Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

přesměrování na jiné stránky

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
joflik
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 29 črc 2013 08:45

přesměrování na jiné stránky

#1 Příspěvek od joflik »

Zdravím,
poslední dobou se mi stává že se místo stránky kterou požaduju, načte jiná.Zpravidla se jedná o najakou erotickou hru.
Také se stává, že při více otevřených oknech prohlížeče, není v názvu stránky zobrazen text ale jen tečka a čárka.
Za radu a pomoc děkuju
W7

joflik
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 29 črc 2013 08:45

Re: přesměrování na jiné stránky

#2 Příspěvek od joflik »

joflik píše:Zdravím,
poslední dobou se mi stává že se místo stránky kterou požaduju, načte jiná.Zpravidla se jedná o najakou erotickou hru.
Také se stává, že při více otevřených oknech prohlížeče, není v názvu stránky zobrazen text ale jen tečka a čárka.
Za radu a pomoc děkuju
W7

Logfile of random's system information tool 1.16 (written by random/random)
Run by xx at 2017-10-27 09:56:54
Microsoft Windows 7 Professional
System drive C: has 359 GB (75%) free of 477 GB
Total RAM: 3042 MB (55% free)
X86

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:57:07, on 27.10.2017
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\simplitec\KMPFaster\ServiceProvider.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareTray.exe
C:\Program Files\ConMet\ConMet.exe
C:\Program Files\ConMet\CMHelper.exe
C:\Users\xx\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\SaveSnap\SaveSnap.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Users\xx\AppData\Roaming\Wandoujia2\Applications\2.76.0.7151\wandoujia_helper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\xx\Desktop\RSIT.exe
C:\Program Files\trend micro\xx_RSIT.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AdAwareTray] "C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareTray.exe"
O4 - HKCU\..\Run: [ConMet] C:\Program Files\ConMet\ConMet.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\xx\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\xx\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: SaveSnap.lnk = C:\Program Files\SaveSnap\SaveSnap.exe
O4 - Startup: wandoujia_helper.lnk = C:\Users\xx\AppData\Roaming\Wandoujia2\Applications\2.76.0.7151\wandoujia_helper.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O15 - Trusted Zone: http://*.webcompanion.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Ad-Aware Service 11 (LavasoftAdAwareService11) - Unknown owner - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Spy Emergency Health Check (SpyEmrgHealth) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: Update Banana Phone - Unknown owner - C:\Program Files\Banana Phone\updateBananaPhone.exe (file missing)
O23 - Service: Wondershare Application Framework Service (WsAppService) - Wondershare - C:\Program Files\Wondershare\WAF\WsAppService.exe
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Unknown owner - C:\Program Files\Wondershare\MobileGo\DriverInstall.exe (file missing)

--
End of file - 7293 bytes

======Scheduled tasks folder======

C:\Windows\tasks\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.job - C:\Program Files\Internet Speed Checker\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.exe /rawdata=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
C:\Windows\tasks\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user.job - C:\Program Files\Internet Speed Checker\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.exe /rawdata=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
C:\Windows\tasks\db19b84b-399f-41ad-82dc-bf22860366da-5.job - C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da-5.exe /rawdata=QmJgKR9swmf8y8g5kB9l6hk1YE6pY5oHL9qXbkXO/aMb39MNeKQc3dib8V9Oaz0dkIq+uOvPx5e8Sv/PxX+aMEx3F+iKom2zKnivQoA4ILYW+KVHf4PxLitup1bNrrQTVyBx+sectotFt2w2xbqUOShWDmsbfIBESMtw7cxF3HeqtZIwVkZIDMOidJ6U/zVTYS/jLCwK/fmhUmCcstaor6oHDJstxhf/+zka96qr1sMVbolIABD2l6eYD9GPxjt08guuHDwbwwrCUvPPjUiG1zT+IdV/7vziCuP5LcQOZdDk9sx6XTV89xFkspaCLGHicKJDKOB7d7mwWIIBmChPRp5ybN4BYin89N0MRSNcB64gHetTpMIdKD2L+UOLcyp7vyM+h/InZlk64uuYJUmFzz3cTv1Ykv0ISiA/KlJ49lk09y8OlNEInBo3IhJ3w4bhNrVJuRa+q307br8TxEwH035ePL/7sAf90TNOVSqzv+zHNmBBTg1IpY4bAZBSQU5RtDDoAN3z2vzFamH81TxqLllLYvRZjDDLwb9ASLUhebmqHpk392gXiYAiFlzHfE/nWSOoTQv2oFCOf7nT/hbNH6Bo9TXx4ntrNJOHxg9qhNScSIG+5Mz6FJCcg3krKIw7gSQ8arIxCMKLouKBPF/4EqslNDqgGyPm6dDPuG/p5TecYBQWeB97LyxpV0PEMDsxL8DjgI+W2DWXiEGEjm9LEjJ5NGo4d9/KLt9c6Sk+AD2lrSRC6vy+iBDWvnnxlBxwQuFYATBwmH97Iu/gH8+tCJwVOMdKaZG4zG3j3Qv2CB10JEPCDKRXMEzeD/lYnxL2/dLRGIEIYt8TCGa5OYYB6Yk2ZXYIOI7Na6GoB6491G7Ta4t4KdpQPt7wJQWc8d2UjvwXK6SpEXbcRLnCvJLtEIFJc7PMiOJadaWVgZ1lFZBhvV/Ajlxc+ZcOBDW090k3UXqukeuEm+UQdUDjG7Tpf86MkyVjX3BXGbGkaN0HplOAs7j7OZk8Wud1P1PXJhl5
C:\Windows\tasks\db19b84b-399f-41ad-82dc-bf22860366da-5_user.job - C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da-5.exe /rawdata=QmJgKR9swmf8y8g5kB9l6hk1YE6pY5oHL9qXbkXO/aMb39MNeKQc3dib8V9Oaz0dkIq+uOvPx5e8Sv/PxX+aMEx3F+iKom2zKnivQoA4ILYW+KVHf4PxLitup1bNrrQTVyBx+sectotFt2w2xbqUOShWDmsbfIBESMtw7cxF3HeqtZIwVkZIDMOidJ6U/zVTYS/jLCwK/fmhUmCcstaor6oHDJstxhf/+zka96qr1sMVbolIABD2l6eYD9GPxjt08guuHDwbwwrCUvPPjUiG1zT+IdV/7vziCuP5LcQOZdDk9sx6XTV89xFkspaCLGHicKJDKOB7d7mwWIIBmChPRp5ybN4BYin89N0MRSNcB64gHetTpMIdKD2L+UOLcyp7vyM+h/InZlk64uuYJUmFzz3cTv1Ykv0ISiA/KlJ49lk09y8OlNEInBo3IhJ3w4bhNrVJuRa+q307br8TxEwH035ePL/7sAf90TNOVSqzv+zHNmBBTg1IpY4bAZBSQU5RtDDoAN3z2vzFamH81TxqLllLYvRZjDDLwb9ASLUhebmqHpk392gXiYAiFlzHfE/nWSOoTQv2oFCOf7nT/hbNH6Bo9TXx4ntrNJOHxg9qhNScSIG+5Mz6FJCcg3krKIw7gSQ8arIxCMKLouKBPF/4EqslNDqgGyPm6dDPuG/p5TecYBQWeB97LyxpV0PEMDsxL8DjgI+W2DWXiEGEjm9LEjJ5NGo4d9/KLt9c6Sk+AD2lrSRC6vy+iBDWvnnxlBxwQuFYATBwmH97Iu/gH8+tCJwVOMdKaZG4zG3j3Qv2CB10JEPCDKRXMEzeD/lYnxL2/dLRGIEIYt8TCGa5OYYB6WSx2GGmpO2KManbkfLrvdm0yG01A4+oaychnClpUbUqwS10HuyFUss/j9jJw2DIOeTFS0ut6ztxEU04O0PRnzy0vG2FhWcZsLzCs28xhoeB9QmwDfqDN0LR7wELkI04yLj36CP5xJB3lzlrcqa8sGOS8LRrVn3BhorCQpNYmrcb
C:\Windows\tasks\simplitec Power Suite (Tray).job - C:\Program Files\simplitec\KMPFaster\ServiceProvider.exe
C:\Windows\tasks\simplitec Power Suite.job - C:\Program Files\simplitec\KMPFaster\PowerSuite.exe -task
C:\Windows\system32\tasks\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5 - C:\Program Files\Internet Speed Checker\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.exe /rawdata=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
C:\Windows\system32\tasks\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user - C:\Program Files\Internet Speed Checker\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.exe /rawdata=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
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1437665091 - c:\program files\opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458731001 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\simplitec Power Suite - C:\Program Files\simplitec\KMPFaster\PowerSuite.exe -task
C:\Windows\system32\tasks\simplitec Power Suite (Tray) - C:\Program Files\simplitec\KMPFaster\ServiceProvider.exe
C:\Windows\system32\tasks\{10EA05D8-7165-4873-BCD2-6EEBB55BA71D} - "c:\program files\mozilla firefox\firefox.exe" https://www.skype.com/go/downloading?so ... rror=12031
C:\Windows\system32\tasks\{E3772236-5680-4DDA-9B6E-247B2551D49C} - C:\Windows\system32\pcalua.exe -a "C:\Program Files\instalprogramy\Adaware_Installer.exe" -d "C:\Program Files\instalprogramy"
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-1572131850-2038388813-1490003344-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\Setup\EOSNotify - %windir%\system32\EOSNotify.exe
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs

=========Mozilla firefox=========

ProfilePath - C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.183 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\addons.json
Seznam pro Firefox - Email - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\extensions.json
Application Update Service Helper - extension - aushelper@mozilla.org -
Multi-process staged rollout - extension - e10srollout@mozilla.org -
Pocket - extension - firefox@getpocket.com -
Web Compat - extension - webcompat@mozilla.org -
Firefox Screenshots - extension - screenshots@mozilla.org -
Click-to-Play staged rollout - extension - clicktoplay-rollout@mozilla.org -
Follow-on Search Telemetry - extension - followonsearch@mozilla.com -
Shield Recipe Client - extension - shield-recipe-client@mozilla.org -
Activity Stream - extension - activity-stream@mozilla.org -
Form Autofill - extension - formautofill@mozilla.org -
Photon onboarding - extension - onboarding@mozilla.org -
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} -
Avast Online Security - webextension - wrc@avast.com -
Safe Browsing Version 4 (temporary add-on) - extension - sbv4-gradual-rollout@mozilla.com -
Avast SafePrice - webextension - sp@avast.com -
AdShield Plus - extension - {8504399b-e635-40fe-8943-977a58521db3} -
Seznam pro Firefox - Email - webextension - {ea614400-e918-4741-9a97-7a972ff7c30b} -

C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\pluginreg.dat
Plugin - Shockwave Flash - 27.0.0.183 - C:\Windows\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll

=========Google Chrome=========

C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake
Extension apdfllckaahabafndbhieahigkjlhalf
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.4
Extension pjkljhegncpnkpknbcohdijeoejaedia
Homepage:
default_search_provider.search_url:
C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd]
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={15C4DF55-4B67-495A-A3D3-A497C4A49EE0}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}]
"URL"=http://search.seznam.cz/?sourceid=quick ... earchTerms}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}]
SteadyVideoBHO Class - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14 69760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-10-08 820672]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-06-04 676608]
"WinampAgent"=C:\Program Files\Winamp\Winampa.exe [2015-05-28 24576]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-10-08 253344]
"NeroFilterCheck"=C:\Windows\system32\NeroCheck.exe [2001-07-09 155648]
""= []
"AdAwareTray"=C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareTray.exe [2016-07-18 8063200]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ConMet"=C:\Program Files\ConMet\ConMet.exe [2016-05-22 4915400]
"cz.seznam.software.autoupdate"=C:\Users\xx\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\xx\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe [2015-09-11 2529728]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2017-08-25 27832272]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2017-10-18 7814656]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ALLPlayer WiFi Remote]
C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe [2016-09-15 6168768]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ALLUpdate]
C:\Program Files\ALLPlayer\ALLUpdate.exe [2015-07-28 3670472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe

C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SaveSnap.lnk - C:\Program Files\SaveSnap\SaveSnap.exe
wandoujia_helper.lnk - C:\Users\xx\AppData\Roaming\Wandoujia2\Applications\2.76.0.7151\wandoujia_helper.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LavasoftAdAwareService11]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LavasoftAdAwareService11]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath"="C:\Program Files\Google\Chrome\Application\61.0.3163.100\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll
"VIDC.VP80"=vp8vfw.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.inf - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1
.ini - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Windows\System32\WScript.exe" "%1" %*
.txt - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1

======List of files/folders created in the last 1 month======

2017-10-27 09:56:55 ----D---- C:\Program Files\trend micro
2017-10-27 09:56:54 ----D---- C:\rsit
2017-10-27 09:56:41 ----D---- C:\ProgramData\SWCUTemp
2017-10-27 09:32:49 ----D---- C:\Windows\pss
2017-10-27 09:09:23 ----D---- C:\Program Files\Common Files\Lavasoft
2017-10-26 10:41:34 ----A---- C:\DelFix.txt
2017-10-26 10:22:52 ----SHD---- C:\$RECYCLE.BIN
2017-10-26 10:19:23 ----A---- C:\Windows\zoek-delete.exe
2017-10-26 10:19:22 ----D---- C:\Windows\Temp
2017-10-25 21:33:30 ----D---- C:\Users\xx\AppData\Roaming\Seznam Browser
2017-10-25 20:53:09 ----D---- C:\ProgramData\BitDefender
2017-10-25 20:42:48 ----D---- C:\Users\xx\AppData\Roaming\LavasoftStatistics
2017-10-25 20:42:44 ----A---- C:\Windows\system32\OEMbdpredir.dll
2017-10-25 20:42:44 ----A---- C:\Windows\system32\httproxy.dll
2017-10-25 20:42:44 ----A---- C:\Windows\system32\bdsmtpp.dll
2017-10-25 20:42:44 ----A---- C:\Windows\system32\bdpredir.dll
2017-10-25 20:42:44 ----A---- C:\Windows\system32\bdpop3p.dll
2017-10-25 20:42:44 ----A---- C:\Windows\system32\bdfwcore.dll
2017-10-25 20:42:44 ----A---- C:\Windows\system32\BdFirewallSDK.dll
2017-10-25 20:41:26 ----D---- C:\Program Files\Lavasoft
2017-10-25 20:38:20 ----D---- C:\ProgramData\adaware
2017-10-25 20:38:18 ----D---- C:\ProgramData\Lavasoft
2017-10-24 19:44:35 ----D---- C:\Program Files\CCleaner
2017-10-23 13:41:41 ----D---- C:\Program Files\uTorrent
2017-10-23 13:41:35 ----D---- C:\Users\xx\AppData\Roaming\uTorrent
2017-10-22 20:40:05 ----D---- C:\Program Files\Common Files\Vectric
2017-10-22 20:39:35 ----D---- C:\ProgramData\Vectric
2017-10-22 20:39:25 ----D---- C:\Program Files\Cut2D Desktop Trial Edition 9.0
2017-10-17 19:19:24 ----D---- C:\Users\xx\AppData\Roaming\inkscape
2017-10-17 19:16:20 ----D---- C:\Program Files\Inkscape
2017-10-13 10:07:55 ----D---- C:\Program Files\Common Files\InstallShield
2017-10-13 09:54:07 ----D---- C:\ProgramData\Google
2017-10-13 09:54:06 ----D---- C:\Users\xx\AppData\Roaming\Google
2017-10-08 21:46:13 ----A---- C:\Windows\system32\aswBoot.exe

======List of files/folders modified in the last 1 month======

2017-10-27 09:56:55 ----RD---- C:\Program Files
2017-10-27 09:56:53 ----D---- C:\ProgramData\ConMet
2017-10-27 09:56:41 ----HD---- C:\ProgramData
2017-10-27 09:39:47 ----D---- C:\Users\xx\AppData\Roaming\Seznam.cz
2017-10-27 09:38:00 ----D---- C:\Users\xx\AppData\Roaming\Skype
2017-10-27 09:35:19 ----D---- C:\Users\xx\AppData\Roaming\ConMet
2017-10-27 09:32:49 ----D---- C:\Windows
2017-10-27 09:09:24 ----SHD---- C:\Windows\Installer
2017-10-27 09:09:23 ----D---- C:\Program Files\Common Files
2017-10-27 09:08:33 ----SHD---- C:\System Volume Information
2017-10-26 21:36:43 ----D---- C:\Windows\system32\drivers
2017-10-26 10:19:45 ----D---- C:\Windows\system32\catroot2
2017-10-26 10:17:45 ----D---- C:\Windows\system32\drivers\etc
2017-10-26 10:17:45 ----D---- C:\Windows\Prefetch
2017-10-26 10:15:38 ----D---- C:\Windows\System32
2017-10-26 10:03:36 ----D---- C:\Program Files\Internet Speed Checker
2017-10-26 10:03:36 ----D---- C:\Program Files\CinemaP-1.9cV23.07
2017-10-26 10:00:26 ----D---- C:\Users\xx\AppData\Roaming\vlc
2017-10-26 09:54:58 ----D---- C:\Windows\inf
2017-10-26 09:54:58 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-10-25 21:34:12 ----D---- C:\Program Files\instalprogramy
2017-10-25 20:42:41 ----D---- C:\Windows\system32\catroot
2017-10-25 20:42:40 ----D---- C:\Windows\system32\DriverStore
2017-10-25 20:39:56 ----D---- C:\Windows\system32\Tasks
2017-10-25 17:52:06 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2017-10-25 17:52:04 ----D---- C:\Windows\system32\Macromed
2017-10-24 19:48:01 ----D---- C:\Users\xx\AppData\Roaming\PhotoScape
2017-10-24 19:47:24 ----D---- C:\Windows\Panther
2017-10-24 19:47:23 ----D---- C:\Windows\Logs
2017-10-24 19:47:23 ----D---- C:\Windows\debug
2017-10-22 20:45:52 ----D---- C:\Program Files\Opera
2017-10-22 20:45:30 ----D---- C:\Program Files\WinRAR
2017-10-22 13:42:53 ----D---- C:\Windows\system32\config
2017-10-16 21:28:48 ----D---- C:\Program Files\Mozilla Firefox
2017-10-13 10:12:34 ----D---- C:\Windows\winsxs
2017-10-13 10:08:15 ----HD---- C:\Program Files\InstallShield Installation Information
2017-10-13 10:02:33 ----D---- C:\Program Files\Google
2017-10-08 21:46:09 ----D---- C:\ProgramData\AVAST Software
2017-10-05 14:09:37 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-09-28 12:46:36 ----D---- C:\Windows\rescache

File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2012-10-11 70824]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2012-10-11 34984]
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidshx.sys [2017-10-08 157416]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswblogx.sys [2017-10-08 276736]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbunivx.sys [2017-10-08 50384]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-10-08 70864]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-10-08 297840]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriverx.sys [2017-10-08 255624]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-09-02 39784]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-10-08 99560]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-10-26 783648]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-10-08 499560]
R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver; C:\Windows\system32\DRIVERS\BdfNdisf6.sys [2016-02-16 86360]
R1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.1.0\Drivers\bdfwfpf.sys [2016-02-16 93648]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 SpyEmrg;Spy Emergency Driver; C:\Windows\System32\Drivers\spyemrg.sys [2011-04-21 14168]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [2012-04-09 48256]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-10-08 124952]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-10-08 149824]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-06-05 10289664]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-06-04 485888]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2013-04-24 79872]
R3 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2016-01-05 1254920]
R3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2016-01-05 638976]
R3 avchv;avchv Function Driver; C:\Windows\system32\DRIVERS\avchv.sys [2016-01-05 261400]
R3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 22528]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 58880]
R3 gzflt;gzflt; \??\C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.129.0\gzflt.sys [2016-04-28 175008]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2013-04-10 651848]
R3 SpyEmrgGuard;Spy Emergency Real-Time Shield Driver; C:\Windows\System32\Drivers\spyemrg_guard.sys [2015-03-09 18872]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2012-08-28 45736]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-10-08 42856]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 392704]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2012-12-07 23040]
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver.sys []
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib.sys []
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SpyEmrgAccess;Spy Emergency OnAccess Driver; C:\Windows\System32\Drivers\spyemrg_access.sys [2011-04-21 20056]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 Trufos;Trufos; C:\Windows\system32\DRIVERS\Trufos.sys [2016-04-28 428832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUSB;Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2009-07-14 34944]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-06-05 219136]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-06-04 291840]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-10-08 281416]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\cscsvc.dll
R2 LavasoftAdAwareService11;Ad-Aware Service 11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareService.exe [2016-07-18 664040]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 SpyEmrgHealth;Spy Emergency Health Check; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe [2015-03-20 308024]
R2 SpyEmrgSrv;Spy Emergency Engine Service; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe [2015-03-20 2481144]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2017-10-08 5828816]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-12-23 153752]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2017-07-18 317408]
S2 Update Banana Phone;Update Banana Phone; C:\Program Files\Banana Phone\updateBananaPhone.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-10-25 272384]
S3 AppMgmt;@appmgmts.dll,-3250; %SystemRoot%\system32\svchost.exe -k netsvcs;"ServiceDll"=%SystemRoot%\System32\appmgmts.dll
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2012-07-09 46528]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-12-23 153752]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-10-05 175568]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; %SystemRoot%\System32\svchost.exe -k PeerDist;"ServiceDll"=%SystemRoot%\system32\peerdistsvc.dll
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\system32\storsvc.dll
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\umrdp.dll
S3 WsAppService;Wondershare Application Framework Service; C:\Program Files\Wondershare\WAF\WsAppService.exe [2015-05-27 256912]
S3 WsDrvInst;Wondershare Driver Install Service; C:\Program Files\Wondershare\MobileGo\DriverInstall.exe []
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: přesměrování na jiné stránky

#3 Příspěvek od JaRon »

ahoj,
1. odinstaluj Ad-Aware Antivirus aj Spy Emergency
2. doinstaluj aspon MSIE 10
3. vycisti PC s CCleanerom a nasledne s MBAM
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

joflik
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 29 črc 2013 08:45

Re: přesměrování na jiné stránky

#4 Příspěvek od joflik »

JaRon píše:ahoj,
1. odinstaluj Ad-Aware Antivirus aj Spy Emergency
2. doinstaluj aspon MSIE 10
3. vycisti PC s CCleanerom a nasledne s MBAM
MSIE nepoužívám(mozilu) tak nevím kde se instaluje vyšší verze, pokud je to při nepoužívání nutné.Vše ostatní jsem udělal.
Při instalaci a čistění se nechtěné stránky ukázaly zase

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 27.10.17
Čas skenování: 18:28
Logovací soubor: db25660c-bb33-11e7-acd6-001a7dda7113.json
Správce: Ano

-Informace o softwaru-
Verze: 3.2.2.2029
Verze komponentů: 1.0.212
Aktualizovat verzi balíku komponent: 1.0.3112
Licence: Zkušební

-Systémová informace-
OS: Windows 7
CPU: x86
Systém souborů: NTFS
Uživatel: xx-PC\xx

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 259138
Zjištěné hrozby: 175
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 6 min, 29 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 49
PUP.Optional.CinemaPlus, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\ARENAHD, Žádná uživatelská akce, [2507], [236510],1.0.3112
PUP.Optional.InstallCore, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\csastats, Žádná uživatelská akce, [2], [260986],1.0.3112
PUP.Optional.HighDefAction, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\HighDefAction, Žádná uživatelská akce, [14195], [239059],1.0.3112
PUP.Optional.InstallCore, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\ICSW1.23, Žádná uživatelská akce, [2], [239562],1.0.3112
Adware.Norassie, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\Norassie, Žádná uživatelská akce, [2885], [361347],1.0.3112
PUP.Optional.YorkNewCin, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\YorkNewCin, Žádná uživatelská akce, [9349], [245167],1.0.3112
PUP.Optional.CinemaPlus, HKLM\SOFTWARE\ARENAHD, Žádná uživatelská akce, [2507], [236526],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, Žádná uživatelská akce, [6172], [241622],1.0.3112
PUP.Optional.BananaPhone, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update Banana Phone, Žádná uživatelská akce, [10368], [235668],1.0.3112
PUP.Optional.Yontoo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Update Banana Phone, Žádná uživatelská akce, [39], [254062],1.0.3112
PUP.Optional.Yontoo, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.CrossRider, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Žádná uživatelská akce, [220], [237370],1.0.3112
PUP.Optional.PCTuner, HKLM\SOFTWARE\HIGHDEFACTION, Žádná uživatelská akce, [11983], [241635],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9469B3D9-C05D-4468-B19C-D341F3CC8C2E}, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{EF73E1E0-EAA1-4F35-B46D-16BE47CE8C4D}, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.VideoAdBlocker.ChrPRST, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\BKNBNAPADDJDNBILPMLACDKJDKJMBJHD, Žádná uživatelská akce, [1021], [307227],1.0.3112
PUP.Optional.VideoAdBlocker.ChrPRST, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\bknbnapaddjdnbilpmlacdkjdkjmbjhd, Žádná uživatelská akce, [1021], [307227],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, Žádná uživatelská akce, [220], [237507],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\7359, Žádná uživatelská akce, [220], [237507],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${ieUtilsLightElevationPolicyID}, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{62155D33-3CE2-401E-8967-5A270628A3D5}, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.CrossRider, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Cinema PlusV23.07, Žádná uživatelská akce, [220], [237378],1.0.3112
PUP.Optional.CrossRider, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Speedchecker, Žádná uživatelská akce, [220], [237465],1.0.3112
PUP.Optional.ProductSetup, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\PRODUCTSETUP, Žádná uživatelská akce, [14409], [242047],1.0.3112
PUP.Optional.ByteFence, HKU\S-1-5-18\SOFTWARE\ByteFence, Žádná uživatelská akce, [632], [388728],1.0.3112
Adware.Elex, HKU\S-1-5-18\SOFTWARE\elex-tech, Žádná uživatelská akce, [1], [446615],1.0.3112
PUP.Optional.MyStart, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}, Žádná uživatelská akce, [1642], [241097],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Žádná uživatelská akce, [220], [237505],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5, Žádná uživatelská akce, [220], [237511],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user, Žádná uživatelská akce, [220], [237511],1.0.3112
PUP.Optional.AmiUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\amiupdaterExd, Žádná uživatelská akce, [13987], [235414],1.0.3112
PUP.Optional.Cinema, HKLM\SOFTWARE\CinemaP-1.9cV23.07, Žádná uživatelská akce, [6202], [236459],1.0.3112
PUP.Optional.InternetSpeedChecker, HKLM\SOFTWARE\Internet Speed Checker, Žádná uživatelská akce, [4740], [190185],1.0.3112
PUP.Optional.AmiUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\amiupdaterExi, Žádná uživatelská akce, [13987], [235414],1.0.3112
PUP.Optional.YorkNewCin, HKLM\SOFTWARE\YorkNewCin, Žádná uživatelská akce, [9349], [245168],1.0.3112
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder0, Žádná uživatelská akce, [46], [186209],1.0.3112
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder1, Žádná uživatelská akce, [46], [186209],1.0.3112
PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\TRACING\ByteFence_RASAPI32, Žádná uživatelská akce, [632], [389038],1.0.3112
PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\TRACING\ByteFence_RASMANCS, Žádná uživatelská akce, [632], [389038],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\pcspeedup_RASAPI32, Žádná uživatelská akce, [6172], [255415],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\pcspeedup_RASMANCS, Žádná uživatelská akce, [6172], [255415],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\PCSUSpeedTest_RASAPI32, Žádná uživatelská akce, [6172], [246229],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\PCSUSpeedTest_RASMANCS, Žádná uživatelská akce, [6172], [246229],1.0.3112
PUP.Optional.Amonetize, HKLM\SOFTWARE\CLASSES\dream.capture.1, Žádná uživatelská akce, [6], [169563],1.0.3112
PUP.Optional.Amonetize, HKLM\SOFTWARE\CLASSES\DREAM.CAPTURE, Žádná uživatelská akce, [6], [169563],1.0.3112
PUP.Optional.Amonetize, HKLM\SOFTWARE\CLASSES\CLSID\{117270FA-48AC-45BB-9171-B63D1B42A910}, Žádná uživatelská akce, [6], [169563],1.0.3112
PUP.Optional.BananaPhone, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{88E4FBF6-B6BC-438F-8543-EF5C3A58A479}, Žádná uživatelská akce, [10368], [167680],1.0.3112
PUP.Optional.BananaPhone, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{88E4FBF6-B6BC-438F-8543-EF5C3A58A479}, Žádná uživatelská akce, [10368], [167680],1.0.3112
PUP.Optional.MyStart, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A2159D33-3CE2-401B-8967-1B270628A311}, Žádná uživatelská akce, [1642], [387670],1.0.3112

Hodnota v registru: 11
PUP.Optional.CinemaPlus, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\ARENAHD|VALUE, Žádná uživatelská akce, [2507], [236510],1.0.3112
PUP.Optional.CinemaPlus, HKLM\SOFTWARE\ARENAHD|VALUE, Žádná uživatelská akce, [2507], [236526],1.0.3112
PUP.Optional.PCTuner, HKLM\SOFTWARE\HIGHDEFACTION|VALUE, Žádná uživatelská akce, [11983], [241635],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9469B3D9-C05D-4468-B19C-D341F3CC8C2E}|PATH, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{EF73E1E0-EAA1-4F35-B46D-16BE47CE8C4D}|PATH, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${ieUtilsLightElevationPolicyID}|APPPATH, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{62155D33-3CE2-401E-8967-5A270628A3D5}|APPPATH, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.ProductSetup, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\PRODUCTSETUP|TB, Žádná uživatelská akce, [14409], [242047],1.0.3112
PUP.Optional.MyStart, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}|URL, Žádná uživatelská akce, [1642], [241097],1.0.3112
PUP.Optional.oTweakDriverUpdater, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\DRIVERUPDATER|PHSUPPNUM, Žádná uživatelská akce, [8479], [398929],1.0.3112
PUP.Optional.PCTuner, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\HIGHDEFACTION|VALUE, Žádná uživatelská akce, [11983], [241632],1.0.3112

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 18
PUP.Optional.Amonetize, C:\USERS\XX\APPDATA\LOCAL\11028, Žádná uživatelská akce, [6], [186635],1.0.3112
PUP.Optional.Cinema, C:\PROGRAM FILES\CinemaP-1.9cV23.07, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.GUPlayer, C:\PROGRAM FILES\GUPLAYER, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\USERS\XX\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\GUPLAYER, Žádná uživatelská akce, [6552], [177529],1.0.3112
PUP.Optional.GoldenGate, C:\USERS\XX\APPDATA\ROAMING\GOLDENGATE, Žádná uživatelská akce, [15176], [261914],1.0.3112
PUP.Optional.MyStart, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\LOCALLOW\MYSTARTTB, Žádná uživatelská akce, [1642], [178641],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications\_crx_cmegngdghknoiclpbcjlajfkphoelcia, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Local Storage, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Cache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\USERS\XX\APPDATA\LOCAL\ALIEXPRESS, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\USERS\XX\APPDATA\ROAMING\ALIEXPRESS_HELPER, Žádná uživatelská akce, [73], [348735],1.0.3112

Soubor: 97
PUP.Optional.Amonetize, C:\USERS\XX\APPDATA\LOCAL\11028\status.cfg, Žádná uživatelská akce, [6], [186635],1.0.3112
PUP.Optional.Amonetize, C:\Users\xx\AppData\Local\11028\Updater.xml, Žádná uživatelská akce, [6], [186635],1.0.3112
PUP.Optional.MyStartTB.ShrtCln, C:\PROGRAM FILES\MOZILLA FIREFOX\BROWSER\SEARCHPLUGINS\MYSTARTTB.XML, Žádná uživatelská akce, [11309], [193312],1.0.3112
PUP.Optional.CrossRider, C:\WINDOWS\SYSTEM32\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5, Žádná uživatelská akce, [220], [235118],1.0.3112
PUP.Optional.CrossRider.Generic, C:\WINDOWS\SYSTEM32\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user, Žádná uživatelská akce, [1000], [307239],1.0.3112
PUP.Optional.CrossRider, C:\WINDOWS\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.job, Žádná uživatelská akce, [220], [235119],1.0.3112
PUP.Optional.CrossRider.Generic, C:\WINDOWS\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user.job, Žádná uživatelská akce, [1000], [307240],1.0.3112
PUP.Optional.CrossRider, C:\WINDOWS\TASKS\db19b84b-399f-41ad-82dc-bf22860366da-5.job, Žádná uživatelská akce, [220], [235119],1.0.3112
PUP.Optional.CrossRider.Generic, C:\WINDOWS\TASKS\db19b84b-399f-41ad-82dc-bf22860366da-5_user.job, Žádná uživatelská akce, [1000], [307240],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da-4.exe, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da-5.exe, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da.xpi, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\utils.exe, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.GUPlayer, C:\USERS\XX\DESKTOP\GUPLAYER.LNK, Žádná uživatelská akce, [6552], [238928],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avcodec-54.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avcodec-54.dll_2, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avdevice-54.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avformat-54.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avutil-51.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\GuPlayer.exe, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\libfreetype-6.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\libpng15-15.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\postproc-52.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\SDL.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\SDL_image.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\SDL_ttf.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\swresample-0.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\swscale-2.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\Uninstaller.exe, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\zlib1.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer\GUPlayer.lnk, Žádná uživatelská akce, [6552], [177529],1.0.3112
PUP.Optional.GUPlayer, C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer\Uninstall GUPlayer.lnk, Žádná uživatelská akce, [6552], [177529],1.0.3112
PUP.Optional.Yontoo, C:\PROGRAMDATA\NTUSER.POL, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.Yontoo, C:\WINDOWS\SYSTEM32\GROUPPOLICY\MACHINE\REGISTRY.POL, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.GoldenGate, C:\USERS\XX\APPDATA\ROAMING\GOLDENGATE\3dcdd8bc386c12f910cbb51bb9c9a531.logic.db, Žádná uživatelská akce, [15176], [261914],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\000003.log, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\CURRENT, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\LOCK, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\LOG, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000001, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\000003.log, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\CURRENT, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\LOCK, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\LOG, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\MANIFEST-000001, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Local Storage\https_www.aliexpress.com_0.localstorage, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Local Storage\https_www.aliexpress.com_0.localstorage-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications\_crx_cmegngdghknoiclpbcjlajfkphoelcia\AliExpress.ico, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications\_crx_cmegngdghknoiclpbcjlajfkphoelcia\AliExpress.ico.md5, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Login Data, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\ChromeDWriteFontCache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Cookies, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Cookies-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Favicons, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Favicons-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\History, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\History-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Login Data-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Network Persistent State, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Origin Bound Certs, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Origin Bound Certs-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\README, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Top Sites, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Top Sites-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\TransportSecurity, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Visited Links, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_0, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_1, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_2, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_3, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\index, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\First Run, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Local State, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Roaming\AliExpress_helper\3dcdd8bc386c12f910cbb51bb9c9a531.data.db, Žádná uživatelská akce, [73], [348735],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Roaming\AliExpress_helper\3dcdd8bc386c12f910cbb51bb9c9a531.events.db, Žádná uživatelská akce, [73], [348735],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Roaming\AliExpress_helper\3dcdd8bc386c12f910cbb51bb9c9a531.user.db, Žádná uživatelská akce, [73], [348735],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULTS\PREF\21157136.JS, Žádná uživatelská akce, [1156], [330648],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULTS\PREF\21157214.JS, Žádná uživatelská akce, [1156], [330648],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\21157136.CFG, Žádná uživatelská akce, [1156], [330649],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\21157214.CFG, Žádná uživatelská akce, [1156], [330649],1.0.3112
PUP.Optional.BundleInstaller, C:\PROGRAM FILES\INSTALPROGRAMY\FLASHVIDEOPLAYER.EXE, Žádná uživatelská akce, [20], [451031],1.0.3112
PUP.Optional.oTweakDriverUpdater, C:\PROGRAM FILES\INSTALPROGRAMY\DRIVER1037WIN.EXE, Žádná uživatelská akce, [8479], [442410],1.0.3112
PUP.Optional.BundleInstaller, C:\PROGRAM FILES\INSTALPROGRAMY\JAVASETUP.EXE, Žádná uživatelská akce, [20], [451031],1.0.3112
PUP.Optional.InstallCore, C:\PROGRAM FILES\INSTALPROGRAMY\MICROSOFT_FRONTPAGE.EXE, Žádná uživatelská akce, [2], [301105],1.0.3112
PUP.Optional.BundleInstaller, C:\PROGRAM FILES\INSTALPROGRAMY\SKYPE_1553016736.EXE, Žádná uživatelská akce, [20], [378229],1.0.3112
Adware.YoBrowser, C:\PROGRAM FILES\INSTALPROGRAMY\VECTRIC_CUT2D_CRACK_KEYGEN.EXE, Žádná uživatelská akce, [2681], [448550],1.0.3112
PUP.Optional.CrossRider, C:\PROGRAM FILES\INTERNET SPEED CHECKER\UTILS.EXE, Žádná uživatelská akce, [220], [8450],1.0.3112
FraudTool.YAC, C:\WINDOWS\SYSTEM32\DRIVERS\ISAFENETFILTER.SYS, Žádná uživatelská akce, [6378], [299006],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (4).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
PUP.Optional.ASK, C:\USERS\XX\DOWNLOADS\ATUBECATCHER.EXE, Žádná uživatelská akce, [525], [398182],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (5).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
PUP.Optional.OpenCandy, C:\USERS\XX\DOWNLOADS\PHOTOSCAPE_V3.7.EXE, Žádná uživatelská akce, [524], [297667],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (2).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (3).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN.EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (1).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
PUP.Optional.BundleInstaller, C:\USERS\XX\FP20HTP.EXE, Žádná uživatelská akce, [20], [349885],1.0.3112

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-10-2017
Ran by xx (administrator) on XX-PC (27-10-2017 18:40:42)
Running from C:\Users\xx\Desktop
Loaded Profiles: xx (Available Profiles: xx)
Platform: Microsoft Windows 7 Professional (X86) Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(simplitec GmbH) C:\Program Files\simplitec\KMPFaster\ServiceProvider.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.33.5\GoogleCrashHandler.exe
() C:\Program Files\Winamp\winampa.exe
(Mgr. Tomáš Papoušek) C:\Program Files\ConMet\ConMet.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
() C:\Program Files\SaveSnap\SaveSnap.exe
() C:\Users\xx\AppData\Roaming\Wandoujia2\Applications\2.76.0.7151\wandoujia_helper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
() C:\Users\xx\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Mgr. Tomáš Papoušek) C:\Program Files\ConMet\CMHelper.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [676608 2013-06-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [WinampAgent] => C:\Program Files\Winamp\Winampa.exe [24576 2015-05-28] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-10-08] (AVAST Software)
HKLM\...\Run: [NeroFilterCheck] => C:\Windows\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\Run: [ConMet] => C:\Program Files\ConMet\ConMet.exe [4915400 2016-05-22] (Mgr. Tomáš Papoušek)
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\xx\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\xx\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\Run: [SpyEmergency] => C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7814656 2017-10-18] (Piriform Ltd)
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\...\MountPoints2: {cbd84054-0497-11e5-8c9d-806e6f6e6963} - D:\DVDSetup.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [2015-05-28]
ShortcutTarget: Adobe Reader Speed Launch.lnk -> C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk [2015-05-28]
ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe ()
Startup: C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SaveSnap.lnk [2015-06-16]
ShortcutTarget: SaveSnap.lnk -> C:\Program Files\SaveSnap\SaveSnap.exe ()
Startup: C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wandoujia_helper.lnk [2015-05-28]
ShortcutTarget: wandoujia_helper.lnk -> C:\Users\xx\AppData\Roaming\Wandoujia2\Applications\2.76.0.7151\wandoujia_helper.exe ()
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.100 10.10.10.10
Tcpip\..\Interfaces\{0D92FE94-B5E1-4978-AADE-64D77DB039CC}: [DhcpNameServer] 192.168.100.100 10.10.10.10

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {0322B08D-C268-4232-9076-9BE493FCE24B} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {186CDE43-3FB2-447A-B687-5C3C63090BF8} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {3378DDD5-A9FC-40E3-8D8E-14B4307573C3} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {370F314B-0592-472D-9A1E-585B3CC82A7B} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://www.mystart.com/results.php?gen=ms&pr=v ... earchTerms}
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {9CDFD74D-A33A-46DB-B9D5-1FD61E2FC575} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {9D381AA0-D4AC-4903-8876-DCBB0FE18598} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {A98C4057-09E8-42E6-B556-E08B152282AC} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {C086B628-CEDD-4640-AA6A-195405B807F2} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-1572131850-2038388813-1490003344-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10438__171023__yaie&p={searchTerms}
BHO: Podpora odkazu pro Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23] (Adobe Systems Incorporated)
BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-10-08] (AVAST Software)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)

FireFox:
========
FF ProfilePath: C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657 [2017-10-27]
FF NewTab: Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657 -> about:newtab
FF Homepage: Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657 -> seznam.cz
FF Extension: (Safe Browsing Version 4 (temporary add-on)) - C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\Extensions\sbv4-gradual-rollout@mozilla.com.xpi [2017-10-12]
FF Extension: (Avast SafePrice) - C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\Extensions\sp@avast.com.xpi [2017-10-13]
FF Extension: (Avast Online Security) - C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\Extensions\wrc@avast.com.xpi [2017-10-10]
FF Extension: (AdShield) - C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\Extensions\{8504399b-e635-40fe-8943-977a58521db3}.xpi [2017-10-23]
FF Extension: (Seznam pro Firefox - Email) - C:\Users\xx\AppData\Roaming\Mozilla\Firefox\Profiles\z2kr53v4.default-1480277944657\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}.xpi [2017-10-25]
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mystarttb.xml [2015-08-20]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-25] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin HKU\S-1-5-21-1572131850-2038388813-1490003344-1000: @kb-ext.cz/PKIComponent -> C:\Users\xx\AppData\Roaming\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll [1749-10-20] (Komerční banka, a.s.)
FF Plugin ProgramFiles/Appdata: C:\Users\xx\AppData\Roaming\mozilla\plugins\np-mswmp.dll [2009-09-25] (Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\21157136.js [2017-10-16] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\21157214.js [2017-10-16] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\21157136.cfg [2017-10-16] <==== ATTENTION
FF ExtraCheck: C:\Program Files\mozilla firefox\21157214.cfg [2017-10-16] <==== ATTENTION

Chrome:
=======
CHR Profile: C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default [2017-10-27]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-22]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-23]
CHR Extension: (Seznam Lištička - Email) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2017-05-23]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2017-05-23]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-23]
CHR Extension: (Avast SafePrice) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-10-22]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-22]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-23]
CHR Extension: (Avast Online Security) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-10-11]
CHR Extension: (Chrome Web Store Payments) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-17]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2017-05-23]
CHR Extension: (No Name) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-23]
CHR Extension: (Chrome Media Router) - C:\Users\xx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-11]
CHR Profile: C:\Users\xx\AppData\Local\Google\Chrome\User Data\System Profile [2017-10-27]
CHR HKLM\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx

Opera:
=======
OPR Extension: (Banana Phone) - C:\Users\xx\AppData\Roaming\Opera Software\Opera Stable\Extensions\djmcdmfiohgajhjcgafhfagbbffanmhd [2015-07-30]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [291840 2013-06-04] (Advanced Micro Devices, Inc.) [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5828816 2017-10-08] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-10-08] (AVAST Software)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4430792 2017-08-07] (Malwarebytes)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation)
S3 WsAppService; C:\Program Files\Wondershare\WAF\WsAppService.exe [256912 2015-05-27] (Wondershare)
U4 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]
S2 SpyEmrgHealth; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe [X]
S2 Update Banana Phone; "C:\Program Files\Banana Phone\updateBananaPhone.exe" [X]
S3 WsDrvInst; "C:\Program Files\Wondershare\MobileGo\DriverInstall.exe" [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 amd_sata; C:\Windows\System32\DRIVERS\amd_sata.sys [70824 2012-10-11] (Advanced Micro Devices)
R0 amd_xata; C:\Windows\System32\DRIVERS\amd_xata.sys [34984 2012-10-11] (Advanced Micro Devices)
R2 AODDriver4.2; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [48256 2012-04-09] (Advanced Micro Devices)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriverx.sys [255624 2017-10-08] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidshx.sys [157416 2017-10-08] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswblogx.sys [276736 2017-10-08] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbunivx.sys [50384 2017-10-08] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [42856 2017-10-08] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [39784 2017-09-02] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [124952 2017-10-08] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [99560 2017-10-08] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [70864 2017-10-08] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [783648 2017-10-26] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [499560 2017-10-08] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [149824 2017-10-08] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [297840 2017-10-08] (AVAST Software)
R3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [22528 2009-08-13] (CSR, plc)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [59904 2017-10-04] ()
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [166840 2017-10-27] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [91576 2017-10-27] (Malwarebytes)
R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [40384 2017-10-27] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [221112 2017-10-27] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [65824 2017-10-27] (Malwarebytes)
S3 avchv; system32\DRIVERS\avchv.sys [X]
S3 MSICDSetup; \??\D:\CDriver.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib.sys [X]
U4 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-27 18:40 - 2017-10-27 18:41 - 000019840 _____ C:\Users\xx\Desktop\FRST.txt
2017-10-27 18:40 - 2017-10-27 18:40 - 001799680 _____ (Farbar) C:\Users\xx\Desktop\FRST.exe
2017-10-27 18:40 - 2017-10-27 18:40 - 000000000 ____D C:\FRST
2017-10-27 18:37 - 2017-10-27 18:37 - 000027327 _____ C:\Users\xx\Desktop\mbam.txt
2017-10-27 18:25 - 2017-10-27 18:27 - 000065824 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-10-27 18:25 - 2017-10-27 18:25 - 000221112 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-10-27 18:25 - 2017-10-27 18:25 - 000166840 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2017-10-27 18:25 - 2017-10-27 18:25 - 000091576 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-10-27 18:25 - 2017-10-27 18:25 - 000040384 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-10-27 18:25 - 2017-10-27 18:25 - 000002024 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-10-27 18:25 - 2017-10-27 18:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-10-27 18:25 - 2017-10-27 18:25 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-10-27 18:25 - 2017-10-27 18:25 - 000000000 ____D C:\Program Files\Malwarebytes
2017-10-27 18:25 - 2017-10-04 13:15 - 000059904 _____ C:\Windows\system32\Drivers\mbae.sys
2017-10-27 18:24 - 2017-10-27 18:24 - 071535032 _____ (Malwarebytes ) C:\Users\xx\Downloads\mb3-setup-1878.1878-3.2.2.2029.exe
2017-10-27 18:04 - 2017-10-27 18:04 - 000000000 ____D C:\ProgramData\SWCUTemp
2017-10-27 10:22 - 2017-10-27 10:22 - 000000000 ____D C:\Users\xx\Documents\eagle
2017-10-27 10:18 - 2017-10-27 10:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EAGLE Layout Editor 7.7.0
2017-10-27 10:16 - 2017-10-27 10:17 - 000000000 ____D C:\EAGLE-7.7.0
2017-10-27 10:16 - 2017-10-27 10:16 - 000000000 ____D C:\Users\xx\AppData\Roaming\CadSoft
2017-10-27 09:56 - 2017-10-27 09:57 - 000000000 ____D C:\rsit
2017-10-27 09:56 - 2017-10-27 09:57 - 000000000 ____D C:\Program Files\trend micro
2017-10-27 09:56 - 2017-10-27 09:56 - 001206272 _____ C:\Users\xx\Desktop\RSIT.exe
2017-10-27 09:32 - 2017-10-27 09:32 - 000000000 ____D C:\Windows\pss
2017-10-26 10:41 - 2017-10-26 10:41 - 000000340 _____ C:\DelFix.txt
2017-10-26 10:19 - 2017-10-26 10:15 - 000024064 _____ C:\Windows\zoek-delete.exe
2017-10-25 21:34 - 2017-10-25 21:38 - 000000000 ____D C:\Users\xx\AppData\Local\Seznam.cz
2017-10-25 21:34 - 2017-10-25 21:34 - 000000865 _____ C:\Users\xx\Desktop\Seznam.cz.lnk
2017-10-25 21:34 - 2017-10-25 21:34 - 000000845 _____ C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Seznam.cz.lnk
2017-10-25 21:33 - 2017-10-25 21:34 - 000000000 ____D C:\Users\xx\AppData\Roaming\Seznam Browser
2017-10-25 20:42 - 2017-10-25 20:42 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2017-10-25 20:38 - 2017-10-25 20:38 - 000000000 ____D C:\ProgramData\adaware
2017-10-24 19:44 - 2017-10-24 19:44 - 000000969 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-10-24 19:44 - 2017-10-24 19:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-10-24 19:44 - 2017-10-24 19:44 - 000000000 ____D C:\Program Files\CCleaner
2017-10-23 16:49 - 2017-10-23 16:49 - 000000000 ____D C:\Users\xx\AppData\LocalLow\Oracle
2017-10-23 13:56 - 2017-10-23 13:56 - 056134208 _____ (Oracle Corporation) C:\Users\xx\Downloads\JavaSetup [1].exe
2017-10-23 13:44 - 2017-10-27 18:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2017-10-23 13:41 - 2017-10-27 18:21 - 000000000 ____D C:\Users\xx\AppData\Roaming\uTorrent
2017-10-23 13:41 - 2017-10-23 13:46 - 000000000 ____D C:\Program Files\uTorrent
2017-10-22 20:40 - 2017-10-22 20:40 - 000001623 _____ C:\Users\Public\Desktop\Browse Cut2D Desktop Trial Edition V9.0 Tutorials.lnk
2017-10-22 20:40 - 2017-10-22 20:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cut2D Desktop Trial Edition 9.0
2017-10-22 20:40 - 2017-10-22 20:40 - 000000000 ____D C:\Program Files\Common Files\Vectric
2017-10-22 20:39 - 2017-10-22 20:41 - 000000000 ____D C:\Users\Public\Documents\Vectric Files
2017-10-22 20:39 - 2017-10-22 20:40 - 000000000 ____D C:\Program Files\Cut2D Desktop Trial Edition 9.0
2017-10-22 20:39 - 2017-10-22 20:39 - 000000000 ____D C:\ProgramData\Vectric
2017-10-22 20:35 - 2017-10-22 20:35 - 000757210 _____ ( ) C:\Users\xx\Downloads\vectric_cut2d_crack_keygen (5).exe
2017-10-22 20:35 - 2017-10-22 20:35 - 000757210 _____ ( ) C:\Users\xx\Downloads\vectric_cut2d_crack_keygen (4).exe
2017-10-22 18:47 - 2017-10-22 18:47 - 000757210 _____ ( ) C:\Users\xx\Downloads\Vectric_Cut2d_Crack_Keygen (3).exe
2017-10-22 18:43 - 2017-10-22 18:43 - 030510920 _____ C:\Users\xx\Downloads\FlashVideoPlayer.exe
2017-10-22 18:41 - 2017-10-22 18:41 - 000757210 _____ ( ) C:\Users\xx\Downloads\Vectric_Cut2d_Crack_Keygen.exe
2017-10-22 18:41 - 2017-10-22 18:41 - 000757210 _____ ( ) C:\Users\xx\Downloads\Vectric_Cut2d_Crack_Keygen (2).exe
2017-10-22 18:41 - 2017-10-22 18:41 - 000757210 _____ ( ) C:\Users\xx\Downloads\Vectric_Cut2d_Crack_Keygen (1).exe
2017-10-22 11:13 - 2017-10-22 11:13 - 030510920 _____ C:\Users\xx\Downloads\FlashVideoPlayer [1].exe
2017-10-22 11:13 - 2017-10-22 11:13 - 000001147 _____ C:\Users\xx\Desktop\Pokračovat v instalaci Flash Video Player.lnk
2017-10-18 11:17 - 2017-10-18 11:17 - 000000014 _____ C:\Users\xx\Desktop\timereset.txt
2017-10-17 19:24 - 2017-10-17 19:24 - 000000218 _____ C:\Users\xx\AppData\Local\recently-used.xbel
2017-10-17 19:23 - 2017-10-17 19:23 - 000000000 ____D C:\Users\xx\AppData\Local\enchant
2017-10-17 19:20 - 2017-10-17 19:20 - 000000000 ____D C:\Users\xx\AppData\Local\fontconfig
2017-10-17 19:19 - 2017-10-24 19:48 - 000000000 ____D C:\Users\xx\AppData\Roaming\inkscape
2017-10-17 19:16 - 2017-10-17 19:18 - 000000000 ____D C:\Program Files\Inkscape
2017-10-17 19:16 - 2017-10-17 19:16 - 000000981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inkscape.lnk
2017-10-17 19:16 - 2017-10-17 19:16 - 000000969 _____ C:\Users\Public\Desktop\Inkscape.lnk
2017-10-13 10:08 - 2017-10-13 10:08 - 000000838 _____ C:\Users\Public\Desktop\Google SketchUp.lnk
2017-10-13 10:08 - 2017-10-13 10:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 6
2017-10-13 10:00 - 2017-10-13 10:07 - 039187328 _____ (Macrovision Corporation) C:\Users\xx\Downloads\01_GoogleSketchUpWCS_v6.4.247_free.exe
2017-10-13 09:54 - 2017-10-13 09:54 - 000000000 ____D C:\Users\xx\AppData\Roaming\Google
2017-10-13 09:54 - 2017-10-13 09:54 - 000000000 ____D C:\ProgramData\Google
2017-10-13 09:51 - 2017-10-13 09:51 - 044084917 _____ C:\Users\xx\Downloads\google-sketchup_8.0.16846.exe
2017-10-13 09:47 - 2017-10-13 09:49 - 162644504 _____ C:\Users\xx\Downloads\SketchUpMake-en-x64.exe
2017-10-13 09:23 - 2017-10-22 18:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cut2D Trial
2017-10-13 09:22 - 2017-10-13 09:22 - 016063616 _____ C:\Users\xx\Downloads\Cut2DTrial_V1_005_Setup.exe
2017-10-12 16:16 - 2017-10-12 16:25 - 000000000 ____D C:\Users\xx\Desktop\cut2d
2017-10-09 14:50 - 2017-10-09 14:50 - 001452847 _____ C:\Users\xx\Downloads\tti_tcb880.pdf
2017-10-09 14:41 - 2017-10-09 14:41 - 000000000 ____D C:\Users\xx\Desktop\cb schemata
2017-10-08 21:46 - 2017-10-08 21:46 - 000304816 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-09-27 12:15 - 2017-09-27 12:22 - 072853612 _____ C:\Users\xx\Desktop\VID_20170916_233542.3gp
2017-09-27 11:59 - 2017-09-27 12:03 - 000000000 ____D C:\Windows\system32\MRT
2017-09-27 11:59 - 2017-09-27 11:59 - 135337392 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-09-27 11:59 - 2016-06-25 17:43 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\EOSNotify.exe
2017-09-27 11:59 - 2011-04-09 08:13 - 003957632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2017-09-27 11:59 - 2011-04-09 08:13 - 003901824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-09-27 11:59 - 2011-04-09 07:56 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2017-09-27 11:59 - 2010-12-18 07:29 - 000541184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-09-27 11:59 - 2009-12-08 10:05 - 000310784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-09-27 11:59 - 2009-12-08 10:05 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-09-27 11:57 - 2012-06-03 00:19 - 001933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-09-27 11:57 - 2012-06-03 00:19 - 000577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-09-27 11:57 - 2012-06-03 00:19 - 000053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-09-27 11:57 - 2012-06-03 00:19 - 000045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-09-27 11:57 - 2012-06-03 00:19 - 000035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-09-27 11:57 - 2012-06-03 00:12 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-09-27 11:57 - 2012-06-03 00:12 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-09-27 11:57 - 2012-06-02 15:19 - 000171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-09-27 11:57 - 2012-06-02 15:12 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-27 18:41 - 2015-06-18 12:08 - 000000000 ____D C:\ProgramData\ConMet
2017-10-27 18:25 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2017-10-27 18:23 - 2015-07-23 18:23 - 000002430 _____ C:\Windows\Tasks\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user.job
2017-10-27 18:23 - 2015-07-23 18:23 - 000002430 _____ C:\Windows\Tasks\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.job
2017-10-27 18:15 - 2009-07-14 06:34 - 000014032 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-10-27 18:15 - 2009-07-14 06:34 - 000014032 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-10-27 18:13 - 2015-07-23 17:26 - 000000000 ____D C:\Users\xx\AppData\Roaming\Seznam.cz
2017-10-27 18:11 - 2015-05-29 19:35 - 000000000 ____D C:\Users\xx\AppData\Roaming\Skype
2017-10-27 18:08 - 2016-03-08 22:26 - 000000396 _____ C:\Windows\Tasks\simplitec Power Suite (Tray).job
2017-10-27 18:08 - 2015-06-18 12:08 - 000000000 ____D C:\Users\xx\AppData\Roaming\ConMet
2017-10-27 18:08 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-27 16:58 - 2015-07-23 17:24 - 000000000 ____D C:\Program Files\Opera
2017-10-27 16:51 - 2016-11-18 17:58 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-10-27 16:51 - 2015-05-27 20:56 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-10-27 13:11 - 2015-07-30 18:49 - 000000000 ____D C:\Program Files\GUPlayer
2017-10-27 10:15 - 2015-05-28 08:35 - 000000000 ____D C:\Program Files\instalprogramy
2017-10-26 21:34 - 2015-05-29 15:11 - 000783648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2017-10-26 10:03 - 2015-07-23 18:22 - 000000000 ____D C:\Program Files\Internet Speed Checker
2017-10-26 10:03 - 2015-07-23 17:27 - 000000000 ____D C:\Program Files\CinemaP-1.9cV23.07
2017-10-26 10:00 - 2015-09-19 21:39 - 000000000 ____D C:\Users\xx\AppData\Roaming\vlc
2017-10-26 09:54 - 2015-05-27 19:53 - 001603596 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-26 09:54 - 2009-07-14 10:44 - 000679114 _____ C:\Windows\system32\perfh005.dat
2017-10-26 09:54 - 2009-07-14 10:44 - 000144110 _____ C:\Windows\system32\perfc005.dat
2017-10-25 21:22 - 2015-05-27 20:08 - 000000000 ____D C:\Users\xx\Desktop\CNC
2017-10-25 17:52 - 2015-05-27 20:03 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-10-25 17:52 - 2015-05-27 20:03 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-10-25 17:52 - 2015-05-27 20:03 - 000000000 ____D C:\Windows\system32\Macromed
2017-10-24 19:48 - 2016-12-03 10:11 - 000000000 ____D C:\Users\xx\AppData\Roaming\PhotoScape
2017-10-24 19:47 - 2015-05-27 20:42 - 000000000 ____D C:\Windows\Panther
2017-10-24 15:56 - 2015-06-16 16:12 - 000000000 ___SD C:\Users\xx\AppData\LocalLow\Temp
2017-10-23 22:40 - 2016-11-19 12:04 - 000000000 ____D C:\Users\xx\AppData\LocalLow\Mozilla
2017-10-22 20:45 - 2015-09-19 21:39 - 000001028 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-10-22 20:45 - 2015-07-31 21:01 - 000000000 ____D C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-22 20:45 - 2015-07-31 21:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-22 20:45 - 2015-07-31 21:01 - 000000000 ____D C:\Program Files\WinRAR
2017-10-22 13:31 - 2016-10-09 12:35 - 000000000 ____D C:\Users\xx\AppData\Local\ElevatedDiagnostics
2017-10-18 11:26 - 2015-11-30 10:16 - 000022016 _____ C:\Users\xx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-10-16 22:28 - 2016-12-19 13:44 - 000000000 ____D C:\Users\xx\Desktop\arduino+rapsbery
2017-10-13 10:08 - 2015-05-27 19:50 - 000000000 ___HD C:\Program Files\InstallShield Installation Information
2017-10-13 10:02 - 2016-03-12 23:38 - 000000000 ____D C:\Program Files\Google
2017-10-08 21:46 - 2015-05-29 15:11 - 000499560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-10-08 21:46 - 2015-05-29 15:11 - 000297840 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-10-08 21:46 - 2015-05-29 15:11 - 000149824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-10-08 21:46 - 2015-05-29 15:11 - 000124952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-10-08 21:46 - 2015-05-29 15:11 - 000099560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-10-08 21:46 - 2015-05-29 15:11 - 000070864 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-10-08 21:46 - 2015-05-29 15:11 - 000042856 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-10-08 21:46 - 2015-05-29 15:08 - 000000000 ____D C:\ProgramData\AVAST Software
2017-10-08 21:45 - 2017-04-05 12:02 - 000276736 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswblogx.sys
2017-10-08 21:45 - 2017-04-05 12:02 - 000255624 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdriverx.sys
2017-10-08 21:45 - 2017-04-05 12:02 - 000157416 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidshx.sys
2017-10-08 21:45 - 2017-04-05 12:02 - 000050384 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbunivx.sys
2017-09-30 17:30 - 2017-06-27 18:48 - 000000000 ____D C:\Users\xx\Desktop\fotovideo blackwiev
2017-09-30 16:40 - 2017-02-22 16:25 - 000000000 ____D C:\Users\xx\Desktop\radioamater
2017-09-28 12:46 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\rescache
2017-09-28 09:11 - 2016-12-23 18:42 - 000002141 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-28 09:11 - 2016-12-23 18:42 - 000002129 _____ C:\Users\Public\Desktop\Google Chrome.lnk

==================== Files in the root of some directories =======

2016-03-02 22:22 - 2001-01-19 16:09 - 000000291 _____ () C:\Program Files\about
2016-03-02 22:22 - 2001-04-02 23:19 - 000000603 _____ () C:\Program Files\Archival quality.rlo
2016-03-02 22:22 - 1999-11-24 07:40 - 000025292 _____ () C:\Program Files\copying
2016-03-02 22:22 - 2000-04-23 01:00 - 000000652 _____ () C:\Program Files\Install.inf
2016-03-02 22:22 - 2003-11-08 15:03 - 000000631 _____ () C:\Program Files\k1.rlo
2016-03-02 22:22 - 2001-03-06 04:33 - 000184832 _____ () C:\Program Files\lame.exe
2016-03-02 22:22 - 2001-01-20 20:00 - 000151552 _____ (Works Warlock) C:\Program Files\LameACM.dll
2016-03-02 22:22 - 2000-05-02 01:00 - 000004630 _____ () C:\Program Files\lameacm_j.htm
2016-03-02 22:22 - 2001-03-06 04:33 - 000142336 _____ () C:\Program Files\lame_enc.dll
2016-03-02 22:22 - 2000-12-19 07:16 - 000000707 _____ () C:\Program Files\license
2016-03-02 22:22 - 2000-05-02 01:00 - 000003120 _____ () C:\Program Files\license.htm
2016-03-02 22:22 - 2001-04-02 23:19 - 000000601 _____ () C:\Program Files\Medium quality.rlo
2016-03-02 22:22 - 2001-04-02 23:19 - 000000589 _____ () C:\Program Files\Modem.rlo
2016-03-02 22:22 - 2001-04-02 23:19 - 000000625 _____ () C:\Program Files\Portable player (maximize playing time).rlo
2016-03-02 22:22 - 2001-04-02 23:19 - 000000601 _____ () C:\Program Files\Portable player.rlo
2015-05-27 20:08 - 2015-02-23 22:51 - 000004615 _____ () C:\Program Files\PRAVDA_ROMAN.p12
2016-03-02 22:22 - 2001-03-26 21:25 - 000001185 _____ () C:\Program Files\RazorLame.dat
2016-03-02 22:22 - 2001-04-12 18:14 - 000639488 _____ () C:\Program Files\RazorLame.exe
2016-03-02 22:22 - 2001-04-08 18:40 - 000004616 _____ () C:\Program Files\RazorLame.html
2016-03-02 22:22 - 2016-03-02 10:57 - 000000783 _____ () C:\Program Files\razorlame.ini
2016-03-02 22:22 - 2016-03-02 10:59 - 000001083 _____ () C:\Program Files\RazorLame.log
2016-03-02 22:22 - 2016-03-02 10:59 - 000000000 _____ () C:\Program Files\RAZORLAME.lst
2016-03-02 22:22 - 2001-04-12 14:14 - 000004967 _____ () C:\Program Files\RazorLame.txt
2016-03-02 22:22 - 2000-12-19 06:51 - 000001905 _____ () C:\Program Files\readme
2016-03-02 22:22 - 2001-04-02 23:19 - 000000602 _____ () C:\Program Files\Transparency.rlo
2016-03-02 22:22 - 2001-02-26 06:38 - 000025605 _____ () C:\Program Files\USAGE
2015-11-30 10:16 - 2017-10-18 11:26 - 000022016 _____ () C:\Users\xx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-10-17 19:24 - 2017-10-17 19:24 - 000000218 _____ () C:\Users\xx\AppData\Local\recently-used.xbel
2015-07-31 22:17 - 2015-07-31 22:38 - 000068952 _____ () C:\Users\xx\AppData\Local\uir$$1.TMP

Files to move or delete:
====================
C:\Users\xx\epson376744eu.exe
C:\Users\xx\ExtIO_RTL.dll
C:\Users\xx\fp20htp.exe
C:\Users\xx\KB_podepisovaci_modul.exe
C:\Users\xx\Lame_v3.99.3_for_Windows.exe
C:\Users\xx\seznam-firefox-win32-cs-26.0.0.exe
C:\Users\xx\zadig_2.2.exe
C:\Users\xx\zadig_xp_2.1.2.exe
C:\Users\xx\zadig_xp_2.2.exe


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-21 13:20

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 27.10.17
Čas skenování: 18:28
Logovací soubor: db25660c-bb33-11e7-acd6-001a7dda7113.json
Správce: Ano

-Informace o softwaru-
Verze: 3.2.2.2029
Verze komponentů: 1.0.212
Aktualizovat verzi balíku komponent: 1.0.3112
Licence: Zkušební

-Systémová informace-
OS: Windows 7
CPU: x86
Systém souborů: NTFS
Uživatel: xx-PC\xx

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 259138
Zjištěné hrozby: 175
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 6 min, 29 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 49
PUP.Optional.CinemaPlus, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\ARENAHD, Žádná uživatelská akce, [2507], [236510],1.0.3112
PUP.Optional.InstallCore, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\csastats, Žádná uživatelská akce, [2], [260986],1.0.3112
PUP.Optional.HighDefAction, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\HighDefAction, Žádná uživatelská akce, [14195], [239059],1.0.3112
PUP.Optional.InstallCore, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\ICSW1.23, Žádná uživatelská akce, [2], [239562],1.0.3112
Adware.Norassie, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\Norassie, Žádná uživatelská akce, [2885], [361347],1.0.3112
PUP.Optional.YorkNewCin, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\YorkNewCin, Žádná uživatelská akce, [9349], [245167],1.0.3112
PUP.Optional.CinemaPlus, HKLM\SOFTWARE\ARENAHD, Žádná uživatelská akce, [2507], [236526],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, Žádná uživatelská akce, [6172], [241622],1.0.3112
PUP.Optional.BananaPhone, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update Banana Phone, Žádná uživatelská akce, [10368], [235668],1.0.3112
PUP.Optional.Yontoo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Update Banana Phone, Žádná uživatelská akce, [39], [254062],1.0.3112
PUP.Optional.Yontoo, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.CrossRider, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Žádná uživatelská akce, [220], [237370],1.0.3112
PUP.Optional.PCTuner, HKLM\SOFTWARE\HIGHDEFACTION, Žádná uživatelská akce, [11983], [241635],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9469B3D9-C05D-4468-B19C-D341F3CC8C2E}, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{EF73E1E0-EAA1-4F35-B46D-16BE47CE8C4D}, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.VideoAdBlocker.ChrPRST, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\BKNBNAPADDJDNBILPMLACDKJDKJMBJHD, Žádná uživatelská akce, [1021], [307227],1.0.3112
PUP.Optional.VideoAdBlocker.ChrPRST, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\bknbnapaddjdnbilpmlacdkjdkjmbjhd, Žádná uživatelská akce, [1021], [307227],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, Žádná uživatelská akce, [220], [237507],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\7359, Žádná uživatelská akce, [220], [237507],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${ieUtilsLightElevationPolicyID}, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{62155D33-3CE2-401E-8967-5A270628A3D5}, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.CrossRider, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Cinema PlusV23.07, Žádná uživatelská akce, [220], [237378],1.0.3112
PUP.Optional.CrossRider, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Speedchecker, Žádná uživatelská akce, [220], [237465],1.0.3112
PUP.Optional.ProductSetup, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\PRODUCTSETUP, Žádná uživatelská akce, [14409], [242047],1.0.3112
PUP.Optional.ByteFence, HKU\S-1-5-18\SOFTWARE\ByteFence, Žádná uživatelská akce, [632], [388728],1.0.3112
Adware.Elex, HKU\S-1-5-18\SOFTWARE\elex-tech, Žádná uživatelská akce, [1], [446615],1.0.3112
PUP.Optional.MyStart, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}, Žádná uživatelská akce, [1642], [241097],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Žádná uživatelská akce, [220], [237505],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5, Žádná uživatelská akce, [220], [237511],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user, Žádná uživatelská akce, [220], [237511],1.0.3112
PUP.Optional.AmiUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\amiupdaterExd, Žádná uživatelská akce, [13987], [235414],1.0.3112
PUP.Optional.Cinema, HKLM\SOFTWARE\CinemaP-1.9cV23.07, Žádná uživatelská akce, [6202], [236459],1.0.3112
PUP.Optional.InternetSpeedChecker, HKLM\SOFTWARE\Internet Speed Checker, Žádná uživatelská akce, [4740], [190185],1.0.3112
PUP.Optional.AmiUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\amiupdaterExi, Žádná uživatelská akce, [13987], [235414],1.0.3112
PUP.Optional.YorkNewCin, HKLM\SOFTWARE\YorkNewCin, Žádná uživatelská akce, [9349], [245168],1.0.3112
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder0, Žádná uživatelská akce, [46], [186209],1.0.3112
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WarThunder1, Žádná uživatelská akce, [46], [186209],1.0.3112
PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\TRACING\ByteFence_RASAPI32, Žádná uživatelská akce, [632], [389038],1.0.3112
PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\TRACING\ByteFence_RASMANCS, Žádná uživatelská akce, [632], [389038],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\pcspeedup_RASAPI32, Žádná uživatelská akce, [6172], [255415],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\pcspeedup_RASMANCS, Žádná uživatelská akce, [6172], [255415],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\PCSUSpeedTest_RASAPI32, Žádná uživatelská akce, [6172], [246229],1.0.3112
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\TRACING\PCSUSpeedTest_RASMANCS, Žádná uživatelská akce, [6172], [246229],1.0.3112
PUP.Optional.Amonetize, HKLM\SOFTWARE\CLASSES\dream.capture.1, Žádná uživatelská akce, [6], [169563],1.0.3112
PUP.Optional.Amonetize, HKLM\SOFTWARE\CLASSES\DREAM.CAPTURE, Žádná uživatelská akce, [6], [169563],1.0.3112
PUP.Optional.Amonetize, HKLM\SOFTWARE\CLASSES\CLSID\{117270FA-48AC-45BB-9171-B63D1B42A910}, Žádná uživatelská akce, [6], [169563],1.0.3112
PUP.Optional.BananaPhone, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{88E4FBF6-B6BC-438F-8543-EF5C3A58A479}, Žádná uživatelská akce, [10368], [167680],1.0.3112
PUP.Optional.BananaPhone, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{88E4FBF6-B6BC-438F-8543-EF5C3A58A479}, Žádná uživatelská akce, [10368], [167680],1.0.3112
PUP.Optional.MyStart, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A2159D33-3CE2-401B-8967-1B270628A311}, Žádná uživatelská akce, [1642], [387670],1.0.3112

Hodnota v registru: 11
PUP.Optional.CinemaPlus, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\ARENAHD|VALUE, Žádná uživatelská akce, [2507], [236510],1.0.3112
PUP.Optional.CinemaPlus, HKLM\SOFTWARE\ARENAHD|VALUE, Žádná uživatelská akce, [2507], [236526],1.0.3112
PUP.Optional.PCTuner, HKLM\SOFTWARE\HIGHDEFACTION|VALUE, Žádná uživatelská akce, [11983], [241635],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9469B3D9-C05D-4468-B19C-D341F3CC8C2E}|PATH, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{EF73E1E0-EAA1-4F35-B46D-16BE47CE8C4D}|PATH, Žádná uživatelská akce, [220], [259199],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${ieUtilsLightElevationPolicyID}|APPPATH, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{62155D33-3CE2-401E-8967-5A270628A3D5}|APPPATH, Žádná uživatelská akce, [7780], [186512],1.0.3112
PUP.Optional.ProductSetup, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\PRODUCTSETUP|TB, Žádná uživatelská akce, [14409], [242047],1.0.3112
PUP.Optional.MyStart, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}|URL, Žádná uživatelská akce, [1642], [241097],1.0.3112
PUP.Optional.oTweakDriverUpdater, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\DRIVERUPDATER|PHSUPPNUM, Žádná uživatelská akce, [8479], [398929],1.0.3112
PUP.Optional.PCTuner, HKU\S-1-5-21-1572131850-2038388813-1490003344-1000\SOFTWARE\HIGHDEFACTION|VALUE, Žádná uživatelská akce, [11983], [241632],1.0.3112

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 18
PUP.Optional.Amonetize, C:\USERS\XX\APPDATA\LOCAL\11028, Žádná uživatelská akce, [6], [186635],1.0.3112
PUP.Optional.Cinema, C:\PROGRAM FILES\CinemaP-1.9cV23.07, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.GUPlayer, C:\PROGRAM FILES\GUPLAYER, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\USERS\XX\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\GUPLAYER, Žádná uživatelská akce, [6552], [177529],1.0.3112
PUP.Optional.GoldenGate, C:\USERS\XX\APPDATA\ROAMING\GOLDENGATE, Žádná uživatelská akce, [15176], [261914],1.0.3112
PUP.Optional.MyStart, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\LOCALLOW\MYSTARTTB, Žádná uživatelská akce, [1642], [178641],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications\_crx_cmegngdghknoiclpbcjlajfkphoelcia, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Local Storage, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Cache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\USERS\XX\APPDATA\LOCAL\ALIEXPRESS, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\USERS\XX\APPDATA\ROAMING\ALIEXPRESS_HELPER, Žádná uživatelská akce, [73], [348735],1.0.3112

Soubor: 97
PUP.Optional.Amonetize, C:\USERS\XX\APPDATA\LOCAL\11028\status.cfg, Žádná uživatelská akce, [6], [186635],1.0.3112
PUP.Optional.Amonetize, C:\Users\xx\AppData\Local\11028\Updater.xml, Žádná uživatelská akce, [6], [186635],1.0.3112
PUP.Optional.MyStartTB.ShrtCln, C:\PROGRAM FILES\MOZILLA FIREFOX\BROWSER\SEARCHPLUGINS\MYSTARTTB.XML, Žádná uživatelská akce, [11309], [193312],1.0.3112
PUP.Optional.CrossRider, C:\WINDOWS\SYSTEM32\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5, Žádná uživatelská akce, [220], [235118],1.0.3112
PUP.Optional.CrossRider.Generic, C:\WINDOWS\SYSTEM32\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user, Žádná uživatelská akce, [1000], [307239],1.0.3112
PUP.Optional.CrossRider, C:\WINDOWS\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5.job, Žádná uživatelská akce, [220], [235119],1.0.3112
PUP.Optional.CrossRider.Generic, C:\WINDOWS\TASKS\17eeae4f-ac95-49c6-91b9-e8f976ef46c5-5_user.job, Žádná uživatelská akce, [1000], [307240],1.0.3112
PUP.Optional.CrossRider, C:\WINDOWS\TASKS\db19b84b-399f-41ad-82dc-bf22860366da-5.job, Žádná uživatelská akce, [220], [235119],1.0.3112
PUP.Optional.CrossRider.Generic, C:\WINDOWS\TASKS\db19b84b-399f-41ad-82dc-bf22860366da-5_user.job, Žádná uživatelská akce, [1000], [307240],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da-4.exe, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da-5.exe, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\db19b84b-399f-41ad-82dc-bf22860366da.xpi, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.Cinema, C:\Program Files\CinemaP-1.9cV23.07\utils.exe, Žádná uživatelská akce, [6202], [176014],1.0.3112
PUP.Optional.GUPlayer, C:\USERS\XX\DESKTOP\GUPLAYER.LNK, Žádná uživatelská akce, [6552], [238928],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avcodec-54.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avcodec-54.dll_2, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avdevice-54.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avformat-54.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\avutil-51.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\GuPlayer.exe, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\libfreetype-6.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\libpng15-15.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\postproc-52.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\SDL.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\SDL_image.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\SDL_ttf.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\swresample-0.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\swscale-2.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\Uninstaller.exe, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Program Files\GUPlayer\zlib1.dll, Žádná uživatelská akce, [6552], [177527],1.0.3112
PUP.Optional.GUPlayer, C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer\GUPlayer.lnk, Žádná uživatelská akce, [6552], [177529],1.0.3112
PUP.Optional.GUPlayer, C:\Users\xx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer\Uninstall GUPlayer.lnk, Žádná uživatelská akce, [6552], [177529],1.0.3112
PUP.Optional.Yontoo, C:\PROGRAMDATA\NTUSER.POL, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.Yontoo, C:\WINDOWS\SYSTEM32\GROUPPOLICY\MACHINE\REGISTRY.POL, Žádná uživatelská akce, [39], [-1],0.0.0
PUP.Optional.GoldenGate, C:\USERS\XX\APPDATA\ROAMING\GOLDENGATE\3dcdd8bc386c12f910cbb51bb9c9a531.logic.db, Žádná uživatelská akce, [15176], [261914],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\000003.log, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\CURRENT, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\LOCK, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\LOG, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000001, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\000003.log, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\CURRENT, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\LOCK, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\LOG, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Extension Rules\MANIFEST-000001, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Local Storage\https_www.aliexpress.com_0.localstorage, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Local Storage\https_www.aliexpress.com_0.localstorage-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications\_crx_cmegngdghknoiclpbcjlajfkphoelcia\AliExpress.ico, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Web Applications\_crx_cmegngdghknoiclpbcjlajfkphoelcia\AliExpress.ico.md5, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Login Data, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\ChromeDWriteFontCache, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Cookies, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Cookies-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Favicons, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Favicons-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\History, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\History-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Login Data-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Network Persistent State, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Origin Bound Certs, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Origin Bound Certs-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\README, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Top Sites, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Top Sites-journal, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\TransportSecurity, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Default\Visited Links, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_0, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_1, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_2, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\data_3, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\ShaderCache\GPUCache\index, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\First Run, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Local\AliExpress\User Data\Local State, Žádná uživatelská akce, [73], [343982],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Roaming\AliExpress_helper\3dcdd8bc386c12f910cbb51bb9c9a531.data.db, Žádná uživatelská akce, [73], [348735],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Roaming\AliExpress_helper\3dcdd8bc386c12f910cbb51bb9c9a531.events.db, Žádná uživatelská akce, [73], [348735],1.0.3112
PUP.Optional.AliExpress, C:\Users\xx\AppData\Roaming\AliExpress_helper\3dcdd8bc386c12f910cbb51bb9c9a531.user.db, Žádná uživatelská akce, [73], [348735],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULTS\PREF\21157136.JS, Žádná uživatelská akce, [1156], [330648],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULTS\PREF\21157214.JS, Žádná uživatelská akce, [1156], [330648],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\21157136.CFG, Žádná uživatelská akce, [1156], [330649],1.0.3112
PUP.Optional.FFHijacker, C:\PROGRAM FILES\MOZILLA FIREFOX\21157214.CFG, Žádná uživatelská akce, [1156], [330649],1.0.3112
PUP.Optional.BundleInstaller, C:\PROGRAM FILES\INSTALPROGRAMY\FLASHVIDEOPLAYER.EXE, Žádná uživatelská akce, [20], [451031],1.0.3112
PUP.Optional.oTweakDriverUpdater, C:\PROGRAM FILES\INSTALPROGRAMY\DRIVER1037WIN.EXE, Žádná uživatelská akce, [8479], [442410],1.0.3112
PUP.Optional.BundleInstaller, C:\PROGRAM FILES\INSTALPROGRAMY\JAVASETUP.EXE, Žádná uživatelská akce, [20], [451031],1.0.3112
PUP.Optional.InstallCore, C:\PROGRAM FILES\INSTALPROGRAMY\MICROSOFT_FRONTPAGE.EXE, Žádná uživatelská akce, [2], [301105],1.0.3112
PUP.Optional.BundleInstaller, C:\PROGRAM FILES\INSTALPROGRAMY\SKYPE_1553016736.EXE, Žádná uživatelská akce, [20], [378229],1.0.3112
Adware.YoBrowser, C:\PROGRAM FILES\INSTALPROGRAMY\VECTRIC_CUT2D_CRACK_KEYGEN.EXE, Žádná uživatelská akce, [2681], [448550],1.0.3112
PUP.Optional.CrossRider, C:\PROGRAM FILES\INTERNET SPEED CHECKER\UTILS.EXE, Žádná uživatelská akce, [220], [8450],1.0.3112
FraudTool.YAC, C:\WINDOWS\SYSTEM32\DRIVERS\ISAFENETFILTER.SYS, Žádná uživatelská akce, [6378], [299006],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (4).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
PUP.Optional.ASK, C:\USERS\XX\DOWNLOADS\ATUBECATCHER.EXE, Žádná uživatelská akce, [525], [398182],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (5).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
PUP.Optional.OpenCandy, C:\USERS\XX\DOWNLOADS\PHOTOSCAPE_V3.7.EXE, Žádná uživatelská akce, [524], [297667],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (2).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (3).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN.EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
Adware.InstallCore, C:\USERS\XX\DOWNLOADS\VECTRIC_CUT2D_CRACK_KEYGEN (1).EXE, Žádná uživatelská akce, [930], [449579],1.0.3112
PUP.Optional.BundleInstaller, C:\USERS\XX\FP20HTP.EXE, Žádná uživatelská akce, [20], [349885],1.0.3112

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: přesměrování na jiné stránky

#5 Příspěvek od JaRon »

Najdene polozky v MBAM si nechak zmazat ? Opakovana kontrola MUSI byt cista
+
je nevyhnutne doinstalovat servicepack1 a Msie 10 prip. 11, inac je to derave ako sito
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

joflik
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 29 črc 2013 08:45

Re: přesměrování na jiné stránky

#6 Příspěvek od joflik »

JaRon píše:Najdene polozky v MBAM si nechak zmazat ? Opakovana kontrola MUSI byt cista
+
je nevyhnutne doinstalovat servicepack1 a Msie 10 prip. 11, inac je to derave ako sito
zdá se, že se problém podařilo odstranit tím pročištěním, takže děkuju za radu.

SP na W7 32 bit je problém najít.A bez SP zase zřejmě nejda nainstalovat MSIE 10

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: přesměrování na jiné stránky

#7 Příspěvek od JaRon »

OK lock :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přesměrování na jiné stránky

#8 Příspěvek od cernohous13 »

joflik píše: SP na W7 32 bit je problém najít.A bez SP zase zřejmě nejda nainstalovat MSIE 10
Ujo Google mi možná něco našel :?:

Něco od MS https://support.microsoft.com/cs-cz/hel ... pack-1-sp1

KB976932 ke stažení https://www.microsoft.com/cs-cz/downloa ... px?id=5842

good luck :wink:
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Zamčeno