Vir - Facebook vir

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zpráva
Autor
Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#31 Příspěvek od Mc_Murphy »

To není ten log... musí být delší...
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#32 Příspěvek od Neliell »

Odhlásí mi to uživatele a hodí mi to do poznámkového bloku

Files\Folders moved on Reboot...
C:\Users\oem\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

Registry entries deleted on Reboot...

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#33 Příspěvek od Mc_Murphy »

:arrow: Koukni se do složky C:\_OTL\MovedFiles kde by měl být uložen textový dokument (log) ve tvaru čísel, což je datum a čas aplikování.
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#34 Příspěvek od Neliell »

Ano, jsou tu dva logy, které jsem ti posílala :(

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#35 Příspěvek od Mc_Murphy »

OK... zkus aplikovat ten opravný script v Nouzovém režimu.
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#36 Příspěvek od Neliell »

OTL logfile created on: 28.12.2011 22:24:03 - Run 4
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\oem\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,87 Gb Total Physical Memory | 3,11 Gb Available Physical Memory | 80,42% Memory free
7,73 Gb Paging File | 6,99 Gb Available in Paging File | 90,42% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 584,07 Gb Total Space | 476,86 Gb Free Space | 81,64% Space Free | Partition Type: NTFS

Computer Name: OEM-PC | User Name: oem | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.12.22 22:05:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe


========== Modules (No Company Name) ==========


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011.09.06 22:45:28 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010.03.17 10:56:12 | 000,866,336 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc)
SRV:64bit: - [2010.01.22 02:01:12 | 000,202,752 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2011.03.18 16:50:58 | 002,271,608 | ---- | M] (TeamViewer GmbH) [Auto | Stopped] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.03 14:21:16 | 000,325,200 | ---- | M] (Dritek System Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010.01.30 00:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe -- (RS_Service)
SRV - [2009.12.24 01:39:04 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel(R)
SRV - [2009.09.30 13:01:32 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R)
SRV - [2009.09.30 13:01:30 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011.09.06 22:38:18 | 000,601,944 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2011.09.06 22:38:16 | 000,301,912 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2011.09.06 22:36:41 | 000,058,200 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2011.09.06 22:36:41 | 000,042,328 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:64bit: - [2011.09.06 22:36:30 | 000,065,368 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2011.09.06 22:36:14 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2011.08.02 16:38:56 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.12.21 15:04:06 | 000,141,264 | ---- | M] (ESET) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\ehdrv.sys -- (ehdrv)
DRV:64bit: - [2010.12.21 13:47:38 | 000,170,640 | ---- | M] (ESET) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\epfw.sys -- (epfw)
DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.04.01 09:18:30 | 003,060,800 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2010.03.21 10:59:08 | 000,321,064 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a) Broadcom NetLink (TM)
DRV:64bit: - [2010.03.01 08:20:56 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010.01.28 02:33:38 | 000,116,736 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.01.27 04:05:00 | 000,231,328 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
DRV:64bit: - [2010.01.22 02:13:24 | 006,233,088 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atipmdag.sys -- (amdkmdag)
DRV:64bit: - [2010.01.22 01:07:56 | 000,161,280 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010.01.06 14:33:16 | 000,158,848 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2009.12.17 18:42:08 | 000,538,136 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009.12.10 12:25:10 | 000,301,104 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009.09.17 05:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel(R)
DRV:64bit: - [2009.09.15 05:40:42 | 006,952,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64) Intel(R)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009.03.18 16:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009.02.28 19:40:18 | 000,146,928 | ---- | M] (CyberLink Corp.) [2011/03/13 18:29:14] [Kernel | Auto | Stopped] -- C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD})


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4592m618
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4592m618

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\oem\Downloads
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKCU\..\URLSearchHook: - No CLSID value found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\gcswf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Chrome NaCl (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\oem\AppData\Local\Google\Chrome\Application\15.0.874.102\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: avast! WebRep = C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1289_0\

O1 HOSTS File: ([2011.12.19 22:56:38 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.111.0.10 193.179.148.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A67D43D2-4260-4B01-BD7E-1290BE362508}: DhcpNameServer = 212.111.0.10 193.179.148.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CB792E01-2EC1-43E1-BA1B-5FD6CA9F7CF7}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[CLEARALLRESTOREPOINTS]
Error creating restore point.

========== Files/Folders - Created Within 30 Days ==========

[2011.12.28 12:57:09 | 000,000,000 | ---D | C] -- C:\World of Warcraft
[2011.12.26 11:05:59 | 000,000,000 | ---D | C] -- C:\_OTL
[2011.12.22 22:21:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo II
[2011.12.22 22:05:47 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
[2011.12.19 23:03:03 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011.12.18 20:44:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\World of Warcraft
[2011.12.17 20:48:38 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011.12.17 20:48:38 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011.12.17 20:48:38 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011.12.17 20:42:24 | 000,000,000 | ---D | C] -- C:\## aswSnx private storage
[3 C:\Users\oem\AppData\Local\*.tmp files -> C:\Users\oem\AppData\Local\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.12.28 22:22:36 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.12.28 22:22:30 | 3113,254,912 | -HS- | M] () -- C:\hiberfil.sys
[2011.12.28 22:21:46 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.12.28 22:21:46 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.12.28 16:37:43 | 027,805,135 | ---- | M] () -- C:\Users\oem\Desktop\AddOns.rar
[2011.12.28 15:13:14 | 000,000,749 | ---- | M] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2011.12.25 20:03:28 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.12.25 15:31:36 | 000,049,248 | ---- | M] () -- C:\Users\oem\Desktop\387255_289893597715070_227840210587076_720657_858158758_n.jpg
[2011.12.22 22:24:59 | 000,001,199 | ---- | M] () -- C:\Users\Public\Desktop\Diablo II - Lord of Destruction.lnk
[2011.12.22 22:05:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\oem\Desktop\OTL.exe
[2011.12.19 23:01:26 | 001,469,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.12.19 23:01:26 | 000,631,292 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2011.12.19 23:01:26 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.12.19 23:01:26 | 000,121,914 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2011.12.19 23:01:26 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.12.19 22:56:38 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011.12.17 20:59:04 | 000,013,272 | ---- | M] () -- C:\Users\oem\Desktop\ComboFix – zástupce.lnk
[3 C:\Users\oem\AppData\Local\*.tmp files -> C:\Users\oem\AppData\Local\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.12.28 16:27:47 | 027,805,135 | ---- | C] () -- C:\Users\oem\Desktop\AddOns.rar
[2011.12.28 14:04:14 | 000,000,749 | ---- | C] () -- C:\Users\Public\Desktop\World of Warcraft.lnk
[2011.12.25 15:31:34 | 000,049,248 | ---- | C] () -- C:\Users\oem\Desktop\387255_289893597715070_227840210587076_720657_858158758_n.jpg
[2011.12.22 22:32:13 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.12.22 22:21:31 | 000,001,199 | ---- | C] () -- C:\Users\Public\Desktop\Diablo II - Lord of Destruction.lnk
[2011.12.17 20:59:04 | 000,013,272 | ---- | C] () -- C:\Users\oem\Desktop\ComboFix – zástupce.lnk
[2011.12.17 20:48:38 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011.12.17 20:48:38 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011.12.17 20:48:38 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011.12.17 20:48:38 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011.12.17 20:48:38 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011.10.24 19:22:06 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{D37D13B6-27C0-4287-9D4D-DDCE9572467D}
[2011.08.29 23:34:51 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{E81F0030-7C92-4CBE-B229-9C74961D5028}
[2011.08.03 03:39:55 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{621D4880-EA39-451F-925E-41D7A6C87CEB}
[2011.07.30 01:14:33 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{F303A536-A429-445C-ADDF-0D5196A58E99}
[2011.07.29 20:26:36 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{A33E3D76-F5D8-4777-8B68-9DBE0FFA8B7D}
[2011.07.03 21:13:25 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\CmdLineExt03.dll
[2011.06.29 20:31:43 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{CA0C00E5-0428-4128-BAA5-F617A116D747}
[2011.06.22 21:41:05 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{3E638734-8735-4EFD-9CD9-609D212E6E35}
[2011.05.17 05:49:49 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{A0709926-D57C-439E-884F-1FF67A0FFED8}
[2011.05.16 12:38:41 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{6CE531AE-2EF1-4E9E-A292-2D8087F3BA0E}
[2011.05.12 15:54:13 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{5BABCE94-8799-408A-B93E-D1E3398F10A2}
[2011.05.12 15:43:21 | 000,000,000 | ---- | C] () -- C:\Users\oem\AppData\Local\{C4244C8B-533B-4282-A18A-99AC407FDB8D}
[2011.05.10 18:58:40 | 000,017,212 | ---- | C] () -- C:\Users\oem\AppData\Roaming\UserTile.png
[2011.02.04 20:49:17 | 000,032,752 | ---- | C] () -- C:\Windows\SysWow64\NTAgent.exe
[2011.02.04 20:18:54 | 001,471,654 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.02.04 19:48:27 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011.02.04 19:45:48 | 000,001,035 | ---- | C] () -- C:\Windows\SysWow64\atipblup.dat
[2011.02.04 19:43:17 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.dll
[2011.02.04 19:41:50 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.exe
[2010.04.12 04:11:27 | 000,001,035 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2003.05.05 10:59:38 | 000,000,795 | ---- | C] () -- C:\Windows\VPlayer.INI

========== Custom Scans ==========


< :Commands >

< [emptytemp] >

< [emptyflash] >

< [resethosts] >

< [purity] >

< >

< :Services >

< gupdate >

< gupdatem >

< gusvc >

< ICQ Service >

< >

< :OTL >

< IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >

< IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >

< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >

< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\URLSearchHook: - No CLSID value found >

< IE - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) >

< FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found >
Invalid Switch: GENUINE: disabled File not found


< FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found >
Invalid Switch: iTunes,version=: File not found


< FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found >
Invalid Switch: GENUINE: disabled File not found


< FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird >

< O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. >

< O3:64bit: - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >

< O3:64bit: - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () >

< O3 - HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () >

< O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >

< O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) >

< O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () >

< O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found >
Invalid Switch: cmsidewiki.html File not found


< O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found >
Invalid Switch: cmsidewiki.html File not found


< O18:64bit: - Protocol\Handler\livecall - No CLSID value found >

< O18:64bit: - Protocol\Handler\ms-help - No CLSID value found >

< O18:64bit: - Protocol\Handler\msnim - No CLSID value found >

< O18:64bit: - Protocol\Handler\skype4com - No CLSID value found >

< O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found >

< O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found >
Invalid Switch: pagefile) - File not found


< O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found >
Invalid Switch: pagefile) - File not found


< [4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ] >

< [5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ] >

< [1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp files -> C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp files -> C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp files -> C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp files -> C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp files -> C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp files -> C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp files -> C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp files -> C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp files -> C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp files -> C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp files -> C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp files -> C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp -> ] >

< [1 C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp -> ] >

< >

< :Files >

< C:\Users\oem\AppData\Roaming\ESET >

< C:\Program Files (x86)\ICQ6Toolbar >

< C:\Program Files (x86)\DAEMON Tools Toolbar >

< C:\Program Files (x86)\Google\Google Toolbar >

< C:\Windows\tasks\GoogleUpdateTaskMachineCore.job >

< C:\Windows\tasks\GoogleUpdateTaskMachineUA.job >

< C:\Users\oem\Downloads\Diablo.2.LOD.Patch.1.11b.crack.rar /d >
Invalid Switch: d


< C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction /d >
Invalid Switch: d


< %windir%\system32\*.tmp.dll /s >

< %windir%\system32\SET*.tmp /s >

< %windir%\*.tmp /s >
[4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp files -> C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp files -> C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp files -> C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp files -> C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp files -> C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp files -> C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp files -> C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp files -> C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp files -> C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp files -> C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp files -> C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp files -> C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp files -> C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp files -> C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp files -> C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp files -> C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp files -> C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp files -> C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp files -> C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp files -> C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp files -> C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\*.tmp -> ]

< >

< :Reg >

< [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] >

< [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] >

< "{855F3B16-6D32-4FE6-8A56-BBB695989046}"=- >

< "{32099AAC-C132-4136-9E9A-4E364A424E17}"=- >

< "{2318C2B1-4965-11d4-9B18-009027A5CD4F}"=- >

< "{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}"=- >

< [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] >

< "swg"=- >

< End of report >

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#37 Příspěvek od Mc_Murphy »

:!: [Opravit] NE [Prohledat] !!! :frusty:
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#38 Příspěvek od Neliell »

:( To jsem překlikla, já hlava dubová :D.. omlouvám se

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#39 Příspěvek od Mc_Murphy »

Mno hezké, tak to ale konečně udělej správně, prosím. Čekám na ten log...
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#40 Příspěvek od Neliell »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: oem
->Temp folder emptied: 20775345 bytes
->Temporary Internet Files folder emptied: 49863920 bytes
->Java cache emptied: 2208763 bytes
->Google Chrome cache emptied: 40389087 bytes
->Flash cache emptied: 498 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 276455 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67978 bytes
RecycleBin emptied: 4062864834 bytes

Total Files Cleaned = 3 983,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: oem
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Error creating restore point.
========== SERVICES/DRIVERS ==========
Error: No service named gupdate was found to stop!
Service\Driver key gupdate not found.
Error: No service named gupdatem was found to stop!
Service\Driver key gupdatem not found.
Service gusvc stopped successfully!
Service gusvc deleted successfully!
Error: No service named ICQ Service was found to stop!
Service\Driver key ICQ Service not found.
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKU\S-1-5-21-2927946516-1645679117-2926638077-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
File HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
64bit-Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ deleted successfully.
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll moved successfully.
64bit-Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-2927946516-1645679117-2926638077-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ not found.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll not found.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\livecall\ deleted successfully.
File Protocol\Handler\livecall - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msnim\ deleted successfully.
File Protocol\Handler\msnim - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlmailhtml\ deleted successfully.
File Protocol\Handler\wlmailhtml - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP92EC.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP973F.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAFBF.tmp\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAFBF.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP20C9.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2CAE.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7D78.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\Installer\MSI3E62.tmp deleted successfully.
C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\wlt62AB.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\031724aa6ec4ce697a3e2d6abc002133\BIT5305.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\03b35f5382961e8e1ef20409075e0088\BIT5EBF.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\066c244c43c09c2f74e7c09e14e7ee38\BIT60B7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\06a932a55b2fe4ea417f7d5f84e8d2f3\BIT705D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\10a4a8847009249ae776dddf0dfac697\BIT881F.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\19bbd327642e29154eb618354a5b15e3\BIT6DD8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\1b755e39cbc7b4281c746a7b5f1cb296\BIT5BC6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\1c1725345550db247e80071b2a61d35b\BIT72C3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\25e98dafef2ef365b34d072b82efa034\BIT694D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2754ec1593865b0d91b417b3e3f8ea21\BIT5BF7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\297e010eedecb73f780d95068d5339ad\BIT5BD7.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2d3b9eaaa3aeca19ef27faf19da434d0\BIT659C.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3a393f2ac640f55267ac93ccaa18fa91\BIT8C6A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3a97dad38b8bc9ed30087d25a0d7412a\BIT708D.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3dcf34dc2ba7f7fcf538bb92ded2b3e3\BIT5481.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\3f7fdbb679855582669213253b5db0f9\BIT57F4.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\40298a5cb4246d479345ba280c3a92b2\BIT5D24.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\4276ca8b3373bc3798d1bf5dc97c9814\BIT6EF3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\5e4a463701d54c4527859ea6f3fbc498\BIT7198.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\6003bb824fa5fbc7e58d03102fa0b618\BIT5D64.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\64517f593a4a513763da2282e764d49b\BIT74C9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\68c7325de5278cdea1621a94e8e059b7\BIT6E17.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\697bed8226f21a7a89c1878c921b423a\BIT5708.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\6993638be416c67f97c446c063127117\BIT5E70.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\706c5a611fcdb874ae86b12bb9c70c4c\BIT5236.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\7333e1d03635eb070f063fd5a9937c1a\BIT5A9A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\827a16e4fba28eeef74d212dee4c0279\BIT5ABA.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\894a72d3fb16a7e332921c95445e0605\BIT5452.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\8d807f892ca841589b4d5a3f13cd8cb3\BIT7D37.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\8f6d7f428e2f5d0686db1a5a2675eef6\BIT5C36.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\9a2a46df216d84cd0b13bb0966ed011e\BIT5BA6.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\a584b8b0ba27c0627c4961bd0a5274f4\BIT7216.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\a78917d05748669fcf5a38a8f38776a2\BIT58D1.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\aea8268acfcab49a772f9f02da9b2030\BIT7C7B.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\b815a4898f183606f4963401e738fb46\BIT5412.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ba63d4a0a2085126e12a0d6a295eba50\BIT5CB5.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\bfb1c08d6e037134d7be5c3de1668731\BIT65BC.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\c6a9f9ce4bb44b73d22de1ed703621eb\BIT5DA3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\c93c669d921635129fc5acdc97d11e06\BIT6AB8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d4e1eb2d43387f17283440dd6e32b800\BIT54F0.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d5036c4aee8158e424d425e4977f29cb\BIT5882.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\d9c247dc000cd253c9ff9acf5c024bd3\BIT5C57.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\e06bb4aa1cd68b29311aff634d65661f\BIT5D04.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ec86c1527f6cc1ef63504167bbb8b689\BIT66E8.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\ef38695ae943033caaabc0c2d5bd5882\BIT8067.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\efbd2f71f2e41a38f6b24b2a13e276aa\BIT6CAD.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f14c980d0258e15f28418bde72cd5440\BIT5AF9.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f1eb035a88c96e55f04cb025e02ae297\BIT8723.tmp deleted successfully.
========== FILES ==========
C:\Users\oem\AppData\Roaming\ESET\ESET Smart Security folder moved successfully.
C:\Users\oem\AppData\Roaming\ESET folder moved successfully.
C:\Program Files (x86)\ICQ6Toolbar folder moved successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files (x86)\DAEMON Tools Toolbar folder moved successfully.
C:\Program Files (x86)\Google\Google Toolbar\Component folder moved successfully.
C:\Program Files (x86)\Google\Google Toolbar folder moved successfully.
File\Folder C:\Windows\tasks\GoogleUpdateTaskMachineCore.job not found.
File\Folder C:\Windows\tasks\GoogleUpdateTaskMachineUA.job not found.
C:\Users\oem\Downloads\Diablo.2.LOD.Patch.1.11b.crack.rar deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\Diablo2LODKeyGen.exe deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\Diablo_2_Lord_of_Destruction_Keygen.zip deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\ReadMe.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\rzr-d2ld.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\rzr-d2ld.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction\V2TK-26RZ-2TD4-N292.doc deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Lord Of Destruction folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc\diablo2cd3.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc\diablo2cd3.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD3 Cinematics disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc\diablo2cd2.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc\diablo2cd2.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD2 Play disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc\diablo2cd1.bin deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc\diablo2cd1.cue deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\CD1 Install disc folder deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Diablo 2 Cd Keys.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Diablo 2 CD-Key Battlenet Kompatibel.txt deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction\Čeština.exe deleted successfully.
C:\Users\oem\Downloads\Diablo 2 + Datadisk Lord of Destruction folder deleted successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.

OTL by OldTimer - Version 3.2.31.0 log created on 12292011_215047

Files\Folders moved on Reboot...
C:\Users\oem\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

Registry entries deleted on Reboot...

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#41 Příspěvek od Mc_Murphy »

No vidíš, že když chceš, že to jde. :D

:???: OTL provedlo, co mělo... jak je na tom počítač?
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#42 Příspěvek od Neliell »

Zdá se že dobře : )

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#43 Příspěvek od Mc_Murphy »

Super, to rád slyším. Avast funguje normálně?

Jinak můžeme dočistit a máme hotovo. ;)

:arrow: Odinstaluj ComboFix.
  • Přejmenuj ComboFix na Uninstall.
  • Spusť jej.
  • Tohle smaže ComboFix a jeho složky.
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stáhni a spusť.
  • Pro potvrzení volby mačkej A, Enter.
  • Po použití utilitu smaž.
  • Antiviry mohou tuto utilitu chybně označit jako vir - jedná se o falešný poplach - takže v pohodě stáhni (případně vypni při stahování antivir).
A pak ještě...

:arrow: Spusť znovu OTL a klikni na tlačítko [CleanUp!], čímž po sobě program uklidí.

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stáhni a spusť.
  • Klikni na Start a potvrď OK.
  • Program uklidí a může (nemusí) restartovat PC.
  • Po použití utilitu smaž.
:arrow: Pokud nemáš, stáhni CCleaner z tohoto odkazu.
  • Panel čistič
  • Vše nech jak je, jen dej Analyzovat a poté Spustit CCleaner.
  • Panel registry
  • Klikni na Hledej problémy.
  • Následně na Opravit problémy - zálohu registrů doporučuji udělat, oprav všechny problémy.
  • Postup opakuj, dokud nebude bez problémů - většinou cca 3x.
  • Panel nástroje
  • Zde můžeš odinstalovat nepotřebné programy.
Obrázek CCleaner doporučuji používat cca jednou za týden.

... a pokud nejsou žádné dotazy, bylo by to z mé strany vše. :worship:
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Neliell
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 30 Říj 2011 13:30

Re: Vir - Facebook vir

#44 Příspěvek od Neliell »

Děkuji :) hotovo vše :)

Avatar uživatele
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 Lis 2008 15:55
Místo/Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: Vir - Facebook vir

#45 Příspěvek od Mc_Murphy »

Není vůbec zač a rádo se stalo. :85: Přeji pěkný den :fez: a klidný vstup do Nového roku 2012. Ať je lepší, než ten poslední. :28:
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Odpovědět