Stránka 1 z 1

Prohlížeč zahlcený reklamou

Napsal: 16 kvě 2016 14:52
od SpeederBB
Dobrý den. Prosím o pomoc s vyčištěním systému od havěti. Opera je plná reklam a nedá se téměř nic dělat. Děkuji.

Log z RSIT zde:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-05-16 15:45:28
Microsoft Windows 10 Home
System drive C: has 179 GB (37%) free of 476 GB
Total RAM: 3327 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:45:39, on 16.5.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\system32\rundll32.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\taskeng.exe
C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe
C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\CyberLink\Shared files\brs.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Users\Roman\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Windows\System32\rundll32.exe
C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files\Opera\opera.exe
C:\Windows\System32\SystemSettingsBroker.exe
C:\Program Files\TeamViewer\TeamViewer.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Roman\Desktop\RSIT.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.tsbohemia.cz
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com/?pc=COSP&ptag=G3A0B ... =CT3210127
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - (no file)
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
R3 - URLSearchHook: uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll
O2 - BHO: CrossriderApp0035578 - {11111111-1111-1111-1111-110311551178} - C:\Program Files\Torntv 2\Torntv 2-bho.dll
O2 - BHO: CrossriderApp0061752 - {11111111-1111-1111-1111-110611171152} - C:\Program Files\Internet Speed Checker\Internet Speed Checker-bho.dll
O2 - BHO: CrossriderApp0061788 - {11111111-1111-1111-1111-110611171188} - C:\Program Files\HD-V1.9\HD-V1.9-bho.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: uTorrentControl_v6 - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll
O3 - Toolbar: (no name) - {ec2bae47-25af-4ce9-9e78-10627a49c9ea} - (no file)
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"
O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe
O4 - HKLM\..\Run: [iMON] C:\Program Files\SOUNDGRAPH\iMON\iMON.exe /startup
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Roman\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Roman\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [BackgroundContainerV3] "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Roman\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll",DllRun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{45bbb41d-a8f8-4cb6-aeba-31ca5d5b6108}: NameServer = 10.255.255.10,10.255.255.20
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O20 - AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\VC32Loader.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Technology Access Software Asset Manager (Intel(R) TA SAM) - Intel Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: Intel(R) Technology Access Legacy CS Loader (Intel(R) TechnologyAccessLegacyCSLoader) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
O23 - Service: Intel(R) Technology Access Service (Intel(R) TechnologyAccessService) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Update Manager (iumsvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\Windows\system32\nethtsrv.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\Windows\system32\netupdsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files\TeamViewer\TeamViewer_Service.exe
O23 - Service: @oem17.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\WINDOWS\system32\viakaraokesrv.exe

--
End of file - 11820 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-1.job - C:\Program Files\HD-V1.9\HD-V1.9-codedownloader.exe /KzGuFDW /adepjG=task /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /dHHHj=http://js.infodatacloud.com /xKHfWST=opera /fBMlejGk='HD-V1.9' /nGbrdDcED=http://js.clientdemocloud.com /nJYRmLkf /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /bpjkz='http://update.infodatacloud.com/ie_code ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-10.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-10.exe /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /SOPIiyoPp='HD-V1.9' /vKhqKT=1000 /FmhGj=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /oZeiZf=http://logs.infodatacloud.com /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-11.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-11.exe 001859 091FA445CA1B42E8957AB9C909A935EAIE 61788 1406303171 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 HD-V1.9
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-3.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-3.exe /BRTTCmOs=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
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-4.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-4.exe /tgRdYb /XgSfzIe='HD-V1.9' /lQPxA='C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000.xpi' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /kfcGr=300 /LTuahUIC=caseyvelez@aol.com /TteHyTNZ=0.95 /IgCed=acaseyvelezaolcom61788 /cNcJbtG=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /61788.rdf /SOPIiyoPp='HD-V1.9' /sQZKrc='Lights out for YouTube' /ViHXghEM='InfoHD-V1.8' /xKHfWST=opera /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /nJYRmLkf /SUiPntY /czazt /bpjkz='http://update.infodatacloud.com/ff_agen ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5.exe /rawdata=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
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5_user.job - C:\Program Files\HD-V1.9\7254c30d-53be-4c33-a46f-bd5bc2a2e000-5.exe /rawdata=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
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-6.job - C:\Program Files\HD-V1.9\HD-V1.9-novainstaller.exe /rFxvxqMPa /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /dHHHj=http://js.infodatacloud.com /xKHfWST=opera /zYjaexnT /fBMlejGk=HD-V1.9 /VmCtVd='nova' /nGbrdDcED=http://js.clientdemocloud.com /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /adepjG=task /bpjkz='http://update.infodatacloud.com/novacod ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\7254c30d-53be-4c33-a46f-bd5bc2a2e000-7.job - C:\Program Files\HD-V1.9\HD-V1.9-nova.exe /XgSfzIe='HD-V1.9' /AquWmrQR=61788 /bJNSI='001859' /nryqp='0' /tBqVsv='0' /fpxNZX=091FA445CA1B42E8957AB9C909A935EAIE /nvNGSi=d71012d990b5bcdfcfc1c9bda932cc88 /Eopfu=1_34_07_01 /WdjXf=1.34.7.1 /OroweE=1406303171 /OvRDVEE=http://stats.infodatacloud.com /mrcYdzd=http://errors.infodatacloud.com /dHHHj=http://js.infodatacloud.com /xKHfWST=opera /zYjaexnT /fBMlejGk=HD-V1.9 /VmCtVd='nova' /nGbrdDcED=http://js.clientdemocloud.com /cwWNkFatY='{"asw":[32768, 8519749, 33554432]}' /bpjkz='http://update.infodatacloud.com/novarun ... pdate.json' /adepjG='task' /WGbgMQ=''
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\alpha_shopper_helper_service.job - C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe /installationtime=1432826160 /AppName="Alpha Shopper"
C:\WINDOWS\tasks\AmiUpdXp.job - C:\Users\Roman\AppData\Local\1442\Updater.exe
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-1.job - C:\Program Files\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /HoyqPi /MAGgqANL=task /UaAWyMn='Internet Speed Checker' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /vCPdB=http://js.infodatacloud.com /hfluxTZV=opera /BSwJiJYMh='Internet Speed Checker' /wwygaqe=http://js.clientdemocloud.com /dbXGQ /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /GPZolrO='http://update.infodatacloud.com/ie_code ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11.exe /uVqcDhzky=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
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4.exe /UCAegI /UaAWyMn='Internet Speed Checker' /TsDnwjNm='C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9.xpi' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /cDGVzFh=300 /CgsOmbg=sepherdwilbur@aol.com /tPSDe=0.95 /GWvEow=asepherdwilburaolcom61752 /OjBbR=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /61752.rdf /fLMrwytr='Internet Speed Checker' /TzFNLzwuA='Test your internet speed with 1-click' /OttCZ='Speedchecker' /hfluxTZV=opera /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /dbXGQ /yZQbR /eUCakHC /GPZolrO='http://update.infodatacloud.com/ff_agen ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5.exe /rawdata=rY5lv1I8poevDWj77E3fD/ts1oW+nMhT1alwfVVnZn0A+/Nf5/U/Y7Y7DzPUiL1qku5xBsGHVDnUw3CnI7BLwq0qCFyGgB3cv1LmFixNvGVRIIE6Aqkfrnle+Auwr4TkN+F0W+K8MR0YRuqqq9LILLEcknjd7we50gPuBFGP2k8mGac2+DC6x2C50p963m9VqDuPMWZtvW9GFwNTziSNotEWdGRcXOpkeTuQK37JmC+vJf8O73hPscc7YsVSVi1n0ybiufmWouakssjJAsQjODDbPHAVj8RnMMi9Uoxw3A8qAmnB/FwGiYefxaUiAgh9f2fCUJXmbORAopsIYifb1rGgOTwkRDdnJ71HG1qnkfsg7XEzh2cipOifuzYI3AtyAy3/Pdaqaz5e3hb6ejKd/eVWHt7bVzdWUZHBRa+PLReSHMAFdUsT8VuipEuKk3S666XeZHpF7WFB0SrbvshAyezbyMezgTiymo+xLXzVdEc879LD8ukrPxkqRCvaMAvAGSZ1GpGqhMzZvdY8tCODsGVFd81Y8V9/IlkSYJ/qEjh35xEBejfJAnJWHbCRs1uct4gTFbip+i7Etvedlx+AKh8ibRQyCBA5NirDi5rSCDCo0lCNt6ONYUeLmW+F2idltbxrOr6Xibt93dWnVD8MSe6KKNEDetLZVr9QFYsKnjdeTf/+x9IlEg77Zz+ASpGBXHKWX8115nkDPXAs/2Qk8Au69dwQdy9Fei7HXsCNDp06d7e21L0VwpQCJJGRCOTF4cR8naT4nbFtZaezUjEeEo3T066A7YBbSal1DbflWhxjbtuyx75XRqDJp5EiJXnWQvMgTiGgJB4LGSx9trRtMA==
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5_user.job - C:\Program Files\Internet Speed Checker\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5.exe /rawdata=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
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-6.job - C:\Program Files\Internet Speed Checker\Internet Speed Checker-novainstaller.exe /bERJOkXm /UaAWyMn='Internet Speed Checker' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /vCPdB=http://js.infodatacloud.com /hfluxTZV=opera /SWAbytbxz /BSwJiJYMh=Internet Speed Checker /UMqECx='nova' /wwygaqe=http://js.clientdemocloud.com /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /MAGgqANL=task /GPZolrO='http://update.infodatacloud.com/novacod ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-7.job - C:\Program Files\Internet Speed Checker\Internet Speed Checker-nova.exe /UaAWyMn='Internet Speed Checker' /LesDY=61752 /eiQaVvBlh='001726' /cTljev='0' /BmYVUNWrf='0' /BWNFrz=091FA445CA1B42E8957AB9C909A935EAIE /JipWtKALl=d71012d990b5bcdfcfc1c9bda932cc88 /sZbzU=1_34_07_01 /IEMIfZA=1.34.7.1 /JWCtoyqC=1406365822 /yALgaPvg=http://stats.infodatacloud.com /HHILkv=http://errors.infodatacloud.com /vCPdB=http://js.infodatacloud.com /hfluxTZV=opera /SWAbytbxz /BSwJiJYMh=Internet Speed Checker /UMqECx='nova' /wwygaqe=http://js.clientdemocloud.com /pXZeclydZ='{"asw":[32768, 12714053, 33554432]}' /GPZolrO='http://update.infodatacloud.com/novarun ... pdate.json' /MAGgqANL='task' /ygoHsj=''
C:\WINDOWS\tasks\disco_savings_notification_service.job - C:\Program Files\disco savings\disco_savings_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='disco savings' /appid='73143' /srcid='2913' /bic='da7c8a53bba89ba19732f3633bf5551b' /verifier='6992a7e0a13cdbfcba3b56492c810aa8' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1428030920' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\disco_savings_updating_service.job - C:\Program Files\disco savings\disco_savings_updating_service.exe /campid=2913 /verid=1 /url=http://cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=disco_savings_updating_service /funurl=http://stats.buildomserv.com
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\helper_king_notification_service.job - C:\Program Files\helper king\helper_king_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='helper king' /appid='73143' /srcid='2913' /bic='da7c8a53bba89ba19732f3633bf5551b' /verifier='6992a7e0a13cdbfcba3b56492c810aa8' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1427987789' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\helper_king_updating_service.job - C:\Program Files\helper king\helper_king_updating_service.exe /campid=2913 /verid=1 /url=http://cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=helper_king_updating_service /funurl=http://stats.buildomserv.com
C:\WINDOWS\tasks\Norton Security Scan for Roman.job - C:\PROGRA~1\NORTON~2\Engine\430~1.43\Nss.exe /scan-quick /scheduled
C:\WINDOWS\tasks\omega_buyer_helper_service.job - C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe /installationtime=1432761340 /AppName='Omega Buyer'
C:\WINDOWS\tasks\Torntv 2-codedownloader.job - C:\Program Files\Torntv 2\Torntv 2-codedownloader.exe /reinstallapp /agentregpath='Torntv 2' /appid=35578 /srcid='000181' /subid='0' /zdata='0' /bic=091FA445CA1B42E8957AB9C909A935EAIE /verifier=d71012d990b5bcdfcfc1c9bda932cc88 /installerversion=1_27_153 /installerfullversion=1.27.153.8 /installationtime=1375618502 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /codedownloaddomain=http://cr.install-daddy.com /allusers /externallog=''
C:\WINDOWS\tasks\Torntv 2-updater.job - C:\Program Files\Torntv 2\Torntv 2-updater.exe /runupdater /agentregpath='Torntv 2' /appid=35578 /srcid='000181' /subid='0' /zdata='0' /bic=091FA445CA1B42E8957AB9C909A935EAIE /verifier=d71012d990b5bcdfcfc1c9bda932cc88 /installerversion=1_27_153 /installationtime=1375618502 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.datasrvstats.com /updaterversion=2 /externallog=''

=========Mozilla firefox=========

ProfilePath - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... ource=2&q="

"ext@RichMediaViewV1release7864.net"=C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.242 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1223183.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\
caseyvelez@aol.com
E6fXtz9@gmail.com
engine@conduit.com
fasttrans@kemot
fbchathistory@firechm.com
HDdGUBo@gmail.com
jid0-hyjN250ZzTOOX3evFwwAQBxE4ik@jetpack
l7rFhLjqa@gmail.com
memoryrestart@teamextension.com
pbupload@photobucket.com
sepherdwilbur@aol.com
speedtest4354@BestOffers
webrank-toolbar@probcomp.com
XudsW@gmail.com
{ce18769b-c7fa-42d2-860d-17c4662c70ad}
{ea614400-e918-4741-9a97-7a972ff7c30b}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\
Ask.xml
bingp.xml
bs-player-customized-web-search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}]
Torntv 2 - C:\Program Files\Torntv 2\Torntv 2-bho.dll [2013-08-04 748032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
Internet Speed Checker - C:\Program Files\Internet Speed Checker\Internet Speed Checker-bho.dll [2014-07-26 555880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171188}]
HD-V1.9 - C:\Program Files\HD-V1.9\HD-V1.9-bho.dll [2014-07-25 612712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96f454ea-9d38-474f-b504-56193e00c1a5}]
uTorrentControl_v6 Toolbar - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23 423744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
{96f454ea-9d38-474f-b504-56193e00c1a5} - uTorrentControl_v6 Toolbar - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23 423744]
{ec2bae47-25af-4ce9-9e78-10627a49c9ea}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2009-12-11 1474560]
"RemoteControl9"=C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [2009-04-27 87336]
"PDVD9LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [2009-04-27 50472]
"BDRegion"=C:\Program Files\Cyberlink\Shared Files\brs.exe [2009-05-07 75048]
"iMON"=C:\Program Files\SOUNDGRAPH\iMON\iMON.exe [2007-08-30 2560000]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"cz.seznam.software.autoupdate"=C:\Users\Roman\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"OneDrive"=C:\Users\Roman\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-21 554176]
"BackgroundContainerV3"=C:\Users\Roman\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll [2016-04-20 300352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\SearchProtect\SearchProtect\bin\VC32Loader.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=64

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2063-09-19 07:50:50 ----A---- C:\WINDOWS\system32\rtclmg32.dll
2016-05-16 15:45:29 ----D---- C:\Program Files\trend micro
2016-05-16 15:45:28 ----D---- C:\rsit
2016-05-16 15:37:25 ----D---- C:\Users\Roman\AppData\Roaming\TeamViewer
2016-05-16 15:37:17 ----D---- C:\Program Files\TeamViewer
2016-05-15 19:07:14 ----D---- C:\WINDOWS\Panther
2016-05-10 20:38:48 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-10 20:38:44 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\moshost.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-05-10 20:38:43 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-05-10 20:38:42 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-05-10 20:38:42 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-05-10 20:38:42 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-05-10 20:38:41 ----A---- C:\WINDOWS\system32\mos.dll
2016-05-10 20:38:40 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-05-10 20:38:36 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-05-10 20:38:35 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-05-10 20:38:27 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-10 20:38:26 ----A---- C:\WINDOWS\system32\twinui.dll
2016-05-10 20:38:26 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-10 20:38:24 ----A---- C:\WINDOWS\system32\shell32.dll
2016-05-10 20:38:22 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-05-10 20:38:22 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-05-10 20:38:21 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-05-10 20:38:20 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-05-10 20:38:19 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-10 20:38:18 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-05-10 20:38:17 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-05-10 20:38:16 ----A---- C:\WINDOWS\explorer.exe
2016-05-10 20:38:15 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-05-10 20:38:15 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-05-10 20:38:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-05-10 20:38:14 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-05-10 20:38:13 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-05-10 20:38:13 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-10 20:38:13 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-05-10 20:38:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-05-10 20:38:11 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-05-10 20:38:11 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-10 20:38:10 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-05-10 20:38:10 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-05-10 20:38:10 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-05-10 20:38:09 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-10 20:38:09 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-05-10 20:38:08 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-10 20:38:08 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-10 20:38:07 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-10 20:38:07 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-05-10 20:38:07 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-05-10 20:38:06 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-05-10 20:38:06 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-05-10 20:38:06 ----A---- C:\WINDOWS\system32\devinv.dll
2016-05-10 20:38:05 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-05-10 20:38:05 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-10 20:38:04 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-05-10 20:38:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-05-10 20:38:03 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-05-10 20:38:03 ----A---- C:\WINDOWS\system32\invagent.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\jscript.dll
2016-05-10 20:38:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-05-10 20:38:01 ----A---- C:\WINDOWS\system32\user32.dll
2016-05-10 20:38:01 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-10 20:38:01 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-05-10 20:38:00 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-05-10 20:38:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-05-10 20:38:00 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-05-10 20:37:59 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-05-10 20:37:59 ----A---- C:\WINDOWS\system32\schannel.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-05-10 20:37:58 ----A---- C:\WINDOWS\system32\aepic.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-05-10 20:37:57 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-10 20:37:56 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-05-10 20:37:56 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-05-10 20:37:56 ----A---- C:\WINDOWS\system32\provengine.dll
2016-05-10 20:37:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-10 20:37:55 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-05-10 20:37:55 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\drivers\sdport.sys
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-10 20:37:54 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-05-10 20:37:53 ----A---- C:\WINDOWS\system32\shacct.dll
2016-05-10 20:37:53 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-05-10 20:37:53 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\wininit.exe
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-05-10 20:37:52 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-05-10 20:37:51 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-10 20:37:49 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-10 20:37:49 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-05-10 20:37:49 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-10 20:37:48 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-10 20:37:48 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-05-10 20:37:48 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-10 20:37:47 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-05-10 20:37:47 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-05-10 20:37:47 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\dwminit.dll
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-05-10 20:37:46 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-05-10 20:37:45 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\hmkd.dll
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\drivers\UcmCx.sys
2016-05-10 20:37:44 ----A---- C:\WINDOWS\system32\drivers\filecrypt.sys
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-05-10 20:37:43 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-05-10 20:37:42 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-05-10 20:37:42 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-05-10 20:37:42 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-10 20:37:41 ----A---- C:\WINDOWS\system32\wups.dll
2016-05-10 20:37:41 ----A---- C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-10 20:37:38 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-10 20:37:38 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-10 20:37:37 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-05-10 20:37:36 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-05-10 20:37:36 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-10 20:37:35 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-10 20:37:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-05-10 20:37:35 ----A---- C:\WINDOWS\system32\AppCapture.dll

======List of files/folders modified in the last 1 month======

2016-05-16 15:45:36 ----D---- C:\WINDOWS\Prefetch
2016-05-16 15:45:29 ----RD---- C:\Program Files
2016-05-16 15:37:28 ----RSD---- C:\WINDOWS\Fonts
2016-05-16 15:37:17 ----D---- C:\WINDOWS\system32\Tasks
2016-05-16 15:32:47 ----D---- C:\WINDOWS\Temp
2016-05-16 15:20:08 ----D---- C:\Users\Roman\AppData\Roaming\Seznam.cz
2016-05-16 15:16:41 ----AD---- C:\WINDOWS\System32
2016-05-16 15:15:27 ----D---- C:\Users\Roman\AppData\Roaming\SOUNDGRAPH
2016-05-16 15:12:21 ----D---- C:\WINDOWS\system32\sru
2016-05-16 14:55:54 ----D---- C:\Users\Roman\AppData\Roaming\uTorrent
2016-05-16 14:53:39 ----D---- C:\Users\Roman\AppData\Roaming\Skype
2016-05-16 12:14:12 ----D---- C:\Filmy
2016-05-16 12:12:50 ----D---- C:\Audioknihy
2016-05-16 12:12:26 ----D---- C:\Hry
2016-05-15 19:08:27 ----D---- C:\WINDOWS\Microsoft.NET
2016-05-15 19:07:14 ----D---- C:\Windows
2016-05-15 15:18:31 ----D---- C:\WINDOWS\system32\config
2016-05-14 15:52:46 ----D---- C:\WINDOWS\system32\DriverStore
2016-05-14 15:32:37 ----D---- C:\WINDOWS\INF
2016-05-14 15:32:32 ----D---- C:\WINDOWS\WinSxS
2016-05-14 15:29:12 ----D---- C:\WINDOWS\system32\catroot2
2016-05-14 12:07:18 ----D---- C:\WINDOWS\AppReadiness
2016-05-14 04:05:17 ----D---- C:\WINDOWS\CbsTemp
2016-05-13 11:37:24 ----HD---- C:\Program Files\WindowsApps
2016-05-12 14:58:35 ----AD---- C:\Program Files\Opera
2016-05-12 12:48:08 ----D---- C:\WINDOWS\rescache
2016-05-12 12:09:25 ----RD---- C:\WINDOWS\assembly
2016-05-12 00:21:57 ----D---- C:\WINDOWS\system32\drivers
2016-05-11 21:57:14 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\oobe
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\migration
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\cs-CZ
2016-05-11 20:41:18 ----D---- C:\WINDOWS\system32\appraiser
2016-05-11 20:41:16 ----D---- C:\WINDOWS\Provisioning
2016-05-11 20:41:16 ----D---- C:\WINDOWS\bcastdvr
2016-05-11 20:41:16 ----D---- C:\WINDOWS\apppatch
2016-05-11 20:41:16 ----D---- C:\Program Files\Windows Journal
2016-05-11 20:41:16 ----D---- C:\Program Files\Internet Explorer
2016-05-11 13:03:29 ----SHD---- C:\WINDOWS\Installer
2016-05-11 13:03:26 ----SHD---- C:\Config.Msi
2016-05-11 13:03:26 ----D---- C:\ProgramData\Microsoft Help
2016-05-11 07:04:07 ----D---- C:\WINDOWS\system32\MRT
2016-05-11 06:48:56 ----A---- C:\WINDOWS\system32\MRT.exe
2016-05-10 23:13:22 ----D---- C:\WINDOWS\Tasks
2016-04-30 22:23:12 ----D---- C:\ProgramData\Norton
2016-04-30 20:15:34 ----D---- C:\ProgramData\Skype
2016-04-30 20:15:24 ----RD---- C:\Program Files\Skype
2016-04-23 20:25:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-22 09:57:44 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-04-19 21:55:03 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-04-19 14:21:27 ----SHD---- C:\$Recycle.Bin

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AtiPcie;@oem4.inf,%ATIPCIE_svcdesc%;AMD PCI Express (3GIO) Filter; C:\WINDOWS\System32\drivers\AtiPcie.sys [2009-12-11 14392]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2016-05-07 388848]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys [2007-11-03 68096]
R1 ndisrd;@oem13.inf,%ndisrfl_Desc%;Intel(R) Technology Access Filter Driver; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [2015-04-30 35544]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2010-02-24 185472]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2013-01-05 25888]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 npf;npf; \??\C:\Windows\system32\drivers\npf.sys [2010-03-22 50704]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 3xHybrid;@oem15.inf,%SERVICE_NAME%;SAA713x TV Card Service; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [2010-12-01 1141888]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-01-13 10070016]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-01-13 290304]
R3 AtiHdmiService;@oem0.inf,%ATIHdAudioDriver.SvcDesc%;ATI Service for HD Audio Codec; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-12-11 99856]
R3 fcdabus;fcdabus; C:\WINDOWS\System32\drivers\fcdabus.sys [2003-08-07 10899]
R3 fvdscsi;fvdscsi; C:\WINDOWS\System32\drivers\fvdscsi.sys [2003-08-09 60008]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 L1E;@netl1e86.inf,%L1E.Service.DispName%;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1E62x86.sys [2015-10-30 55296]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-04-12 130560]
R3 MTsensor;@oem5.inf,%ASACPI.DisplayName%;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S1 nethfdrv;nethfdrv; \??\C:\WINDOWS\system32\drivers\nethfdrv.sys []
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 96768]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 SGHIDI;SGHIDI; C:\WINDOWS\system32\drivers\TG_iMON.sys [2003-12-30 45060]
S3 SGIR;SGIR; C:\WINDOWS\system32\drivers\iMON_PAD.sys [2004-12-22 18090]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-04-23 46080]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 33792]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 32768]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-03-29 203104]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 74080]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-04-23 104800]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 42840]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 21856]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 21856]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-01-13 217088]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R2 Intel(R) TechnologyAccessLegacyCSLoader;Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [2016-03-15 129696]
R2 Intel(R) TechnologyAccessService;Intel(R) Technology Access Service; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [2016-03-15 460960]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-04-12 25088]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NetHttpService;Network HTTP Support Service; C:\Windows\system32\nethtsrv.exe [2015-05-10 338944]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_386d2;Hostitel synchronizace_386d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2009-04-27 271760]
R2 ServiceUpdater;Network Support Service Updater; C:\Windows\system32\netupdsrv.exe [2015-05-10 190464]
R2 TeamViewer;TeamViewer 11; C:\Program Files\TeamViewer\TeamViewer_Service.exe [2016-05-02 7031056]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-07-26 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-13 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-07-26 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Intel(R) TA SAM;Intel(R) Technology Access Software Asset Manager; C:\Program Files\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-08-12 19088]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-05-31 553288]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25 178312]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_386d2;Služba zasílání zpráv_386d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-29 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_386d2;Data kontaktů_386d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_386d2;Úložiště uživatelských dat_386d2; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------

Re: Prohlížeč zahlcený reklamou

Napsal: 16 kvě 2016 17:41
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Prohlížeč zahlcený reklamou

Napsal: 16 kvě 2016 18:56
od SpeederBB
První polovina logu zde:

# AdwCleaner v5.117 - Log soubor vytvořen 16/05/2016 o 19:43:38
# Aktualizováno 15/05/2016 by Xplode
# Databáze : 2016-05-15.2 [Server]
# Operační systém : Windows 10 Home (X86)
# Jméno uživatele : Roman - ROMAN-PC
# Spuštěno z : C:\Users\Roman\Desktop\adwcleaner_5.117.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum

***** [ Služby ] *****

[-] Služba smazáno : globalUpdate
[-] Služba smazáno : globalUpdatem
[-] Služba smazáno : nethfdrv
[-] Služba smazáno : NethxxpService
[-] Služba smazáno : ServiceUpdater

***** [ Složky ] *****

[-] Složka smazáno : C:\ProgramData\apn
[+] Složka smazáno : C:\ProgramData\BitGuard
[+] Složka smazáno : C:\ProgramData\Browser Manager
[+] Složka smazáno : C:\ProgramData\BrowserProtect
[-] Složka smazáno : C:\ProgramData\torchcrashhandler
[-] Složka smazáno : C:\ProgramData\wincert
[-] Složka smazáno : C:\ProgramData\ytd video downloader
[-] Složka smazáno : C:\ProgramData\0f0480db-9306-4d87-bd8b-566368082ef1
[-] Složka smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Converter
[-] Složka smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
[-] Složka smazáno : C:\Program Files\Babylon
[-] Složka smazáno : C:\Program Files\BS_Player
[-] Složka smazáno : C:\Program Files\Conduit
[-] Složka smazáno : C:\Program Files\disco savings
[-] Složka smazáno : C:\Program Files\globalUpdate
[-] Složka smazáno : C:\Program Files\GreenTree Applications
[-] Složka smazáno : C:\Program Files\helper king
[-] Složka smazáno : C:\Program Files\Internet Speed Checker
[-] Složka smazáno : C:\Program Files\MyPC Backup
[-] Složka smazáno : C:\Program Files\Torntv 2
[-] Složka smazáno : C:\Program Files\TornTV.com
[-] Složka smazáno : C:\Program Files\VideoConverter
[-] Složka smazáno : C:\Program Files\ytd
[-] Složka smazáno : C:\Program Files\HD-V1.9
[#] Složka smazáno : C:\Program Files\Internet Speed Checker
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Conduit
[-] Složka smazáno : C:\Users\Roman\AppData\Local\globalUpdate
[-] Složka smazáno : C:\Users\Roman\AppData\Local\iLivid
[-] Složka smazáno : C:\Users\Roman\AppData\Local\ilividmoviestoolbardla
[-] Složka smazáno : C:\Users\Roman\AppData\Local\torch
[-] Složka smazáno : C:\Users\Roman\AppData\Local\24742
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\BS_Player
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\Conduit
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\ilividmoviestoolbardla
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\Internet Speed Checker
[-] Složka smazáno : C:\Users\Roman\AppData\LocalLow\PriceGong
[#] Složka smazáno : C:\Users\Roman\AppData\LocalLow\Internet Speed Checker
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Browser Tab Search by Ask
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\FirefoxToolbar
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\OpenCandy
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\PerformerSoft
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\freegames111
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\torch
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Converter
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\Conduit
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ConduitCommon
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ConduitEngine
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ilividmoviestoolbardla
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\Smartbar
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\ValueApps
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\engine@conduit.com
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com
[#] Složka smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\jljheddigenhleadfofeccneimcmlefp
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\agkocbbjgcfpodcpdfpenidadocpcmlj
[-] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gijpiklekffjdhakddncmmfoljbopjka
[#] Složka smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Složka smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi
[#] Složka smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi

***** [ Soubory ] *****

[-] Soubor smazáno : C:\Users\Public\Desktop\YTD Video Downloader.lnk
[-] Soubor smazáno : C:\Program Files\Mozilla Firefox\my.cfg
[-] Soubor smazáno : C:\Program Files\Common Files\config\uninstinethnfd.exe
[-] Soubor smazáno : C:\WINDOWS\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
[-] Soubor smazáno : C:\WINDOWS\system32\hfnapi.dll
[-] Soubor smazáno : C:\WINDOWS\system32\hfpapi.dll
[-] Soubor smazáno : C:\WINDOWS\system32\installd.exe
[-] Soubor smazáno : C:\WINDOWS\system32\nethtsrv.exe
[-] Soubor smazáno : C:\WINDOWS\system32\netupdsrv.exe
[-] Soubor smazáno : C:\WINDOWS\system32\roboot.exe
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iLivid.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\trtv3@trtv.com.xpi
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\Ask.xml
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\bingp.xml
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bicnnkjibmphdeigoodpjlcklcnaobdj_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bicnnkjibmphdeigoodpjlcklcnaobdj_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_pdjjjmnacfjnmgckbhldbekckfldeolk_0
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pdjjjmnacfjnmgckbhldbekckfldeolk
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_cdncache-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bbglkiiiofelplniblholffbhhjmdhhi
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_bbglkiiiofelplniblholffbhhjmdhhi_0
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bbglkiiiofelplniblholffbhhjmdhhi
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_foxi69.tlscdn.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_foxi69.tlscdn.com_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_hdapp1008-a.akamaihd.net_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_pstatic.bestpriceninja.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_land.pckeeper.software_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_land.pckeeper.software_0.localstorage-journal
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[#] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.terraclicks.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.terraclicks.com_0.localstorage-journal
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.tradeadexchange.com_0.localstorage
[-] Soubor smazáno : C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.tradeadexchange.com_0.localstorage-journal

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úkoly ] *****

[-] Úkol smazáno : AmiUpdXp
[-] Úkol smazáno : globalUpdateUpdateTaskMachineCore
[-] Úkol smazáno : globalUpdateUpdateTaskMachineUA
[-] Úkol smazáno : disco_savings_notification_service
[-] Úkol smazáno : disco_savings_updating_service
[-] Úkol smazáno : helper_king_updating_service
[-] Úkol smazáno : helper_king_notification_service
[-] Úkol smazáno : Pokki
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-1
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-10
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-11
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-3
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-4
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5_user
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-6
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-7
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-1
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5_user
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-6
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-7
[-] Úkol smazáno : Torntv 2-codedownloader
[-] Úkol smazáno : Torntv 2-updater
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-1
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-10
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-11
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-3
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-4
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-5_user
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-6
[-] Úkol smazáno : 7254c30d-53be-4c33-a46f-bd5bc2a2e000-7
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-1
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-11
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-4
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-5_user
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-6
[-] Úkol smazáno : b4bf7c2d-dd27-4a7c-b4ff-ff1bc24e6ff9-7
[-] Úkol smazáno : Torntv 2-codedownloader
[-] Úkol smazáno : Torntv 2-updater

***** [ Registr ] *****

[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Applications\Torch.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Clients\StartMenuInternet\Torch
[-] Hodnota smazáno : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\chrome.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Hodnota smazáno : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\firefox.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Hodnota smazáno : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\iexplore.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}
[-] Klávesa smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Klávesa smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\s
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [HD-V1.9-bg.exe]
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.BHO
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.BHO.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.Sandbox
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035578.Sandbox.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.BHO
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.BHO.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.Sandbox
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061752.Sandbox.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.BHO
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.BHO.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.Sandbox
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CrossriderApp0061788.Sandbox.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Toolbar.CT3289075
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r707-n-bo.exe
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\jljheddigenhleadfofeccneimcmlefp
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\kiplfnciaokpcennlkldkdaeaaomamof
[-] Klávesa smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
[-] Klávesa smazáno : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Klávesa smazáno : HKCU\Software\Classes\pokki
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\dream.capture
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\dream.capture.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Prod.cap
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Speed Test 127.BackgroundHostObject
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Speed Test 127.BackgroundHostObject.1
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
[-] Klávesa smazáno : HKCU\Software\Classes\CLSID\{66E8DCC7-97D2-4A89-8E08-D0610FF0878C}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{75CC1BBE-D96F-45DF-A622-D60BFA8AF49E}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{C430996F-4AA8-4AA8-81DE-F54432CD5786}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{117270FA-48AC-45BB-9171-B63D1B42A910}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172288}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175588}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174452}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174488}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11C8C9C0-D918-44C0-8B5E-D297DA42F2C7}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C45EC9F0-8333-465D-9728-074BD41985C9}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611171152}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611171188}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}]
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
[-] Hodnota smazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
[-] Klávesa smazáno : HKCU\Software\1ClickDownload
[-] Klávesa smazáno : HKCU\Software\APN DTX
[-] Klávesa smazáno : HKCU\Software\BackgroundContainer
[-] Klávesa smazáno : HKCU\Software\BackgroundContainerV2
[-] Klávesa smazáno : HKCU\Software\Conduit
[-] Klávesa smazáno : HKCU\Software\DataMngr
[-] Klávesa smazáno : HKCU\Software\GlobalUpdate
[-] Klávesa smazáno : HKCU\Software\ilivid
[-] Klávesa smazáno : HKCU\Software\ilividmoviestoolbardla
[-] Klávesa smazáno : HKCU\Software\InstalledBrowserExtensions
[-] Klávesa smazáno : HKCU\Software\performersoft llc
[-] Klávesa smazáno : HKCU\Software\Pokki
[-] Klávesa smazáno : HKCU\Software\SweetIM
[-] Klávesa smazáno : HKCU\Software\Tbccint_HKLM
[-] Klávesa smazáno : HKCU\Software\torch
[-] Klávesa smazáno : HKCU\Software\GreenTree Applications\YTD
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Toolbar
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Conduit
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Crossrider
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Internet Speed Checker
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\PriceGong
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\Torntv 2
[-] Klávesa smazáno : HKCU\Software\AppDataLow\Software\HD-V1.9
[-] Klávesa smazáno : HKLM\SOFTWARE\Conduit
[-] Klávesa smazáno : HKLM\SOFTWARE\DataMngr
[-] Klávesa smazáno : HKLM\SOFTWARE\GlobalUpdate
[-] Klávesa smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Klávesa smazáno : HKLM\SOFTWARE\Internet Speed Checker
[-] Klávesa smazáno : HKLM\SOFTWARE\SafetyNut
[-] Klávesa smazáno : HKLM\SOFTWARE\SweetIM
[-] Klávesa smazáno : HKLM\SOFTWARE\torch
[-] Klávesa smazáno : HKLM\SOFTWARE\Torntv 2
[-] Klávesa smazáno : HKLM\SOFTWARE\HD-V1.9
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9563BC59-9556-4805-8CD4-886781779D8D}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player Toolbar
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\inethnfd
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Speed Checker
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Torntv 2
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HD-V1.9
[-] Klávesa smazáno : HKU\.DEFAULT\Software\AskPartnerNetwork
[-] Klávesa smazáno : HKU\.DEFAULT\Software\DataMngr
[-] Klávesa smazáno : HKU\.DEFAULT\Software\VNT
[-] Klávesa smazáno : HKU\.DEFAULT\Software\AppDataLow\Software\Internet Speed Checker
[-] Klávesa smazáno : HKU\.DEFAULT\Software\AppDataLow\Software\HD-V1.9
[-] Klávesa smazáno : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Internet Speed Checker
[-] Klávesa smazáno : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\HD-V1.9
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-844245518-2522841152-2584056038-1000\Software\AskPartnerNetwork
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{38100CFA-350A-4891-A9D1-1D732BE95769}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7C642E2E-18F6-47E4-BF21-DF1EBEB31E5E}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}
[-] Data Obnoveno : HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\eshopcomp.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\hdapp1008-a.akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pstatic.eshopcomp.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\app.mam.conduit.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduitapps.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hdapp1008-a.akamaihd.net
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\televisionfanatic.dl.tb.ask.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com

Re: Prohlížeč zahlcený reklamou

Napsal: 16 kvě 2016 19:00
od SpeederBB
Druhá polovina logu zde:

***** [ Webové prohlížeče ] *****

[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559..clientLogIsEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559..clientLogServiceUrl", "hxxp://clientlog.users.tbccint.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559..uninstallLogServiceUrl", "hxxp://uninstall.users.tbccint.com/Uninstall.asmx/RegisterToolbarUninstallation");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000082.isPlayDisplay", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000082.state", "{\"state\":\"stopped\",\"text\":\"1.FM Dance\",\"description\":\"1.FM Dance\",\"url\":\"mms://dance.1.fm/energydance128k?MSWMExt=.asf\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000234.TWC_locId", "EZXX0012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.1000234.TWC_temp_dis", "c");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/default.aspx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.AppTrackingLastCheckTime", "Sun Aug 12 2012 01:32:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.BrowserCompStateIsOpen_129502713039250930", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.BrowserCompStateIsOpen_129544988592463877", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.BrowserCompStateIsOpen_129634080503807015", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.CT1750559", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.CurrentServerDate", "26-8-2015");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSChangedManually", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSInstall", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSProtectChoice", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DSProtectCount", 2);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DialogsAlignMode", "LTR");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DialogsGetterLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.DownloadReferralCookieData", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstServerDate", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstTime", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstTimeFF3", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FirstTimeHiddenVer", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.FixPageNotFoundErrors", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.GroupingServerCheckInterval", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.GroupingServiceUrl", "hxxp://grouping.tbccint.com/");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPChangedManually", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPInstall", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPProtectChoice", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HPProtectCount", 4);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HasUserGlobalKeys", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HomePageProtectorEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.HomepageBeforeUnload", "hxxp://www.seznam.cz/");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.Initialize", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InitializeCommonPrefs", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InstallationAndCookieDataSentCount", 3);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InstallationType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InstalledDate", "Mon Jul 02 2012 19:26:42 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.InvalidateCache", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsAlertDBUpdated", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsGrouping", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsInitSetupIni", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsMulticommunity", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsOpenThankYouPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsOpenUninstallPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.IsProtectorsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LanguagePackLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LanguagePackReloadIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LanguagePackServiceUrl", "hxxp://translation.users.tbccint.com/Translation.ashx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LastLogin_3.13.0.6", "Sun Jul 15 2012 17:18:22 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LastLogin_3.14.1.0", "Thu Aug 23 2012 19:27:28 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LastLogin_3.15.1.0", "Wed Aug 26 2015 16:41:53 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.LatestVersion", "3.20.0.4");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.Locale", "en-us");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MCDetectTooltipHeight", "83");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MCDetectTooltipWidth", "295");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.MyStuffEnabledAtInstallation", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.OriginalFirstVersion", "3.13.0.6");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioIsPodcast", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioLastCheckTime", "Wed Aug 26 2015 12:41:03 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioLastUpdateIPServer", "3");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioLastUpdateServer", "128929877726170000");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioMediaID", "11237206");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioMediaType", "Media Player");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioMenuSelectedID", "EBRadioMenu_CT175055911237206");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioStationName", "1.FM%20Dance");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RadioStationURL", "hxxp://dance.1.fm/energydance128k?MSWMExt=.asf");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RestartDialogFirstTime", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.RestartDialogShouldDisplay", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SavedHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchCaption", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchEngineBeforeUnload", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchFromAddressBarIsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchProtectorEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SearchProtectorToolbarDisabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SendProtectorDataViaLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ServiceMapLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SettingsLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.SettingsLastUpdate", "1440568819");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ThirdPartyComponentsInterval", 504);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ThirdPartyComponentsLastCheck", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ThirdPartyComponentsLastUpdate", "1331805997");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.ToolbarShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.TrusteLinkUrl", "hxxp://trust.cpccint.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,tbclient.tbccint.com,codefuel.com,tbccint.com,trovi.com,seccint.com,cpccint.com,appstrm.com,OurToolbar.co[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.UserID", "UN48648799102277925");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.WeatherNetwork", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.WeatherPollDate", "Wed Aug 26 2015 18:17:20 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.WeatherUnit", "C");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.addressBarTakeOverEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.alertChannelId", "31130");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.appbuttondisablenull.from_oldbar.enc", "MA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.backendstorage.appbuttondisablenull", "30");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.backendstorage.twitter_v1.8.0_twitter_app_open_t_f", "66616C7365");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.browser.search.defaultthis.engineName", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.countryCode", "CZ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.enableAlerts", "always");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.firstTimeDialogOpened", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.fixPageNotFoundErrorByUser", "TRUE");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.fixPageNotFoundErrorInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.fullUserID", "UN48648799102277925.UP.20150826192835");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.globalFirstTimeInfoLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.homepageProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.initDone", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.installType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isAppTrackingManagerOn", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isCheckedStartAsHidden", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isFirstRadioInstallation", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isFirstTimeToolbarLoading", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isPerformedSmartBarTransition", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.keyword", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://www.trovigo.com/?gd=&ctid=CT1750559&oct ... &Lay=1&UM=[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.lastVersion", "10.38.0.509");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffEnabled", "€");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffPublihserMinWidth", 400);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffSearchUrl", "hxxp://appstrm.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffServiceIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.navigateToUrlOnSearch", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about%3Ablank\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://BSPlayerControlBar.OurToo[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.oldAppsList", "128515954179600320,128520273115419467,111,129646277731078772,128798613156656718,129242840850880190,128798615652125058,1000234,1000082,129634080503807015,12977575788[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.originalHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.originalSearchAddressUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.originalSearchEngine", "chrome://browser-region/locale/region.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.performedDomainChangesMigration", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.revertSettingsEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.search.searchAppId", "128520273115419467");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.search.searchCount", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchFromAddressBarEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabRestore", "about:newtab");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchInNewTabValue", "hxxps://www.trovigo.com/?gd=&ctid=CT1750559&oct ... A&SAT=FNTS");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchProtectorDialogDelayInSec", 10);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.searchSuggestEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT1750559\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://BSPlayerControlBar.OurToolbar.com//xpi\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"BS Player ControlBar \"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_Configuration_lastUpdate", "1454489590821");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1454489587064");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_appsMetadata_lastUpdate", "1454489587630");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1454489586977");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_login_10.20.101.5_lastUpdate", "1440669332243");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_login_10.38.0.509_lastUpdate", "1454489586119");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1454489587030");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_searchAPI_lastUpdate", "1454489590082");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_serviceMap_lastUpdate", "1454489587561");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_toolbarContextMenu_lastUpdate", "1454489586943");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_toolbarSettings_lastUpdate", "1454489587090");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.serviceLayer_services_translation_lastUpdate", "1454489586930");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.settingsINI", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.showToolbarPermission", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.smartbar.CTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.smartbar.Uninstall", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.smartbar.toolbarName", "BS Player ControlBar ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.testingCtid", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarAppMetaDataLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarBornServerTime", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarContextMenuLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarCurrentServerTime", "3-2-2016");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.toolbarLoginClientTime", "Wed Aug 26 2015 19:28:45 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.upgradeFromOBVersion", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559.usagesFlag", 2);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT1750559_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1454489580230,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081..clientLogIsEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081..clientLogServiceUrl", "hxxp://clientlog.users.tbccint.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081..uninstallLogServiceUrl", "hxxp://uninstall.users.tbccint.com/Uninstall.asmx/RegisterToolbarUninstallation");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000082.isPlayDisplay", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000082.state", "{\"state\":\"stopped\",\"text\":\"AHL - Gra...\",\"description\":\"AHL - Grand Rapids Griffins\",\"url\":\"mms://cdncon.wm.llnwd.net/cdncon_neulion1_ahl_griffins?[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000234.TWC_locId", "PLXX0002");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.1000234.TWC_temp_dis", "c");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/default.aspx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.BrowserCompStateIsOpen_130040904124880871", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.CT2720081", "CT2720081");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.CurrentServerDate", "26-8-2015");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DSInstall", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DialogsAlignMode", "LTR");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DialogsGetterLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.DownloadReferralCookieData", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.EMailNotifierPollDate", "Wed Aug 26 2015 18:17:29 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedLastCount129248891425073064", 200);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129225116238185771", "Sat Aug 02 2014 00:17:50 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129225147492879732", "Sat Aug 02 2014 00:17:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129245643951202078", "Sat Aug 02 2014 00:17:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedPollDate129245643951202084", "Sat Aug 02 2014 00:17:51 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129225116238185771", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129225147492879732", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129245643951202078", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FeedTTL129245643951202084", 40);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstServerDate", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstTime", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstTimeFF3", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FirstTimeHiddenVer", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.FixPageNotFoundErrors", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.GroupingServerCheckInterval", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.GroupingServiceUrl", "hxxp://grouping.tbccint.com/");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HPInstall", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HasUserGlobalKeys", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HomePageProtectorEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.HomepageBeforeUnload", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.Initialize", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InitializeCommonPrefs", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InstallationAndCookieDataSentCount", 3);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InstallationType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InstalledDate", "Mon Jul 02 2012 19:26:36 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.InvalidateCache", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsAlertDBUpdated", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsGrouping", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsInitSetupIni", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsMulticommunity", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsOpenThankYouPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsOpenUninstallPage", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.IsProtectorsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LanguagePackLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LanguagePackReloadIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LanguagePackServiceUrl", "hxxp://translation.users.tbccint.com/Translation.ashx");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LastLogin_3.13.0.6", "Sun Jul 15 2012 17:18:21 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LastLogin_3.14.1.0", "Thu Aug 23 2012 19:27:26 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LastLogin_3.15.1.0", "Wed Aug 26 2015 16:41:52 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.LatestVersion", "3.20.0.4");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.Locale", "en");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MCDetectTooltipHeight", "83");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MCDetectTooltipWidth", "295");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.MyStuffEnabledAtInstallation", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.OriginalFirstVersion", "3.13.0.6");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioIsPodcast", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioLastUpdateIPServer", "3");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioLastUpdateServer", "129248947734170000");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioMediaID", "21079850");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioMediaType", "Media Player");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioMenuSelectedID", "EBRadioMenu_CT272008121079850");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioStationName", "AHL%20-%20Grand%20Rapids%20Griffins");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RadioStationURL", "hxxp://cdncon.wm.llnwd.net/cdncon_neulion1_ahl_griffins?eid=2037&pid=2037&gid=101]]");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RestartDialogFirstTime", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.RestartDialogShouldDisplay", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchAppState.enc", "Mw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchAppTracking.enc", "MQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchCaption", "Babylon-EnglishBB Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchEngineBeforeUnload", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchFromAddressBarIsInit", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2720081&SearchSource=2&q=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabLastCheckTime", "Wed Aug 26 2015 12:40:57 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchProtectorEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SearchProtectorToolbarDisabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SendProtectorDataViaLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ServiceMapLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SettingsLastCheckTime", "Wed Aug 26 2015 12:40:57 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.SettingsLastUpdate", "1440568818");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2720081&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ThirdPartyComponentsInterval", 504);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ThirdPartyComponentsLastCheck", "Wed Aug 26 2015 12:40:57 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ThirdPartyComponentsLastUpdate", "1331805997");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ToolbarShrinkedFromSetup", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.TrusteLinkUrl", "hxxp://trust.cpccint.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,tbclient.tbccint.com,codefuel.com,tbccint.com,trovi.com,seccint.com,cpccint.com,appstrm.com,OurToolbar.co[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.UserID", "UN64587350043656586");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.WeatherNetwork", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.WeatherPollDate", "Wed Aug 26 2015 18:17:20 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.WeatherUnit", "C");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.addressBarTakeOverEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.alertChannelId", "1112366");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.ct2720081ads1", "25374225323261647325323225334125354225374225323261696425323225334125323234343735372532322532432532327469746C652532322533412532325679257530313044697[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.ct2720081current_term", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.ct2720081sdate", "3233");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api15_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api16_thetrafficstat_net.pid2", "31306361386633393035343765373333");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api18_thetrafficstat_net.pid2", "31386633666362353830346463633235");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api19_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api20_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api21_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api22_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api25_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api26_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api28_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api29_thetrafficstat_net.pid2", "33326565666262376661343032646433");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api30_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api31_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api32_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.hxxp://api6_thetrafficstat_net.pid2", "63613165373530386362303865393036");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.searchappstate", "33");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.backendstorage.searchapptracking", "31");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.countryCode", "CZ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ct2720081ads1.from_oldbar.enc", "JTdCJTIyYWRzJTIyJTNBJTVCJTdCJTIyYWlkJTIyJTNBJTIyNDQ3NTclMjIlMkMlMjJ0aXRsZSUyMiUzQSUyMlZ5JXUwMTBEaXN0JXUwMTFCdGUlMjBzdiVFOSUyMFBDJTIwJTI4emRhcm1hJT[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ct2720081current_term.from_oldbar.enc", "AA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.ct2720081sdate.from_oldbar.enc", "MjM=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.enableAlerts", "always");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.firstTimeDialogOpened", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.fixPageNotFoundErrorByUser", "TRUE");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.fixPageNotFoundErrorInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.fullUserID", "UN64587350043656586.UP.20150826192830");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com;social.tbccint.com;apps.tbccint.com;services.a[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.globalFirstTimeInfoLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.homepageProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api15_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api16_thetrafficstat_net.pid2.from_oldbar.enc", "MTBjYThmMzkwNTQ3ZTczMw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api18_thetrafficstat_net.pid2.from_oldbar.enc", "MThmM2ZjYjU4MDRkY2MyNQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api19_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api20_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api21_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api22_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api25_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api26_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api28_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api29_thetrafficstat_net.pid2.from_oldbar.enc", "MzJlZWZiYjdmYTQwMmRkMw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api30_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api31_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api32_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.hxxp___api6_thetrafficstat_net.pid2.from_oldbar.enc", "Y2ExZTc1MDhjYjA4ZTkwNg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.initDone", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.installType", "Unknown");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isAppTrackingManagerOn", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isCheckedStartAsHidden", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isFirstRadioInstallation", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isFirstTimeToolbarLoading", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isPerformedSmartBarTransition", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.keyword", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?gd=&ctid=CT2720081&octid=CT2720081&ISID=ISID_ID&SearchSource=15&CUI=UN64587350043656586&Lay=1[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.lastVersion", "10.38.0.509");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffEnabled", "€");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffPublihserMinWidth", 400);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffSearchUrl", "hxxp://appstrm.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffServiceIntervalMM", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.navigateToUrlOnSearch", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"about%3Ablank\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_SEARCH_TERM\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://BBB003.OurToolbar.com/\",[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.oldAppsList", "129246060025636489,129246060025636490,111,129248875812655100,1000082,5611289133187350459,129248877724530829,5839507107235391905,129248891798510728,53251453842811801[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.originalHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.originalSearchAddressUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.originalSearchEngine", "chrome://browser-region/locale/region.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.performedDomainChangesMigration", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.revertSettingsEnabled", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.search.searchAppId", "129246060025636490");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.search.searchCount", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchFromAddressBarEnabledByUser", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchInNewTabEnabledByUser", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchInNewTabEnabledInHidden", "true");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchProtectorDialogDelayInSec", 10);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchProtectorEnableByLogin", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.searchSuggestEnabledByUser", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2720081\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://BBB003.OurToolbar.com//xpi\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"BBB003 \"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_Configuration_lastUpdate", "1454489595702");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1454489587892");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_appsMetadata_lastUpdate", "1454489590591");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1454489589782");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_login_10.20.101.5_lastUpdate", "1440669330634");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_login_10.38.0.509_lastUpdate", "1454489587649");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1454489589759");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_searchAPI_lastUpdate", "1454489592776");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_serviceMap_lastUpdate", "1454489590272");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_toolbarContextMenu_lastUpdate", "1454489589731");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_toolbarSettings_lastUpdate", "1454489590000");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.serviceLayer_services_translation_lastUpdate", "1454489589103");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.settingsINI", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.showToolbarPermission", "false");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.smartbar.CTID", "CT2720081");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.smartbar.Uninstall", "0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.smartbar.toolbarName", "BBB003 ");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.testingCtid", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarAppMetaDataLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarBornServerTime", "2-7-2012");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarContextMenuLastCheckTime", "Wed Aug 26 2015 12:40:59 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarCurrentServerTime", "3-2-2016");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.toolbarLoginClientTime", "Wed Aug 26 2015 19:28:42 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081.upgradeFromOBVersion", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CT2720081_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1454489581035,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ConduitSearchList", "Babylon-EnglishBB Customized Web Search,BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT1750559/CT1750559", "\"58538edbe0f04a356ab2490bb82998833\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2720081/CT2720081", "\"5bb8563652773c4194800b1172c840f03\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1112366/1108070/CZ", "\"3fc49d5786e6429cb616dc8247986825\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/31130/30609/CZ", "\"4a30baf91319eb59f02fec6017ecce65\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.tbccint.com/root/31130/30609/CZ", "\"4a30baf91319eb59f02fec6017ecce65\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT1750559", "\"1357730213\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2720081", "\"1359616813\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=EB_LOCALE", "C5ZJe6gL80JBW5CuLy+wkg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "G9mW7heT/8xIX1frcduu0A==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en&ctid=CT2720081", "SA8f/YRfs6V19wkAK/I6CA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us", "G9mW7heT/8xIX1frcduu0A==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us&ctid=CT1750559", "SA8f/YRfs6V19wkAK/I6CA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=EB_LOCALE", "mfQ70fvlD2zuBxSBj8rQqA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "2E1/v7EfCEDbv3VaBQMELg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en&ctid=CT2720081", "B6IX5R5ADEz7jZ1dTY4lpQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us", "2E1/v7EfCEDbv3VaBQMELg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us&ctid=CT1750559", "B6IX5R5ADEz7jZ1dTY4lpQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=EB_LOCALE", "k9un27OkAvkwB2ZmvXxTnA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "UgzXjW7BIkfdx+x39Ruv3w==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en&ctid=CT2720081", "8Pf+ZNlIALQFEm53aS9FRw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us", "k9un27OkAvkwB2ZmvXxTnA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us&ctid=CT1750559", "8Pf+ZNlIALQFEm53aS9FRw==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=EB_LOCALE", "9zRvKErdMb8hJOq85ft5Vg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "FqddrIU7eyJgaaLyHDeVMQ==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en&ctid=CT2720081", "9tP0a9tLQ7LYpUSrjHx9xA==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en&ctid=CT2720081&UM=UM_UNINSTALL_ID", "Eqyi+rnB/8DP7DHXRtMrLg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us", "FqddrIU7eyJgaaLyHDeVMQ==");

Re: Prohlížeč zahlcený reklamou

Napsal: 16 kvě 2016 19:01
od SpeederBB
Třetí polovina logu (sic!) zde: :)

[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us&ctid=CT1750559&UM=UM_UNINSTALL_ID", "Eqyi+rnB/8DP7DHXRtMrLg==");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"f4cb1557a8bece1:4d4\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"0d648794549cd1:0\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"f414eeaa6bece1:4d4\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT1750559", "\"a238378f7d0708034a0defa297cb8b8b\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2720081", "\"a238378f7d0708034a0defa297cb8b8b\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"ad9cd3b32c68906c8c16d35d5ffc7f70\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"4e1d4aa598f14b4524ca776e12ac448a\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en-us", "\"9ce36883ba1021dc41eea9524fd1ee7f\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/14293310.xml", "\"665a90e526796b7efe62639e6c0c8563\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/2557521.xml", "\"c6a65785fda0835ce0cac81a8aead9a5\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/428333.xml", "\"5186f89a17b2eb7c4b9a90edfa1db5de\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/807095.xml", "\"de98f52b67a50300a6b605f80825b9dc\"");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Roman\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\oa86spuh.default\\conduitCommon\\modules\\3.15.1.0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.15.1.0");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ToolbarsList", "CT2720081,CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ToolbarsList2", "CT2720081,CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.ToolbarsList4", "CT2720081,CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Wed Aug 26 2015 12:40:58 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.globalUserId", "e5db0a3d-c969-4a2f-ab80-3a8b63c4869d");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Aug 26 2015 12:41:02 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertEnabled", true);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Wed Aug 26 2015 12:41:10 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alertsnotifications.ourtoolbar.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.locale", "en");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Wed Aug 26 2015 12:41:01 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1401369664");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.tbccint.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.notifications.userId", "c27a2011-b55f-4cf5-ac2e-ff0ee8c9fb5e");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.originalHomepage", "chrome://branding/locale/browserconfig.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_14293310.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_2557521.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_428333.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("CommunityToolbar.twitter.user_807095.LastCheckTime", "Sat Aug 02 2014 00:17:48 GMT+0200");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.ConduitSearchEngineList", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}&CUI=UN48648799102277925");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.TBSearchEngineList", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.TBSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}&CUI=UN48648799102277925");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("Smartbar.keywordURLSelectedCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.newtab.url", "hxxps://www.trovigo.com/?gd=&ctid=CT1750559&oct ... A&SAT=FNTS");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.defaultenginename", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.defaultthis.engineName", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.order.1", "Ask.com");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("browser.search.selectedEngine", "BS Player Customized Web Search");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.acaseyvelezaolcom61788.61788.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anthropologie.com%2[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.acaseyvelezaolcom61788.61788.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls%22[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_meta.value", "%7B%22images/icon_255x255.png%22%3A%7B%22id%22%3A750126%2C%22ver%22%3A1%2C%22status%22%3A1%2C%22name%22%3A%22im[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anthropologie.co[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("extensions.crossrider.bic", "14793a6653eebd9e89cedaf5cd7327e9");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.addressBarOwnerCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2720081&SearchSource=2&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.defaultSearchOwnerCTID", "CT1750559");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.homepageList", "hxxp://search.conduit.com/?ctid=CT1750559&SearchSource=13");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.machineId", "AQPFTYIRM6NBHOTGM0YZ0RU8GZ1SKY0YM2NLLFBPIFVTE8PMTAB1HKQXZ/WNO/H9TFKUHNR3AKJGPCYJB5TI2W");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("smartbar.searchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2720081&SearchSource=2&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=,hxxp:/[...]
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_currentVersion", "312E31332E302E3137");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_currentVersion.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_migrated_from_ls", "31");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_migrated_from_ls.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_userBornDate", "4E2F41");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT1750559.mam_gk_userBornDate.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_currentVersion", "312E31332E302E3137");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_currentVersion.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_migrated_from_ls", "31");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_migrated_from_ls.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_userBornDate", "4E2F41");
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.CT2720081.mam_gk_userBornDate.storedInFile", false);
[-] [C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\prefs.js] smazáno : user_pref("valueApps.storage.mam_gk_userId", "30653364393262312D656135642D343461322D393637662D356336663365646562666261");
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] smazáno : hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 77-346&t=4
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : aaaaabcbmongicmdegkmmfgdickgnnob
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : agkocbbjgcfpodcpdfpenidadocpcmlj
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : bicnnkjibmphdeigoodpjlcklcnaobdj
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : bopakagnckmlgajfccecajhnimjiiedh
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : dhkplhfnhceodhffomolpfigojocbpcb
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : fcfenmboojpjinhpgggodefccipikbpd
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : gijpiklekffjdhakddncmmfoljbopjka
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : jljheddigenhleadfofeccneimcmlefp
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : pdjjjmnacfjnmgckbhldbekckfldeolk
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] smazáno : pdjjjmnacfjnmgckbhldbekckfldeolk

*************************

:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [140212 bytes] - [16/05/2016 19:43:38]
C:\AdwCleaner\AdwCleaner[S1].txt - [143073 bytes] - [16/05/2016 19:40:21]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [140362 bytes] ##########

Re: Prohlížeč zahlcený reklamou

Napsal: 16 kvě 2016 19:21
od Rudy

Re: Prohlížeč zahlcený reklamou

Napsal: 17 kvě 2016 15:30
od SpeederBB
FRST log zde:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:16-05-2016
Ran by Roman (administrator) on ROMAN-PC (17-05-2016 16:25:27)
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available Profiles: Roman)
Platform: Microsoft Windows 10 Home Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe
() C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(CyberLink Corp.) C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
(cyberlink) C:\Program Files\CyberLink\Shared files\brs.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
() C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.19761.0_x86__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Desktop.exe
(Opera Software) C:\Program Files\Opera\opera.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HDAudDeck] => C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [1474560 2009-12-11] (VIA)
HKLM\...\Run: [RemoteControl9] => C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2009-04-27] (CyberLink Corp.)
HKLM\...\Run: [PDVD9LanguageShortcut] => C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [50472 2009-04-27] (CyberLink Corp.)
HKLM\...\Run: [BDRegion] => C:\Program Files\Cyberlink\Shared Files\brs.exe [75048 2009-05-07] (cyberlink)
HKLM\...\Run: [iMON] => C:\Program Files\SOUNDGRAPH\iMON\iMON.exe [2560000 2007-08-30] (SoundGraph, Inc.)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1840424 2008-06-24] (Nero AG)
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Roman\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Roman\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\...\Run: [BackgroundContainerV3] => "C:\WINDOWS\system32\Rundll32.exe" "C:\Users\Roman\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll",DllRun
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
GroupPolicy: Restriction - Chrome <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\..\Interfaces\{45bbb41d-a8f8-4cb6-aeba-31ca5d5b6108}: [NameServer] 10.255.255.10,10.255.255.20

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.tsbohemia.cz
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
URLSearchHook: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {0036457D-4E57-4641-AFAB-D9DC1256A052} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {2C9A62C8-36C0-4104-9516-C8B984E448D6} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {5A791E0C-2374-4DC3-BF70-FE09DD40229D} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {68F3991A-6D49-4211-A259-BB835D34915D} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {8639B338-B2A1-4471-991A-DEEE47C34805} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {8C87A805-D358-4184-B7E3-A23CC2854235} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {90A06677-7426-4992-8871-3C8AA2F4451B} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {9BFA4B5D-271B-4F89-BD20-9C8FB9BA4D9B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> {D7F73C9C-3481-43F9-946D-CCD67EE76FE5} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_16194
BHO: Torntv 2 -> {11111111-1111-1111-1111-110311551178} -> C:\Program Files\Torntv 2\Torntv 2-bho.dll => No File
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21] (Adobe Systems Incorporated)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> No Name - {53475456-372D-5341-5400-7A786E7484D7} - No File
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default
FF SearchEngineOrder.3: Bing
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1223183.dll [2015-12-22] (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2013-04-08] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler -> C:\Program Files\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2009-12-21] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\searchplugins\bs-player-customized-web-search.xml [2015-08-29]
FF Extension: disco savings - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\E6fXtz9@gmail.com [2015-04-03] [not signed]
FF Extension: fasttranskemot - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\fasttrans@kemot [2015-04-03] [not signed]
FF Extension: fbchathistoryfirechmcom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\fbchathistory@firechm.com [2015-05-27] [not signed]
FF Extension: Alpha Shopper - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\HDdGUBo@gmail.com [2015-05-28] [not signed]
FF Extension: jid0hyjN250ZzTOOX3evFwwAQBxE4ikjetpack - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\jid0-hyjN250ZzTOOX3evFwwAQBxE4ik@jetpack [2015-05-28] [not signed]
FF Extension: helper king - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\l7rFhLjqa@gmail.com [2015-04-02] [not signed]
FF Extension: memoryrestartteamextensioncom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\memoryrestart@teamextension.com [2015-04-18] [not signed]
FF Extension: pbuploadphotobucketcom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\pbupload@photobucket.com [2015-04-20] [not signed]
FF Extension: webranktoolbarprobcompcom - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\webrank-toolbar@probcomp.com [2015-04-02] [not signed]
FF Extension: Omega Buyer - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\XudsW@gmail.com [2015-05-27] [not signed]
FF Extension: BS Player ControlBar - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} [2015-08-27] [not signed]
FF Extension: BBB003 - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\{ce18769b-c7fa-42d2-860d-17c4662c70ad} [2015-08-27] [not signed]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com [not found]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com [not found]
FF Extension: Speed Test 127 - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\Extensions\speedtest4354@BestOffers [2014-01-24] [not signed]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-08-29] [not signed]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-08-29] [not signed]
FF HKLM\...\Firefox\Extensions: [ext@RichMediaViewV1release7864.net] - C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2013-05-29]
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ATTENTION (Points to *.cfg file)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/?clid=16194
CHR DefaultSearchURL: Default -> hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=210&systemid=488&v=a13277-346&apn_uid=8454670092594320&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Omega Buyer) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjdnlokgpbeflkegifbndikgnnbmfccd [2015-05-27]
CHR Extension: (dljbcjbfojhlfhgenhepllagfecdpchb) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\dljbcjbfojhlfhgenhepllagfecdpchb [2015-04-07]
CHR Extension: (ebeenikkcpgaekfgbnflbaaihalfifkk) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebeenikkcpgaekfgbnflbaaihalfifkk [2015-05-28]
CHR Extension: (hiiknjobjfknoghbeelhfilaaikffopb) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiiknjobjfknoghbeelhfilaaikffopb [2015-04-06]
CHR Extension: (ilfjhacjjbcdmimjeaakpnlhdcloijcg) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfjhacjjbcdmimjeaakpnlhdcloijcg [2015-04-02]
CHR Extension: (jepibmfmhopgkplegmkjgifmhabbjadg) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\jepibmfmhopgkplegmkjgifmhabbjadg [2015-05-27]
CHR Extension: (kglfocodeikakacbeoajjhnplhlaoook) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\kglfocodeikakacbeoajjhnplhlaoook [2015-04-03]
CHR Extension: (Skype) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-05-07]
CHR Extension: (Alpha Shopper) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnpddjhhjmmcnjbjdbopmniafbpfppkb [2015-05-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-13]
CHR Extension: () - C:\Users\Roman\AppData\Local\Comp Cooking\Component [2016-05-16]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]

Opera:
=======
OPR Extension: (Internet Speed Checker1.1) - C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi [2016-05-17]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
S3 Intel(R) TA SAM; C:\Program Files\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-08-12] (Intel Corporation)
R2 Intel(R) TechnologyAccessLegacyCSLoader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [129696 2016-03-15] (Intel(R) Corporation)
R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [460960 2016-03-15] (Intel(R) Corporation)
S3 iumsvc; C:\Program Files\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [271760 2009-04-27] ()
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH)
R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 3xHybrid; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [1141888 2010-12-01] (NXP Semiconductors Germany GmbH)
R2 acedrv11; C:\Windows\system32\drivers\acedrv11.sys [185472 2010-02-24] (Protect Software GmbH)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [388848 2016-05-07] (Symantec Corporation)
R3 fcdabus; C:\WINDOWS\System32\drivers\fcdabus.sys [10899 2003-08-07] (FarStone Inc.) [File not signed]
R3 fvdscsi; C:\WINDOWS\System32\drivers\fvdscsi.sys [60008 2003-08-09] (FarStone Inc.) [File not signed]
R1 ISODrive; C:\Program Files\UltraISO\drivers\ISODrive.sys [68096 2007-11-03] (EZB Systems, Inc.) [File not signed]
R3 L1E; C:\WINDOWS\System32\drivers\L1E62x86.sys [55296 2015-10-30] (Atheros Communications, Inc.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2013-01-05] ()
R1 MpKsl704f81e7; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D43C140E-8D75-4C7B-9EF2-B011B40165C4}\MpKsl704f81e7.sys [39168 2016-05-16] (Microsoft Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R1 ndisrd; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [35544 2015-04-30] (Intel Corporation)
R2 npf; C:\Windows\system32\drivers\npf.sys [50704 2010-03-22] (CACE Technologies, Inc.)
R0 sfhlp02; C:\WINDOWS\System32\drivers\sfhlp02.sys [6656 2005-05-16] (Protection Technology) [File not signed]
S3 SGHIDI; C:\WINDOWS\System32\drivers\TG_iMON.sys [45060 2003-12-30] (TG)
S3 SGIR; C:\WINDOWS\System32\drivers\iMON_PAD.sys [18090 2004-12-22] ()
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [575184 2015-06-22] (VIA Technologies, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files\CyberLink\PowerDVD9\000.fcl [87536 2009-05-07] (CyberLink Corp.)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2063-09-19 07:50 - 2063-09-19 07:50 - 00005501 _____ C:\WINDOWS\system32\rtclmg32.dll
2016-05-17 16:25 - 2016-05-17 16:26 - 00021903 _____ C:\Users\Roman\Desktop\FRST.txt
2016-05-17 16:24 - 2016-05-17 16:25 - 00000000 ____D C:\FRST
2016-05-17 16:23 - 2016-05-17 16:23 - 01733120 _____ (Farbar) C:\Users\Roman\Desktop\FRST.exe
2016-05-17 16:23 - 2016-05-17 16:23 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe
2016-05-17 11:07 - 2016-05-17 11:07 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-05-17 10:56 - 2016-05-17 10:56 - 00000000 ___RD C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 9
2016-05-17 00:09 - 2016-05-17 00:11 - 1005527792 _____ C:\Users\Roman\Desktop\3096 dní P-íb-h Nataschi Kampuschové Krimi cz.avi
2016-05-16 19:39 - 2016-05-16 19:43 - 00000000 ____D C:\AdwCleaner
2016-05-16 19:38 - 2016-05-16 19:38 - 03651136 _____ C:\Users\Roman\Desktop\adwcleaner_5.117.exe
2016-05-16 16:57 - 2016-05-16 16:57 - 00000000 ____D C:\Users\Roman\AppData\LocalLow\uTorrent
2016-05-16 16:01 - 2016-05-17 01:34 - 00000000 ____D C:\Users\Roman\AppData\Roaming\vlc
2016-05-16 15:58 - 2016-05-16 15:58 - 00001097 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-05-16 15:58 - 2016-05-16 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-05-16 15:58 - 2016-05-16 15:58 - 00000000 ____D C:\Program Files\VideoLAN
2016-05-16 15:45 - 2016-05-16 15:45 - 01107968 _____ C:\Users\Roman\Desktop\RSIT.exe
2016-05-16 15:45 - 2016-05-16 15:45 - 00000000 ____D C:\rsit
2016-05-16 15:45 - 2016-05-16 15:45 - 00000000 ____D C:\Program Files\trend micro
2016-05-16 15:40 - 2016-05-16 15:40 - 00000000 ____D C:\Users\Roman\AppData\Local\TeamViewer
2016-05-16 15:37 - 2016-05-16 18:49 - 00000000 ____D C:\Program Files\TeamViewer
2016-05-16 15:37 - 2016-05-16 16:22 - 00000998 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-05-16 15:37 - 2016-05-16 16:22 - 00000986 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-05-16 15:37 - 2016-05-16 15:37 - 00000000 ____D C:\Users\Roman\AppData\Roaming\TeamViewer
2016-05-15 19:07 - 2016-05-15 19:07 - 00000000 ____D C:\WINDOWS\Panther
2016-05-10 20:38 - 2016-05-06 06:23 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-10 20:38 - 2016-04-30 08:53 - 01152000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-10 20:38 - 2016-04-30 08:46 - 02974720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-10 20:38 - 2016-04-23 08:06 - 01232576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00973504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00576192 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00440512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00248512 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-10 20:38 - 2016-04-23 08:06 - 00149696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-10 20:38 - 2016-04-23 08:06 - 00042688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-10 20:38 - 2016-04-23 07:28 - 05796704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-10 20:38 - 2016-04-23 07:28 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-10 20:38 - 2016-04-23 07:28 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-10 20:38 - 2016-04-23 07:28 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-10 20:38 - 2016-04-23 07:14 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-10 20:38 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-10 20:38 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-10 20:38 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-10 20:38 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-10 20:38 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-10 20:38 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-10 20:38 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-10 20:38 - 2016-04-23 07:01 - 01714520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-10 20:38 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-10 20:38 - 2016-04-23 07:01 - 00484704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-10 20:38 - 2016-04-23 07:00 - 01273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-10 20:38 - 2016-04-23 06:55 - 00430432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-10 20:38 - 2016-04-23 06:35 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-10 20:38 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-10 20:38 - 2016-04-23 06:27 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-10 20:38 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-10 20:38 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-10 20:38 - 2016-04-23 06:24 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-10 20:38 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-10 20:38 - 2016-04-23 06:22 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-10 20:38 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-10 20:38 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-10 20:38 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-10 20:38 - 2016-04-23 06:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-10 20:38 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-10 20:38 - 2016-04-23 06:16 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-10 20:38 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-10 20:38 - 2016-04-23 06:14 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-10 20:38 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-10 20:38 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-10 20:38 - 2016-04-23 06:11 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-10 20:38 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-10 20:38 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-10 20:38 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-10 20:38 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-10 20:38 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-10 20:38 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-10 20:38 - 2016-04-23 06:07 - 01793024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-10 20:38 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-10 20:38 - 2016-04-23 06:05 - 01895936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-10 20:38 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-10 20:38 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-10 20:38 - 2016-04-23 06:04 - 01733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 01899520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-10 20:38 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-10 20:37 - 2016-05-06 07:20 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-10 20:37 - 2016-05-06 06:13 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-10 20:37 - 2016-05-06 06:10 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-10 20:37 - 2016-05-06 06:05 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-10 20:37 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-10 20:37 - 2016-05-06 05:49 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-10 20:37 - 2016-04-23 08:06 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-10 20:37 - 2016-04-23 07:28 - 00550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-10 20:37 - 2016-04-23 07:28 - 00278368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-10 20:37 - 2016-04-23 07:28 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-10 20:37 - 2016-04-23 07:26 - 00792328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-10 20:37 - 2016-04-23 07:21 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-10 20:37 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-10 20:37 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-10 20:37 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-10 20:37 - 2016-04-23 07:12 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-10 20:37 - 2016-04-23 07:11 - 00259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-10 20:37 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-10 20:37 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-10 20:37 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-10 20:37 - 2016-04-23 07:07 - 00192704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-10 20:37 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-10 20:37 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-10 20:37 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-10 20:37 - 2016-04-23 07:01 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-10 20:37 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-10 20:37 - 2016-04-23 07:00 - 01396584 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-10 20:37 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-10 20:37 - 2016-04-23 07:00 - 00049504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-10 20:37 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-10 20:37 - 2016-04-23 06:29 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-10 20:37 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-10 20:37 - 2016-04-23 06:29 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-10 20:37 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-10 20:37 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-10 20:37 - 2016-04-23 06:28 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-10 20:37 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-10 20:37 - 2016-04-23 06:27 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-10 20:37 - 2016-04-23 06:27 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-10 20:37 - 2016-04-23 06:25 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-10 20:37 - 2016-04-23 06:24 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-10 20:37 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-10 20:37 - 2016-04-23 06:24 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-10 20:37 - 2016-04-23 06:23 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-10 20:37 - 2016-04-23 06:23 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-10 20:37 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-10 20:37 - 2016-04-23 06:23 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-10 20:37 - 2016-04-23 06:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-10 20:37 - 2016-04-23 06:21 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-10 20:37 - 2016-04-23 06:20 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-10 20:37 - 2016-04-23 06:19 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-10 20:37 - 2016-04-23 06:19 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-10 20:37 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-10 20:37 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-10 20:37 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-10 20:37 - 2016-04-23 06:17 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-10 20:37 - 2016-04-23 06:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-10 20:37 - 2016-04-23 06:16 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-10 20:37 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-10 20:37 - 2016-04-23 06:14 - 00739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-10 20:37 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-10 20:37 - 2016-04-23 06:13 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-10 20:37 - 2016-04-23 06:12 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-10 20:37 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-10 20:37 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-10 20:37 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-10 20:37 - 2016-04-23 06:03 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-10 20:37 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-10 20:37 - 2016-04-23 06:01 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-10 20:37 - 2016-04-23 04:10 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-10 20:37 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-05 14:57 - 2016-05-12 14:58 - 00001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 37.lnk
2016-04-20 19:47 - 2016-04-20 19:47 - 00000000 ____D C:\Users\Roman\AppData\Local\MicrosoftEdge
2016-04-20 03:57 - 2016-04-20 03:57 - 00000000 ____D C:\Users\Roman\AppData\Local\Cctbplt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-05-17 16:18 - 2012-08-24 01:58 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-17 15:28 - 2012-04-02 23:55 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-05-17 11:16 - 2015-05-28 17:16 - 00000508 _____ C:\WINDOWS\Tasks\alpha_shopper_helper_service.job
2016-05-17 11:15 - 2015-05-27 23:15 - 00000496 _____ C:\WINDOWS\Tasks\omega_buyer_helper_service.job
2016-05-17 11:07 - 2014-08-19 18:57 - 00000000 ____D C:\Users\Roman\AppData\Local\Adobe
2016-05-17 11:07 - 2014-06-20 13:33 - 00000000 __SHD C:\Users\Roman\AppData\Local\EmieUserList
2016-05-17 11:07 - 2014-06-20 13:33 - 00000000 __SHD C:\Users\Roman\AppData\Local\EmieSiteList
2016-05-17 11:01 - 2014-07-25 17:47 - 00000000 ____D C:\Users\Roman\AppData\Roaming\Seznam.cz
2016-05-17 10:59 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-05-17 10:59 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-05-17 10:56 - 2012-08-24 01:58 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-17 10:56 - 2009-12-12 20:48 - 00000000 ____D C:\Users\Roman\AppData\Roaming\SOUNDGRAPH
2016-05-17 06:27 - 2016-04-12 14:01 - 00000000 ____D C:\Users\Roman
2016-05-16 19:49 - 2016-02-13 14:08 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-16 19:48 - 2016-02-13 05:05 - 00339352 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-16 19:47 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-05-16 19:45 - 2015-08-29 10:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-05-16 19:43 - 2013-08-04 14:08 - 00000000 ____D C:\Users\Roman\AppData\Roaming\uTorrent
2016-05-16 19:16 - 2015-04-02 18:16 - 00000004 _____ C:\WINDOWS\system32\029B560A371F4E00AB32838EBC01B9E7
2016-05-16 14:53 - 2012-01-14 16:33 - 00000000 ____D C:\Users\Roman\AppData\Roaming\Skype
2016-05-16 12:14 - 2009-12-25 15:09 - 00000000 ____D C:\Filmy
2016-05-16 12:12 - 2015-06-15 13:59 - 00000000 ____D C:\Audioknihy
2016-05-16 12:12 - 2013-03-21 22:00 - 00000000 ____D C:\Hry
2016-05-14 15:32 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-05-14 04:05 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-13 12:20 - 2012-08-24 01:58 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-12 14:58 - 2012-08-15 00:55 - 00000000 ____D C:\Program Files\Opera
2016-05-12 14:38 - 2011-08-04 23:57 - 00000406 ____H C:\WINDOWS\Tasks\Norton Security Scan for Roman.job
2016-05-12 12:48 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-05-12 00:23 - 2016-02-13 14:10 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-11 21:57 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-05-11 20:41 - 2016-02-13 14:00 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-11 20:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-11 07:07 - 2015-10-30 07:48 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-11 07:04 - 2013-08-14 15:38 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-11 06:48 - 2009-12-11 12:05 - 136686448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-03 12:42 - 2016-04-12 14:23 - 00000000 ____D C:\Users\Roman\AppData\Local\Packages
2016-04-30 22:23 - 2011-08-04 23:57 - 00000000 ____D C:\ProgramData\Norton
2016-04-30 20:15 - 2012-01-14 16:33 - 00000000 ___RD C:\Program Files\Skype
2016-04-30 20:15 - 2012-01-14 16:32 - 00000000 ____D C:\ProgramData\Skype
2016-04-27 16:29 - 2015-06-25 20:39 - 00000000 ____D C:\Users\Public\Downloads\Norton
2016-04-23 20:25 - 2016-04-12 14:00 - 01996112 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-23 20:25 - 2016-02-13 13:52 - 00829308 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-23 20:25 - 2016-02-13 13:52 - 00185116 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-22 09:57 - 2009-12-11 11:34 - 00374944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-21 18:54 - 2016-04-12 14:32 - 00002387 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-21 18:54 - 2016-04-12 14:32 - 00000000 ___RD C:\Users\Roman\OneDrive
2016-04-20 21:56 - 2010-08-27 14:01 - 00000000 ____D C:\Users\Roman\Documents\iWisoft Free Video Converter

==================== Files in the root of some directories =======

2010-01-27 14:36 - 2015-04-18 03:05 - 0012288 _____ () C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-05-23 19:58 - 2012-05-23 19:58 - 0000017 _____ () C:\Users\Roman\AppData\Local\resmon.resmoncfg
2013-01-17 20:29 - 2013-10-24 02:14 - 0001917 ___SH () C:\ProgramData\6bc39e9a-9606-419f-823b-4c63676c7cce

Some files in TEMP:
====================
C:\Users\Roman\AppData\Local\Temp\libeay32.dll
C:\Users\Roman\AppData\Local\Temp\msvcr120.dll
C:\Users\Roman\AppData\Local\Temp\Runner.exe
C:\Users\Roman\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_242_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Norton Security Scan for Roman.job => C:\PROGRA~1\NORTON~2\Engine\430~1.43\Nss.exe
Task: C:\WINDOWS\Tasks\omega_buyer_helper_service.job => C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe <==== ATTENTION

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Roman\Desktop" je 1612 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Re: Prohlížeč zahlcený reklamou

Napsal: 17 kvě 2016 17:44
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
GroupPolicy: Restriction - Chrome <======= ATTENTION
URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
URLSearchHook: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Torntv 2 -> {11111111-1111-1111-1111-110311551178} -> C:\Program Files\Torntv 2\Torntv 2-bho.dll => No File
BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
C:\Program Files\Skype\Toolbars
Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> No Name - {53475456-372D-5341-5400-7A786E7484D7} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
FF SearchEngineOrder.3: Bing
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com [not found]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com [not found]
FF HKLM\...\Firefox\Extensions: [ext@RichMediaViewV1release7864.net] - C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ATTENTION (Points to *.cfg file)
CHR DefaultSearchURL: Default -> hxxp://dts.search.ask.com/sr?src=crb&gc ... nrs=AG1&q={searchTerms}
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Roman\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\omega_buyer_helper_service.job => C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe <==== ATTENTION
Task: {3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {21C89335-E8F0-4E40-AE2A-0F84349927B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4D784E97-E61B-4C9A-AE21-128988B4F171} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F3D8D98-D3C0-465E-8DDC-040B63AB54C3} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {62AD2059-0366-46A2-90C2-153675B8383A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {87BA0E83-4D34-456E-8E56-01804DEBE3B9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8B83130D-F497-4C02-B214-F5E0BC698F42} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {C177D66F-8909-42D8-A932-CC9C1D019082} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {D7B1F2C1-F754-46B2-9953-2FE64F00A908} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {E1BFD5D5-B2EA-482F-9927-AD51C0F7486E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {F411BF89-22E7-4C8A-B9F6-B1ADC68632DF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
End

Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Prohlížeč zahlcený reklamou

Napsal: 17 kvě 2016 18:31
od SpeederBB
Zde je log:

Fix result of Farbar Recovery Scan Tool (x86) Version:16-05-2016
Ran by Roman (2016-05-17 19:27:01) Run:1
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available Profiles: Roman)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
GroupPolicy: Restriction - Chrome <======= ATTENTION
URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
URLSearchHook: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Torntv 2 -> {11111111-1111-1111-1111-110311551178} -> C:\Program Files\Torntv 2\Torntv 2-bho.dll => No File
BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
C:\Program Files\Skype\Toolbars
Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Roman\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-844245518-2522841152-2584056038-1000 -> No Name - {53475456-372D-5341-5400-7A786E7484D7} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
FF SearchEngineOrder.3: Bing
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com [not found]
FF Extension: No Name - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com [not found]
FF HKLM\...\Firefox\Extensions: [ext@RichMediaViewV1release7864.net] - C:\Program Files\RichMediaViewV1\RichMediaViewV1release7864\ff => not found
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ATTENTION (Points to *.cfg file)
CHR DefaultSearchURL: Default -> hxxp://dts.search.ask.com/sr?src=crb&gc ... nrs=AG1&q={searchTerms}
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Roman\AppData\Local\Temp
Task: C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => C:\Program Files\Alpha Shopper\alpha_shopper_helper_service.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\omega_buyer_helper_service.job => C:\Program Files\Omega Buyer\omega_buyer_helper_service.exe <==== ATTENTION
Task: {3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {21C89335-E8F0-4E40-AE2A-0F84349927B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4D784E97-E61B-4C9A-AE21-128988B4F171} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5F3D8D98-D3C0-465E-8DDC-040B63AB54C3} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {62AD2059-0366-46A2-90C2-153675B8383A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {87BA0E83-4D34-456E-8E56-01804DEBE3B9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8B83130D-F497-4C02-B214-F5E0BC698F42} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {C177D66F-8909-42D8-A932-CC9C1D019082} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {D7B1F2C1-F754-46B2-9953-2FE64F00A908} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {E1BFD5D5-B2EA-482F-9927-AD51C0F7486E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {F411BF89-22E7-4C8A-B9F6-B1ADC68632DF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
End
*****************

"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bitguard.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bprotect.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserdefender.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserprotect.exe" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\volaro" => key removed successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\vonteera" => key removed successfully.
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully.
"HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5}" => key removed successfully.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully.
"HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => key removed successfully.
HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => key not found.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}" => key removed successfully.
"HKCR\CLSID\{11111111-1111-1111-1111-110311551178}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96f454ea-9d38-474f-b504-56193e00c1a5}" => key removed successfully.
HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully.
"HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully.
C:\Program Files\Skype\Toolbars => moved successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{96f454ea-9d38-474f-b504-56193e00c1a5} => value removed successfully.
HKCR\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5} => key not found.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{96F454EA-9D38-474F-B504-56193E00C1A5} => value removed successfully.
HKCR\CLSID\{96F454EA-9D38-474F-B504-56193E00C1A5} => key not found.
HKU\S-1-5-21-844245518-2522841152-2584056038-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{53475456-372D-5341-5400-7A786E7484D7} => value removed successfully.
HKCR\CLSID\{53475456-372D-5341-5400-7A786E7484D7} => key not found.
"HKCR\PROTOCOLS\Handler\skype-ie-addon-data" => key removed successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => key removed successfully.
Firefox SearchEngineOrder.3 removed successfully.
C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\caseyvelez@aol.com => path removed successfully.
C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\oa86spuh.default\extensions\sepherdwilbur@aol.com => path removed successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\ext@RichMediaViewV1release7864.net => value removed successfully.
C:\Program Files\mozilla firefox\browser\defaults\preferences\my-prefs.js => moved successfully
Chrome DefaultSearchURL => removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => key removed successfully.
"C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx" => not found.
idsvc => service removed successfully.
wpcsvc => service removed successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully

"C:\Users\Roman\AppData\Local\Temp" folder move:

Could not move "C:\Users\Roman\AppData\Local\Temp" => Scheduled to move on reboot.

C:\WINDOWS\Tasks\alpha_shopper_helper_service.job => moved successfully
C:\WINDOWS\Tasks\omega_buyer_helper_service.job => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DFCB2FE-5028-4AFA-B67E-4E2E658C5F1F}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{21C89335-E8F0-4E40-AE2A-0F84349927B2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{21C89335-E8F0-4E40-AE2A-0F84349927B2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4D784E97-E61B-4C9A-AE21-128988B4F171}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D784E97-E61B-4C9A-AE21-128988B4F171}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F3D8D98-D3C0-465E-8DDC-040B63AB54C3}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F3D8D98-D3C0-465E-8DDC-040B63AB54C3}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{62AD2059-0366-46A2-90C2-153675B8383A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62AD2059-0366-46A2-90C2-153675B8383A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{87BA0E83-4D34-456E-8E56-01804DEBE3B9}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87BA0E83-4D34-456E-8E56-01804DEBE3B9}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8B83130D-F497-4C02-B214-F5E0BC698F42}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B83130D-F497-4C02-B214-F5E0BC698F42}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C177D66F-8909-42D8-A932-CC9C1D019082}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C177D66F-8909-42D8-A932-CC9C1D019082}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D7B1F2C1-F754-46B2-9953-2FE64F00A908}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7B1F2C1-F754-46B2-9953-2FE64F00A908}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E1BFD5D5-B2EA-482F-9927-AD51C0F7486E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1BFD5D5-B2EA-482F-9927-AD51C0F7486E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F411BF89-22E7-4C8A-B9F6-B1ADC68632DF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F411BF89-22E7-4C8A-B9F6-B1ADC68632DF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2016-05-17 19:29:44)

C:\Users\Roman\AppData\Local\Temp => moved successfully

==== End of Fixlog 19:29:51 ====

Re: Prohlížeč zahlcený reklamou

Napsal: 17 kvě 2016 19:39
od Rudy
Smazáno. Nastala nějaká změna?

Re: Prohlížeč zahlcený reklamou

Napsal: 19 kvě 2016 17:48
od SpeederBB
Dělal jsem to přes teamviewer, ale uživatel hlásí, že reklamy jsou fuč. Snad to bude šlapat. Doporučíte nějaký www prohlížeč? Každopádně děkujeme za pomoc. :thumbsup:

Re: Prohlížeč zahlcený reklamou

Napsal: 19 kvě 2016 18:35
od Rudy
Osobně používám Firefox už roky a jsem spokojen. Nemáte zač! :)