Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

ASK Toolbar

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

ASK Toolbar

#1 Příspěvek od stoker303 »

Dobrý den,

dostalo se mi do notebooku tohle "svinstvo". Pomocí návodu se mi jej podařilo odstranit ze všech prohlížečů, které mám nainstalovány (chrome, explorer, firefox). Použil jsem program "adwcleaner". Nicméně bych Vás rád požádal o prohlédnutí logu z FRST. Pokud byste našli ještě nějaký problém prosím o radu jak se jej zbavit. Jde mi hlavně o software, který je v notebooku zbytečný a mohl by být potenciální hrozbou. Mockrát děkuji za pomoc.

LOG z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-09-2017 01
Ran by bilek (administrator) on SINOP79 (26-09-2017 08:26:56)
Running from C:\Users\bilek\Desktop
Loaded Profiles: bilek (Available Profiles: bilek & oem)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfwsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Dassault Systèmes) C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
(Garmin Ltd. or its subsidiaries) C:\Users\bilek\Desktop\Garmin\Device Interaction Service\GarminService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
(Acronis) C:\Program Files (x86)\Common Files\Seagate\CDP\afcdpsrv.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe
(TappIn) C:\Program Files (x86)\TappIn\TappIn Agent\TappIn.AgentWindowsService.exe
(ArcSoft, Inc.) C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files\Mouse\Amoumain.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
( ) C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung Electronics) C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe
(Garmin Ltd. or its subsidiaries) C:\Users\bilek\Desktop\Garmin\Express Tray\ExpressTray.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
() C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Dropbox, Inc.) C:\Users\bilek\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Facebook) C:\Users\bilek\AppData\Local\Facebook\Games\FacebookGameroom.exe
(Dropbox, Inc.) C:\Users\bilek\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Dropbox, Inc.) C:\Users\bilek\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Seagate) C:\Program Files (x86)\Seagate\BlackArmorBackup\BlackArmorBackupMonitor.exe
(TappIn) C:\Program Files (x86)\TappIn\TappIn Agent\TappIn.AgentUtility.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\OpenVPN\bin\openvpn-gui-1.0.3.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(The CefSharp Authors) C:\Users\bilek\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPConnectionManager.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(forum.viry.cz) C:\Users\bilek\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2941496 2011-03-18] (Hewlett-Packard Company)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2828072 2011-09-16] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-04] (IDT, Inc.)
HKLM\...\Run: [WheelMouse] => C:\Program Files\Mouse\Amoumain.exe [184320 2008-03-19] ()
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1694016 2012-05-19] ()
HKLM\...\Run: [Seagate Scheduler2 Service] => C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe [395320 2012-10-31] (Seagate)
HKLM\...\Run: [VideoDownloadConverter Home Page Guard 64 bit] => C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe [485960 2014-04-16] ( )
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-02-25] (PDF Complete Inc)
HKLM-x32\...\Run: [Desktop Disc Tool] => C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe [514544 2011-01-12] ()
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [312376 2011-03-22] (Hewlett-Packard Company)
HKLM-x32\...\Run: [File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-26] (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] => c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [HPConnectionManager] => c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [94264 2011-04-05] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPQuickWebProxy] => c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [76344 2011-03-31] (Hewlett-Packard Company)
HKLM-x32\...\Run: [NPSStartup] => [X]
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [309688 2012-10-11] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [BlackArmorBackupMonitor.exe] => C:\Program Files (x86)\Seagate\BlackArmorBackup\BlackArmorBackupMonitor.exe [5547704 2012-10-31] (Seagate)
HKLM-x32\...\Run: [TappInAgentUtility] => C:\Program Files (x86)\TappIn\TappIn Agent\TappIn.AgentUtility.exe [1107456 2013-06-12] (TappIn)
HKLM-x32\...\Run: [VideoDownloadConverter_4z Browser Plugin Loader] => C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbrmon.exe
HKLM-x32\...\Run: [VideoDownloadConverter_4z Browser Plugin Loader 64] => C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbrmon64.exe
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => "C:\Program Files (x86)\Java\jre1.8.0_66\bin\jusched.exe"
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [AutoStartNPSAgent] => C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [102400 2011-12-25] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [966072 2012-10-11] (Samsung)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe [580096 2012-10-09] (Samsung Electronics)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [KiesPDLR] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [842680 2012-10-11] (Samsung)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [842680 2012-10-11] (Samsung)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [Dropbox Update] => C:\Users\bilek\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\Run: [GarminExpressTrayApp] => C:\Users\bilek\Desktop\Garmin\Express Tray\ExpressTray.exe [1421224 2017-05-18] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\MountPoints2: {394afd7e-e931-11e0-8de6-cc52af847777} - D:\Startme.exe
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\...\MountPoints2: {d35e1e75-c292-11e1-8b6f-cc52af847777} - D:\DPFMate.exe
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Users\bilek\Desktop\Garmin\Express Tray\ExpressTray.exe [1421224 2017-05-18] (Garmin Ltd. or its subsidiaries)
AppInit_DLLs: C:\PROGRA~3\Wincert\WIN64C~1.DLL => No File
AppInit_DLLs: c:\progra~2\movies~1\datamngr\x64\mgrldr.dll => No File
AppInit_DLLs-x32: C:\PROGRA~3\Wincert\WIN32C~1.DLL => No File
AppInit_DLLs-x32: c:\progra~2\movies~1\datamngr\mgrldr.dll => No File
IFEO\delta babylon.exe: [Debugger] tasklist.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Akcelerátor spuštění AutoCADu LT.lnk [2016-08-30]
ShortcutTarget: Akcelerátor spuštění AutoCADu LT.lnk -> C:\Program Files (x86)\Common Files\Autodesk Shared\acstart17.exe (Autodesk, Inc)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2011-07-08]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\bilek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2017-09-23]
ShortcutTarget: Dropbox.lnk -> C:\Users\bilek\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\bilek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-03-10]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\bilek\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
Startup: C:\Users\bilek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Outlook 2010.lnk [2011-07-20]
ShortcutTarget: Microsoft Outlook 2010.lnk -> C:\Windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\outicon.exe ()
Startup: C:\Users\bilek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenVPN GUI.lnk [2012-08-24]
ShortcutTarget: OpenVPN GUI.lnk -> C:\Program Files (x86)\OpenVPN\bin\openvpn-gui-1.0.3.exe ()
GroupPolicyScripts\User: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-1350338271-1762688309-1791207727-1118] => Proxy is enabled.
Tcpip\Parameters: [DhcpNameServer] 192.168.1.175 192.168.1.254
Tcpip\..\Interfaces\{736B7E08-D63A-44D3-A1DB-B9BC565D959B}: [DhcpNameServer] 192.168.1.175 192.168.1.254
Tcpip\..\Interfaces\{CD938B5A-EB82-4172-BB10-F05C0E0EE8F3}: [DhcpNameServer] 10.255.255.10 10.255.255.20
Tcpip\..\Interfaces\{CDA921A9-49A4-447D-BBC2-C458BCB84C4E}: [DhcpNameServer] 192.168.1.254

Internet Explorer:
==================
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDF
URLSearchHook: HKU\S-1-5-21-1350338271-1762688309-1791207727-1118 - (No Name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll (Mindspark)
SearchScopes: HKLM -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=1139&systemid=406&v=a11465-124&apn_uid=2119419483264165&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKLM -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=1139&systemid=406&v=a11465-124&apn_uid=2119419483264165&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKLM-x32 -> {cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^HJ^xdm073^YYA^cz&si=pconvIE&ptb=7AB344D3-3B6C-47E6-95A6-985A4E14EFC9&ind=2014041611&n=780bd60b&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKLM-x32 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-1350338271-1762688309-1791207727-1118 -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=1139&systemid=406&v=a11465-124&apn_uid=2119419483264165&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1350338271-1762688309-1791207727-1118 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL =
SearchScopes: HKU\S-1-5-21-1350338271-1762688309-1791207727-1118 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=1139&systemid=406&v=a11465-124&apn_uid=2119419483264165&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1350338271-1762688309-1791207727-1118 -> {C04B7D22-5AEC-4561-8F49-27F6269208F6} URL = hxxp://toolbar.inbox.com/search/dispatcher.aspx?tp=bs&qkw={searchTerms}&tbid=80096&lng=cs
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: SSVHelper Class -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-20] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-20] (Oracle Corporation)
DPF: HKLM-x32 {C3E3BB4F-269C-41A3-9F5F-A360E933CAD3} hxxps://as.photoprintit.com/ips-opdata/activex/ImageUploader6.cab

FireFox:
========
FF ProfilePath: C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default [2017-09-26]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\66pql4cq.default -> Ask Web Search
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\66pql4cq.default -> Ask.com
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\66pql4cq.default -> Google
FF Homepage: Mozilla\Firefox\Profiles\66pql4cq.default -> hxxps://encrypted.google.com
FF Keyword.URL: Mozilla\Firefox\Profiles\66pql4cq.default -> hxxps://www.google.com/search?q={searchTerms}
FF NetworkProxy: Mozilla\Firefox\Profiles\66pql4cq.default -> type", 0
FF Extension: (Ask New Tabs) - C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\Extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5} [2014-03-01] [not signed]
FF Extension: (Java Console) - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA} [2016-01-25] [not signed]
FF Extension: (No Name) - C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\AppGraffiti@AppGraffiti.com [not found]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Ask.xml [2014-03-01]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml [2010-01-01]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-09-13] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-09-13] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-21] ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2011-04-14] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-20] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-20] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @VideoDownloadConverter_4z.com/Plugin -> C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default [2017-09-26]
CHR Extension: (Movies App) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob [2014-09-19]
CHR Extension: (No Name) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-11]
CHR Extension: (No Name) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-11]
CHR Extension: (Adobe Acrobat) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-05-30]
CHR Extension: (Chrome Web Store Payments) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-23]
CHR Extension: (No Name) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-11]
CHR Extension: (Chrome Media Router) - C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-08-11]
CHR HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [aaaaabcbmongicmdegkmmfgdickgnnob] - C:\Users\bilek\AppData\Local\ilividmoviestoolbarha\GC\toolbar.crx <not found>

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [77944 2011-07-21] (Autodesk)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [1002544 2017-06-26] (AVG Technologies CZ, s.r.o.)
R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfwsa.exe [1824184 2017-06-26] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5334424 2017-06-26] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [729040 2017-06-26] (AVG Technologies CZ, s.r.o.)
R2 DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [125440 2016-03-17] (Dassault Systèmes) [File not signed]
R2 Garmin Device Interaction Service; C:\Users\bilek\Desktop\Garmin\Device Interaction Service\GarminService.exe [1093136 2017-05-18] (Garmin Ltd. or its subsidiaries)
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [293944 2011-03-22] (Hewlett-Packard Company)
S3 InforVisualDrillback; C:\Infor\VISUAL Enterprise\VISUAL Manufacturing\http2vm.exe [6971651 2009-10-14] () [File not signed]
S3 Kola; C:\Program Files (x86)\Tinytag\Tinytag Explorer\kola.exe [58960 2008-06-24] (Gemini Data Loggers (UK) Ltd)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-04-07] (Hewlett-Packard) [File not signed]
S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [14848 2011-12-15] () [File not signed]
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-02-25] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-04-07] (Hewlett-Packard) [File not signed]
S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [430592 2008-04-07] (Nokia.) [File not signed]
R2 sfcdpsrv; C:\Program Files (x86)\Common Files\Seagate\CDP\afcdpsrv.exe [3246040 2014-01-27] (Acronis)
R2 TappInAgent; C:\Program Files (x86)\TappIn\TappIn Agent\TappIn.AgentWindowsService.exe [24576 2013-06-12] (TappIn) [File not signed]
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S2 VideoDownloadConverter_4zService; C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbarsvc.exe [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Amfilter; C:\Windows\System32\DRIVERS\Amfltx64.sys [12288 2007-10-15] ((Standard mouse types))
S3 Amusbprt; C:\Windows\System32\DRIVERS\Amusbx64.sys [17920 2008-02-13] (A4Tech Co.,Ltd.)
R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [73992 2016-10-23] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313088 2017-03-23] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [298240 2016-11-30] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [253184 2017-04-11] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.)
R0 Avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
S3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-01] (HTC, Corporation) [File not signed]
R3 johci; C:\Windows\System32\DRIVERS\johci.sys [26712 2011-02-09] (JMicron Technology Corp.)
S3 MosIrUsb; C:\Windows\System32\DRIVERS\MosIrUsb.sys [27648 2007-10-11] ()
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1863720 2012-06-01] ()
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-09-26 08:26 - 2017-09-26 08:27 - 000029269 _____ C:\Users\bilek\Desktop\FRST.txt
2017-09-26 08:26 - 2017-09-26 08:26 - 000000000 ____D C:\FRST
2017-09-26 08:24 - 2017-09-26 08:25 - 000000000 ____D C:\Users\bilek\Desktop\frst
2017-09-26 08:24 - 2017-09-26 08:16 - 000112640 _____ (forum.viry.cz) C:\Users\bilek\Desktop\FRSTLauncher.exe
2017-09-26 08:24 - 2017-09-26 08:15 - 002399744 _____ (Farbar) C:\Users\bilek\Desktop\FRST64.exe
2017-09-26 08:23 - 2017-09-26 08:23 - 002675277 _____ C:\Users\bilek\Desktop\frst.rar
2017-09-26 08:08 - 2017-09-26 08:10 - 000000000 ____D C:\AdwCleaner
2017-09-26 08:08 - 2017-09-26 08:08 - 008182736 _____ (Malwarebytes) C:\Users\bilek\Downloads\adwcleaner_7.0.2.1.exe
2017-09-23 10:11 - 2017-09-23 10:11 - 000000000 ____D C:\Users\bilek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-09-20 19:53 - 2017-09-20 19:53 - 000205620 _____ C:\Users\bilek\Desktop\tickets.pdf
2017-09-13 06:43 - 2017-08-19 17:28 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2017-09-13 06:43 - 2017-08-19 17:10 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2017-09-13 06:43 - 2017-08-16 17:29 - 000806912 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2017-09-13 06:43 - 2017-08-16 17:10 - 000629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2017-09-13 06:43 - 2017-08-16 16:57 - 003224576 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-09-13 06:43 - 2017-08-16 03:10 - 000395976 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-09-13 06:43 - 2017-08-16 02:25 - 000347336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-09-13 06:43 - 2017-08-15 17:29 - 014182400 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-09-13 06:43 - 2017-08-15 17:29 - 001867264 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2017-09-13 06:43 - 2017-08-15 17:10 - 012880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-09-13 06:43 - 2017-08-15 17:10 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-09-13 06:43 - 2017-08-15 16:06 - 015260160 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-09-13 06:43 - 2017-08-15 16:01 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-09-13 06:43 - 2017-08-15 16:01 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-09-13 06:43 - 2017-08-15 16:01 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-09-13 06:43 - 2017-08-15 15:58 - 013673984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 003203584 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 002150912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 000303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
2017-09-13 06:43 - 2017-08-14 19:35 - 000128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll
2017-09-13 06:43 - 2017-08-14 19:34 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2017-09-13 06:43 - 2017-08-13 23:37 - 002144256 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2017-09-13 06:43 - 2017-08-13 23:30 - 001401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2017-09-13 06:43 - 2017-08-13 20:58 - 025730560 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-09-13 06:43 - 2017-08-13 19:24 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-09-13 06:43 - 2017-08-13 19:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-09-13 06:43 - 2017-08-13 19:06 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-09-13 06:43 - 2017-08-13 19:05 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-09-13 06:43 - 2017-08-13 19:05 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-09-13 06:43 - 2017-08-13 19:05 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-09-13 06:43 - 2017-08-13 19:05 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-09-13 06:43 - 2017-08-13 19:04 - 002899968 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-09-13 06:43 - 2017-08-13 18:56 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-09-13 06:43 - 2017-08-13 18:55 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-09-13 06:43 - 2017-08-13 18:54 - 020269056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-09-13 06:43 - 2017-08-13 18:52 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-09-13 06:43 - 2017-08-13 18:51 - 005981696 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-09-13 06:43 - 2017-08-13 18:51 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-09-13 06:43 - 2017-08-13 18:51 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-09-13 06:43 - 2017-08-13 18:50 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-09-13 06:43 - 2017-08-13 18:50 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-09-13 06:43 - 2017-08-13 18:46 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-09-13 06:43 - 2017-08-13 18:41 - 000968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-09-13 06:43 - 2017-08-13 18:38 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-09-13 06:43 - 2017-08-13 18:30 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-09-13 06:43 - 2017-08-13 18:29 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-09-13 06:43 - 2017-08-13 18:29 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-09-13 06:43 - 2017-08-13 18:29 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-09-13 06:43 - 2017-08-13 18:29 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-09-13 06:43 - 2017-08-13 18:29 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-09-13 06:43 - 2017-08-13 18:28 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-09-13 06:43 - 2017-08-13 18:27 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-09-13 06:43 - 2017-08-13 18:24 - 002291200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-09-13 06:43 - 2017-08-13 18:24 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-09-13 06:43 - 2017-08-13 18:23 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-09-13 06:43 - 2017-08-13 18:22 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-09-13 06:43 - 2017-08-13 18:21 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-09-13 06:43 - 2017-08-13 18:20 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-09-13 06:43 - 2017-08-13 18:19 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-09-13 06:43 - 2017-08-13 18:18 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-09-13 06:43 - 2017-08-13 18:17 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-09-13 06:43 - 2017-08-13 18:17 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-09-13 06:43 - 2017-08-13 18:17 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-09-13 06:43 - 2017-08-13 18:07 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-09-13 06:43 - 2017-08-13 18:04 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-09-13 06:43 - 2017-08-13 18:04 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-09-13 06:43 - 2017-08-13 18:02 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-09-13 06:43 - 2017-08-13 18:01 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-09-13 06:43 - 2017-08-13 18:01 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2017-09-13 06:43 - 2017-08-13 18:01 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-09-13 06:43 - 2017-08-13 18:00 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-09-13 06:43 - 2017-08-13 17:57 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-09-13 06:43 - 2017-08-13 17:53 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-09-13 06:43 - 2017-08-13 17:48 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-09-13 06:43 - 2017-08-13 17:46 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-09-13 06:43 - 2017-08-13 17:44 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-09-13 06:43 - 2017-08-13 17:43 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-09-13 06:43 - 2017-08-13 17:43 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-09-13 06:43 - 2017-08-13 17:40 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-09-13 06:43 - 2017-08-13 17:27 - 001544704 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-09-13 06:43 - 2017-08-13 17:18 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-09-13 06:43 - 2017-08-13 17:17 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-09-13 06:43 - 2017-08-13 17:14 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-09-13 06:43 - 2017-08-13 17:13 - 001314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-09-13 06:43 - 2017-08-11 08:42 - 000631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-09-13 06:43 - 2017-08-11 08:38 - 005547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-09-13 06:43 - 2017-08-11 08:38 - 000706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-09-13 06:43 - 2017-08-11 08:38 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-09-13 06:43 - 2017-08-11 08:38 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-09-13 06:43 - 2017-08-11 08:36 - 001732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 002065408 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 001212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000757248 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-09-13 06:43 - 2017-08-11 08:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 001460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:24 - 004001000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-09-13 06:43 - 2017-08-11 08:24 - 003945704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-09-13 06:43 - 2017-08-11 08:21 - 001314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-09-13 06:43 - 2017-08-11 08:20 - 000071680 _____ C:\Windows\system32\PrintBrmUi.exe
2017-09-13 06:43 - 2017-08-11 08:20 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2017-09-13 06:43 - 2017-08-11 08:20 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2017-09-13 06:43 - 2017-08-11 08:19 - 001417728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000299008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 08:12 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2017-09-13 06:43 - 2017-08-11 08:09 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2017-09-13 06:43 - 2017-08-11 08:07 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-09-13 06:43 - 2017-08-11 08:07 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-09-13 06:43 - 2017-08-11 08:07 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-09-13 06:43 - 2017-08-11 08:06 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-09-13 06:43 - 2017-08-11 08:03 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-09-13 06:43 - 2017-08-11 08:03 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2017-09-13 06:43 - 2017-08-11 08:02 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-09-13 06:43 - 2017-08-11 08:01 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2017-09-13 06:43 - 2017-08-11 08:00 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2017-09-13 06:43 - 2017-08-11 08:00 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-09-13 06:43 - 2017-08-11 08:00 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-09-13 06:43 - 2017-08-11 07:59 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-09-13 06:43 - 2017-08-11 07:59 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-09-13 06:43 - 2017-08-11 07:59 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-09-13 06:43 - 2017-08-11 07:59 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-09-13 06:43 - 2017-08-11 07:59 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-09-13 06:43 - 2017-08-11 07:58 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-09-13 06:43 - 2017-08-11 07:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-09-13 06:43 - 2017-08-11 07:58 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2017-09-13 06:43 - 2017-08-11 07:56 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-09-13 06:43 - 2017-08-11 07:56 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-09-13 06:43 - 2017-08-11 07:56 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-09-13 06:43 - 2017-08-11 07:56 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-09-13 06:43 - 2017-08-11 07:55 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-09-13 06:43 - 2017-08-11 07:55 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 07:55 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 07:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-09-13 06:43 - 2017-08-11 07:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-09-13 06:43 - 2017-07-07 17:29 - 001143296 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2017-09-13 06:43 - 2017-07-07 17:10 - 000973312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
2017-09-08 10:01 - 2017-09-08 10:02 - 000881904 _____ (Plumbytes Software) C:\Users\bilek\Downloads\antimalwaresetup.exe
2017-09-07 13:41 - 2017-09-07 13:41 - 000071821 _____ C:\Users\bilek\Documents\VypocBox070917.xlsx
2017-09-07 07:54 - 2017-09-07 07:54 - 024318080 _____ C:\Users\bilek\Downloads\PD klimatizace prodejny.zip
2017-08-28 15:32 - 2017-09-25 09:52 - 000000000 ____D C:\Users\bilek\Documents\Solnice
2017-08-28 08:13 - 2017-08-28 08:13 - 000000498 _____ C:\Users\bilek\Downloads\progressReport.csv

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-09-26 08:19 - 2009-07-14 06:45 - 000025648 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-09-26 08:19 - 2009-07-14 06:45 - 000025648 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-09-26 08:15 - 2011-04-30 21:34 - 000674200 _____ C:\Windows\system32\perfh005.dat
2017-09-26 08:15 - 2011-04-30 21:34 - 000143716 _____ C:\Windows\system32\perfc005.dat
2017-09-26 08:15 - 2009-07-14 07:13 - 001593302 _____ C:\Windows\system32\PerfStringBackup.INI
2017-09-26 08:15 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2017-09-26 08:13 - 2011-07-21 15:06 - 000000000 ____D C:\Users\bilek\Documents\Soubory aplikace Outlook
2017-09-26 08:11 - 2011-07-20 10:29 - 000000112 _____ C:\Windows\system32\config\netlogon.ftl
2017-09-26 08:11 - 2011-04-30 21:32 - 000000000 ____D C:\ProgramData\PDFC
2017-09-26 08:11 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-09-26 08:04 - 2015-06-19 06:35 - 000000918 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1350338271-1762688309-1791207727-1118UA.job
2017-09-26 06:35 - 2011-07-21 15:20 - 000000000 ____D C:\ProgramData\MFAData
2017-09-26 06:32 - 2016-09-20 13:01 - 000003602 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2017-09-25 14:04 - 2015-06-19 06:35 - 000000866 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1350338271-1762688309-1791207727-1118Core.job
2017-09-25 13:09 - 2013-02-28 16:35 - 000000109 _____ C:\Windows\cdlli40.INI
2017-09-25 10:58 - 2016-03-08 11:50 - 000394752 _____ C:\Users\bilek\Desktop\Docházka_12_v3.xls
2017-09-25 06:42 - 2011-04-30 21:41 - 000000000 ____D C:\ProgramData\Sonic
2017-09-23 10:11 - 2012-09-03 15:56 - 000000000 ____D C:\Users\bilek\AppData\Roaming\Dropbox
2017-09-20 08:11 - 2011-07-21 14:51 - 000000000 ____D C:\Users\bilek\Desktop\Protokoly
2017-09-14 21:26 - 2016-05-31 10:28 - 000000000 ____D C:\Users\bilek\Solnice
2017-09-14 11:26 - 2011-07-18 09:42 - 000000000 ____D C:\Windows\rescache
2017-09-14 07:56 - 2011-07-20 12:50 - 000000000 ___RD C:\Users\bilek\Virtual Machines
2017-09-14 07:54 - 2009-07-14 06:45 - 000623904 _____ C:\Windows\system32\FNTCACHE.DAT
2017-09-13 17:03 - 2013-07-14 22:07 - 000000000 ____D C:\Windows\system32\MRT
2017-09-13 16:53 - 2011-07-18 10:15 - 138202976 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-09-13 16:53 - 2009-07-14 04:34 - 000000478 _____ C:\Windows\win.ini
2017-09-13 16:49 - 2011-04-30 21:02 - 001572684 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-09-13 06:43 - 2012-05-04 06:34 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-09-13 06:43 - 2012-05-04 06:34 - 000004396 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-09-13 06:43 - 2012-02-21 18:16 - 000000000 ____D C:\Windows\system32\Macromed
2017-09-13 06:43 - 2011-04-30 21:33 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-09-13 06:43 - 2011-04-30 21:33 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2017-09-08 11:56 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2017-09-08 09:42 - 2011-07-22 19:07 - 000000000 ____D C:\Users\bilek\AppData\Local\ElevatedDiagnostics
2017-09-07 11:59 - 2011-07-22 11:38 - 000000000 ____D C:\Users\bilek\Documents\ivestice Prováděcí
2017-09-01 21:46 - 2017-05-26 14:56 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-08-29 06:38 - 2012-08-30 06:41 - 000002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-08-29 06:38 - 2012-08-30 06:41 - 000002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk

==================== Files in the root of some directories =======

2012-08-22 14:07 - 2012-08-22 14:10 - 000037097 _____ () C:\Users\bilek\AppData\Roaming\Hodnoty oddělené čárkami (Windows).ADR
2014-04-18 20:08 - 2016-03-31 12:37 - 000005105 _____ () C:\Users\bilek\AppData\Roaming\SINOP79.MTBF.txt
2014-04-18 20:08 - 2015-06-07 22:36 - 000000778 _____ () C:\Users\bilek\AppData\Roaming\__AvidCloudManager.log
2014-04-18 20:08 - 2015-06-07 21:25 - 000000878 _____ () C:\Users\bilek\AppData\Roaming\__AvidCloudManagerPrevious.log
2012-08-22 15:26 - 2016-03-18 21:58 - 000005632 _____ () C:\Users\bilek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-09-13 12:06 - 2016-09-13 12:06 - 000007605 _____ () C:\Users\bilek\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
2016-01-17 19:47 - 2015-12-08 08:23 - 000091048 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_081534689778.exe
2016-02-28 12:23 - 2016-01-12 17:23 - 000179624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_081648486203.exe
2016-06-24 12:57 - 2016-05-18 13:03 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_081722760521.exe
2016-05-15 23:01 - 2016-04-14 17:29 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_081892674848.exe
2016-08-22 14:35 - 2016-07-20 14:01 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_082061517692.exe
2016-07-28 14:00 - 2016-06-21 18:49 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_08359990161.exe
2016-05-05 06:18 - 2016-02-18 13:09 - 000179624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_08734859955.exe
2015-11-28 14:04 - 2015-09-22 14:13 - 000091048 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_08747609313.exe
2016-06-03 18:41 - 2016-04-22 10:01 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\bilek\AppData\Local\Temp\avguirn_08981455676.exe
2015-12-11 07:25 - 2015-12-11 07:25 - 000071168 _____ () C:\Users\bilek\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpfvwu7k.dll
2017-05-20 21:10 - 2017-05-20 21:10 - 050762208 _____ (Garmin Ltd or its subsidiaries) C:\Users\bilek\AppData\Local\Temp\GarminExpressInstaller.exe
2016-02-11 14:19 - 2010-10-26 15:55 - 000247120 _____ (Pinnacle Systems, Inc.) C:\Users\bilek\AppData\Local\Temp\Welcome.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-09-20 11:17

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:465.66 GB) (Free:23.74 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive i: (DATA_FIRMA) (Network) (Total:300 GB) (Free:132.89 GB) NTFS
Drive k: (DATA_01_2) (Network) (Total:400 GB) (Free:122.64 GB) NTFS
Drive q: (DATA_03) (Network) (Total:199.87 GB) (Free:114.47 GB) NTFS
Drive r: (DATA_01_4) (Network) (Total:1000 GB) (Free:298.34 GB) NTFS
Drive s: (DATA_01_1) (Network) (Total:999.87 GB) (Free:626.93 GB) NTFS
Drive u: (USER_DISKY) (Network) (Total:5999.87 GB) (Free:1860.94 GB) NTFS
Drive z: (Offline) (Network) (Total:465.66 GB) (Free:23.74 GB) CSC-CACHE

Available physical RAM: 9047.53 MB
Total physical RAM: 12238.36 MB
Percentage of memory in use: 26%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 465.8 GB) (Disk ID: FB70D2F1)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1350338271-1762688309-1791207727-1118Core.job => C:\Users\bilek\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1350338271-1762688309-1791207727-1118UA.job => C:\Users\bilek\AppData\Local\Dropbox\Update\DropboxUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\TEMP:054203E4 [130]
AlternateDataStreams: C:\Users\bilek\Desktop\01_SINOP_představení_firmy_CZ_1.pptx:com.dropbox.attributes [168]

==================== Security Center ==================

AV: AVG AntiVirus Business Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Business Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG AntiVirus Business Edition (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\bilek\Desktop" je 143493 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\aspen.exe"="C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\aspen.exe:*:Enabled:Tinytag Explorer"
"C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\kola.exe"="C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\kola.exe:*:Enabled:Tinytag Explorer Radio Gateway"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\aspen.exe"="C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\aspen.exe:*:Enabled:Tinytag Explorer"
"C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\kola.exe"="C:\\Program Files (x86)\\Tinytag\\Tinytag Explorer\\kola.exe:*:Enabled:Tinytag Explorer Radio Gateway"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#2 Příspěvek od JaRon »

ahoj,
1. Velikost slozky "C:\Users\bilek\Desktop" je 143493 MB. - vycisti plochu,
max 500MB :!:
2, vloz log z ADWCleanera
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

Re: ASK Toolbar

#3 Příspěvek od stoker303 »

vyčištění plochy bude trvat malinko déle, ale provedu ;)

LOG z adwcleaneru:

# AdwCleaner 7.0.2.1 - Logfile created on Tue Sep 26 06:09:56 2017
# Updated on 2017/29/08 by Malwarebytes
# Database: 09-23-2017.2
# Running on Windows 7 Professional (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

PUP.Optional.Legacy, C:\Program Files (x86)\movies toolbar
PUP.Optional.Legacy, C:\Program Files (x86)\GreenTree Applications
PUP.Optional.Legacy, C:\Users\bilek\AppData\Local\torch
PUP.Optional.Legacy, C:\ProgramData\wincert
PUP.Optional.Legacy, C:\ProgramData\Application Data\wincert
PUP.Optional.Legacy, C:\Users\All Users\wincert
PUP.Optional.Legacy, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
PUP.Optional.Legacy, C:\Program Files (x86)\myfree codec
PUP.Optional.Legacy, C:\Program Files (x86)\Movies Toolbar
PUP.Optional.Legacy, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
PUP.Optional.Legacy, C:\ProgramData\ytd video downloader
PUP.Optional.Legacy, C:\ProgramData\Application Data\ytd video downloader
PUP.Optional.Legacy, C:\Users\All Users\ytd video downloader
PUP.Optional.Legacy, C:\Program Files (x86)\VideoDownloadConverter_4z
PUP.Optional.Legacy, C:\Users\bilek\AppData\Local\VideoDownloadConverter_4z
PUP.Optional.Legacy, C:\Users\bilek\AppData\LocalLow\VideoDownloadConverter_4z
PUP.Optional.Plumbytes, C:\Program Files\Plumbytes Software
PUP.Optional.ThreatSupport, C:\Users\bilek\AppData\Local\{12A8CCFE-3C33-4995-BAD8-074E4C5B22FD}
PUP.Optional.Datamngr.A, C:\Users\bilek\AppData\Local\ilividmoviestoolbarha
PUP.Optional.Datamngr.A, C:\Users\bilek\AppData\LocalLow\ilividmoviestoolbarha
PUP.Optional.BitGuard, C:\ProgramData\BitGuard
PUP.Optional.BitGuard, C:\ProgramData\Application Data\BitGuard
PUP.Optional.BitGuard, C:\Users\All Users\BitGuard
Trojan.Agent, C:\Users\bilek\AppData\Local\iac
PUP.Optional.AppGraffiti, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AppGraffiti
PUP.Optional.AppGraffiti, C:\Program Files (x86)\AppGraffiti
PUP.Optional.AppGraffiti, C:\Users\bilek\AppData\LocalLow\AppGraffiti
PUP.Optional.InstallBrain, C:\ProgramData\Browser Manager
PUP.Optional.InstallBrain, C:\ProgramData\Application Data\Browser Manager
PUP.Optional.InstallBrain, C:\Users\All Users\Browser Manager
PUP.Optional.BrowserProtect, C:\ProgramData\BrowserProtect
PUP.Optional.BrowserProtect, C:\ProgramData\Application Data\BrowserProtect
PUP.Optional.BrowserProtect, C:\Users\All Users\BrowserProtect
PUP.Adware.Heuristic, C:\Program Files (x86)\VideoDownloadConverter_4z
PUP.Adware.Heuristic, C:\Users\bilek\AppData\Local\VideoDownloadConverter_4z


***** [ Files ] *****

PUP.Optional.Legacy, C:\Users\All Users\Desktop\YTD Video Downloader.lnk
PUP.Optional.Legacy, C:\Users\Public\Desktop\YTD Video Downloader.lnk
PUP.Optional.Legacy, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\searchplugins\ask-web-search.xml
PUP.Optional.Legacy, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\searchplugins\Ask.xml


***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.Legacy, [Data] - HKCU\Software\Microsoft\Internet Explorer\Main | Search Bar [http:\\toolbar.inbox.com\search\dispatcher.aspx?tp=aus&qkw=%s&tbid=%tb_id&%language]
PUP.Optional.Legacy, [Data] - HKCU\Software\Microsoft\Internet Explorer\Main | Search Bar [http:\\toolbar.inbox.com\search\dispatcher.aspx?tp=aus&qkw=%s&tbid=%tb_id&%language]
PUP.Optional.Legacy, [Data] - HKCU\Software\Microsoft\Internet Explorer\Main | IE10RunOnceCompletionTime [졷佀ǎ:\\toolbar.inbox.com\search\dispatcher.aspx?tp=aus&qkw=%s&tbid=%tb_id&%language]
PUP.Optional.Legacy, [Data] - HKCU\Software\Microsoft\Internet Explorer\Main | IE10RunOnceCompletionTime [졷佀ǎ:\\toolbar.inbox.com\search\dispatcher.aspx?tp=aus&qkw=%s&tbid=%tb_id&%language]
PUP.Optional.Legacy, [Data] - HKCU\Software\Microsoft\Internet Explorer\Main | IE10TourShownTime [眓芰ǎ:\\toolbar.inbox.com\search\dispatcher.aspx?tp=aus&qkw=%s&tbid=%tb_id&%language]
PUP.Optional.Legacy, [Data] - HKCU\Software\Microsoft\Internet Explorer\Main | IE10TourShownTime [眓芰ǎ:\\toolbar.inbox.com\search\dispatcher.aspx?tp=aus&qkw=%s&tbid=%tb_id&%language]
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Myfree Codec
PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\Myfree Codec
PUP.Optional.Legacy, [Key] - HKCU\Software\Myfree Codec
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbarhaIE
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}_is1
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\CToolbar
PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\CToolbar
PUP.Optional.Legacy, [Key] - HKCU\Software\CToolbar
PUP.Optional.Legacy, [Key] - HKU\.DEFAULT\Software\IGearSettings
PUP.Optional.Legacy, [Key] - HKU\S-1-5-18\Software\IGearSettings
PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\ilivid
PUP.Optional.Legacy, [Key] - HKCU\Software\ilivid
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\torch
PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\torch
PUP.Optional.Legacy, [Key] - HKCU\Software\torch
PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
PUP.Optional.Legacy, [Value] - HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser | {D7E97865-918F-41E4-9CD0-25AB1C574CE8}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
PUP.Optional.Legacy, [Value] - HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks | {D3D233D5-9F6D-436C-B6C7-E63F77503B30}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar | {48586425-6BB7-4F51-8DC6-38C88E3EBB58}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
PUP.Optional.Legacy, [Value] - HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser | {48586425-6BB7-4F51-8DC6-38C88E3EBB58}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{38122A36-83B2-46B8-B39A-EC72A4614A07}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{022C9F90-2E96-47D6-A971-107650154563}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B6}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{192F487E-E812-40C0-B0DE-CB4BFA20F37B}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar | {3D86A75B-CB6B-4764-885D-CA6336F04BA2}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{4128C64D-F0DD-4811-9405-D22294E8151F}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{A86782D8-7B41-452F-A217-1854F72DBA54}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A86782D8-7B41-452F-A217-1854F72DBA54}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A86782D8-7B41-452F-A217-1854F72DBA54}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{CC99A798-FD3D-4AB4-969E-6071612524F9}
PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{DB02BC6B-B0F0-4074-99E6-884B70FCB6AE}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECCA77AD-EF06-4650-B6FC-7A0E90687EB4}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
PUP.Optional.Legacy, [Value] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\Microsoft\Windows\CurrentVersion\Run | iLivid
PUP.Optional.Legacy, [Value] - HKCU\Software\Microsoft\Windows\CurrentVersion\Run | iLivid
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls | x64
PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls | x86
PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls | x64
PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls | x86
PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls | x64
PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls | x86
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Clients\StartMenuInternet\Torch
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Classes\.torrent | iLivid.torrent_backup
PUP.Optional.Plumbytes, [Key] - HKLM\SOFTWARE\Plumbytes Software
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Classes\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
PUP.Optional.MindSpark.A, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
PUP.Optional.MindSpark.A, [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Classes\CLSID\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Classes\Interface\{66D59105-FE06-43A4-B292-EB0097E9EB74}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66D59105-FE06-43A4-B292-EB0097E9EB74}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8AADC8B2-562B-407B-88B3-916140226CBC}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Classes\Interface\{9103C314-C4E2-4463-8934-B19BCB46236D}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9103C314-C4E2-4463-8934-B19BCB46236D}
PUP.Optional.MindSpark.A, [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97CEF41C-5055-474A-855A-892D4FE3E596}
PUP.Optional.ASK.Gen, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\APN DTX
PUP.Optional.ASK.Gen, [Key] - HKCU\Software\APN DTX
PUP.Optional.Ilivid, [Value] - HKCU\Software\Classes\.torrent | iLivid.torrent_backup
PUP.Optional.DataMngr.AppFlsh, [Key] - HKLM\SOFTWARE\DataMngr
PUP.Optional.DataMngr.AppFlsh, [Key] - HKU\.DEFAULT\Software\DataMngr
PUP.Optional.DataMngr.AppFlsh, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\DataMngr
PUP.Optional.DataMngr.AppFlsh, [Key] - HKU\S-1-5-18\Software\DataMngr
PUP.Optional.DataMngr.AppFlsh, [Key] - HKCU\Software\DataMngr
PUP.Optional.AppGraffiti, [Key] - HKLM\SOFTWARE\AppGraffiti
PUP.Optional.AppGraffiti, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\AppGraffiti
PUP.Optional.AppGraffiti, [Key] - HKCU\Software\AppGraffiti
PUP.Optional.MoviesToolBar.AppFlsh, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {13761FB3-91B4-4FE0-B352-5CC7B5B9E257}
PUP.Optional.MoviesToolBar.AppFlsh, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {03021EBE-C3F0-4395-8C97-24FE7B6DC4B4}
PUP.Optional.MoviesToolBar.AppFlsh, [Key] - HKLM\SOFTWARE\Datamngr
PUP.Optional.MoviesToolBar.AppFlsh, [Key] - HKU\.DEFAULT\Software\Datamngr
PUP.Optional.MoviesToolBar.AppFlsh, [Key] - HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\Software\Datamngr
PUP.Optional.MoviesToolBar.AppFlsh, [Key] - HKU\S-1-5-18\Software\Datamngr
PUP.Optional.MoviesToolBar.AppFlsh, [Key] - HKCU\Software\Datamngr
PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\Applications\iLividSetup-r1139-n-bi.exe


***** [ Firefox (and derivatives) ] *****

PUP.Optional.Legacy, SearchProvider found: http://search.tb.ask.com/search/GGmain. ... earchTerms} - Ask Web Search
PUP.Optional.Legacy, SearchProvider found: http://www.slunecnice.cz/vyhledavani/ - Slunečnice
PUP.Optional.Legacy, Startpage found: http://home.tb.ask.com/index.jhtml?ptb= ... si=pconvIE
PUP.Optional.AppGraffiti, Plugin found: AppGraffiti -
PUP.Optional.MindSpark, Plugin found: VideoDownloadConverter - Mindspark


***** [ Chromium (and derivatives) ] *****

PUP.Optional.MoviesToolBar, Plugin found: Movies App -

/!\ Please Reset the Chrome Synchronization before cleaning the Chrome Preferences: https://support.google.com/chrome/answer/3097271


*************************



########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#4 Příspěvek od JaRon »

a nechal si vsetko najdene odstranit :???: ak nie, urob tak
ak ano, zopakuj kontrolu, v logu si este nejake pozostatky
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

Re: ASK Toolbar

#5 Příspěvek od stoker303 »

Provedl jsem druhý scan a odstranění zbylé havěti tady LOG:

# AdwCleaner 7.0.2.1 - Logfile created on Tue Sep 26 09:35:23 2017
# Updated on 2017/29/08 by Malwarebytes
# Running on Windows 7 Professional (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

Deleted: C:\Program Files (x86)\VideoDownloadConverter_4z
Deleted: C:\Program Files (x86)\VideoDownloadConverter_4z


***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks deleted.

***** [ Registry ] *****

Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{022C9F90-2E96-47D6-A971-107650154563}
Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{66D59105-FE06-43A4-B292-EB0097E9EB74}
Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{9103C314-C4E2-4463-8934-B19BCB46236D}


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries deleted.

***** [ Chromium (and derivatives) ] *****

Plugin deleted: Movies App -


*************************

::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0



*************************

C:/AdwCleaner/AdwCleaner[C0].txt - [18588 B] - [2017/9/26 6:10:26]
C:/AdwCleaner/AdwCleaner[S0].txt - [21304 B] - [2017/9/26 6:9:57]
C:/AdwCleaner/AdwCleaner[S1].txt - [2044 B] - [2017/9/26 9:35:7]


########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt ##########

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#6 Příspěvek od JaRon »

OK, teraz vloz aktualny log FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

Re: ASK Toolbar

#7 Příspěvek od stoker303 »

LOG, stale se tam nejaka havet objevuje. Momentalne hlasi 2 problemy (2 elements)..

# AdwCleaner 7.0.2.1 - Logfile created on Wed Sep 27 06:46:00 2017
# Updated on 2017/29/08 by Malwarebytes
# Database: 08-29-2017.2
# Running on Windows 7 Professional (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

Adware.pokki, [Value] - HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\TBDEn | SBOEM2


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries.

***** [ Chromium (and derivatives) ] *****

PUP.Optional.MoviesToolBar, Plugin found: Movies App -

/!\ Please Reset the Chrome Synchronization before cleaning the Chrome Preferences: https://support.google.com/chrome/answer/3097271


*************************

C:/AdwCleaner/AdwCleaner[C0].txt - [18588 B] - [2017/9/26 6:10:26]
C:/AdwCleaner/AdwCleaner[C1].txt - [1935 B] - [2017/9/26 9:35:23]
C:/AdwCleaner/AdwCleaner[C2].txt - [1488 B] - [2017/9/26 9:41:35]
C:/AdwCleaner/AdwCleaner[S0].txt - [21304 B] - [2017/9/26 6:9:57]
C:/AdwCleaner/AdwCleaner[S1].txt - [2044 B] - [2017/9/26 9:35:7]
C:/AdwCleaner/AdwCleaner[S2].txt - [1500 B] - [2017/9/26 9:41:21]
C:/AdwCleaner/AdwCleaner[S3].txt - [1518 B] - [2017/9/26 9:45:28]


########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt ##########

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#8 Příspěvek od JaRon »

toto je uz cosi ine, prescanuj PC s MBAM - log sem :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

Re: ASK Toolbar

#9 Příspěvek od stoker303 »

MBM ;)

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 27.09.17
Čas skenování: 9:40
Logovací soubor: 24ba7ca2-a357-11e7-a43d-00ffcda921a9.json
Správce: Ano

-Informace o softwaru-
Verze: 3.2.2.2029
Verze komponentů: 1.0.188
Aktualizovat verzi balíku komponent: 1.0.2896
Licence: Zkušební

-Systémová informace-
OS: Windows 7 Service Pack 1
CPU: x64
Systém souborů: NTFS
Uživatel: System

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 420952
Zjištěné hrozby: 195
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 6 min, 37 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 27
PUP.Optional.Bandoo.AppFlsh, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}, Žádná uživatelská akce, [8963], [253596],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}, Žádná uživatelská akce, [8963], [253596],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}, Žádná uživatelská akce, [8963], [253596],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}, Žádná uživatelská akce, [521], [245525],1.0.2896
PUP.Optional.MoviesToolBar, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\aaaaabcbmongicmdegkmmfgdickgnnob, Žádná uživatelská akce, [6608], [240928],1.0.2896
PUP.Optional.ASK, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2FA28606-DE77-4029-AF96-B231E3B8F827}, Žádná uživatelská akce, [521], [184157],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2FA28606-DE77-4029-AF96-B231E3B8F827}, Žádná uživatelská akce, [521], [184157],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2fa28606-de77-4029-af96-b231e3b8f827}, Žádná uživatelská akce, [521], [184157],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@VideoDownloadConverter_4z.com/Plugin, Žádná uživatelská akce, [259], [240769],1.0.2896
PUP.Optional.SearchQu, HKLM\SOFTWARE\CLASSES\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}, Žádná uživatelská akce, [9796], [228193],1.0.2896
PUP.Optional.SearchQu, HKLM\SOFTWARE\CLASSES\SearchQUIEHelper.DNSGuard.1, Žádná uživatelská akce, [9796], [228193],1.0.2896
PUP.Optional.SearchQu, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}, Žádná uživatelská akce, [9796], [228193],1.0.2896
PUP.Optional.SearchQu, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}, Žádná uživatelská akce, [9796], [228193],1.0.2896
PUP.Optional.SearchQu, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}, Žádná uživatelská akce, [9796], [228193],1.0.2896
PUP.Optional.SearchQu, HKLM\SOFTWARE\CLASSES\SearchQUIEHelper.DNSGuard, Žádná uživatelská akce, [9796], [228193],1.0.2896
PUP.Optional.MindSpark, HKU\S-1-5-21-1578704170-675206492-3537064096-1002\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, Žádná uživatelská akce, [259], [240533],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{109C8328-247D-4DD7-AC16-D25E80C483E5}, Žádná uživatelská akce, [8963], [253595],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{d375ee64-f893-498a-a0e9-0e9829c88c3d}, Žádná uživatelská akce, [259], [240755],1.0.2896
PUP.Optional.MoviesToolBar, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\ilividmoviestoolbarha, Žádná uživatelská akce, [6608], [240925],1.0.2896
PUP.Optional.MindSpark, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\VideoDownloadConverter_4z, Žádná uživatelská akce, [259], [240671],1.0.2896
PUP.Optional.MindSpark, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, Žádná uživatelská akce, [259], [240533],1.0.2896
PUP.Optional.IFEO, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\DELTA BABYLON.EXE, Žádná uživatelská akce, [9016], [239294],1.0.2896
PUP.Optional.Plumbytes, HKLM\SOFTWARE\MICROSOFT\TRACING\Plumbytes_RASAPI32, Žádná uživatelská akce, [8216], [396951],1.0.2896
PUP.Optional.Plumbytes, HKLM\SOFTWARE\MICROSOFT\TRACING\Plumbytes_RASMANCS, Žádná uživatelská akce, [8216], [396951],1.0.2896
PUP.Optional.IFEO, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\DELTA BABYLON.EXE, Žádná uživatelská akce, [9016], [239294],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\VideoDownloadConverter_4z, Žádná uživatelská akce, [259], [240819],1.0.2896
PUP.Optional.MindSpark, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\VideoDownloadConverter_4zService, Žádná uživatelská akce, [259], [240828],1.0.2896

Hodnota v registru: 24
PUP.Optional.DataMngr.AppFlsh, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, Žádná uživatelská akce, [9056], [-1],0.0.0
PUP.Optional.DataMngr.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, Žádná uživatelská akce, [9056], [-1],0.0.0
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|FAVICONPATH, Žádná uživatelská akce, [8963], [253596],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|URL, Žádná uživatelská akce, [8963], [253586],1.0.2896
PUP.Optional.ASK, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|SUGGESTIONSURL_JSON, Žádná uživatelská akce, [521], [258454],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|FAVICONPATH, Žádná uživatelská akce, [8963], [253596],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}|DISPLAYNAME, Žádná uživatelská akce, [521], [245525],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}|URL, Žádná uživatelská akce, [521], [245524],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKU\S-1-5-21-1350338271-1762688309-1791207727-1118\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|FAVICONPATH, Žádná uživatelská akce, [8963], [253584],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2fa28606-de77-4029-af96-b231e3b8f827}|URL, Žádná uživatelská akce, [521], [184157],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|URL, Žádná uživatelská akce, [8963], [253598],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|SUGGESTIONSURL_JSON, Žádná uživatelská akce, [521], [258455],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\aaaaabcbmongicmdegkmmfgdickgnnob|PATH, Žádná uživatelská akce, [8963], [253587],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{109C8328-247D-4DD7-AC16-D25E80C483E5}|APPPATH, Žádná uživatelská akce, [8963], [253595],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{d375ee64-f893-498a-a0e9-0e9829c88c3d}|APPPATH, Žádná uživatelská akce, [259], [240755],1.0.2896
PUP.Optional.IFEO, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\DELTA BABYLON.EXE|DEBUGGER, Žádná uživatelská akce, [9016], [239294],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VIDEODOWNLOADCONVERTER_4Z BROWSER PLUGIN LOADER, Žádná uživatelská akce, [259], [235096],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VIDEODOWNLOADCONVERTER_4Z BROWSER PLUGIN LOADER 64, Žádná uživatelská akce, [259], [235096],1.0.2896
PUP.Optional.IFEO, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\DELTA BABYLON.EXE|DEBUGGER, Žádná uživatelská akce, [9016], [239294],1.0.2896
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VIDEODOWNLOADCONVERTER HOME PAGE GUARD 64 BIT, Žádná uživatelská akce, [259], [235097],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2fa28606-de77-4029-af96-b231e3b8f827}|URL, Žádná uživatelská akce, [521], [184157],1.0.2896
PUP.Optional.Bandoo.AppFlsh, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|URL, Žádná uživatelská akce, [8963], [253598],1.0.2896
PUP.Optional.ASK, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}|SUGGESTIONSURL_JSON, Žádná uživatelská akce, [521], [258455],1.0.2896
PUP.Optional.MindSpark, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\VideoDownloadConverter_4zService|IMAGEPATH, Žádná uživatelská akce, [259], [240828],1.0.2896

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 20
PUP.Optional.MindSpark, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\VideoDownloadConverter_4z, Žádná uživatelská akce, [259], [240302],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\PROGRAMDATA\DATAMNGR, Žádná uživatelská akce, [9056], [253610],1.0.2896
PUP.Optional.MoviesToolBar, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\ilividmoviestoolbarha, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\common, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\css, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\_metadata, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\common, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\USERS\BILEK\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\AAAAABCBMONGICMDEGKMMFGDICKGNNOB, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\USERS\BILEK\APPDATA\LOCALLOW\DATAMNGR, Žádná uživatelská akce, [9056], [181454],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\EXTENSIONS\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}, Žádná uživatelská akce, [521], [302356],1.0.2896

Soubor: 124
PUP.Optional.MindSpark, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\VideoDownloadConverter_4z\7AB344D3-3B6C-47E6-95A6-985A4E14EFC9.sqlite, Žádná uživatelská akce, [259], [240302],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\PROGRAMDATA\DATAMNGR\COORDINATOR.CFG, Žádná uživatelská akce, [9056], [253610],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\ProgramData\Datamngr\general.cfg, Žádná uživatelská akce, [9056], [253610],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\ProgramData\Datamngr\S-1-5-21-1350338271-1762688309-1791207727-1118.cfg, Žádná uživatelská akce, [9056], [253610],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\ProgramData\Datamngr\S-1-5-32.cfg, Žádná uživatelská akce, [9056], [253610],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\ilividmoviestoolbarha\apnuserid.dat, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\ilividmoviestoolbarha\appid.dat, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\ilividmoviestoolbarha\geodata.xml, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\ilividmoviestoolbarha\setupCfg.xml, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\ilividmoviestoolbarha\sysid.dat, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\ilividmoviestoolbarha\trackid.dat, Žádná uživatelská akce, [6608], [178552],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\common\background.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\common\config.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\common\registry.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\common\reporting.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\common\utils.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo\logo_128x.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo\logo_19x.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo\logo_24x.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo\logo_32x.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo\logo_grey_19x.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\skin\images\logo\toolbar-icons.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\config\build.json, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\css\bootstrap.css, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\css\bootstrap.css.map, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\css\uninstallInfo.css, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\ask_logo.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\cinema.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\comedy.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\m.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\magazine.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\movies.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\options.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\reviews.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\search.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\star.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\toolbar-icon-ask.ico, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\images\trailers.png, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\js\bootstrap.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\js\jquery.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\js\popup.js, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\dropdown\popup.html, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\_metadata\verified_contents.json, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.MoviesToolBar, C:\Users\bilek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob\35.4_0\manifest.json, Žádná uživatelská akce, [6608], [178559],1.0.2896
PUP.Optional.DataMngr.AppFlsh, C:\Users\bilek\AppData\LocalLow\DataMngr\{7CA1F051-A4FB-4143-B263-02B41E571EED}64, Žádná uživatelská akce, [9056], [181454],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.MindSpark.Generic, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\PREFS.JS, Žádná uživatelská akce, [838], [319354],1.0.2896
PUP.Optional.ASK, C:\USERS\BILEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\66PQL4CQ.DEFAULT\EXTENSIONS\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\INSTALL.RDF, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF14.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF.xpt, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF10.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF11.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF12.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF13.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF15.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF16.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF17.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF18.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF19.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF2.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF20.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF21.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF22.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF23.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF24.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF25.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF26.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF27.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF4.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF5.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF6.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF7.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF8.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\components\DatamngrHlpFF9.dll, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\DnsBHO.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\Error404BHO.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\MainBHO.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\NativeHelper.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\NewTabBHO.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\overlay.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\overlay.xul, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\RelatedSearch.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\RequestPreserver.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\SearchBHO.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\content\SettingManager.js, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.ASK, C:\Users\bilek\AppData\Roaming\Mozilla\Firefox\Profiles\66pql4cq.default\extensions\{B24AAB94-6DB0-A5D4-4AF8-C2120E715ED5}\chrome.manifest, Žádná uživatelská akce, [521], [302356],1.0.2896
PUP.Optional.Bandoo, C:\WINDOWS\TEMP\412D22A0\SETUPDATAMNGR_ILIVID.EXE, Žádná uživatelská akce, [983], [301304],1.0.2896
PUP.Optional.Plumbytes, C:\USERS\BILEK\APPDATA\LOCAL\TEMP\PAIF0B8.TMP, Žádná uživatelská akce, [8216], [123575],1.0.2896
PUP.Optional.Plumbytes, C:\USERS\BILEK\DOWNLOADS\ANTIMALWARESETUP.EXE, Žádná uživatelská akce, [8216], [123575],1.0.2896
PUP.Optional.MindSpark, C:\USERS\BILEK\DOWNLOADS\VIDEODOWNLOADCONVERT.EXE, Žádná uživatelská akce, [259], [301125],1.0.2896
PUP.Optional.Bandoo, C:\WINDOWS\TEMP\277648F4\SETUPDATAMNGR_ILIVID.EXE, Žádná uživatelská akce, [983], [301304],1.0.2896
PUP.Optional.APNToolBar, C:\USERS\BILEK\DOWNLOADS\YTDSETUP.EXE, Žádná uživatelská akce, [6455], [76243],1.0.2896

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#10 Příspěvek od JaRon »

to je svincik :)
nechaj vymazat v MBAM, restart a zopakovat - az pokial to nebude ciste
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

Re: ASK Toolbar

#11 Příspěvek od stoker303 »

snad již čisto: (MBM) log

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 27.09.17
Čas skenování: 10:44
Logovací soubor: 198246ae-a360-11e7-b17e-00ffcda921a9.json
Správce: Ano

-Informace o softwaru-
Verze: 3.2.2.2029
Verze komponentů: 1.0.188
Aktualizovat verzi balíku komponent: 1.0.2896
Licence: Zkušební

-Systémová informace-
OS: Windows 7 Service Pack 1
CPU: x64
Systém souborů: NTFS
Uživatel: System

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 420697
Zjištěné hrozby: 0
(Nebyly zjištěny žádné škodlivé položky)
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 4 min, 14 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#12 Příspěvek od JaRon »

OK, ak nie su problemy, hotovo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

stoker303
Návštěvník
Návštěvník
Příspěvky: 105
Registrován: 24 říj 2012 21:46

Re: ASK Toolbar

#13 Příspěvek od stoker303 »

OK, pls LOCK :) a díky!!

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: ASK Toolbar

#14 Příspěvek od JaRon »

rado sa stalo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno