Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Po chvíli je prohlížeč nefunkční HELP!

Návody, recenze, diskuze, řešení problémů

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zpráva
Autor
peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Po chvíli je prohlížeč nefunkční HELP!

#1 Příspěvek od peter_ben »

Dobrý den, na PC mě zlobí prohlížeč Firefox (je aktuální 42.0). Po chvíli (řádově minuty) přestane zobrazovat stránky. Můj PC je Hewlett Packard se systémem Win7 Home Premium 64 bit. Tento problém je i tehdy, pokud použiju Chrome. Na notebooku mám Linux a Firefox, vše v pořádku. Proto si myslím, že potíž nebude v připojení. Problémový HP jsem pročistil CCleanerem i ESET Online scannerem a nic. Myslel jsem, že to dělá Avast Free, ale tím to taky není. Jsem bezdardný, prosím o pomoc.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#2 Příspěvek od Rudy »

Zdravím!
Koukneme, co tam běží. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=24&t=132509 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Re: Po chvíli je prohlížeč nefunkční HELP!

#3 Příspěvek od peter_ben »

Snad je to ten správný a požadovaný log. Je to FRST.txt

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:28-11-2015
Ran by Petr (administrator) on HP (28-11-2015 19:23:04)
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr & kluci)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7Debug\mdm.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Google Inc.) C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Zhorn Software) C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\stickies.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-02-10] (EasyBits Software AS)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-10-06] (Oracle Corporation)
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2015-11-14] (Easybits)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Run: [Google Update] => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-01] (Google Inc.)
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Petr\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {69fddddb-2ac0-11e5-98ca-78acc0bcc62e} - F:\autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {9fa53194-e8db-11e0-967c-78acc0bcc62e} - H:\Autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d47-afaa-11e0-9319-78acc0bcc62e} - G:\AS_OMSI_V100.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d60-afaa-11e0-9319-78acc0bcc62e} - H:\Setup.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {cc84fc52-261d-11e1-a93a-806e6f6e6963} - F:\Startme.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {ce0a7e4f-ecd8-11e0-b3dd-78acc0bcc62e} - I:\setup.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Control Panel\Desktop\\SCRNSAVE.EXE ->
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-06-17] (EasyBits Software Corp.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
Startup: C:\Users\kluci\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk [2012-01-08]
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (No File)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 3520 series.lnk [2015-11-28]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 3520 series.lnk -> C:\Program Files\hp\HP Deskjet 3520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\stickies.exe [2011-07-16] (Zhorn Software)
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1010\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1003\User: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 192.168.1.1
Tcpip\..\Interfaces\{0CB6C8EF-B891-4056-8F1E-C05E7C732601}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{1096C7E0-A6AB-40A9-A5C8-C38A28E33240}: [NameServer] 8.26.56.26,156.154.70.22
Tcpip\..\Interfaces\{1096C7E0-A6AB-40A9-A5C8-C38A28E33240}: [DhcpNameServer] 192.168.8.1 192.168.1.1
Tcpip\..\Interfaces\{F504D255-48F2-47E1-AFE9-BF4E538D1EA0}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=13906
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.seznam.cz/?clid=22668
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM -> {43541E24-33CA-4800-9380-1A1A08285861} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://cs.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {43541E24-33CA-4800-9380-1A1A08285861} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} URL = hxxp://home.myplaycity.com/results.php?category=web&s={searchTerms}
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://cs.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {01465393-579B-4E0F-90B6-7C3745C0B981} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=112555&tt=3412_8&babsrc=SP_ss&mntrId=ce93495c00000000000078acc0bcc62e
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {136468E8-F6D8-48F3-8000-92A61346048E} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {22FC1AA8-C695-42EE-BD9D-3954E53BC834} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {26F2971C-C0C7-46B2-B23C-5B5A3E25FEA0} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {43541E24-33CA-4800-9380-1A1A08285861} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {4FC4250C-BE53-4ADB-AED9-BDB935FD28FF} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=FF&o=14594&src=kw&q={searchTerms}&locale=&apn_ptnrs=FV&apn_dtid=YYYYYYYYCZ&apn_uid=d97d859a-181c-4860-96c8-c4c0304eaf57&apn_sauid=264987E1-4B3B-4223-9802-CE0CF33BA8A3
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {7CA37D16-2B0C-4455-B9AD-C263ED9A3B1B} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {81354138-4DCE-4030-8B88-B2EF3AF362B5} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {967BC396-F92C-42E0-ABC0-49A2105D016E} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} URL = hxxp://home.myplaycity.com/results.php?category=web&s={searchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {9AD09901-06DD-4DDD-A62D-6D2243B771AB} URL = hxxp://start.myplaycity.com/results.php?category=web&s={searchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/mb128/?search={searchTerms}&loc=IB_DS&a=6OyLvyh3QH&i=26
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://cs.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {EC44DFA7-988F-4084-B951-8A3A668668FD} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13906
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File

FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default
FF SelectedSearchEngine:
FF Homepage: hxxps://www.seznam.cz/
FF Keyword.URL: hxxp://start.myplaycity.com/results.php?category=web&s=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-12] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-12] ()
FF Plugin-x32: @alawar.com/npapi -> C:\Windows\npapi.dll [2014-01-29] (Alawar)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-10-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-10-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-28] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-28] (NVIDIA Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\13\NP_wtapp.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2013-09-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2237614278-1820712661-3241147196-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-2237614278-1820712661-3241147196-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF user.js: detected! => C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\user.js [2013-08-20]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\askcom.xml [2012-07-18]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\myplaycity-search.xml [2012-01-31]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\myplaycity.xml [2012-10-25]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\MyStart Search.xml [2012-08-19]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\softonic.xml [2013-02-17]
FF Extension: All-in-One Sidebar - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi [2015-10-07]
FF Extension: Adblock Plus - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-28]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2015-11-20] [not signed]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2015-11-20] [not signed]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2015-11-20] [not signed]
FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\Web Assistant\Firefox => not found
FF HKLM-x32\...\Firefox\Extensions: [{6D5C8FC4-DE46-41bf-9092-93F0F78E9115}] - C:\ProgramData\Norton\{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}\NSM_2.2.0.26\coFFFw => not found
FF HKLM-x32\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\Web Assistant\Firefox => not found

Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-09]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-09]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-28]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-09]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-10-08]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-28]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-08]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-09]
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [jifflliplgeajjdhmkcfnngfpgbjonjg] - C:\Program Files (x86)\Perion\NewTab\newTab.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [mibfbmhijjgpkmobcfdlelpccpeafoom] - <no Path/update_url>
StartMenuInternet: Google Chrome - C:\Users\kluci\AppData\Local\Google\Chrome\Application\chrome.exe
StartMenuInternet: Google Chrome.4TDVFA7LGTAJHAEDD4V6NUP2MM - C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [182304 2014-11-29] (EasyAntiCheat Ltd)
R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed]
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe [335872 2003-03-19] (Microsoft Corporation) [File not signed]
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-07-15] (Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2011-10-02] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-05-28] (NVIDIA Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
U5 usbser; C:\Windows\System32\Drivers\usbser.sys [32768 2010-11-21] (Microsoft Corporation)
S3 massfilter_hs; \??\C:\Windows\system32\drivers\massfilter_hs.sys [X]
S3 NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-28 19:23 - 2015-11-28 19:23 - 00025736 _____ C:\Users\Petr\Desktop\FRST.txt
2015-11-28 19:22 - 2015-11-28 19:23 - 00000000 ____D C:\FRST
2015-11-28 19:20 - 2015-11-28 19:20 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-11-28 19:13 - 2015-11-28 19:13 - 02349056 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-11-28 16:42 - 2015-11-28 16:42 - 00003288 ____N C:\bootsqm.dat
2015-11-28 14:22 - 2015-11-28 15:04 - 00011776 _____ C:\Users\kluci\Desktop\kniha-jizd.xls
2015-11-22 15:24 - 2015-11-19 17:34 - 33596991 _____ C:\Users\kluci\Downloads\kauf1911.pdf
2015-11-20 14:44 - 2015-11-22 10:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-15 13:26 - 2015-11-15 13:26 - 00000028 _____ C:\Users\kluci\Desktop\Nový textový dokument.txt
2015-11-14 08:33 - 2015-11-14 08:38 - 00000000 ____D C:\ProgramData\Easybits Magic Desktop for HP
2015-11-03 19:37 - 2015-11-03 19:37 - 00065536 _____ C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-01 12:06 - 2015-11-01 12:06 - 00000000 ____D C:\Users\Petr\AppData\Local\PDFC
2015-10-31 18:30 - 2015-10-31 18:30 - 00001165 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-28 19:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2015-11-28 19:14 - 2011-07-30 10:27 - 00000958 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job
2015-11-28 19:09 - 2012-04-02 17:23 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-28 19:08 - 2014-06-25 11:07 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
2015-11-28 19:08 - 2013-10-09 17:16 - 00000962 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
2015-11-28 19:08 - 2012-06-19 14:04 - 00003206 _____ C:\Windows\System32\Tasks\HPCeeScheduleForHP$
2015-11-28 19:08 - 2012-06-19 14:04 - 00000330 _____ C:\Windows\Tasks\HPCeeScheduleForHP$.job
2015-11-28 19:08 - 2011-07-30 10:27 - 00000906 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job
2015-11-28 17:22 - 2011-06-17 10:38 - 00678098 _____ C:\Windows\system32\perfh005.dat
2015-11-28 17:22 - 2011-06-17 10:38 - 00146996 _____ C:\Windows\system32\perfc005.dat
2015-11-28 17:22 - 2009-07-14 06:13 - 01614032 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-28 17:22 - 2009-07-14 05:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-28 17:22 - 2009-07-14 05:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-28 17:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2015-11-28 17:19 - 2015-10-09 11:34 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Seznam.cz
2015-11-28 17:14 - 2015-06-21 12:32 - 00000000 ____D C:\ProgramData\NVIDIA
2015-11-28 17:14 - 2013-01-22 09:46 - 00000354 _____ C:\Windows\Tasks\ROC_JAN2013_TB_rmv.job
2015-11-28 17:14 - 2011-07-16 15:45 - 00000000 ____D C:\Users\Petr\AppData\Roaming\stickies
2015-11-28 17:14 - 2011-06-17 11:09 - 00000000 ____D C:\ProgramData\PDFC
2015-11-28 17:14 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-28 16:46 - 2011-07-18 09:52 - 00000000 ____D C:\Users\Petr\AppData\Local\ElevatedDiagnostics
2015-11-28 16:43 - 2012-08-03 18:32 - 00000000 ____D C:\ProgramData\AVAST Software
2015-11-28 16:17 - 2011-07-16 15:32 - 00000000 ____D C:\Program Files (x86)\BigJig
2015-11-28 14:20 - 2015-10-09 11:56 - 00000000 ____D C:\Users\kluci\AppData\Roaming\Seznam.cz
2015-11-28 12:58 - 2011-10-09 14:42 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{DDB304A4-DD98-440B-A8C1-3BF4C51D13EE}
2015-11-28 12:12 - 2014-06-25 11:07 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
2015-11-28 11:08 - 2014-07-23 08:02 - 00000000 ____D C:\Users\kluci\Documents\Euro Truck Simulator 2
2015-11-27 16:39 - 2013-10-09 17:16 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
2015-11-27 13:31 - 2014-10-23 15:31 - 00000000 ___RD C:\Users\kluci\Desktop\Michal
2015-11-25 19:20 - 2015-10-26 13:20 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForPetr
2015-11-25 19:20 - 2015-10-26 13:20 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForPetr.job
2015-11-25 14:26 - 2011-07-18 14:11 - 00000000 ____D C:\Users\kluci\Documents\My Games
2015-11-24 16:57 - 2011-07-17 12:53 - 00000000 ____D C:\Users\kluci\AppData\Local\CrashDumps
2015-11-22 10:18 - 2012-05-28 07:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-16 16:31 - 2011-07-18 16:18 - 00000000 ____D C:\Users\Petr\AppData\Roaming\HpUpdate
2015-11-16 16:31 - 2011-07-18 16:18 - 00000000 ____D C:\Users\Petr\AppData\Roaming\HP Support Assistant
2015-11-14 17:47 - 2015-10-09 11:33 - 00000000 ____D C:\ProgramData\AlawarWrapper
2015-11-13 16:56 - 2011-07-20 17:47 - 00000000 ____D C:\Users\kluci\AppData\Local\Turtix
2015-11-12 09:09 - 2012-04-02 17:23 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-12 09:09 - 2012-04-02 17:23 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-11-12 09:09 - 2011-07-17 11:42 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-01 14:28 - 2011-07-17 10:18 - 00004608 __RSH C:\Users\kluci\ntuser.pol
2015-11-01 14:28 - 2011-07-17 10:18 - 00000000 ____D C:\Users\kluci
2015-11-01 14:15 - 2011-07-17 09:31 - 00000644 __RSH C:\Users\Petr\ntuser.pol
2015-11-01 14:15 - 2011-07-16 11:08 - 00000000 ____D C:\Users\Petr
2015-10-31 19:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2015-10-31 18:20 - 2012-02-25 16:27 - 00000000 ____D C:\Windows\Minidump

==================== Files in the root of some directories =======

2015-02-21 18:25 - 2015-04-06 19:30 - 0000020 _____ () C:\Users\Petr\AppData\Roaming\NevoSoft Gameslog.txt
2011-09-30 07:32 - 2014-02-11 09:38 - 0004608 _____ () C:\Users\Petr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-10-07 17:59 - 2012-10-07 17:59 - 0000092 _____ () C:\Users\Petr\AppData\Local\fusioncache.dat
2011-07-20 18:20 - 2015-05-08 17:16 - 0007607 _____ () C:\Users\Petr\AppData\Local\resmon.resmoncfg
2014-09-02 17:15 - 2014-09-02 17:15 - 0000057 _____ () C:\ProgramData\Ament.ini

Some files in TEMP:
====================
C:\Users\kluci\AppData\Local\Temp\-h2s37fx.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-20 18:40

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (OS) (Fixed) (Total:918.48 GB) (Free:539.64 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:12.93 GB) (Free:1.59 GB) NTFS ==>[system with boot components (obtained from drive)]

Available physical RAM: 2945.18 MB
Total physical RAM: 4076.92 MB
Percentage of memory in use: 27%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 931.5 GB) (Disk ID: D736D51A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=918.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=12.9 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job => C:\Users\kluci\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job => C:\Users\kluci\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job => C:\Users\kluci\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job => C:\Users\kluci\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForHP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\HPCeeScheduleForPetr.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\ROC_JAN2013_TB_rmv.job => C:\Program Files (x86)\AVG Secure Search\PostInstall\ROC.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\Temp:05EE1EEF

==================== Security Center ==================

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Petr\Desktop" je 5815 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStartNPSAgent
C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Users\kluci\Desktop\Jirka\Programy\Instala�n� slo�ky\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater
C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe /StartMinimized [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Norton Online Backup
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirtualCloneDrive
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent
"C:\Program Files (x86)\Winamp\Winampa.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Petr^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Stickies.lnk
C:\PROGRA~2\Stickies\stickies.exe


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#4 Příspěvek od Rudy »

Teď spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Re: Po chvíli je prohlížeč nefunkční HELP!

#5 Příspěvek od peter_ben »

Omlouvám se za polský jazyk, snad to nebude překážkou. Zde je log

# AdwCleaner v5.022 - Utworzono raport 29/11/2015 o 08:41:19
# Ostatnia aktualizacja 22/11/2015 przez Xplode
# Baza danych : 2015-11-22.2 [Serwer]
# System operacyjny : Windows 7 Home Premium Service Pack 1 (x64)
# Nazwa użytkownika : Petr - HP
# Lokalizacja programu : C:\Users\Petr\Desktop\adwcleaner_5.022.exe
# Działanie : Usuń
# Wsparcie : http://toolslib.net/forum

***** [ Usługi ] *****


***** [ Foldery ] *****

[-] Folder usunięto : C:\ProgramData\Babylon
[-] Folder usunięto : C:\ProgramData\Tarma Installer
[-] Folder usunięto : C:\ProgramData\MyPlayCity
[-] Folder usunięto : C:\ProgramData\Microsoft\Windows\Start Menu\YourFileDownloader
[-] Folder usunięto : C:\Users\kluci\AppData\LocalLow\AskToolbar
[-] Folder usunięto : C:\Users\kluci\AppData\LocalLow\Softonic
[-] Folder usunięto : C:\Users\kluci\AppData\Roaming\MyPlayCity
[-] Folder usunięto : C:\Users\Petr\AppData\Local\apn
[-] Folder usunięto : C:\Users\Petr\AppData\Local\Amigo
[-] Folder usunięto : C:\Users\Petr\AppData\LocalLow\Softonic
[-] Folder usunięto : C:\Users\Petr\AppData\Roaming\Babylon
[-] Folder usunięto : C:\Users\Petr\AppData\Roaming\OpenCandy
[-] Folder usunięto : C:\Users\Petr\AppData\Roaming\YourFileDownloader
[-] Folder usunięto : C:\Users\Petr\AppData\Roaming\MyPlayCity

***** [ Pliki ] *****

[-] Plik usunięto : C:\user.js
[-] Plik usunięto : C:\Users\kluci\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.myplaycity.com_0.localstorage
[-] Plik usunięto : C:\Users\kluci\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.myplaycity.com_0.localstorage-journal
[-] Plik usunięto : C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\searchplugins\myplaycity.xml
[-] Plik usunięto : C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\searchplugins\myplaycity.xml
[-] Plik usunięto : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstorage
[-] Plik usunięto : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\Askcom.xml
[-] Plik usunięto : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\myplaycity.xml
[-] Plik usunięto : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\myplaycity.xml
[-] Plik usunięto : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\MyStart Search.xml
[-] Plik usunięto : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\softonic.xml
[-] Plik usunięto : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\user.js

***** [ DLLs ] *****


***** [ Skróty ] *****


***** [ Zaplanowane zadania ] *****

[-] Zadanie usunięto : YourFile Update
[-] Zadanie usunięto : YourFile Update

***** [ Rejestr ] *****

[-] Klucz usunięto : HKLM\SOFTWARE\Classes\Prod.cap
[-] Wartość usunięto : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}]
[-] Wartość usunięto : [x64] HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}]
[-] Klucz usunięto : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
[-] Klucz usunięto : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
[-] Klucz usunięto : HKLM\SOFTWARE\Google\Chrome\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
[-] Klucz usunięto : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
[-] Klucz usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
[-] Klucz usunięto : HKCU\Software\1ClickDownload
[-] Klucz usunięto : HKCU\Software\IM
[-] Klucz usunięto : HKCU\Software\ImInstaller
[-] Klucz usunięto : HKCU\Software\SweetIM
[-] Klucz usunięto : HKCU\Software\YourFileDownloader
[-] Klucz usunięto : HKLM\SOFTWARE\Babylon
[-] Klucz usunięto : HKLM\SOFTWARE\Iminent
[-] Klucz usunięto : HKLM\SOFTWARE\SweetIM
[-] Klucz usunięto : HKLM\SOFTWARE\Web Assistant
[-] Klucz usunięto : HKLM\SOFTWARE\YourFileDownloader
[-] Klucz usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
[-] Klucz usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\YourFileDownloader
[-] Klucz usunięto : [x64] HKLM\SOFTWARE\Tarma Installer
[-] Klucz usunięto : [x64] HKLM\SOFTWARE\Web Assistant
[-] Dane wartości przywrócono : HKU\S-1-5-21-2237614278-1820712661-3241147196-1000_Classes\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Klucz usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
[-] Klucz usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
[-] Klucz usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4FC4250C-BE53-4ADB-AED9-BDB935FD28FF}
[-] Klucz usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
[-] Klucz usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9AD09901-06DD-4DDD-A62D-6D2243B771AB}
[-] Klucz usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
[-] Klucz usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
[-] Klucz usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}

***** [ Przeglądarki internetowe ] *****

[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("browser.search.defaultengine", "Ask.com");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.admin", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.aflt", "babsst");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.babExt", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.babTrack", "affID=112555&tt=3412_8");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.babext", "babExt");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.babtrack", "babTrack");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.bbdpng", 24);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.cntry", "CZ");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.dfltLng", "en");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.dfltlng", "en");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.dfltsrch", "false");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.envrmnt", "production");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.excTlbr", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.firstrun", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.hdrMd5", "402BC8ECFB9C2D2D30C38B9A7E1AFE43");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.hmpg", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.hrdid", "ce93495c00000000000078acc0bcc62e");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.id", "ce93495c00000000000078acc0bcc62e");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.instlDay", "15572");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.instlRef", "sst");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.instlday", "15572");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.instlref", "sst");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.isdcmntcmplt", "false");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.keywordurl", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.6.4.611:11:02");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.lastdp", 24);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.mntrvrsn", "1.3.0");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.newTab", true);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.newtab", true);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.newtaburl", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.prtnrid", "babylon");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.savedVrsnTs", "1");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.sg", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.smplGrp", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.smplgrp", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.srcExt", "ss");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.srcext", "ss");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.srch", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.srchprvdr", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.tlbrId", "base");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://www.google.com/search?babsrc=TB_ggl&q=");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.tlbrid", "base");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.tlbrsrchurl", "hxxp://www.google.com/search?babsrc=TB_ggl&q=");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.vrsn", "1.6.4.6");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.vrsnTs", "1.6.4.611:11:02");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.vrsni", "1.6.4.6");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar.vrsnts", "1.6.4.611:11:02");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.babExt", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=112555&tt=3412_8");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.newTab", true);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=112555&tt=3412_8&babsrc=NT_ss&mntrId=ce93495c00000000000078acc0bcc62e");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.6.4.611:11:02");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.admin", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.aflt", "SD");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.appId", "{7ABBFE1C-E485-44AA-8F36-353751B4124D}");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.autoRvrt", "false");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.dfltLng", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.excTlbr", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.id", "ce93495c00000000000078acc0bcc62e");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.instlDay", "15753");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.instlRef", "INF00176");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.prdct", "Softonic");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.prtnrId", "softonic");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.rvrt", "true");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.tlbrId", "BASEirobinhoodActive");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/INF00176/tb_v1?SearchSource=1&cc=&q=");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.vrsn", "1.8.8.11");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic.vrsni", "1.8.8.11");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic_i.excTlbr", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic_i.newTab", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic_i.smplGrp", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.Softonic_i.vrsnTs", "1.8.8.1117:05:27");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.admin", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.aflt", "orgnl");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.cntry", "CZ");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.dfltLng", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.dfltSrch", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.did", "10658");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.envrmnt", "production");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.excTlbr", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.hdrMd5", "7C51ED3E718B476247FC04D7CD3032C8");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.hmpg", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.id", "ce93495c00000000000078acc0bcc62e");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.installerproductid", "26");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.instlDay", "15571");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.instlRef", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.lastVrsnTs", "1.5.11.1415:46:08");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.mntrvrsn", "1.2.0");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.newTab", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.noFFXTlbr", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.ppd", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.prdct", "incredibar");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.productid", "26");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.prtnrId", "Incredibar");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.sg", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.smplGrp", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.tlbrId", "base");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyLvyh3QH&loc=IB_TB&i=26&search=");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.upn2", "6OyLvyh3QH");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.upn2n", "92261957971089223");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.vrsn", "1.5.11.14");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.vrsnTs", "1.5.11.1415:46:08");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar.vrsni", "1.5.11.14");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.aflt", "orgnl");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.dfltLng", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.did", "10658");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.excTlbr", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.id", "ce93495c00000000000078acc0bcc62e");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.installerproductid", "26");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.instlDay", "15571");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.instlRef", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.ms_url_id", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.newTab", false);
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.ppd", "");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.prdct", "incredibar");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.productid", "26");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.prtnrId", "Incredibar");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.smplGrp", "none");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.tlbrId", "base");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyLvyh3QH&loc=IB_TB&i=26&search=");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.upn2", "6OyLvyh3QH");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.upn2n", "92261957971089223");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.vrsn", "1.5.11.14");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.vrsnTs", "1.5.11.1415:46:08");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.incredibar_i.vrsni", "1.5.11.14");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extentions.y2layers.defaultEnableAppsList", "bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube,YontooNewOffers");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("extentions.y2layers.installId", "68ad828c-dccb-4ec8-878c-3dab3764093b");
[-] [C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\prefs.js] [Preference] usunięto : user_pref("keyword.URL", "hxxp://start.myplaycity.com/results.php?category=web&s=");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("avg.install.installDirPath", "C:\\ProgramData\\AVG Secure Search\\12.2.5.34");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("browser.search.defaultengine", "Ask.com");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("browser.search.order.1", "Ask.com");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("extensions.asktb.ff-original-keyword-url", "hxxp://home.myplaycity.com/results.php?category=web&s=");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("keyword.URL", "hxxp://home.myplaycity.com/results.php?category=web&s=");
[-] [C:\Users\kluci\AppData\Roaming\Mozilla\Firefox\Profiles\rhu95y9q.default\prefs.js] [Preference] usunięto : user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_whiteList", "{\"search.babylon.com\":\"q\",\"search.sweetim.com\":\"q\",\"search.imesh.net\":\"q\",\"www.search-results.com\":\"q\",\"h[...]
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] usunięto : mystart.incredibar.com/mb128
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] usunięto : mpc
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] usunięto : ask.com
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] usunięto : babylon.com
[-] [C:\Users\kluci\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] usunięto : mpc
[-] [C:\Users\kluci\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] usunięto : hxxp://my.myplaycity.com/

*************************

:: "Tracing" klucze usunięta
:: Zresetowano ustawienia Winsock

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [32589 bajty] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#6 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Re: Po chvíli je prohlížeč nefunkční HELP!

#7 Příspěvek od peter_ben »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:28-11-2015
Ran by Petr (administrator) on HP (29-11-2015 11:52:25)
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr & kluci)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7Debug\mdm.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Zhorn Software) C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\stickies.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-02-10] (EasyBits Software AS)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-10-06] (Oracle Corporation)
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2015-11-14] (Easybits)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Run: [Google Update] => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-01] (Google Inc.)
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Petr\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {69fddddb-2ac0-11e5-98ca-78acc0bcc62e} - F:\autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {9fa53194-e8db-11e0-967c-78acc0bcc62e} - H:\Autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d47-afaa-11e0-9319-78acc0bcc62e} - G:\AS_OMSI_V100.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d60-afaa-11e0-9319-78acc0bcc62e} - H:\Setup.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {cc84fc52-261d-11e1-a93a-806e6f6e6963} - F:\Startme.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {ce0a7e4f-ecd8-11e0-b3dd-78acc0bcc62e} - I:\setup.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Control Panel\Desktop\\SCRNSAVE.EXE ->
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-06-17] (EasyBits Software Corp.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
Startup: C:\Users\kluci\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk [2012-01-08]
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (No File)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 3520 series.lnk [2015-11-29]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 3520 series.lnk -> C:\Program Files\hp\HP Deskjet 3520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\stickies.exe [2011-07-16] (Zhorn Software)
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1010\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1003\User: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 192.168.1.1
Tcpip\..\Interfaces\{0CB6C8EF-B891-4056-8F1E-C05E7C732601}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{1096C7E0-A6AB-40A9-A5C8-C38A28E33240}: [NameServer] 8.26.56.26,156.154.70.22
Tcpip\..\Interfaces\{1096C7E0-A6AB-40A9-A5C8-C38A28E33240}: [DhcpNameServer] 192.168.8.1 192.168.1.1
Tcpip\..\Interfaces\{F504D255-48F2-47E1-AFE9-BF4E538D1EA0}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=13906
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.seznam.cz/?clid=22668
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM -> {43541E24-33CA-4800-9380-1A1A08285861} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://cs.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKLM-x32 -> {43541E24-33CA-4800-9380-1A1A08285861} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://cs.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {01465393-579B-4E0F-90B6-7C3745C0B981} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {136468E8-F6D8-48F3-8000-92A61346048E} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {22FC1AA8-C695-42EE-BD9D-3954E53BC834} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {26F2971C-C0C7-46B2-B23C-5B5A3E25FEA0} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {43541E24-33CA-4800-9380-1A1A08285861} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {7CA37D16-2B0C-4455-B9AD-C263ED9A3B1B} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {81354138-4DCE-4030-8B88-B2EF3AF362B5} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {967BC396-F92C-42E0-ABC0-49A2105D016E} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13906
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://cs.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> {EC44DFA7-988F-4084-B951-8A3A668668FD} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13906
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File

FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default
FF SelectedSearchEngine:
FF Homepage: hxxps://www.seznam.cz/
FF Keyword.URL: hxxp://start.myplaycity.com/results.php?category=web&s=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-12] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-12] ()
FF Plugin-x32: @alawar.com/npapi -> C:\Windows\npapi.dll [2014-01-29] (Alawar)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-10-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-10-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-28] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-28] (NVIDIA Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\13\NP_wtapp.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2013-09-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2237614278-1820712661-3241147196-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-2237614278-1820712661-3241147196-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Petr\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\searchplugins\myplaycity-search.xml [2012-01-31]
FF Extension: All-in-One Sidebar - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi [2015-10-07]
FF Extension: Adblock Plus - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\8zjstrn7.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-28]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2015-11-20] [not signed]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2015-11-20] [not signed]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2015-11-20] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{6D5C8FC4-DE46-41bf-9092-93F0F78E9115}] - C:\ProgramData\Norton\{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}\NSM_2.2.0.26\coFFFw => not found

Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-09]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-09]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-28]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-09]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-10-08]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-28]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-08]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-09]
CHR HKLM-x32\...\Chrome\Extension: [mibfbmhijjgpkmobcfdlelpccpeafoom] - <no Path/update_url>
StartMenuInternet: Google Chrome - C:\Users\kluci\AppData\Local\Google\Chrome\Application\chrome.exe
StartMenuInternet: Google Chrome.4TDVFA7LGTAJHAEDD4V6NUP2MM - C:\Users\Petr\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [182304 2014-11-29] (EasyAntiCheat Ltd)
R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed]
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe [335872 2003-03-19] (Microsoft Corporation) [File not signed]
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-07-15] (Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2011-10-02] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-05-28] (NVIDIA Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
U5 usbser; C:\Windows\System32\Drivers\usbser.sys [32768 2010-11-21] (Microsoft Corporation)
S3 massfilter_hs; \??\C:\Windows\system32\drivers\massfilter_hs.sys [X]
S3 NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-29 11:52 - 2015-11-29 11:52 - 00022742 _____ C:\Users\Petr\Desktop\FRST.txt
2015-11-29 08:37 - 2015-11-29 08:41 - 00000000 ____D C:\AdwCleaner
2015-11-29 08:29 - 2015-11-29 08:29 - 01733632 _____ C:\Users\Petr\Desktop\adwcleaner_5.022.exe
2015-11-28 19:22 - 2015-11-29 11:52 - 00000000 ____D C:\FRST
2015-11-28 19:20 - 2015-11-28 19:20 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-11-28 19:13 - 2015-11-28 19:13 - 02349056 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-11-28 16:42 - 2015-11-28 16:42 - 00003288 ____N C:\bootsqm.dat
2015-11-28 14:22 - 2015-11-28 15:04 - 00011776 _____ C:\Users\kluci\Desktop\kniha-jizd.xls
2015-11-22 15:24 - 2015-11-19 17:34 - 33596991 _____ C:\Users\kluci\Downloads\kauf1911.pdf
2015-11-20 14:44 - 2015-11-22 10:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-15 13:26 - 2015-11-15 13:26 - 00000028 _____ C:\Users\kluci\Desktop\Nový textový dokument.txt
2015-11-14 08:33 - 2015-11-14 08:38 - 00000000 ____D C:\ProgramData\Easybits Magic Desktop for HP
2015-11-03 19:37 - 2015-11-03 19:37 - 00065536 _____ C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-01 12:06 - 2015-11-01 12:06 - 00000000 ____D C:\Users\Petr\AppData\Local\PDFC
2015-10-31 18:30 - 2015-10-31 18:30 - 00001165 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-29 11:48 - 2014-07-23 08:02 - 00000000 ____D C:\Users\kluci\Documents\Euro Truck Simulator 2
2015-11-29 11:39 - 2013-10-09 17:16 - 00000962 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
2015-11-29 11:14 - 2011-07-30 10:27 - 00000958 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job
2015-11-29 11:09 - 2012-04-02 17:23 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-29 09:43 - 2015-10-09 11:56 - 00000000 ____D C:\Users\kluci\AppData\Roaming\Seznam.cz
2015-11-29 09:38 - 2013-01-22 09:46 - 00000354 _____ C:\Windows\Tasks\ROC_JAN2013_TB_rmv.job
2015-11-29 09:37 - 2014-06-25 11:07 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
2015-11-29 08:50 - 2009-07-14 05:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-29 08:50 - 2009-07-14 05:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-29 08:47 - 2015-10-09 11:34 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Seznam.cz
2015-11-29 08:42 - 2015-06-21 12:32 - 00000000 ____D C:\ProgramData\NVIDIA
2015-11-29 08:42 - 2011-07-16 15:45 - 00000000 ____D C:\Users\Petr\AppData\Roaming\stickies
2015-11-29 08:42 - 2011-06-17 11:09 - 00000000 ____D C:\ProgramData\PDFC
2015-11-29 08:42 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-29 08:36 - 2011-07-20 18:20 - 00007608 _____ C:\Users\Petr\AppData\Local\resmon.resmoncfg
2015-11-28 19:24 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2015-11-28 19:08 - 2012-06-19 14:04 - 00003206 _____ C:\Windows\System32\Tasks\HPCeeScheduleForHP$
2015-11-28 19:08 - 2012-06-19 14:04 - 00000330 _____ C:\Windows\Tasks\HPCeeScheduleForHP$.job
2015-11-28 19:08 - 2011-07-30 10:27 - 00000906 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job
2015-11-28 17:22 - 2011-06-17 10:38 - 00678098 _____ C:\Windows\system32\perfh005.dat
2015-11-28 17:22 - 2011-06-17 10:38 - 00146996 _____ C:\Windows\system32\perfc005.dat
2015-11-28 17:22 - 2009-07-14 06:13 - 01614032 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-28 17:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2015-11-28 16:46 - 2011-07-18 09:52 - 00000000 ____D C:\Users\Petr\AppData\Local\ElevatedDiagnostics
2015-11-28 16:43 - 2012-08-03 18:32 - 00000000 ____D C:\ProgramData\AVAST Software
2015-11-28 16:17 - 2011-07-16 15:32 - 00000000 ____D C:\Program Files (x86)\BigJig
2015-11-28 12:58 - 2011-10-09 14:42 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{DDB304A4-DD98-440B-A8C1-3BF4C51D13EE}
2015-11-28 12:12 - 2014-06-25 11:07 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
2015-11-27 16:39 - 2013-10-09 17:16 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
2015-11-27 13:31 - 2014-10-23 15:31 - 00000000 ___RD C:\Users\kluci\Desktop\Michal
2015-11-25 19:20 - 2015-10-26 13:20 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForPetr
2015-11-25 19:20 - 2015-10-26 13:20 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForPetr.job
2015-11-25 14:26 - 2011-07-18 14:11 - 00000000 ____D C:\Users\kluci\Documents\My Games
2015-11-24 16:57 - 2011-07-17 12:53 - 00000000 ____D C:\Users\kluci\AppData\Local\CrashDumps
2015-11-22 10:18 - 2012-05-28 07:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-16 16:31 - 2011-07-18 16:18 - 00000000 ____D C:\Users\Petr\AppData\Roaming\HpUpdate
2015-11-16 16:31 - 2011-07-18 16:18 - 00000000 ____D C:\Users\Petr\AppData\Roaming\HP Support Assistant
2015-11-14 17:47 - 2015-10-09 11:33 - 00000000 ____D C:\ProgramData\AlawarWrapper
2015-11-13 16:56 - 2011-07-20 17:47 - 00000000 ____D C:\Users\kluci\AppData\Local\Turtix
2015-11-12 09:09 - 2012-04-02 17:23 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-12 09:09 - 2012-04-02 17:23 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-11-12 09:09 - 2011-07-17 11:42 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-01 14:28 - 2011-07-17 10:18 - 00004608 __RSH C:\Users\kluci\ntuser.pol
2015-11-01 14:28 - 2011-07-17 10:18 - 00000000 ____D C:\Users\kluci
2015-11-01 14:15 - 2011-07-17 09:31 - 00000644 __RSH C:\Users\Petr\ntuser.pol
2015-11-01 14:15 - 2011-07-16 11:08 - 00000000 ____D C:\Users\Petr
2015-10-31 19:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2015-10-31 18:20 - 2012-02-25 16:27 - 00000000 ____D C:\Windows\Minidump

==================== Files in the root of some directories =======

2015-02-21 18:25 - 2015-04-06 19:30 - 0000020 _____ () C:\Users\Petr\AppData\Roaming\NevoSoft Gameslog.txt
2011-09-30 07:32 - 2014-02-11 09:38 - 0004608 _____ () C:\Users\Petr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-10-07 17:59 - 2012-10-07 17:59 - 0000092 _____ () C:\Users\Petr\AppData\Local\fusioncache.dat
2011-07-20 18:20 - 2015-11-29 08:36 - 0007608 _____ () C:\Users\Petr\AppData\Local\resmon.resmoncfg
2014-09-02 17:15 - 2014-09-02 17:15 - 0000057 _____ () C:\ProgramData\Ament.ini

Some files in TEMP:
====================
C:\Users\kluci\AppData\Local\Temp\-h2s37fx.dll
C:\Users\Petr\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-20 18:40

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (OS) (Fixed) (Total:918.48 GB) (Free:539.64 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:12.93 GB) (Free:1.59 GB) NTFS ==>[system with boot components (obtained from drive)]

Available physical RAM: 3188.6 MB
Total physical RAM: 4076.92 MB
Percentage of memory in use: 21%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 931.5 GB) (Disk ID: D736D51A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=918.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=12.9 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job => C:\Users\kluci\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job => C:\Users\kluci\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job => C:\Users\Petr\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job => C:\Users\kluci\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job => C:\Users\kluci\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForHP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\HPCeeScheduleForPetr.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\ROC_JAN2013_TB_rmv.job => C:\Program Files (x86)\AVG Secure Search\PostInstall\ROC.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\Temp:05EE1EEF

==================== Security Center ==================

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Petr\Desktop" je 5816 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStartNPSAgent
C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Users\kluci\Desktop\Jirka\Programy\Instala�n� slo�ky\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater
C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe /StartMinimized [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Norton Online Backup
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirtualCloneDrive
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent
"C:\Program Files (x86)\Winamp\Winampa.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Petr^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Stickies.lnk
C:\PROGRA~2\Stickies\stickies.exe


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-10-06] (Oracle Corporation)
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {69fddddb-2ac0-11e5-98ca-78acc0bcc62e} - F:\autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {9fa53194-e8db-11e0-967c-78acc0bcc62e} - H:\Autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d47-afaa-11e0-9319-78acc0bcc62e} - G:\AS_OMSI_V100.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d60-afaa-11e0-9319-78acc0bcc62e} - H:\Setup.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {cc84fc52-261d-11e1-a93a-806e6f6e6963} - F:\Startme.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {ce0a7e4f-ecd8-11e0-b3dd-78acc0bcc62e} - I:\setup.exe
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (No File)
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1010\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1003\User: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
FF Keyword.URL: hxxp://start.myplaycity.com/results.php?category=web&s=
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF HKLM-x32\...\Firefox\Extensions: [{6D5C8FC4-DE46-41bf-9092-93F0F78E9115}] - C:\ProgramData\Norton\{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}\NSM_2.2.0.26\coFFFw => not found
CHR HKLM-x32\...\Chrome\Extension: [mibfbmhijjgpkmobcfdlelpccpeafoom] - <no Path/update_url>
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job
c:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
C:\Users\kluci\AppData\Local\Temp
AlternateDataStreams: C:\ProgramData\Temp:05EE1EEF
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Z logu:
Velikost slozky "C:\Users\Petr\Desktop" je 5816 MB.
To je příliš mnoho a může to zpomalovat start systému. Vytvořte v C:\Users\Petr novou složku, do které přesuňte s vyjímkou zástupců všechna data z plochy a na plochu si pak pro snazší přístup dejte zástupce té složky.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Re: Po chvíli je prohlížeč nefunkční HELP!

#9 Příspěvek od peter_ben »

Po provedení fixu jsem, podle Vaši rady, v C:\Users\Petr vytvořil novou složku. Na plochu jsem umístil zástupce této složky, v níž jsou všechna data z plochy, s vyjímkou zástupců.

Zde je log:

Fix result of Farbar Recovery Scan Tool (x64) Version:28-11-2015
Ran by Petr (2015-11-29 13:32:15) Run:1
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr & kluci)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-10-06] (Oracle Corporation)
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {69fddddb-2ac0-11e5-98ca-78acc0bcc62e} - F:\autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {9fa53194-e8db-11e0-967c-78acc0bcc62e} - H:\Autorun.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d47-afaa-11e0-9319-78acc0bcc62e} - G:\AS_OMSI_V100.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {c45f5d60-afaa-11e0-9319-78acc0bcc62e} - H:\Setup.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {cc84fc52-261d-11e1-a93a-806e6f6e6963} - F:\Startme.exe
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\...\MountPoints2: {ce0a7e4f-ecd8-11e0-b3dd-78acc0bcc62e} - I:\setup.exe
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (No File)
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1010\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1003\User: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-2237614278-1820712661-3241147196-1000 -> No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
FF Keyword.URL: hxxp://start.myplaycity.com/results.php?category=web&s=
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF HKLM-x32\...\Firefox\Extensions: [{6D5C8FC4-DE46-41bf-9092-93F0F78E9115}] - C:\ProgramData\Norton\{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}\NSM_2.2.0.26\coFFFw => not found
CHR HKLM-x32\...\Chrome\Extension: [mibfbmhijjgpkmobcfdlelpccpeafoom] - <no Path/update_url>
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job
c:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job
C:\Users\kluci\AppData\Local\Temp
AlternateDataStreams: C:\ProgramData\Temp:05EE1EEF
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableLockWorkstation => value removed successfully
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableChangePassword => value removed successfully
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\LogonHoursAction => value removed successfully
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DontDisplayLogonHoursWarnings => value removed successfully
"HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{69fddddb-2ac0-11e5-98ca-78acc0bcc62e}" => key removed successfully
HKCR\CLSID\{69fddddb-2ac0-11e5-98ca-78acc0bcc62e} => key not found.
"HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9fa53194-e8db-11e0-967c-78acc0bcc62e}" => key removed successfully
HKCR\CLSID\{9fa53194-e8db-11e0-967c-78acc0bcc62e} => key not found.
"HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c45f5d47-afaa-11e0-9319-78acc0bcc62e}" => key removed successfully
HKCR\CLSID\{c45f5d47-afaa-11e0-9319-78acc0bcc62e} => key not found.
"HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c45f5d60-afaa-11e0-9319-78acc0bcc62e}" => key removed successfully
HKCR\CLSID\{c45f5d60-afaa-11e0-9319-78acc0bcc62e} => key not found.
"HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc84fc52-261d-11e1-a93a-806e6f6e6963}" => key removed successfully
HKCR\CLSID\{cc84fc52-261d-11e1-a93a-806e6f6e6963} => key not found.
"HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ce0a7e4f-ecd8-11e0-b3dd-78acc0bcc62e}" => key removed successfully
HKCR\CLSID\{ce0a7e4f-ecd8-11e0-b3dd-78acc0bcc62e} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe => not found.
C:\Windows\system32\GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1010\User => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\Windows\system32\GroupPolicyUsers\S-1-5-21-2237614278-1820712661-3241147196-1003\User => moved successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => key removed successfully
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value removed successfully
HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value removed successfully
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found.
HKU\S-1-5-21-2237614278-1820712661-3241147196-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} => value removed successfully
HKCR\CLSID\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} => key not found.
"HKCR\PROTOCOLS\Handler\skype4com" => key removed successfully
HKCR\CLSID\{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} => key not found.
Firefox "Keyword.URL" removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{6D5C8FC4-DE46-41bf-9092-93F0F78E9115} => value removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mibfbmhijjgpkmobcfdlelpccpeafoom" => key removed successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000UA.job => moved successfully
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1000Core.job => moved successfully
c:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2237614278-1820712661-3241147196-1003Core.job => moved successfully
C:\Users\kluci\AppData\Local\Temp => moved successfully
C:\ProgramData\Temp => ":05EE1EEF" ADS removed successfully.


The system needed a reboot.

==== End of Fixlog 13:32:15 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#10 Příspěvek od Rudy »

Jinak smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Re: Po chvíli je prohlížeč nefunkční HELP!

#11 Příspěvek od peter_ben »

K tomu počítači se dostanu až zítra odpoledne. Pak napíšu, jak se chová. Děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#12 Příspěvek od Rudy »

OK. I zítra bych tu měl být. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

peter_ben
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 srp 2011 15:40

Re: Po chvíli je prohlížeč nefunkční HELP!

#13 Příspěvek od peter_ben »

Zdravím, zatím vše funguje, jak má. Mám k tomu pár otázek.

a) jaký tam byl problém (co za šmejda)?
b) jak se tam dostal?
c) jak tomu předcházet?
d) jaký SW použít? (měl jsem Avast free, stačí?)
d) co jsem dlužen?

Lojenov
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 30 lis 2015 18:59

Re: Po chvíli je prohlížeč nefunkční HELP!

#14 Příspěvek od Lojenov »

v práci používám prohlížeč EDGE, 3 měsíce - vše perfektní! Doporučuji!

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118192
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Po chvíli je prohlížeč nefunkční HELP!

#15 Příspěvek od Rudy »

1. Pár AdWarů a nějaké zbytečnosti.
2. AdWary se dostano z internetu přes prohlížeč a zbytečnosti jsou většinou zbytky po odinstalovaném softu, nebo zbytečné procesy některých regulérních programů.
3. Občas proskenovat některým antispy skenerem, např. SaS: http://www.stahuj.centrum.cz/utility_a_ ... tispyware/ . Při instalacích instalovat jen program a zrušit zatržítka instalací různých rádoby "bonusů".
4. Postačí antivir a antispy.
5. Nic, děláme to dobrovolně jako relax.
:)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno