Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

reklama přes IE při otevření odkazu

Návody, recenze, diskuze, řešení problémů

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zpráva
Autor
Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#16 Příspěvek od vyosek »

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#17 Příspěvek od bonapart »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.4 (10.06.2013:1)
OS: Microsoft Windows XP x86
Ran by bonapart on p  11.10.2013 at 15:51:50,58
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\filescout
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\startsearch
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yahoopartnertoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{415419C3-DAD0-4DF1-AC37-22C72AD81878}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{415419C3-DAD0-4DF1-AC37-22C72AD81878}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\driverscanner
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{c2f8ca82-2bd9-4513-b2d1-08a47914c1da}_is1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2790392
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"



~~~ Files

Successfully deleted: [File] C:\WINDOWS\Tasks\dsmonitor.job
Successfully deleted: [File] "C:\WINDOWS\system32\roboot.exe"
Successfully deleted: [File] "C:\end"



~~~ Folders

Successfully deleted: [Folder] "C:\Documents and Settings\bonapart\Data aplikacˇ\babylon"
Successfully deleted: [Folder] "C:\Documents and Settings\bonapart\Data aplikacˇ\dvdvideosoftiehelpers"
Successfully deleted: [Folder] "C:\Documents and Settings\bonapart\Data aplikacˇ\file scout"
Successfully deleted: [Folder] "C:\Documents and Settings\bonapart\Data aplikacˇ\minibar"
Successfully deleted: [Folder] "C:\Documents and Settings\bonapart\Data aplikacˇ\performersoft"
Successfully deleted: [Folder] "C:\Program Files\conduit"
Successfully deleted: [Folder] "C:\Program Files\minibar"





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p  11.10.2013 at 16:00:14,06
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#18 Příspěvek od vyosek »

Pokracujte AdwCleanerem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#19 Příspěvek od bonapart »

# AdwCleaner v3.007 - Report created 11/10/2013 at 16:04:28
# Updated 09/10/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : bonapart - AAA
# Running from : C:\Documents and Settings\bonapart\Plocha\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Babylon
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService
Folder Deleted : C:\Documents and Settings\All Users\Nabídka Start\Programy\Uniblue\DriverScanner
Folder Deleted : C:\Program Files\Red Sky
Folder Deleted : C:\Program Files\Uniblue\DriverScanner
Folder Deleted : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Conduit
Folder Deleted : C:\Documents and Settings\bonapart\Local Settings\Data aplikací\DownTango
Folder Deleted : C:\Documents and Settings\bonapart\Local Settings\Data aplikací\Minibar
Folder Deleted : C:\Documents and Settings\bonapart\Data aplikací\7go
Folder Deleted : C:\Documents and Settings\bonapart\Data aplikací\SpeedAnalysis3
Folder Deleted : C:\Documents and Settings\bonapart\Data aplikací\Uniblue\DriverScanner
File Deleted : C:\Documents and Settings\bonapart\Data aplikací\speedanalysis.ico

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [7go@7go.com]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [7go@7go.com]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{539F76FD-084E-4858-86D5-62F02F54AE86}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60EACC1A-33FA-443D-9846-17B28E2C9BDB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06E50566-0AB7-431C-841D-62794727DAF9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F13D3582-1359-4F8F-9A48-EF3AE9F5701C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{539F76FD-084E-4858-86D5-62F02F54AE86}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FF103732-4528-4322-AA8B-F7849AB7776B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FF103732-4528-4322-AA8B-F7849AB7776B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{539F76FD-084E-4858-86D5-62F02F54AE86}]
Key Deleted : HKLM\Software\Minibar
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Uniblue\DriverScanner
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\FilesFrog Update Checker
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


*************************

AdwCleaner[R0].txt - [6518 octets] - [10/10/2013 14:53:52]
AdwCleaner[R1].txt - [4658 octets] - [11/10/2013 16:02:56]
AdwCleaner[S0].txt - [4596 octets] - [11/10/2013 16:04:28]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4656 octets] ##########

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#20 Příspěvek od bonapart »

zatim moc dekuji budu u pc az v pondeli, jestli muzeme pokracovat, ale jiz po aplikovani jrt se problem prestal objevovat, dokoncil jsem i adw a poslal log. hezky vikend Milan.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#21 Příspěvek od vyosek »

:arrow: OK, v pondeli tu tez budu :)

:arrow: Udelejte log z FRSTL http://forum.viry.cz/viewtopic.php?f=24&t=132509
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#22 Příspěvek od bonapart »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2013
Ran by bonapart (administrator) on AAA on 14-10-2013 13:39:37
Running from C:\Documents and Settings\bonapart\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(VIA Technologies, Inc.) C:\Program Files\VIA Technologies, Inc\Audio Deck\ADeck.exe
(RealNetworks, Inc.) C:\Program Files\Common Files\Real\Update_OB\realsched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastUI.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
() C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jqs.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
() C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe
(Nitro PDF Software) C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
(O&O Software GmbH) C:\WINDOWS\system32\oodag.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Crawler.com) C:\Program Files\Spyware Terminator\st_rsser.exe
(Microsoft Corporation) C:\WINDOWS\system32\taskmgr.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(AVTECH) C:\Program Files\VideoViewer\VideoViewer.exe
(forum.viry.cz) C:\Documents and Settings\bonapart\Plocha\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [OODefragTray] - C:\WINDOWS\system32\oodtray.exe [2512392 2007-05-11] (O&O Software GmbH)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [nwiz] - nwiz.exe /install
HKLM\...\Run: [AudioDeck] - C:\Program Files\VIA Technologies, Inc\Audio Deck\ADeck.exe [5060608 2004-02-18] (VIA Technologies, Inc.)
HKLM\...\Run: [NvMediaCenter] - RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [TkBellExe] - C:\Program Files\Common Files\Real\Update_OB\realsched.exe [185896 2012-09-23] (RealNetworks, Inc.)
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2010-02-10] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKCU\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
HKCU\...\Run: [OEXPRESS] - C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [26624 2010-09-30] ()
HKCU\...\Run: [] - [x]
MountPoints2: {fa61e5d0-5beb-11e2-8b12-00e07ddd8e82} - H:\HTC_Sync_Manager_PC.exe
HKU\Administrator\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG)
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.exe.lnk
ShortcutTarget: Adobe Gamma Loader.exe.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * OODBS

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} URL = http://www.google.cz/search?q={searchTe ... {startPage}
SearchScopes: HKCU - {E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} URL = http://www.google.cz/search?q={searchTe ... {startPage}
BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc32.cab
DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
DPF: {53049A9A-1122-4673-B8D4-12F545AE3285} http://10.0.0.35:88/AVC_AX_764.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 5501909567
DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} https://www.mojedatovaschranka.cz/stati ... ?3,16,13,0
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com/activex/ractrl.cab?lmi=724
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

========================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-10-19] (SUPERAntiSpyware.com)
R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2010-02-10] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 MySQL; C:\Program Files\MySQL\MySQL Server 5.0\my.ini [9376 2013-09-22] ()
R2 NitroReaderDriverReadSpool2; C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [196912 2011-06-21] (Nitro PDF Software)
R2 O&O Defrag; C:\WINDOWS\system32\oodag.exe [1050120 2007-05-11] (O&O Software GmbH)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2012-10-08] ()
R2 ST2012_Svc; C:\Program Files\Spyware Terminator\st_rsser.exe [587472 2012-09-07] (Crawler.com)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [66336 2013-08-30] (AVAST Software)
R1 AswRdr; C:\Windows\System32\Drivers\AswRdr.sys [49760 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [177864 2013-08-30] ()
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] ()
R3 ms_mpu401; C:\Windows\System32\drivers\msmpu401.sys [2944 2001-08-18] (Microsoft Corporation)
S3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2004-08-04] (Realtek Semiconductor Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SIVDriver; C:\WINDOWS\system32\Drivers\SIVX32.sys [104848 2012-12-14] (Ray Hinchliffe)
R0 speedfan; C:\Windows\System32\speedfan.sys [5248 2006-09-24] (Windows (R) 2000 DDK provider)
R1 sp_rsdrv2; C:\WINDOWS\system32\drivers\sp_rsdrv2.sys [32768 2011-06-21] ()
R0 viadsk; C:\Windows\System32\DRIVERS\viadsk.sys [56576 2013-09-20] (VIA Technologies, Inc.)
R3 VIASens; C:\Windows\System32\drivers\viasens.sys [391680 2003-11-07] (Sensaura Ltd)
R3 VIAudio; C:\Windows\System32\drivers\viaudios.sys [113024 2003-12-18] (VIA Technologies, Inc.)
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
U1 WS2IFSL;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-14 13:39 - 2013-10-14 13:39 - 00000000 ____D C:\FRST
2013-10-14 13:27 - 2013-10-14 13:27 - 01087213 _____ (Farbar) C:\Documents and Settings\bonapart\Plocha\FRST.exe
2013-10-14 13:26 - 2013-10-14 13:26 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\bonapart\Plocha\FRSTLauncher.exe
2013-10-11 16:03 - 2013-10-11 16:14 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\reklama pres explorer
2013-10-11 15:51 - 2013-10-11 15:51 - 00000000 ____D C:\WINDOWS\ERUNT
2013-10-11 15:16 - 2013-10-14 12:33 - 00000320 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-10-11 15:16 - 2013-10-11 15:16 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\avast! Free Antivirus
2013-10-11 15:16 - 2013-08-30 09:48 - 00770344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00369584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00177864 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00066336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00056080 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00049760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00049376 _____ C:\WINDOWS\system32\Drivers\aswRvrt.sys
2013-10-11 15:16 - 2013-08-30 09:48 - 00029816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswFsBlk.sys
2013-10-11 15:16 - 2013-08-30 09:47 - 00229648 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2013-10-11 15:15 - 2013-08-30 09:47 - 00041664 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2013-10-11 15:14 - 2013-10-11 15:14 - 00000000 ____D C:\Program Files\AVAST Software
2013-10-11 15:14 - 2013-10-11 15:14 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-10-11 14:58 - 2013-10-14 12:33 - 00000418 _____ C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_bonapart.job
2013-10-11 14:58 - 2013-10-13 15:00 - 00000408 _____ C:\WINDOWS\Tasks\ReclaimerUpdateXML_bonapart.job
2013-10-11 14:58 - 2013-10-13 13:59 - 00000412 _____ C:\WINDOWS\Tasks\ReclaimerUpdateFiles_bonapart.job
2013-10-11 14:54 - 2013-10-11 14:54 - 00017616 _____ C:\Documents and Settings\bonapart\Dokumenty\cc_20131011_145429.reg
2013-10-11 14:09 - 2013-10-11 14:09 - 00000000 ____D C:\rsit
2013-10-11 14:09 - 2013-10-11 14:09 - 00000000 ____D C:\Program Files\trend micro
2013-10-11 13:10 - 2013-10-11 13:10 - 00000000 ___RD C:\Documents and Settings\bonapart\Dokumenty\Hudba
2013-10-10 14:53 - 2013-10-11 16:04 - 00000000 ____D C:\AdwCleaner
2013-10-10 14:52 - 2013-10-10 14:52 - 00000403 _____ C:\WINDOWS\wmsetup.log
2013-10-09 12:45 - 2013-10-09 12:45 - 00007012 _____ C:\WINDOWS\system32\PerfStringBackup.TMP
2013-10-09 12:42 - 2013-10-09 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$
2013-10-09 12:42 - 2013-10-09 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$
2013-10-09 12:41 - 2013-10-09 12:42 - 00130188 _____ C:\WINDOWS\KB2862335.log
2013-10-09 12:20 - 2013-10-09 12:20 - 00009128 _____ C:\WINDOWS\KB2884256.log
2013-10-09 12:20 - 2013-10-09 12:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2884256$
2013-10-09 12:20 - 2013-10-09 12:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$
2013-10-09 12:19 - 2013-10-09 12:20 - 00009872 _____ C:\WINDOWS\KB2868038.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00046897 _____ C:\WINDOWS\iis6.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00043282 _____ C:\WINDOWS\FaxSetup.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00020692 _____ C:\WINDOWS\ocgen.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00019749 _____ C:\WINDOWS\tsoc.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00014544 _____ C:\WINDOWS\comsetup.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00013608 _____ C:\WINDOWS\msmqinst.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00008811 _____ C:\WINDOWS\ntdtcsetup.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00007581 _____ C:\WINDOWS\netfxocm.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00003316 _____ C:\WINDOWS\updspapi.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00002975 _____ C:\WINDOWS\MedCtrOC.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00002702 _____ C:\WINDOWS\ocmsn.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00002177 _____ C:\WINDOWS\tabletoc.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00002163 _____ C:\WINDOWS\msgsocm.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00001374 _____ C:\WINDOWS\imsins.log
2013-10-09 12:18 - 2013-10-09 12:42 - 00001374 _____ C:\WINDOWS\imsins.BAK
2013-10-09 12:18 - 2013-10-09 12:19 - 00011600 _____ C:\WINDOWS\KB2879017-IE8.log
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 _____ C:\WINDOWS\setuperr.log
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 _____ C:\WINDOWS\setupact.log
2013-10-09 12:17 - 2013-10-11 14:52 - 00006903 _____ C:\WINDOWS\setupapi.log
2013-10-09 12:07 - 2013-10-09 12:42 - 00132023 _____ C:\WINDOWS\KB2847311.log
2013-10-09 12:07 - 2013-07-03 04:12 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidparse.sys
2013-10-09 12:06 - 2013-07-17 02:58 - 00123008 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbvideo.sys
2013-10-09 12:06 - 2013-07-17 02:58 - 00060160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbaudio.sys
2013-10-09 12:06 - 2013-07-17 02:58 - 00046848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irbus.sys
2013-10-09 12:05 - 2013-08-09 02:55 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbd.sys
2013-10-08 16:16 - 2013-10-09 11:59 - 00000000 ____D C:\Program Files\Spyware Terminator
2013-10-08 16:16 - 2013-10-09 11:59 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2013-10-08 16:16 - 2013-10-08 16:16 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\Spyware Terminator
2013-10-08 16:16 - 2013-10-08 16:16 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Spyware Terminator 2012
2013-10-08 16:16 - 2011-06-21 11:24 - 00032768 _____ C:\WINDOWS\system32\Drivers\sp_rsdrv2.sys
2013-10-08 15:28 - 2013-10-10 16:06 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\bedny
2013-10-06 14:23 - 2013-10-06 11:39 - 19567190 _____ C:\Documents and Settings\bonapart\Plocha\Zvuk. klip 554.mp4
2013-10-05 16:20 - 2013-10-05 16:20 - 00000436 _____ C:\Documents and Settings\bonapart\Plocha\Zástupce - ROZDĚLENÉ LEKCE.lnk
2013-10-05 16:14 - 2013-10-05 16:14 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\pokladny- volby
2013-10-05 16:12 - 2013-10-05 16:13 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\Bulharsko 18.8.-25.8. 2013
2013-10-01 16:40 - 2013-10-14 13:29 - 00000000 _____ C:\DebugTraceNormal.log
2013-09-23 12:43 - 2013-09-23 12:43 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2013-09-22 15:26 - 2013-09-22 15:26 - 00000718 _____ C:\Documents and Settings\bonapart\Plocha\VideoViewer.lnk
2013-09-22 15:26 - 2013-09-22 15:26 - 00000718 _____ C:\Documents and Settings\bonapart\Nabídka Start\VideoViewer.lnk
2013-09-22 15:26 - 2013-09-22 15:26 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\VideoViewer
2013-09-22 15:25 - 2013-10-14 13:28 - 00000000 ____D C:\Program Files\VideoViewer
2013-09-22 15:25 - 2013-05-16 20:32 - 01052672 ____N (TODO: <公司名稱>) C:\WINDOWS\system32\AVC_LIVE.dll
2013-09-22 15:25 - 2012-12-14 14:20 - 00229376 ____N (TODO: <公司名稱>) C:\WINDOWS\system32\AVC_RTSP.dll
2013-09-22 15:25 - 2012-12-06 17:21 - 00286720 ____N (AVTECH) C:\WINDOWS\system32\AVC_PB.dll
2013-09-22 15:25 - 2012-06-04 14:52 - 00176128 ____N C:\WINDOWS\system32\AVC_H264.dll
2013-09-22 15:25 - 2012-06-04 14:52 - 00176128 ____N (AVTECH) C:\WINDOWS\system32\AVC_MPEG4.dll
2013-09-22 15:25 - 2012-06-04 14:52 - 00018432 ____N C:\WINDOWS\system32\AVC_JPEG.dll
2013-09-22 15:25 - 2012-06-04 14:30 - 00809491 ____N C:\WINDOWS\system32\avcodec-52.84.800.dll
2013-09-22 15:25 - 2012-06-04 14:30 - 00159251 ____N C:\WINDOWS\system32\swscale-0.11.800.dll
2013-09-22 15:25 - 2012-06-04 14:30 - 00087040 ____N C:\WINDOWS\system32\avformat-52.74.800.dll
2013-09-22 15:25 - 2012-06-04 14:30 - 00070675 ____N C:\WINDOWS\system32\avutil-50.22.800.dll
2013-09-22 15:25 - 2012-06-04 14:25 - 00065447 ____N (Open Source Software community LGPL) C:\WINDOWS\system32\pthreadGC2.800.dll
2013-09-22 15:25 - 2009-07-21 14:23 - 00131072 ____N (AV-TECH) C:\WINDOWS\system32\AVC_NATT.dll
2013-09-22 15:25 - 2008-05-15 17:44 - 00323584 ____N C:\WINDOWS\system32\Deinterlace.dll
2013-09-22 15:25 - 2005-10-12 20:38 - 00704512 ____N (Intel Corporation) C:\WINDOWS\system32\ijl20.dll
2013-09-22 15:25 - 2004-05-04 11:53 - 01645320 ____N (Microsoft Corporation) C:\WINDOWS\system32\gdiplus.dll
2013-09-22 15:25 - 2003-03-19 11:04 - 00765952 ____N (Microsoft Corporation) C:\WINDOWS\system32\msvcp71d.dll
2013-09-22 15:25 - 2003-03-19 11:03 - 00544768 ____N (Microsoft Corporation) C:\WINDOWS\system32\msvcr71d.dll
2013-09-22 14:07 - 2013-09-22 14:07 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\CMS
2013-09-22 14:06 - 2013-09-22 15:25 - 00017408 _____ (Microsoft Corporation) C:\psapi.dll
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\WINDOWS\system32\data
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\Program Files\AVC_OCX
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\MySQL
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\AVC_OCX
2013-09-22 14:06 - 2013-05-08 15:13 - 01142784 ____N (AVTECH) C:\WINDOWS\system32\AvtechMediaControl.dll
2013-09-22 14:06 - 2013-05-06 20:55 - 01048576 ____N (TODO: <公司名稱>) C:\WINDOWS\system32\AVC_OCX_LIVE.dll
2013-09-22 14:06 - 2013-02-18 17:55 - 00286720 ____N (AVTECH) C:\WINDOWS\system32\AVC_OCX_PB.dll
2013-09-22 14:06 - 2012-06-20 18:24 - 00018432 ____N C:\WINDOWS\system32\AVC_OCX_JPEG.dll
2013-09-22 14:06 - 2012-06-20 18:23 - 00176128 ____N (AVTECH) C:\WINDOWS\system32\AVC_OCX_MPEG4.dll
2013-09-22 14:06 - 2012-06-20 18:21 - 00176128 ____N C:\WINDOWS\system32\AVC_OCX_H264.dll
2013-09-22 14:06 - 2012-01-11 10:59 - 00229376 ____N (AVTECH) C:\WINDOWS\system32\AVC_OCX_RTSP.dll
2013-09-22 14:06 - 2012-01-03 17:20 - 00151552 ____N C:\WINDOWS\system32\utf8_2_font.dll
2013-09-22 14:06 - 2011-04-18 20:23 - 01176064 ____N C:\WINDOWS\system32\AVNvrServer.dll
2013-09-22 14:06 - 2011-03-25 15:32 - 00049152 ____N C:\WINDOWS\system32\AVC_OCX_SCALE.dll
2013-09-22 14:06 - 2011-03-07 13:55 - 00143360 ____N (AV-TECH) C:\WINDOWS\system32\AVC_OCX_NATT.dll
2013-09-22 14:05 - 2013-09-22 14:07 - 00000000 ____D C:\Program Files\CMS
2013-09-22 14:05 - 2013-09-22 14:06 - 00000000 ____D C:\Program Files\MySQL
2013-09-22 14:05 - 2013-09-22 14:05 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\MySQL
2013-09-21 16:02 - 2013-10-13 16:24 - 00131072 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2013-09-21 16:02 - 2013-09-21 16:02 - 00000000 ____D C:\Documents and Settings\bonapart\Local Settings\Data aplikací\ATI
2013-09-21 16:02 - 2013-09-21 16:02 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\ATI
2013-09-21 16:02 - 2013-09-21 16:02 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\ATI
2013-09-21 15:56 - 2013-09-21 15:56 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Catalyst Control Center
2013-09-21 15:55 - 2010-02-10 21:20 - 00593920 ____N () C:\WINDOWS\system32\ati2sgag.exe
2013-09-21 15:53 - 2013-09-21 15:56 - 00000000 ____D C:\Program Files\ATI Technologies
2013-09-21 15:31 - 2013-09-21 15:31 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
2013-09-21 14:22 - 2013-09-21 14:22 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\WinRAR
2013-09-21 14:22 - 2013-09-21 14:22 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\WinRAR
2013-09-21 14:05 - 2013-09-21 14:54 - 00000664 _____ C:\WINDOWS\system32\d3d9caps.dat
2013-09-20 16:59 - 2013-09-20 16:59 - 00000010 _____ C:\WINDOWS\WININIT.INI
2013-09-20 15:41 - 2013-09-20 15:41 - 00000000 __SHD C:\Documents and Settings\NetworkService\IETldCache
2013-09-20 15:41 - 2013-09-20 15:41 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2013-09-20 15:33 - 2013-09-20 15:33 - 00056576 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\Drivers\viadsk.sys
2013-09-20 15:33 - 2013-09-20 15:33 - 00016896 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\viaideco.dll
2013-09-20 15:25 - 2013-09-20 15:25 - 00130432 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\Rtnicxp.sys
2013-09-20 15:25 - 2013-09-20 15:25 - 00073728 _____ C:\WINDOWS\system32\RtNicProp32.dll
2013-09-20 12:52 - 2013-09-20 12:52 - 00000000 ____D C:\Documents and Settings\All Users\Uniblue
2013-09-20 12:51 - 2013-10-11 16:04 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Uniblue
2013-09-19 18:06 - 2013-09-19 18:06 - 00000447 _____ C:\Documents and Settings\bonapart\Plocha\Zástupce - Kurz rychločtení.lnk
2013-09-19 16:52 - 2013-09-19 16:52 - 00001598 _____ C:\Documents and Settings\bonapart\Plocha\Obnovení systému.lnk
2013-09-19 15:47 - 2013-09-19 16:00 - 00000000 ____D C:\94ac1599f166b9182b243c7bbb
2013-09-19 15:09 - 2013-09-19 15:09 - 00000000 ____D C:\Program Files\USB TV
2013-09-19 14:59 - 2013-09-19 14:59 - 00000000 ____D C:\ATI

==================== One Month Modified Files and Folders =======

2013-10-14 13:40 - 2012-05-29 15:01 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-10-14 13:39 - 2013-10-14 13:39 - 00000000 ____D C:\FRST
2013-10-14 13:38 - 2010-09-25 15:31 - 00000000 ___HD C:\Documents and Settings\bonapart\Local Settings\Data aplikací
2013-10-14 13:38 - 2010-09-25 15:31 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha
2013-10-14 13:37 - 2010-09-26 15:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-10-14 13:29 - 2013-10-01 16:40 - 00000000 _____ C:\DebugTraceNormal.log
2013-10-14 13:28 - 2013-09-22 15:25 - 00000000 ____D C:\Program Files\VideoViewer
2013-10-14 13:27 - 2013-10-14 13:27 - 01087213 _____ (Farbar) C:\Documents and Settings\bonapart\Plocha\FRST.exe
2013-10-14 13:26 - 2013-10-14 13:26 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\bonapart\Plocha\FRSTLauncher.exe
2013-10-14 12:39 - 2010-09-25 17:10 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-10-14 12:35 - 2010-09-25 15:18 - 01637544 _____ C:\WINDOWS\WindowsUpdate.log
2013-10-14 12:33 - 2013-10-11 15:16 - 00000320 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-10-14 12:33 - 2013-10-11 14:58 - 00000418 _____ C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_bonapart.job
2013-10-14 12:32 - 2001-10-25 16:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2013-10-14 12:31 - 2011-08-09 12:57 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-10-14 12:31 - 2011-08-09 12:57 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-10-14 12:30 - 2010-09-27 16:29 - 01759706 _____ C:\WINDOWS\system32\oodbs.lor
2013-10-14 12:30 - 2010-09-25 15:23 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-10-13 16:24 - 2013-09-21 16:02 - 00131072 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2013-10-13 16:24 - 2010-09-25 15:23 - 00032416 _____ C:\WINDOWS\SchedLgU.Txt
2013-10-13 16:23 - 2010-09-25 15:31 - 00000178 ___SH C:\Documents and Settings\bonapart\ntuser.ini
2013-10-13 16:23 - 2010-09-25 15:31 - 00000000 ____D C:\Documents and Settings\bonapart
2013-10-13 15:00 - 2013-10-11 14:58 - 00000408 _____ C:\WINDOWS\Tasks\ReclaimerUpdateXML_bonapart.job
2013-10-13 13:59 - 2013-10-11 14:58 - 00000412 _____ C:\WINDOWS\Tasks\ReclaimerUpdateFiles_bonapart.job
2013-10-12 17:04 - 2012-08-06 14:35 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\Skype
2013-10-12 15:33 - 2013-03-01 17:31 - 00002283 _____ C:\Documents and Settings\All Users\Plocha\Skype.lnk
2013-10-11 16:16 - 2010-09-27 14:47 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\NÁSTROJE
2013-10-11 16:14 - 2013-10-11 16:03 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\reklama pres explorer
2013-10-11 16:04 - 2013-10-10 14:53 - 00000000 ____D C:\AdwCleaner
2013-10-11 16:04 - 2013-09-20 12:51 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Uniblue
2013-10-11 16:04 - 2010-09-25 17:08 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-10-11 16:04 - 2010-09-25 15:31 - 00000000 __RHD C:\Documents and Settings\bonapart\Data aplikací
2013-10-11 15:51 - 2013-10-11 15:51 - 00000000 ____D C:\WINDOWS\ERUNT
2013-10-11 15:16 - 2013-10-11 15:16 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\avast! Free Antivirus
2013-10-11 15:16 - 2010-09-25 17:10 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-10-11 15:16 - 2010-09-25 15:19 - 00002504 _____ C:\WINDOWS\system32\CONFIG.NT
2013-10-11 15:14 - 2013-10-11 15:14 - 00000000 ____D C:\Program Files\AVAST Software
2013-10-11 15:14 - 2013-10-11 15:14 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-10-11 14:54 - 2013-10-11 14:54 - 00017616 _____ C:\Documents and Settings\bonapart\Dokumenty\cc_20131011_145429.reg
2013-10-11 14:54 - 2010-09-25 15:31 - 00000000 ___RD C:\Documents and Settings\bonapart\Dokumenty
2013-10-11 14:53 - 2010-10-12 16:14 - 00000000 ____D C:\Program Files\ESET
2013-10-11 14:52 - 2013-10-09 12:17 - 00006903 _____ C:\WINDOWS\setupapi.log
2013-10-11 14:22 - 2011-12-29 14:48 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\vlc
2013-10-11 14:09 - 2013-10-11 14:09 - 00000000 ____D C:\rsit
2013-10-11 14:09 - 2013-10-11 14:09 - 00000000 ____D C:\Program Files\trend micro
2013-10-11 13:10 - 2013-10-11 13:10 - 00000000 ___RD C:\Documents and Settings\bonapart\Dokumenty\Hudba
2013-10-10 16:06 - 2013-10-08 15:28 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\bedny
2013-10-10 14:52 - 2013-10-10 14:52 - 00000403 _____ C:\WINDOWS\wmsetup.log
2013-10-10 13:40 - 2012-05-29 15:01 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-10-10 13:40 - 2011-09-27 12:56 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-10-09 14:53 - 2011-01-31 16:56 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 14:53 - 2010-09-25 17:08 - 00138848 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-10-09 12:45 - 2013-10-09 12:45 - 00007012 _____ C:\WINDOWS\system32\PerfStringBackup.TMP
2013-10-09 12:42 - 2013-10-09 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$
2013-10-09 12:42 - 2013-10-09 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$
2013-10-09 12:42 - 2013-10-09 12:41 - 00130188 _____ C:\WINDOWS\KB2862335.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00046897 _____ C:\WINDOWS\iis6.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00043282 _____ C:\WINDOWS\FaxSetup.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00020692 _____ C:\WINDOWS\ocgen.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00019749 _____ C:\WINDOWS\tsoc.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00014544 _____ C:\WINDOWS\comsetup.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00013608 _____ C:\WINDOWS\msmqinst.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00008811 _____ C:\WINDOWS\ntdtcsetup.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00007581 _____ C:\WINDOWS\netfxocm.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00003316 _____ C:\WINDOWS\updspapi.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00002975 _____ C:\WINDOWS\MedCtrOC.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00002702 _____ C:\WINDOWS\ocmsn.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00002177 _____ C:\WINDOWS\tabletoc.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00002163 _____ C:\WINDOWS\msgsocm.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00001374 _____ C:\WINDOWS\imsins.log
2013-10-09 12:42 - 2013-10-09 12:18 - 00001374 _____ C:\WINDOWS\imsins.BAK
2013-10-09 12:42 - 2013-10-09 12:07 - 00132023 _____ C:\WINDOWS\KB2847311.log
2013-10-09 12:37 - 2013-08-15 14:04 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-10-09 12:23 - 2010-09-26 14:18 - 78106760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-10-09 12:22 - 2011-01-31 16:56 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2013-10-09 12:20 - 2013-10-09 12:20 - 00009128 _____ C:\WINDOWS\KB2884256.log
2013-10-09 12:20 - 2013-10-09 12:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2884256$
2013-10-09 12:20 - 2013-10-09 12:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$
2013-10-09 12:20 - 2013-10-09 12:19 - 00009872 _____ C:\WINDOWS\KB2868038.log
2013-10-09 12:19 - 2013-10-09 12:18 - 00011600 _____ C:\WINDOWS\KB2879017-IE8.log
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 _____ C:\WINDOWS\setuperr.log
2013-10-09 12:18 - 2013-10-09 12:18 - 00000000 _____ C:\WINDOWS\setupact.log
2013-10-09 12:18 - 2010-09-26 14:20 - 00000000 ____D C:\WINDOWS\ie8updates
2013-10-09 12:17 - 2010-09-25 15:23 - 00000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2013-10-09 11:59 - 2013-10-08 16:16 - 00000000 ____D C:\Program Files\Spyware Terminator
2013-10-09 11:59 - 2013-10-08 16:16 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2013-10-08 16:16 - 2013-10-08 16:16 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\Spyware Terminator
2013-10-08 16:16 - 2013-10-08 16:16 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Spyware Terminator 2012
2013-10-08 16:11 - 2010-09-25 15:31 - 00000000 ___RD C:\Documents and Settings\bonapart\Oblíbené položky
2013-10-06 16:13 - 2013-07-22 15:34 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\nella tablo 2
2013-10-06 16:13 - 2013-07-22 15:34 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\nella best upraveno
2013-10-06 15:14 - 2010-09-25 15:17 - 00000000 ____D C:\WINDOWS\system32\Restore
2013-10-06 14:39 - 2010-09-26 13:51 - 00000000 __SHD C:\Documents and Settings\bonapart\UserData
2013-10-06 11:39 - 2013-10-06 14:23 - 19567190 _____ C:\Documents and Settings\bonapart\Plocha\Zvuk. klip 554.mp4
2013-10-05 16:31 - 2010-09-27 16:43 - 00021912 _____ C:\Documents and Settings\bonapart\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2013-10-05 16:20 - 2013-10-05 16:20 - 00000436 _____ C:\Documents and Settings\bonapart\Plocha\Zástupce - ROZDĚLENÉ LEKCE.lnk
2013-10-05 16:14 - 2013-10-05 16:14 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\pokladny- volby
2013-10-05 16:13 - 2013-10-05 16:12 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\Bulharsko 18.8.-25.8. 2013
2013-10-04 16:18 - 2012-10-09 17:58 - 00000000 ____D C:\Documents and Settings\Administrator
2013-10-04 16:18 - 2010-09-25 15:23 - 00000000 __SHD C:\Documents and Settings\NetworkService
2013-10-04 16:18 - 2010-09-25 15:23 - 00000000 __SHD C:\Documents and Settings\LocalService
2013-10-04 16:17 - 2010-10-06 14:41 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\torent
2013-10-04 16:17 - 2010-09-25 15:16 - 00000000 ____D C:\WINDOWS\Registration
2013-10-04 16:13 - 2010-09-30 14:18 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\BitTorrent
2013-10-04 13:52 - 2012-12-10 17:28 - 00000000 ____D C:\Documents and Settings\bonapart\Dokumenty\AAA DOKUMENTY
2013-10-03 14:18 - 2013-07-24 16:02 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\Reslerová 20.7.2013
2013-10-01 16:52 - 2013-08-29 15:30 - 00000000 ___HD C:\Documents and Settings\bonapart\Plocha\Hush
2013-10-01 16:52 - 2013-06-27 14:30 - 00000000 ___HD C:\Documents and Settings\bonapart\Plocha\Alena
2013-09-23 23:55 - 2010-09-26 14:20 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll
2013-09-23 23:55 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-09-23 20:25 - 2012-06-13 13:05 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll
2013-09-23 20:25 - 2010-09-26 14:20 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll
2013-09-23 20:25 - 2010-09-26 14:20 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll
2013-09-23 20:25 - 2010-09-26 14:20 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll
2013-09-23 20:25 - 2010-09-26 14:20 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll
2013-09-23 20:25 - 2010-09-26 14:20 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2013-09-23 20:25 - 2010-09-26 14:20 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll
2013-09-23 20:25 - 2010-09-25 15:17 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 06017536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-09-23 20:25 - 2004-08-17 15:49 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl
2013-09-23 20:25 - 2004-08-17 15:49 - 01215488 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll
2013-09-23 20:25 - 2004-08-17 15:49 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll
2013-09-23 20:06 - 2004-08-17 15:49 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-09-23 20:06 - 2004-08-17 15:49 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe
2013-09-23 20:06 - 2004-08-17 15:44 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2013-09-23 12:43 - 2013-09-23 12:43 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2013-09-23 12:43 - 2010-10-12 15:56 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Revo Uninstaller Pro
2013-09-23 12:14 - 2013-01-29 11:51 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\Jídelák od 1.6.2012
2013-09-22 15:26 - 2013-09-22 15:26 - 00000718 _____ C:\Documents and Settings\bonapart\Plocha\VideoViewer.lnk
2013-09-22 15:26 - 2013-09-22 15:26 - 00000718 _____ C:\Documents and Settings\bonapart\Nabídka Start\VideoViewer.lnk
2013-09-22 15:26 - 2013-09-22 15:26 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\VideoViewer
2013-09-22 15:26 - 2010-09-25 15:31 - 00000000 ___RD C:\Documents and Settings\bonapart\Nabídka Start
2013-09-22 15:25 - 2013-09-22 14:06 - 00017408 _____ (Microsoft Corporation) C:\psapi.dll
2013-09-22 14:07 - 2013-09-22 14:07 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\CMS
2013-09-22 14:07 - 2013-09-22 14:05 - 00000000 ____D C:\Program Files\CMS
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\WINDOWS\system32\data
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\Program Files\AVC_OCX
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\MySQL
2013-09-22 14:06 - 2013-09-22 14:06 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\AVC_OCX
2013-09-22 14:06 - 2013-09-22 14:05 - 00000000 ____D C:\Program Files\MySQL
2013-09-22 14:06 - 2010-09-25 17:10 - 01256228 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-09-22 14:06 - 2010-09-25 17:10 - 00004462 _____ C:\WINDOWS\ODBCINST.INI
2013-09-22 14:06 - 2010-09-25 17:04 - 00000000 ____D C:\WINDOWS\Help
2013-09-22 14:05 - 2013-09-22 14:05 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\MySQL
2013-09-21 16:02 - 2013-09-21 16:02 - 00000000 ____D C:\Documents and Settings\bonapart\Local Settings\Data aplikací\ATI
2013-09-21 16:02 - 2013-09-21 16:02 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\ATI
2013-09-21 16:02 - 2013-09-21 16:02 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\ATI
2013-09-21 15:56 - 2013-09-21 15:56 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Catalyst Control Center
2013-09-21 15:56 - 2013-09-21 15:53 - 00000000 ____D C:\Program Files\ATI Technologies
2013-09-21 15:55 - 2010-09-27 14:35 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-09-21 15:31 - 2013-09-21 15:31 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
2013-09-21 15:27 - 2010-09-25 15:45 - 00000000 ____D C:\Program Files\WinRAR
2013-09-21 15:25 - 2011-05-24 15:26 - 00000038 _____ C:\WINDOWS\AviSplitter.INI
2013-09-21 14:54 - 2013-09-21 14:05 - 00000664 _____ C:\WINDOWS\system32\d3d9caps.dat
2013-09-21 14:26 - 2010-09-27 14:48 - 00000000 ____D C:\Documents and Settings\bonapart\Plocha\VIDEO
2013-09-21 14:24 - 2010-09-25 15:46 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\WinRAR
2013-09-21 14:22 - 2013-09-21 14:22 - 00000000 ____D C:\Documents and Settings\bonapart\Nabídka Start\Programy\WinRAR
2013-09-21 14:22 - 2013-09-21 14:22 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\WinRAR
2013-09-21 14:22 - 2010-09-25 15:31 - 00000000 ___RD C:\Documents and Settings\bonapart\Nabídka Start\Programy
2013-09-20 16:59 - 2013-09-20 16:59 - 00000010 _____ C:\WINDOWS\WININIT.INI
2013-09-20 16:26 - 2012-06-07 14:48 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\Mozilla
2013-09-20 15:41 - 2013-09-20 15:41 - 00000000 __SHD C:\Documents and Settings\NetworkService\IETldCache
2013-09-20 15:41 - 2013-09-20 15:41 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2013-09-20 15:33 - 2013-09-20 15:33 - 00056576 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\Drivers\viadsk.sys
2013-09-20 15:33 - 2013-09-20 15:33 - 00016896 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\viaideco.dll
2013-09-20 15:30 - 2012-06-16 13:44 - 00088566 _____ C:\WINDOWS\system32\nvapps.xml
2013-09-20 15:25 - 2013-09-20 15:25 - 00130432 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\Rtnicxp.sys
2013-09-20 15:25 - 2013-09-20 15:25 - 00073728 _____ C:\WINDOWS\system32\RtNicProp32.dll
2013-09-20 15:10 - 2010-09-26 14:42 - 03786144 ____C (ATI Technologies Inc. ) C:\WINDOWS\system32\dllcache\ati3duag.dll
2013-09-20 15:10 - 2010-09-26 14:42 - 02140672 ____C (ATI Technologies Inc. ) C:\WINDOWS\system32\dllcache\ativvaxx.dll
2013-09-20 15:10 - 2010-09-26 14:42 - 00565248 ____C (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\ati2cqag.dll
2013-09-20 15:10 - 2010-09-26 14:42 - 00309248 ____C (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\ati2dvag.dll
2013-09-20 15:10 - 2010-09-26 14:38 - 03230720 ____C (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\ati2mtag.sys
2013-09-20 13:51 - 2012-04-20 15:58 - 00000000 ____D C:\Program Files\PDFCreator
2013-09-20 13:46 - 2010-09-27 15:51 - 00000000 ____D C:\Program Files\CCleaner
2013-09-20 12:52 - 2013-09-20 12:52 - 00000000 ____D C:\Documents and Settings\All Users\Uniblue
2013-09-20 12:51 - 2010-09-27 15:49 - 00000000 ____D C:\Program Files\Uniblue
2013-09-20 12:47 - 2010-09-27 15:50 - 00000000 ____D C:\Documents and Settings\bonapart\Data aplikací\Uniblue
2013-09-19 18:06 - 2013-09-19 18:06 - 00000447 _____ C:\Documents and Settings\bonapart\Plocha\Zástupce - Kurz rychločtení.lnk
2013-09-19 16:52 - 2013-09-19 16:52 - 00001598 _____ C:\Documents and Settings\bonapart\Plocha\Obnovení systému.lnk
2013-09-19 16:48 - 2012-10-09 17:58 - 00000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
2013-09-19 16:00 - 2013-09-19 15:47 - 00000000 ____D C:\94ac1599f166b9182b243c7bbb
2013-09-19 15:57 - 2012-01-16 15:32 - 00002347 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader X.lnk
2013-09-19 15:09 - 2013-09-19 15:09 - 00000000 ____D C:\Program Files\USB TV
2013-09-19 14:59 - 2013-09-19 14:59 - 00000000 ____D C:\ATI

Some content of TEMP:
====================
C:\Documents and Settings\bonapart\Local Settings\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2004-08-17 15:49] - [2008-04-14 08:52] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1

C:\Windows\System32\winlogon.exe
[2004-08-17 15:49] - [2008-04-14 08:52] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea

C:\Windows\System32\svchost.exe
[2004-08-17 15:49] - [2008-04-14 08:52] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2004-08-17 15:49] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2004-08-17 15:49] - [2008-04-14 08:52] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53

C:\Windows\System32\userinit.exe
[2004-08-17 15:49] - [2008-04-14 08:52] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\Drivers\volsnap.sys
[2004-08-17 15:44] - [2008-04-14 07:42] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================


Available physical RAM: 898.57 MB
Total physical RAM: 1791.49 MB
Percentage of memory in use: 49%

==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\ReclaimerUpdateFiles_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
Task: C:\WINDOWS\Tasks\ReclaimerUpdateXML_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
Task: C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Documents and Settings\bonapart\Plocha" je 4643 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent"
"C:\\Documents and Settings\\bonapart\\Plocha\\sdc203\\StrongDC.exe"="C:\\Documents and Settings\\bonapart\\Plocha\\sdc203\\StrongDC.exe:*:Enabled:StrongDC++"
"C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"="C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Spyware Terminator\\SpywareTerminator.exe"="C:\\Program Files\\Spyware Terminator\\SpywareTerminator.exe:*:Enabled:Spyware Terminator 2012"
"C:\\Program Files\\Spyware Terminator\\SpywareTerminatorUpdate.exe"="C:\\Program Files\\Spyware Terminator\\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator 2012"
"C:\\Program Files\\VideoViewer\\VideoViewer.exe"="C:\\Program Files\\VideoViewer\\VideoViewer.exe:*:Enabled:VideoViewer"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"5985:TCP"="5985:TCP:*:Disabled:Vzdlen sprva systmu Windows "
"80:TCP"="80:TCP:*:Disabled:Vzdlen sprva systmu Windows - reim kompatibility (HTTP-In) "


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#23 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [OODefragTray] - C:\WINDOWS\system32\oodtray.exe [2512392 2007-05-11] (O&O Software GmbH)
    HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
    HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
    HKLM\...\Run: [TkBellExe] - C:\Program Files\Common Files\Real\Update_OB\realsched.exe [185896 2012-09-23] (RealNetworks, Inc.)
    HKCU\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
    HKCU\...\Run: [OEXPRESS] - C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [26624 2010-09-30] ()
    HKCU\...\Run: [] - [x]
    MountPoints2: {fa61e5d0-5beb-11e2-8b12-00e07ddd8e82} - H:\HTC_Sync_Manager_PC.exe
    HKU\Administrator\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG)
    HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG)
    Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.exe.lnk
    Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
    
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKCU - DefaultScope {E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} URL = http://www.google.cz/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
    SearchScopes: HKCU - {E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} URL = http://www.google.cz/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
    
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
    Task: C:\WINDOWS\Tasks\ReclaimerUpdateFiles_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
    Task: C:\WINDOWS\Tasks\ReclaimerUpdateXML_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
    Task: C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
    
    REG: reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List" /v "5985:TCP" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List" /v "80:TCP" /f
    
    Hosts:
    CMD: shutdown /r /f /t 2
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#24 Příspěvek od bonapart »

zatim moc dekuji dodelam to zitra, musim jet, chyba v Ie se zatim již nevyskytuje, Milan

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#25 Příspěvek od vyosek »

OK, to je dobre...zitra to dokoncime :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#26 Příspěvek od bonapart »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-10-2013
Ran by bonapart at 2013-10-15 15:56:19 Run:1
Running from C:\Documents and Settings\bonapart\Plocha
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [OODefragTray] - C:\WINDOWS\system32\oodtray.exe [2512392 2007-05-11] (O&O Software GmbH)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [TkBellExe] - C:\Program Files\Common Files\Real\Update_OB\realsched.exe [185896 2012-09-23] (RealNetworks, Inc.)
HKCU\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
HKCU\...\Run: [OEXPRESS] - C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [26624 2010-09-30] ()
HKCU\...\Run: [] - [x]
MountPoints2: {fa61e5d0-5beb-11e2-8b12-00e07ddd8e82} - H:\HTC_Sync_Manager_PC.exe
HKU\Administrator\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG)
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.exe.lnk
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk

SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} URL = http://www.google.cz/search?q={searchTe ... {startPage}
SearchScopes: HKCU - {E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} URL = http://www.google.cz/search?q={searchTe ... {startPage}

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\ReclaimerUpdateFiles_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
Task: C:\WINDOWS\Tasks\ReclaimerUpdateXML_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe
Task: C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_bonapart.job => C:\Documents and Settings\bonapart\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe

REG: reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List" /v "5985:TCP" /f
REG: reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List" /v "80:TCP" /f

Hosts:
CMD: shutdown /r /f /t 2
End

*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\OODefragTray => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\OEXPRESS => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fa61e5d0-5beb-11e2-8b12-00e07ddd8e82} => Key deleted successfully.
HKCR\CLSID\{fa61e5d0-5beb-11e2-8b12-00e07ddd8e82} => Key not found.
HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\RunOnce\\NeroHomeFirstStart => Value deleted successfully.
HKU\Default User\Software\Microsoft\Windows\CurrentVersion\RunOnce\\NeroHomeFirstStart => Value deleted successfully.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.exe.lnk => Moved successfully.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk => Moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{E1569978-AB2E-4AA2-8BD8-09BA4E93CD85} => Key not found.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\avast! Emergency Update.job => Moved successfully.
C:\WINDOWS\Tasks\ReclaimerUpdateFiles_bonapart.job => Moved successfully.
C:\WINDOWS\Tasks\ReclaimerUpdateXML_bonapart.job => Moved successfully.
C:\WINDOWS\Tasks\RNUpgradeHelperLogonPrompt_bonapart.job => Moved successfully.

========= reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List" /v "5985:TCP" /f =========


Operace byla dokončena úspěšně.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List" /v "80:TCP" /f =========


Operace byla dokončena úspěšně.


========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========


==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#27 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#28 Příspěvek od bonapart »

dotaz bude jen co dočistím

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: reklama přes IE při otevření odkazu

#29 Příspěvek od vyosek »

Ou Kej :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

bonapart
Návštěvník
Návštěvník
Příspěvky: 87
Registrován: 27 zář 2008 20:43

Re: reklama přes IE při otevření odkazu

#30 Příspěvek od bonapart »

tak jsem vše dočistil , chtěl jsem vam podekovat a zeptat se jak alespon symbolicky podporit forum
, usetrilo me to cas, diky Milan

Zamčeno