpenThankYouPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsOpenUninstallPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsProtectorsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LanguagePackLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LanguagePackReloadIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LanguagePackServiceUrl", "hxxp://translation.users.tbccint.com/Translation.ashx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LastLogin_3.13.0.6", "Sun Jul 15 2012 17:18:21 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LastLogin_3.14.1.0", "Thu Aug 23 2012 19:27:26 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LastLogin_3.15.1.0", "Wed Aug 26 2015 16:41:52 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LatestVersion", "3.20.0.4");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.Locale", "en");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MCDetectTooltipHeight", "83");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MCDetectTooltipWidth", "295");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MyStuffEnabledAtInstallation", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.OriginalFirstVersion", "3.13.0.6");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioIsPodcast", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioLastUpdateIPServer", "3");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioLastUpdateServer", "129248947734170000");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioMediaID", "21079850");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioMediaType", "Media Player");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioMenuSelectedID", "EBRadioMenu_CT272008121079850");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioStationName", "AHL%20-%20Grand%20Rapids%20Griffins");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioStationURL", "hxxp://cdncon.wm.llnwd.net/cdncon_neulion1_ahl_griffins?eid=2037&pid=2037&gid=101]]");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RestartDialogFirstTime", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RestartDialogShouldDisplay", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchAppState.enc", "Mw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchAppTracking.enc", "MQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchCaption", "Babylon-EnglishBB Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchEngineBeforeUnload", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchFromAddressBarIsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2720081&SearchSource=2&q=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabLastCheckTime", "Wed Aug 26 2015 12:40:57 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchProtectorEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchProtectorToolbarDisabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SendProtectorDataViaLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ServiceMapLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SettingsLastCheckTime", "Wed Aug 26 2015 12:40:57 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SettingsLastUpdate", "1440568818");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2720081&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ThirdPartyComponentsInterval", 504);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ThirdPartyComponentsLastCheck", "Wed Aug 26 2015 12:40:57 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ThirdPartyComponentsLastUpdate", "1331805997");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ToolbarShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.TrusteLinkUrl", "hxxp://trust.cpccint.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,tbclient.tbccint.com,codefuel.com,tbccint.com,trovi.com,seccint.com,cpccint.com,appstrm.com,OurToolbar.co[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.UserID", "UN64587350043656586");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.WeatherNetwork", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.WeatherPollDate", "Wed Aug 26 2015 18:17:20 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.WeatherUnit", "C");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.addressBarTakeOverEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.alertChannelId", "1112366");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.ct2720081ads1", "25374225323261647325323225334125354225374225323261696425323225334125323234343735372532322532432532327469746C652532322533412532325679257530313044697[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.ct2720081current_term", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.ct2720081sdate", "3233");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api15_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api16_thetrafficstat_net.pid2", "31306361386633393035343765373333");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api18_thetrafficstat_net.pid2", "31386633666362353830346463633235");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api19_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api20_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api21_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api22_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api25_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api26_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api28_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api29_thetrafficstat_net.pid2", "33326565666262376661343032646433");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api30_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api31_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api32_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api6_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.searchappstate", "33");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.searchapptracking", "31");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.countryCode", "CZ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ct2720081ads1.from_oldbar.enc", "JTdCJTIyYWRzJTIyJTNBJTVCJTdCJTIyYWlkJTIyJTNBJTIyNDQ3NTclMjIlMkMlMjJ0aXRsZSUyMiUzQSUyMlZ5JXUwMTBEaXN0JXUwMTFCdGUlMjBzdiVFOSUyMFBDJTIwJTI4emRhcm1hJT[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ct2720081current_term.from_oldbar.enc", "AA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ct2720081sdate.from_oldbar.enc", "MjM=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.enableAlerts", "always");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.firstTimeDialogOpened", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.fixPageNotFoundErrorByUser", "TRUE");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.fixPageNotFoundErrorInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.fullUserID", "UN64587350043656586.UP.20150826192830");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com;social.tbccint.com;apps.tbccint.com;services.a[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.globalFirstTimeInfoLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.homepageProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api15_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api16_thetrafficstat_net.pid2.from_oldbar.enc", "MTBjYThmMzkwNTQ3ZTczMw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api18_thetrafficstat_net.pid2.from_oldbar.enc", "MThmM2ZjYjU4MDRkY2MyNQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api19_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api20_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api21_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api22_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api25_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api26_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api28_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api29_thetrafficstat_net.pid2.from_oldbar.enc", "MzJlZWZiYjdmYTQwMmRkMw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api30_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api31_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api32_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api6_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.initDone", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.installType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isAppTrackingManagerOn", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isCheckedStartAsHidden", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isFirstRadioInstallation", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isFirstTimeToolbarLoading", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isPerformedSmartBarTransition", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.keyword", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?gd=&ctid=CT2720081&octid=CT2720081&ISID=ISID_ID&SearchSource=15&CUI=UN64587350043656586&Lay=1[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.lastVersion", "10.38.0.509");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffEnabled", "€");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffPublihserMinWidth", 400);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffSearchUrl", "hxxp://appstrm.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffServiceIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.navigateToUrlOnSearch", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"about%3Ablank\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_SEARCH_TERM\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://BBB003.OurToolbar.com/\",[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.oldAppsList", "129246060025636489,129246060025636490,111,129248875812655100,1000082,5611289133187350459,129248877724530829,5839507107235391905,129248891798510728,53251453842811801[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.originalHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.originalSearchAddressUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.originalSearchEngine", "chrome://browser-region/locale/region.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.performedDomainChangesMigration", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.revertSettingsEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.search.searchAppId", "129246060025636490");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.search.searchCount", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchFromAddressBarEnabledByUser", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchInNewTabEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchInNewTabEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchProtectorDialogDelayInSec", 10);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchSuggestEnabledByUser", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2720081\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://BBB003.OurToolbar.com//xpi\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"BBB003 \"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_Configuration_lastUpdate", "1454489595702");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1454489587892");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_appsMetadata_lastUpdate", "1454489590591");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1454489589782");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_login_10.20.101.5_lastUpdate", "1440669330634");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_login_10.38.0.509_lastUpdate", "1454489587649");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1454489589759");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_searchAPI_lastUpdate", "1454489592776");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_serviceMap_lastUpdate", "1454489590272");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_toolbarContextMenu_lastUpdate", "1454489589731");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_toolbarSettings_lastUpdate", "1454489590000");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_translation_lastUpdate", "1454489589103");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.settingsINI", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.showToolbarPermission", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.smartbar.CTID", "CT2720081");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.smartbar.Uninstall", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.smartbar.toolbarName", "BBB003 ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.testingCtid", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarAppMetaDataLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarBornServerTime", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarContextMenuLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarCurrentServerTime", "3-2-2016");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarLoginClientTime", "Wed Aug 26 2015 19:28:42 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.upgradeFromOBVersion", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1454489581035,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ConduitSearchList", "Babylon-EnglishBB Customized Web Search,BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT1750559/CT1750559", "\"58538edbe0f04a356ab2490bb82998833\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2720081/CT2720081", "\"5bb8563652773c4194800b1172c840f03\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1112366/1108070/CZ", "\"3fc49d5786e6429cb616dc8247986825\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/31130/30609/CZ", "\"4a30baf91319eb59f02fec6017ecce65\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.tbccint.com/root/31130/30609/CZ", "\"4a30baf91319eb59f02fec6017ecce65\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT1750559", "\"1357730213\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2720081", "\"1359616813\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=EB_LOCALE", "C5ZJe6gL80JBW5CuLy+wkg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "G9mW7heT/8xIX1frcduu0A==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en&ctid=CT2720081", "SA8f/YRfs6V19wkAK/I6CA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us", "G9mW7heT/8xIX1frcduu0A==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us&ctid=CT1750559", "SA8f/YRfs6V19wkAK/I6CA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=EB_LOCALE", "mfQ70fvlD2zuBxSBj8rQqA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "2E1/v7EfCEDbv3VaBQMELg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en&ctid=CT2720081", "B6IX5R5ADEz7jZ1dTY4lpQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us", "2E1/v7EfCEDbv3VaBQMELg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us&ctid=CT1750559", "B6IX5R5ADEz7jZ1dTY4lpQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=EB_LOCALE", "k9un27OkAvkwB2ZmvXxTnA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "UgzXjW7BIkfdx+x39Ruv3w==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en&ctid=CT2720081", "8Pf+ZNlIALQFEm53aS9FRw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us", "k9un27OkAvkwB2ZmvXxTnA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us&ctid=CT1750559", "8Pf+ZNlIALQFEm53aS9FRw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=EB_LOCALE", "9zRvKErdMb8hJOq85ft5Vg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "FqddrIU7eyJgaaLyHDeVMQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en&ctid=CT2720081", "9tP0a9tLQ7LYpUSrjHx9xA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en&ctid=CT2720081&UM=UM_UNINSTALL_ID", "Eqyi+rnB/8DP7DHXRtMrLg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us", "FqddrIU7eyJgaaLyHDeVMQ==");

SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Re: Prohlížeč zahlcený reklamou

#5 Příspěvek od SpeederBB »

Třetí polovina logu (sic!) zde: :)

[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us&ctid=CT1750559&UM=UM_UNINSTALL_ID", "Eqyi+rnB/8DP7DHXRtMrLg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"f4cb1557a8bece1:4d4\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"0d648794549cd1:0\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"f414eeaa6bece1:4d4\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT1750559", "\"a238378f7d0708034a0defa297cb8b8b\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2720081", "\"a238378f7d0708034a0defa297cb8b8b\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"ad9cd3b32c68906c8c16d35d5ffc7f70\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"4e1d4aa598f14b4524ca776e12ac448a\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en-us", "\"9ce36883ba1021dc41eea9524fd1ee7f\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/14293310.xml", "\"665a90e526796b7efe62639e6c0c8563\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/2557521.xml", "\"c6a65785fda0835ce0cac81a8aead9a5\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/428333.xml", "\"5186f89a17b2eb7c4b9a90edfa1db5de\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/807095.xml", "\"de98f52b67a50300a6b605f80825b9dc\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Roman\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\oa86spuh.default\\conduitCommon\\modules\\3.15.1.0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.15.1.0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ToolbarsList", "CT2720081,CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ToolbarsList2", "CT2720081,CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ToolbarsList4", "CT2720081,CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Wed Aug 26 2015 12:40:58 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.globalUserId", "e5db0a3d-c969-4a2f-ab80-3a8b63c4869d");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Wed Aug 26 2015 12:41:10 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alertsnotifications.ourtoolbar.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.locale", "en");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1401369664");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.tbccint.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.userId", "c27a2011-b55f-4cf5-ac2e-ff0ee8c9fb5e");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.originalHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_14293310.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_2557521.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_428333.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_807095.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.ConduitSearchEngineList", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}&CUI=UN48648799102277925");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.TBSearchEngineList", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.TBSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}&CUI=UN48648799102277925");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.keywordURLSelectedCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.newtab.url", "hxxps://www.trovigo.com/?gd=&ctid=CT1750559&oct ... A&SAT=FNTS");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.defaultenginename", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.defaultthis.engineName", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.order.1", "Ask.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.selectedEngine", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.acaseyvelezaolcom61788.61788.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anthropologie.com%2[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.acaseyvelezaolcom61788.61788.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls%22[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_meta.value", "%7B%22images/icon_255x255.png%22%3A%7B%22id%22%3A750126%2C%22ver%22%3A1%2C%22status%22%3A1%2C%22name%22%3A%22im[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anthropologie.co[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.crossrider.bic", "14793a6653eebd9e89cedaf5cd7327e9");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.addressBarOwnerCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2720081&SearchSource=2&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.defaultSearchOwnerCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.homepageList", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.machineId", "AQPFTYIRM6NBHOTGM0YZ0RU8GZ1SKY0YM2NLLFBPIFVTE8PMTAB1HKQXZ/WNO/H9TFKUHNR3AKJGPCYJB5TI2W");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.searchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2720081&SearchSource=2&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=,hxxp:/[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_currentVersion", "312E31332E302E3137");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_currentVersion.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_migrated_from_ls", "31");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_migrated_from_ls.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_userBornDate", "4E2F41");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_userBornDate.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_currentVersion", "312E31332E302E3137");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_currentVersion.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_migrated_from_ls", "31");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_migrated_from_ls.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_userBornDate", "4E2F41");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_userBornDate.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.storage.mam_gk_userId", "30653364393262312D656135642D343461322D393637662D356336663365646562666261");
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] smazáno : hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 77-346&t=4
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : aaaaabcbmongicmdegkmmfgdickgnnob
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : agkocbbjgcfpodcpdfpenidadocpcmlj
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : bicnnkjibmphdeigoodpjlcklcnaobdj
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : bopakagnckmlgajfccecajhnimjiiedh
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : dhkplhfnhceodhffomolpfigojocbpcb
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : fcfenmboojpjinhpgggodefccipikbpd
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : gijpiklekffjdhakddncmmfoljbopjka
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : jljheddigenhleadfofeccneimcmlefp
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : pdjjjmnacfjnmgckbhldbekckfldeolk
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : pdjjjmnacfjnmgckbhldbekckfldeolk

*************************

:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [140212 bytes] - [16/05/2016 19:43:38]
C:\AdwCleaner\AdwCleaner[S1].txt - [143073 bytes] - [16/05/2016 19:40:21]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [140362 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prohlížeč zahlcený reklamou

#6 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Re: Prohlížeč zahlcený reklamou

#7 Příspěvek od SpeederBB »

FRST log zde:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:16-05-2016
Ran by Roman (administrator) on ROMAN-PC (17-05-2016 16:25:27)
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available Profiles: Roman)
Platform: Microsoft Windows 10 Home Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe
() C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(CyberLink Corp.) C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
(cyberlink) C:\Program Files\CyberLink\Shared files\brs.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
() C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.19761.0_x86__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Desktop.exe
(Opera Software) C:\Program Files\Opera\opera.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HDAudDeck] => C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [1474560 2009-12-11] (VIA)
HKLM\...\Run: [RemoteControl9] => C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2009-04-27] (CyberLink Corp.)
HKLM\...\Run: [PDVD9LanguageShortcut] => C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [50472 2009-04-27] (CyberLink Corp.)
HKLM\...\Run: [BDRegion] => C:\Program Files\Cyberlink\Shared Files\brs.exe [75048 2009-05-07] (cyberlink)
HKLM\...\Run: [iMON] => C:\Program Files\SOUNDGRAPH\iMON\iMON.exe [2560000 2007-08-30] (SoundGraph, Inc.)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1840424 2008-06-24] (Nero AG)
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Roman\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [BackgroundContainerV3] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Roman\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll",DllRun
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
GroupPolicy: Restriction - Chrome <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\..\Interfaces\{45bbb41d-a8f8-4cb6-aeba-31ca5d5b6108}: [NameServer] 10.255.255.10,10.255.255.20

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.tsbohemia.cz
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
URLSearchHook: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {0036457D-4E57-4641-AFAB-D9DC1256A052} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {2C9A62C8-36C0-4104-9516-C8B984E448D6} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {5A791E0C-2374-4DC3-BF70-FE09DD40229D} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {68F3991A-6D49-4211-A259-BB835D34915D} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {8639B338-B2A1-4471-991A-DEEE47C34805} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {8C87A805-D358-4184-B7E3-A23CC2854235} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {90A06677-7426-4992-8871-3C8AA2F4451B} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {9BFA4B5D-271B-4F89-BD20-9C8FB9BA4D9B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {D7F73C9C-3481-43F9-946D-CCD67EE76FE5} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_16194
BHO: Torntv 2 -> {11111111-1111-1111-1111-110311551178} -> C:\Program Files\Torntv 2\Torntv 2-bho.dll => No File
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21] (Adobe Systems Incorporated)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> No Name - {53475456-372D-5341-5400-7A786E7484D7} - No File
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default
FF SearchEngineOrder.3: Bing
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1223183.dll [2015-12-22] (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2013-04-08] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2009-12-21] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\bs-player-customized-web-search.xml [2015-08-29]
FF Extension: disco savings - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\E6fXtz9@gmail.com [2015-04-03] [not signed]
FF Extension: fasttranskemot - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\fasttrans@kemot [2015-04-03] [not signed]
FF Extension: fbchathistoryfirechmcom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\fbchathistory@firechm.com [2015-05-27] [not signed]
FF Extension: Alpha Shopper - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\HDdGUBo@gmail.com [2015-05-28] [not signed]
FF Extension: jid0hyjN250ZzTOOX3evFwwAQBxE4ikjetpack - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\jid0-hyjN250ZzTOOX3evFwwAQBxE4ik@jetpack [2015-05-28] [not signed]
FF Extension: helper king - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\l7rFhLjqa@gmail.com [2015-04-02] [not signed]
FF Extension: memoryrestartteamextensioncom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\memoryrestart@teamextension.com [2015-04-18] [not signed]
FF Extension: pbuploadphotobucketcom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\pbupload@photobucket.com [2015-04-20] [not signed]
FF Extension: webranktoolbarprobcompcom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\webrank-toolbar@probcomp.com [2015-04-02] [not signed]
FF Extension: Omega Buyer - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\XudsW@gmail.com [2015-05-27] [not signed]
FF Extension: BS Player ControlBar - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} [2015-08-27] [not signed]
FF Extension: BBB003 - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\{ce18769b-c7fa-42d2-860d-17c4662c70ad} [2015-08-27] [not signed]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com [not found]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com [not found]
FF Extension: Speed Test 127 - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\Extensions\speedtest4354@BestOffers [2014-01-24] [not signed]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-08-29] [not signed]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-08-29] [not signed]
FF HKLM\...\Firefox\Extensions: [ext@RichMediaViewV1release7864.net] - C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2013-05-29]
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ATTENTION (Points to *.cfg file)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/?clid=16194
CHR DefaultSearchURL: Default -> hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=210&systemid=488&v=a13277-346&apn_uid=8454670092594320&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Omega Buyer) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjdnlokgpbeflkegifbndikgnnbmfccd [2015-05-27]
CHR Extension: (dljbcjbfojhlfhgenhepllagfecdpchb) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\dljbcjbfojhlfhgenhepllagfecdpchb [2015-04-07]
CHR Extension: (ebeenikkcpgaekfgbnflbaaihalfifkk) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebeenikkcpgaekfgbnflbaaihalfifkk [2015-05-28]
CHR Extension: (hiiknjobjfknoghbeelhfilaaikffopb) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiiknjobjfknoghbeelhfilaaikffopb [2015-04-06]
CHR Extension: (ilfjhacjjbcdmimjeaakpnlhdcloijcg) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfjhacjjbcdmimjeaakpnlhdcloijcg [2015-04-02]
CHR Extension: (jepibmfmhopgkplegmkjgifmhabbjadg) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\jepibmfmhopgkplegmkjgifmhabbjadg [2015-05-27]
CHR Extension: (kglfocodeikakacbeoajjhnplhlaoook) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\kglfocodeikakacbeoajjhnplhlaoook [2015-04-03]
CHR Extension: (Skype) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-05-07]
CHR Extension: (Alpha Shopper) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnpddjhhjmmcnjbjdbopmniafbpfppkb [2015-05-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-13]
CHR Extension: () - C:\Users\Roman\AppData\Local\Comp Cooking\Component [2016-05-16]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]

Opera:
=======
OPR Extension: (Internet Speed Checker1.1) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi [2016-05-17]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
S3 Intel(R) TA SAM; C:\Program Files\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-08-12] (Intel Corporation)
R2 Intel(R) TechnologyAccessLegacyCSLoader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [129696 2016-03-15] (Intel(R) Corporation)
R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [460960 2016-03-15] (Intel(R) Corporation)
S3 iumsvc; C:\Program Files\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [271760 2009-04-27] ()
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH)
R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 3xHybrid; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [1141888 2010-12-01] (NXP Semiconductors Germany GmbH)
R2 acedrv11; C:\Windows\system32\drivers\acedrv11.sys [185472 2010-02-24] (Protect Software GmbH)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [388848 2016-05-07] (Symantec Corporation)
R3 fcdabus; C:\WINDOWS\System32\drivers\fcdabus.sys [10899 2003-08-07] (FarStone Inc.) [File not signed]
R3 fvdscsi; C:\WINDOWS\System32\drivers\fvdscsi.sys [60008 2003-08-09] (FarStone Inc.) [File not signed]
R1 ISODrive; C:\Program Files\UltraISO\drivers\ISODrive.sys [68096 2007-11-03] (EZB Systems, Inc.) [File not signed]
R3 L1E; C:\WINDOWS\System32\drivers\L1E62x86.sys [55296 2015-10-30] (Atheros Communications, Inc.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2013-01-05] ()
R1 MpKsl704f81e7; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D43C140E-8D75-4C7B-9EF2-B011B40165C4}\MpKsl704f81e7.sys [39168 2016-05-16] (Microsoft Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R1 ndisrd; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [35544 2015-04-30] (Intel Corporation)
R2 npf; C:\Windows\system32\drivers\npf.sys [50704 2010-03-22] (CACE Technologies, Inc.)
R0 sfhlp02; C:\WINDOWS\System32\drivers\sfhlp02.sys [6656 2005-05-16] (Protection Technology) [File not signed]
S3 SGHIDI; C:\WINDOWS\System32\drivers\TG_iMON.sys [45060 2003-12-30] (TG)
S3 SGIR; C:\WINDOWS\System32\drivers\iMON_PAD.sys [18090 2004-12-22] ()
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [575184 2015-06-22] (VIA Technologies, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files\CyberLink\PowerDVD9\000.fcl [87536 2009-05-07] (CyberLink Corp.)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2063-09-19 07:50 - 2063-09-19 07:50 - 00005501 _____ C:\WINDOWS\system32\rtclmg32.dll
2016-05-17 16:25 - 2016-05-17 16:26 - 00021903 _____ C:\Users\Roman\Desktop\FRST.txt
2016-05-17 16:24 - 2016-05-17 16:25 - 00000000 ____D C:\FRST
2016-05-17 16:23 - 2016-05-17 16:23 - 01733120 _____ (Farbar) C:\Users\Roman\Desktop\FRST.exe
2016-05-17 16:23 - 2016-05-17 16:23 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe
2016-05-17 11:07 - 2016-05-17 11:07 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-05-17 10:56 - 2016-05-17 10:56 - 00000000 ___RD C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 9
2016-05-17 00:09 - 2016-05-17 00:11 - 1005527792 _____ C:\Users\Roman\Desktop\3096 dní P-íb-h Nataschi Kampuschové Krimi cz.avi
2016-05-16 19:39 - 2016-05-16 19:43 - 00000000 ____D C:\AdwCleaner
2016-05-16 19:38 - 2016-05-16 19:38 - 03651136 _____ C:\Users\Roman\Desktop\adwcleaner_5.117.exe
2016-05-16 16:57 - 2016-05-16 16:57 - 00000000 ____D C:\Users\Roman\AppData\LocalLow\uTorrent
2016-05-16 16:01 - 2016-05-17 01:34 - 00000000 ____D C:\Users\Roman\AppData\Roaming\vlc
2016-05-16 15:58 - 2016-05-16 15:58 - 00001097 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-05-16 15:58 - 2016-05-16 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-05-16 15:58 - 2016-05-16 15:58 - 00000000 ____D C:\Program Files\VideoLAN
2016-05-16 15:45 - 2016-05-16 15:45 - 01107968 _____ C:\Users\Roman\Desktop\RSIT.exe
2016-05-16 15:45 - 2016-05-16 15:45 - 00000000 ____D C:\rsit
2016-05-16 15:45 - 2016-05-16 15:45 - 00000000 ____D C:\Program Files\trend micro
2016-05-16 15:40 - 2016-05-16 15:40 - 00000000 ____D C:\Users\Roman\AppData\Local\TeamViewer
2016-05-16 15:37 - 2016-05-16 18:49 - 00000000 ____D C:\Program Files\TeamViewer
2016-05-16 15:37 - 2016-05-16 16:22 - 00000998 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-05-16 15:37 - 2016-05-16 16:22 - 00000986 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-05-16 15:37 - 2016-05-16 15:37 - 00000000 ____D C:\Users\Roman\AppData\Roaming\TeamViewer
2016-05-15 19:07 - 2016-05-15 19:07 - 00000000 ____D C:\WINDOWS\Panther
2016-05-10 20:38 - 2016-05-06 06:23 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-10 20:38 - 2016-04-30 08:53 - 01152000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-10 20:38 - 2016-04-30 08:46 - 02974720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-10 20:38 - 2016-04-23 08:06 - 01232576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00973504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00576192 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00440512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00248512 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00149696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-10 20:38 - 2016-04-23 08:06 - 00042688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-10 20:38 - 2016-04-23 07:28 - 05796704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-10 20:38 - 2016-04-23 07:28 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-10 20:38 - 2016-04-23 07:28 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-10 20:38 - 2016-04-23 07:28 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-10 20:38 - 2016-04-23 07:14 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-10 20:38 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-10 20:38 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-10 20:38 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-10 20:38 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-10 20:38 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-10 20:38 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-10 20:38 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-10 20:38 - 2016-04-23 07:01 - 01714520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-10 20:38 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-10 20:38 - 2016-04-23 07:01 - 00484704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-10 20:38 - 2016-04-23 07:00 - 01273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-10 20:38 - 2016-04-23 06:55 - 00430432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-10 20:38 - 2016-04-23 06:35 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-10 20:38 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-10 20:38 - 2016-04-23 06:27 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-10 20:38 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-10 20:38 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-10 20:38 - 2016-04-23 06:24 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-10 20:38 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-10 20:38 - 2016-04-23 06:22 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-10 20:38 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-10 20:38 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-10 20:38 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-10 20:38 - 2016-04-23 06:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-10 20:38 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-10 20:38 - 2016-04-23 06:16 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-10 20:38 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-10 20:38 - 2016-04-23 06:11 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-10 20:38 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-10 20:38 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-10 20:38 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-10 20:38 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-10 20:38 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-10 20:38 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-10 20:38 - 2016-04-23 06:07 - 01793024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-10 20:38 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-10 20:38 - 2016-04-23 06:05 - 01895936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-10 20:38 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-10 20:38 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-10 20:38 - 2016-04-23 06:04 - 01733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 01899520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-10 20:37 - 2016-05-06 07:20 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-10 20:37 - 2016-05-06 06:13 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-10 20:37 - 2016-05-06 06:10 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-10 20:37 - 2016-05-06 06:05 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-10 20:37 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-10 20:37 - 2016-05-06 05:49 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-10 20:37 - 2016-04-23 08:06 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-10 20:37 - 2016-04-23 07:28 - 00550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-10 20:37 - 2016-04-23 07:28 - 00278368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-10 20:37 - 2016-04-23 07:28 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-10 20:37 - 2016-04-23 07:26 - 00792328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-10 20:37 - 2016-04-23 07:21 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-10 20:37 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-10 20:37 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-10 20:37 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-10 20:37 - 2016-04-23 07:12 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-10 20:37 - 2016-04-23 07:11 - 00259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-10 20:37 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-10 20:37 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-10 20:37 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-10 20:37 - 2016-04-23 07:07 - 00192704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-10 20:37 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-10 20:37 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-10 20:37 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-10 20:37 - 2016-04-23 07:01 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-10 20:37 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-10 20:37 - 2016-04-23 07:00 - 01396584 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-10 20:37 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-10 20:37 - 2016-04-23 07:00 - 00049504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-10 20:37 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-10 20:37 - 2016-04-23 06:29 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-10 20:37 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-10 20:37 - 2016-04-23 06:29 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-10 20:37 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-10 20:37 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-10 20:37 - 2016-04-23 06:28 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-10 20:37 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-10 20:37 - 2016-04-23 06:27 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-10 20:37 - 2016-04-23 06:27 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-10 20:37 - 2016-04-23 06:25 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-10 20:37 - 2016-04-23 06:24 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-10 20:37 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-10 20:37 - 2016-04-23 06:24 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-10 20:37 - 2016-04-23 06:23 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-10 20:37 - 2016-04-23 06:23 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-10 20:37 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-10 20:37 - 2016-04-23 06:23 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-10 20:37 - 2016-04-23 06:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-10 20:37 - 2016-04-23 06:19 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-10 20:37 - 2016-04-23 06:19 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-10 20:37 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-10 20:37 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-10 20:37 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-10 20:37 - 2016-04-23 06:17 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-10 20:37 - 2016-04-23 06:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-10 20:37 - 2016-04-23 06:16 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-10 20:37 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-10 20:37 - 2016-04-23 06:14 - 00739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-10 20:37 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-10 20:37 - 2016-04-23 06:13 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-10 20:37 - 2016-04-23 06:12 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-10 20:37 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-10 20:37 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-10 20:37 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-10 20:37 - 2016-04-23 06:03 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-10 20:37 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-10 20:37 - 2016-04-23 06:01 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-10 20:37 - 2016-04-23 04:10 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-10 20:37 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-05 14:57 - 2016-05-12 14:58 - 00001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 37.lnk
2016-04-20 19:47 - 2016-04-20 19:47 - 00000000 ____D C:\Users\Roman\AppData\Local\MicrosoftEdge
2016-04-20 03:57 - 2016-04-20 03:57 - 00000000 ____D C:\Users\Roman\AppData\Local\Cctbplt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-05-17 16:18 - 2012-08-24 01:58 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-17 15:28 - 2012-04-02 23:55 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-05-17 11:16 - 2015-05-28 17:16 - 00000508 _____ C:\WINDOWS\Tasks\alpha_shopper_helper_service.job
2016-05-17 11:15 - 2015-05-27 23:15 - 00000496 _____ C:\WINDOWS\Tasks\omega_buyer_helper_service.job
2016-05-17 11:07 - 2014-08-19 18:57 - 00000000 ____D C:\Users\Roman\AppData\Local\Adobe
2016-05-17 11:07 - 2014-06-20 13:33 - 00000000 __SHD C:\Users\Roman\AppData\Local\EmieUserList
2016-05-17 11:07 - 2014-06-20 13:33 - 00000000 __SHD C:\Users\Roman\AppData\Local\EmieSiteList
2016-05-17 11:01 - 2014-07-25 17:47 - 00000000 ____D C:\Users\Roman\AppData\Roaming\Seznam.cz
2016-05-17 10:59 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-05-17 10:59 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-05-17 10:56 - 2012-08-24 01:58 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-17 10:56 - 2009-12-12 20:48 - 00000000 ____D C:\Users\Roman\AppData\Roaming\SOUNDGRAPH
2016-05-17 06:27 - 2016-04-12 14:01 - 00000000 ____D C:\Users\Roman
2016-05-16 19:49 - 2016-02-13 14:08 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-16 19:48 - 2016-02-13 05:05 - 00339352 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-16 19:47 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-05-16 19:45 - 2015-08-29 10:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-05-16 19:43 - 2013-08-04 14:08 - 00000000 ____D C:\Users\Roman\AppData\Roaming\uTorrent
2016-05-16 19:16 - 2015-04-02 18:16 - 00000004 _____ C:\WINDOWS\system32\029B560A371F4E00AB32838EBC01B9E7
2016-05-16 14:53 - 2012-01-14 16:33 - 00000000 ____D C:\Users\Roman\AppData\Roaming\Skype
2016-05-16 12:14 - 2009-12-25 15:09 - 00000000 ____D C:\Filmy
2016-05-16 12:12 - 2015-06-15 13:59 - 00000000 ____D C:\Audioknihy
2016-05-16 12:12 - 2013-03-21 22:00 - 00000000 ____D C:\Hry
2016-05-14 15:32 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-05-14 04:05 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-13 12:20 - 2012-08-24 01:58 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-12 14:58 - 2012-08-15 00:55 - 00000000 ____D C:\Program Files\Opera
2016-05-12 14:38 - 2011-08-04 23:57 - 00000406 ____H C:\WINDOWS\Tasks\Norton Security Scan for Roman.job
2016-05-12 12:48 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-05-12 00:23 - 2016-02-13 14:10 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-11 21:57 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-05-11 20:41 - 2016-02-13 14:00 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-11 07:07 - 2015-10-30 07:48 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-11 07:04 - 2013-08-14 15:38 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-11 06:48 - 2009-12-11 12:05 - 136686448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-03 12:42 - 2016-04-12 14:23 - 00000000 ____D C:\Users\Roman\AppData\Local\Packages
2016-04-30 22:23 - 2011-08-04 23:57 - 00000000 ____D C:\ProgramData\Norton
2016-04-30 20:15 - 2012-01-14 16:33 - 00000000 ___RD C:\Program Files\Skype
2016-04-30 20:15 - 2012-01-14 16:32 - 00000000 ____D C:\ProgramData\Skype
2016-04-27 16:29 - 2015-06-25 20:39 - 00000000 ____D C:\Users\Public\Downloads\Norton
2016-04-23 20:25 - 2016-04-12 14:00 - 01996112 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-23 20:25 - 2016-02-13 13:52 - 00829308 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-23 20:25 - 2016-02-13 13:52 - 00185116 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-22 09:57 - 2009-12-11 11:34 - 00374944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-21 18:54 - 2016-04-12 14:32 - 00002387 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-21 18:54 - 2016-04-12 14:32 - 00000000 ___RD C:\Users\Roman\OneDrive
2016-04-20 21:56 - 2010-08-27 14:01 - 00000000 ____D C:\Users\Roman\Documents\iWisoft Free Video Converter

==================== Files in the root of some directories =======

2010-01-27 14:36 - 2015-04-18 03:05 - 0012288 _____ () C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-05-23 19:58 - 2012-05-23 19:58 - 0000017 _____ () C:\Users\Roman\AppData\Local\resmon.resmoncfg
2013-01-17 20:29 - 2013-10-24 02:14 - 0001917 ___SH () C:\ProgramData\6bc39e9a-9606-419f-823b-4c63676c7cce

Some files in TEMP:
====================
C:\Users\Roman\AppData\Local\Temp\libeay32.dll
C:\Users\Roman\AppData\Local\Temp\msvcr120.dll
C:\Users\Roman\AppData\Local\Temp\Runner.exe
C:\Users\Roman\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_242_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Norton Security Scan for Roman.job => C:\PROGRA~1\NORTON~2\Engine\430~1.43\Nss.exe
Task: C:\WINDOWS\Tasks\omega_buyer_helper_service.job => C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe <==== ATTENTION

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Roman\Desktop" je 1612 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================
Přílohy
Addition.rar
(6.59 KiB) Staženo 35 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prohlížeč zahlcený reklamou

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
GroupPolicy: Restriction - Chrome <======= ATTENTION
URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
URLSearchHook: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Torntv 2 -> {11111111-1111-1111-1111-110311551178} -> C:\Program Files\Torntv 2\Torntv 2-bho.dll => No File
BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
C:\Program Files\Skype\Toolbars
Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> No Name - {53475456-372D-5341-5400-7A786E7484D7} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
FF SearchEngineOrder.3: Bing
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com [not found]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com [not found]
FF HKLM\...\Firefox\Extensions: [ext@RichMediaViewV1release7864.net] - C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ATTENTION (Points to *.cfg file)
CHR DefaultSearchURL: Default -> hxxp://dts.search.ask.com/sr?src=crb&gc ... nrs=AG1&q={searchTerms}
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Roman\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\omega_buyer_helper_service.job => C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe <==== ATTENTION
Task: {3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {21C89335-E8F0-4E40-AE2A-0F84349927B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4D784E97-E61B-4C9A-AE21-128988B4F171} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F3D8D98-D3C0-465E-8DDC-040B63AB54C3} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {62AD2059-0366-46A2-90C2-153675B8383A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {87BA0E83-4D34-456E-8E56-01804DEBE3B9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8B83130D-F497-4C02-B214-F5E0BC698F42} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {C177D66F-8909-42D8-A932-CC9C1D019082} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {D7B1F2C1-F754-46B2-9953-2FE64F00A908} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {E1BFD5D5-B2EA-482F-9927-AD51C0F7486E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {F411BF89-22E7-4C8A-B9F6-B1ADC68632DF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
End

Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Re: Prohlížeč zahlcený reklamou

#9 Příspěvek od SpeederBB »

Zde je log:

Fix result of Farbar Recovery Scan Tool (x86) Version:16-05-2016
Ran by Roman (2016-05-17 19:27:01) Run:1
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available Profiles: Roman)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
GroupPolicy: Restriction - Chrome <======= ATTENTION
URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
URLSearchHook: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Torntv 2 -> {11111111-1111-1111-1111-110311551178} -> C:\Program Files\Torntv 2\Torntv 2-bho.dll => No File
BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
C:\Program Files\Skype\Toolbars
Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> No Name - {53475456-372D-5341-5400-7A786E7484D7} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
FF SearchEngineOrder.3: Bing
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com [not found]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com [not found]
FF HKLM\...\Firefox\Extensions: [ext@RichMediaViewV1release7864.net] - C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ATTENTION (Points to *.cfg file)
CHR DefaultSearchURL: Default -> hxxp://dts.search.ask.com/sr?src=crb&gc ... nrs=AG1&q={searchTerms}
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Roman\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\omega_buyer_helper_service.job => C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe <==== ATTENTION
Task: {3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {21C89335-E8F0-4E40-AE2A-0F84349927B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4D784E97-E61B-4C9A-AE21-128988B4F171} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F3D8D98-D3C0-465E-8DDC-040B63AB54C3} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {62AD2059-0366-46A2-90C2-153675B8383A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {87BA0E83-4D34-456E-8E56-01804DEBE3B9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8B83130D-F497-4C02-B214-F5E0BC698F42} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {C177D66F-8909-42D8-A932-CC9C1D019082} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {D7B1F2C1-F754-46B2-9953-2FE64F00A908} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {E1BFD5D5-B2EA-482F-9927-AD51C0F7486E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {F411BF89-22E7-4C8A-B9F6-B1ADC68632DF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
End
*****************

"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bitguard.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bprotect.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserdefender.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserprotect.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\volaro" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\vonteera" => key removed successfully.
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully.
"HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5}" => key removed successfully.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully.
"HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => key removed successfully.
HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => key not found.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}" => key removed successfully.
"HKCR\CLSID\{11111111-1111-1111-1111-110311551178}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96f454ea-9d38-474f-b504-56193e00c1a5}" => key removed successfully.
HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully.
"HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully.
C:\Program Files\Skype\Toolbars => moved successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully.
HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5} => key not found.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{96F454EA-9D38-474F-B504-56193E00C1A5} => value removed successfully.
HKCR\CLSID\{96F454EA-9D38-474F-B504-56193E00C1A5} => key not found.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{53475456-372D-5341-5400-7A786E7484D7} => value removed successfully.
HKCR\CLSID\{53475456-372D-5341-5400-7A786E7484D7} => key not found.
"HKCR\PROTOCOLS\Handler\skype-ie-addon-data" => key removed successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => key removed successfully.
Firefox SearchEngineOrder.3 removed successfully.
C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com => path removed successfully.
C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com => path removed successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\ext@RichMediaViewV1release7864.net => value removed successfully.
C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js => moved successfully
Chrome DefaultSearchURL => removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => key removed successfully.
"C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx" => not found.
idsvc => service removed successfully.
wpcsvc => service removed successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully

"C:\Users\Roman\AppData\Local\Temp" folder move:

Could not move "C:\Users\Roman\AppData\Local\Temp" => Scheduled to move on reboot.

C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => moved successfully
C:\WINDOWS\Tasks\omega_buyer_helper_service.job => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{21C89335-E8F0-4E40-AE2A-0F84349927B2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{21C89335-E8F0-4E40-AE2A-0F84349927B2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4D784E97-E61B-4C9A-AE21-128988B4F171}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D784E97-E61B-4C9A-AE21-128988B4F171}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F3D8D98-D3C0-465E-8DDC-040B63AB54C3}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F3D8D98-D3C0-465E-8DDC-040B63AB54C3}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{62AD2059-0366-46A2-90C2-153675B8383A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62AD2059-0366-46A2-90C2-153675B8383A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{87BA0E83-4D34-456E-8E56-01804DEBE3B9}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87BA0E83-4D34-456E-8E56-01804DEBE3B9}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8B83130D-F497-4C02-B214-F5E0BC698F42}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B83130D-F497-4C02-B214-F5E0BC698F42}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C177D66F-8909-42D8-A932-CC9C1D019082}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C177D66F-8909-42D8-A932-CC9C1D019082}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D7B1F2C1-F754-46B2-9953-2FE64F00A908}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7B1F2C1-F754-46B2-9953-2FE64F00A908}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E1BFD5D5-B2EA-482F-9927-AD51C0F7486E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1BFD5D5-B2EA-482F-9927-AD51C0F7486E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F411BF89-22E7-4C8A-B9F6-B1ADC68632DF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F411BF89-22E7-4C8A-B9F6-B1ADC68632DF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2016-05-17 19:29:44)

C:\Users\Roman\AppData\Local\Temp => moved successfully

==== End of Fixlog 19:29:51 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prohlížeč zahlcený reklamou

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

SpeederBB
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 02 úno 2007 20:20

Re: Prohlížeč zahlcený reklamou

#11 Příspěvek od SpeederBB »

Dělal jsem to přes teamviewer, ale uživatel hlásí, že reklamy jsou fuč. Snad to bude šlapat. Doporučíte nějaký www prohlížeč? Každopádně děkujeme za pomoc. :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prohlížeč zahlcený reklamou

#12 Příspěvek od Rudy »

Osobně používám Firefox už roky a jsem spokojen. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět