Mam problem s Dale Search, log prikladam.
Dakujem!
Logfile of random's system information tool 1.06 (written by random/random)
Run by Peter at 2013-10-19 14:30:07
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 184 GB (39%) free of 477 GB
Total RAM: 3070 MB (44% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14 175776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2012-08-17 537528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2013-04-23 878784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}]
dalesearch Helper Object - C:\Program Files\dalesearch\dalesearch\1.8.16.19\bh\dalesearch.dll [2013-03-19 255896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a45e3fa8-5048-4372-94ad-c6661671f7fc}]
Kozaka - C:\Program Files\Kozaka\Kozakabho.dll [2013-10-10 249624]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll [2012-08-17 484280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14 4372120]
{81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - dalesearch Toolbar - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll [2013-03-19 329624]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-07-03 6266880]
"PinnacleDriverCheck"=C:\Windows\system32\PSDrvCheck.exe [2004-03-10 406016]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"UVS11 Preload"=C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [2007-04-12 341488]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2007-12-17 61440]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
"ArcSoft Connection Service"=C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [2013-10-10 356128]
"WD Drive Unlocker"=C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [2011-12-16 1687968]
"WD Quick View"=C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [2011-12-15 3998616]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2013-04-23 311152]
"CanonQuickMenu"=C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [2012-04-03 1273448]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"SkyDrive"=C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [2013-08-14 257136]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []
"KiesPreload"=C:\Program Files\Samsung\Kies\Kies.exe [2013-04-23 1561968]
""=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-06-11 844168]
"Google Update"=C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-18 136176]
C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0
"NoDriveAutoRun"=3
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDriveTypeAutoRun"=
"NoDriveAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-10-19 14:24:53 ----D---- C:\rsit
2013-10-19 14:10:29 ----A---- C:\AdwCleaner[S6].txt
2013-10-19 14:09:50 ----A---- C:\AdwCleaner[R9].txt
2013-10-19 00:00:22 ----D---- C:\Program Files\dalesearch
2013-10-19 00:00:17 ----D---- C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-18 23:59:59 ----D---- C:\Users\Peter\AppData\Roaming\BabSolution
2013-10-18 23:59:57 ----D---- C:\Program Files\Kozaka
2013-10-18 23:59:25 ----D---- C:\Users\Peter\AppData\Roaming\GoforFiles
2013-10-18 23:59:25 ----D---- C:\Program Files\GoforFiles
2013-10-18 23:54:15 ----D---- C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51:42 ----D---- C:\Program Files\Adobe Download Assistant
2013-10-18 23:51:37 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-10-10 23:57:29 ----A---- C:\Windows\system32\vbscript.dll
2013-10-10 23:57:29 ----A---- C:\Windows\system32\mshtmled.dll
2013-10-10 23:57:25 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-10 23:57:25 ----A---- C:\Windows\system32\ieui.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\wininet.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\url.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\jscript9.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\jscript.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57:23 ----A---- C:\Windows\system32\urlmon.dll
2013-10-10 23:57:23 ----A---- C:\Windows\system32\mshtml.dll
2013-10-10 23:57:23 ----A---- C:\Windows\system32\iertutil.dll
2013-10-10 23:57:22 ----A---- C:\Windows\system32\ieframe.dll
2013-10-10 16:52:32 ----A---- C:\Windows\system32\DWrite.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\FntCache.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10core.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d2d1.dll
2013-10-10 16:52:29 ----A---- C:\Windows\system32\cdd.dll
2013-10-10 16:51:58 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51:40 ----A---- C:\Windows\system32\atmlib.dll
2013-10-10 16:51:40 ----A---- C:\Windows\system32\atmfd.dll
2013-10-10 16:51:17 ----A---- C:\Windows\system32\comctl32.dll
======List of files/folders modified in the last 1 months======
2013-10-19 14:30:09 ----D---- C:\Program Files\trend micro
2013-10-19 14:30:05 ----D---- C:\Windows\temp
2013-10-19 14:29:48 ----D---- C:\Windows\Prefetch
2013-10-19 14:16:20 ----D---- C:\ProgramData\Kaspersky Lab
2013-10-19 14:12:36 ----D---- C:\ProgramData\NVIDIA
2013-10-19 14:10:31 ----D---- C:\ProgramData
2013-10-19 08:47:04 ----SHD---- C:\Windows\Installer
2013-10-19 08:47:04 ----D---- C:\Config.Msi
2013-10-19 08:47:03 ----D---- C:\ProgramData\Skype
2013-10-19 03:00:32 ----SHD---- C:\System Volume Information
2013-10-19 00:00:46 ----D---- C:\Windows\system32\Tasks
2013-10-19 00:00:22 ----D---- C:\Program Files
2013-10-18 23:52:00 ----D---- C:\ProgramData\Adobe
2013-10-18 23:51:38 ----D---- C:\Program Files\Adobe
2013-10-18 23:51:37 ----D---- C:\Program Files\Common Files
2013-10-18 23:50:46 ----D---- C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:29:38 ----D---- C:\ProgramData\CanonIJPLM
2013-10-18 00:14:09 ----RD---- C:\Program Files\Skype
2013-10-17 18:48:30 ----D---- C:\Users\Peter\AppData\Roaming\Skype
2013-10-16 15:04:43 ----D---- C:\Windows\System32
2013-10-16 15:04:43 ----D---- C:\Windows\inf
2013-10-16 15:04:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25:38 ----D---- C:\Users\Peter\AppData\Roaming\vlc
2013-10-11 21:57:31 ----D---- C:\Windows
2013-10-11 17:52:43 ----D---- C:\Windows\Tasks
2013-10-11 17:20:38 ----D---- C:\Windows\Microsoft.NET
2013-10-11 17:19:46 ----RSD---- C:\Windows\assembly
2013-10-11 16:47:09 ----D---- C:\Windows\system32\wbem
2013-10-11 16:47:09 ----D---- C:\Windows\system32\migration
2013-10-11 16:47:09 ----D---- C:\Windows\system32\drivers
2013-10-11 16:47:09 ----D---- C:\Program Files\Internet Explorer
2013-10-11 00:10:52 ----D---- C:\Windows\winsxs
2013-10-11 00:10:28 ----D---- C:\ProgramData\Microsoft Help
2013-10-11 00:03:07 ----D---- C:\Windows\system32\MRT
2013-10-11 00:00:32 ----D---- C:\Windows\Debug
2013-10-11 00:00:30 ----A---- C:\Windows\system32\mrt.exe
2013-10-10 23:57:48 ----D---- C:\Windows\system32\catroot
2013-10-10 23:57:47 ----D---- C:\Windows\system32\catroot2
2013-10-09 00:39:31 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-10-08 23:51:22 ----D---- C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50:30 ----D---- C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-01 17:25:41 ----D---- C:\ProgramData\CanonIJ
2013-09-25 17:39:48 ----D---- C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16:11 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-09-21 16:08:34 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2013-10-10 595552]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2012-08-02 24408]
R1 kltdi;kltdi; C:\Windows\system32\DRIVERS\kltdi.sys [2013-06-18 44000]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2013-04-23 145040]
R1 PCLEPCI;PCLEPCI; \??\C:\Windows\system32\drivers\pclepci.sys [2004-07-16 14165]
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};Power Control [2010/02/15 11:29:08]; \??\C:\Program Files\CyberLink\PowerDVD8\000.fcl [2010-01-12 87536]
R3 ASAPIW2k;ASAPIW2K; C:\Windows\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2009-04-28 19456]
R3 gMouUsb;USB Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb.sys [2009-03-04 11520]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2013-10-10 25696]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2013-10-10 25696]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-26 8939296]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-12-27 47360]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-02-14 118784]
R3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S1 networx;networx; C:\Windows\system32\drivers\networx.sys []
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2008-01-19 45696]
S3 ASPI;Advanced SCSI Programming Interface Driver; \??\C:\Windows\System32\DRIVERS\ASPI32.sys [2002-07-17 84832]
S3 Avc;AVC Device; C:\Windows\system32\DRIVERS\avc.sys [2008-01-19 40448]
S3 AVCSTRM;AVC Streaming Filter Driver; C:\Windows\system32\DRIVERS\avcstrm.sys [2008-01-19 14208]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CFcatchme;CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-04-03 83864]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 INIDVD;Initio USB DVD Filter Driver; C:\Windows\system32\DRIVERS\inidvd.sys [2008-09-24 15640]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-07-03 2152088]
S3 MSDV;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2008-01-19 52608]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTAPE;Microsoft AV/C Tape Subunit Device; C:\Windows\system32\DRIVERS\mstape.sys [2008-01-19 50048]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 SCR33X USB Smart Card Reader;SCR33X USB Smart Card Reader; C:\Windows\system32\DRIVERS\SCR33X2K.sys [2004-04-06 64088]
S3 SCR3XX2K;SCR3xx USB SmartCardReader; C:\Windows\system32\DRIVERS\SCR3XX2K.sys [2009-10-25 57600]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-04-03 181912]
S3 TVICHW32;TVICHW32; \??\C:\Windows\system32\DRIVERS\TVICHW32.SYS [2009-07-07 23600]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 USBCCID;USB Smart Card reader; C:\Windows\system32\DRIVERS\usbccid.sys [2009-04-11 30208]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam.sys [2011-12-16 11520]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-09 169312]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AVP;Služba Kaspersky Anti-Virus; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [2013-10-10 356128]
R2 BcmSqlStartupSvc;Spúšacia služba produktu Business Contact Manager SQL Server; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2009-02-23 30312]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2012-03-28 140456]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-26 1260320]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2009-07-02 244904]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 86880]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 Update Kozaka;Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [2013-10-10 65304]
R2 WDDMService;WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [2011-12-15 265624]
R2 WDDriveService;WD Drive Manager; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [2012-09-06 248248]
R2 WDFMEService;WDFME; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [2011-12-15 1591176]
R2 WDRulesService;WDRules; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [2011-12-15 1091992]
R3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-21 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-10-07 867080]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-21 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-21 118680]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Dale Search
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Dale Search
Zdravim
Stahnete Shortcut Cleaner http://www.bleepingcomputer.com/downloa ... t-cleaner/
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Spustte tradicne dvouklikem
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v miste spusteni jako sc-cleaner.txt, ten sem vlozte
- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
Re: Dale Search
Prikladam
Shortcut Cleaner 1.2.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/
Windows Version: Windows Vista (TM) Home Premium Service Pack 2
Program started at: 10/19/2013 06:49:11 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\Peter\Desktop
0 bad shortcuts found.
Program finished at: 10/19/2013 06:49:16 PM
Execution time: 0 hours(s), 0 minute(s), and 5 seconds(s)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows Vista (TM) Home Premium x86
Ran by Peter on so 19. 10. 2013 at 18:50:20,30
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\Microsoft\Internet Explorer\Main\\Start Page
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\secman.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\SweetIM
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\epupdater
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\babsolution"
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\goforfiles"
Successfully deleted: [Folder] "C:\Users\Peter\appdata\local\cre"
Failed to delete: [Folder] "C:\Program Files\goforfiles"
Successfully deleted: [Folder] "C:\Program Files\myfree codec"
Successfully deleted: [Folder] "C:\Program Files\toolkitservice"
Successfully deleted: [Folder] "C:\Users\Peter\start menu\programs\browser manager"
Successfully deleted: [Empty Folder] C:\Users\Peter\appdata\local\{B6EBDB8C-F9C3-487C-A067-9AE578462AD4}
~~~ FireFox
Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\toolkitsearch.xml"
Successfully deleted the following from C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\prefs.js
user_pref("browser.newtab.url", "hxxp://www.dalesearch.com/?babsrc=NT_ss&mntrId ... 6&tsp=5039");
user_pref("browser.startup.homepage", "hxxp://www.dalesearch.com/?babsrc=HP_ss&mntrId ... 6&tsp=5039");
Emptied folder: C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\minidumps [319 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19. 10. 2013 at 18:54:53,71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Shortcut Cleaner 1.2.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/
Windows Version: Windows Vista (TM) Home Premium Service Pack 2
Program started at: 10/19/2013 06:49:11 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\Peter\Desktop
0 bad shortcuts found.
Program finished at: 10/19/2013 06:49:16 PM
Execution time: 0 hours(s), 0 minute(s), and 5 seconds(s)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows Vista (TM) Home Premium x86
Ran by Peter on so 19. 10. 2013 at 18:50:20,30
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\Microsoft\Internet Explorer\Main\\Start Page
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\secman.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\SweetIM
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\epupdater
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\babsolution"
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\goforfiles"
Successfully deleted: [Folder] "C:\Users\Peter\appdata\local\cre"
Failed to delete: [Folder] "C:\Program Files\goforfiles"
Successfully deleted: [Folder] "C:\Program Files\myfree codec"
Successfully deleted: [Folder] "C:\Program Files\toolkitservice"
Successfully deleted: [Folder] "C:\Users\Peter\start menu\programs\browser manager"
Successfully deleted: [Empty Folder] C:\Users\Peter\appdata\local\{B6EBDB8C-F9C3-487C-A067-9AE578462AD4}
~~~ FireFox
Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\toolkitsearch.xml"
Successfully deleted the following from C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\prefs.js
user_pref("browser.newtab.url", "hxxp://www.dalesearch.com/?babsrc=NT_ss&mntrId ... 6&tsp=5039");
user_pref("browser.startup.homepage", "hxxp://www.dalesearch.com/?babsrc=HP_ss&mntrId ... 6&tsp=5039");
Emptied folder: C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\minidumps [319 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19. 10. 2013 at 18:54:53,71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: Dale Search
Poprosim o FRSTL http://forum.viry.cz/viewtopic.php?f=13&t=133100
Re: Dale Search
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-10-2013
Ran by Peter (administrator) on PETERPC on 19-10-2013 23:05:58
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: 041B
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
() C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital) C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDFME.exe
(http://goforfiles.com/) C:\Program Files\GoforFiles\GFFUpdater.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Pinnacle Systems GmbH) C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Genius\ioCentre\gTaskBar.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Western Digital) C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gKbdTask.exe
() C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gIMMgm.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
() C:\Genius\ioCentre\gTaskSwitch.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMSWCS.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Kozaka) C:\Program Files\Kozaka\updateKozaka.exe
(Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6266880 2008-07-03] (Realtek Semiconductor)
HKLM\...\Run: [PinnacleDriverCheck] - C:\Windows\system32\PSDrvCheck.exe [406016 2004-03-10] ()
HKLM\...\Run: [USBToolTip] - C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH)
HKLM\...\Run: [UVS11 Preload] - C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [341488 2007-04-12] (InterVideo Digital Technology Corporation)
HKLM\...\Run: [ioCentre] - C:\Genius\ioCentre\gTaskBar.exe [61440 2007-12-17] ()
HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-09-04] (CANON INC.)
HKLM\...\Run: [ArcSoft Connection Service] - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [LifeCam] - C:\Program Files\Microsoft LifeCam\LifeExp.exe [135536 2010-12-13] (Microsoft Corporation)
HKLM\...\Run: [AVP] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
HKLM\...\Run: [WD Drive Unlocker] - C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM\...\Run: [WD Quick View] - C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [3998616 2011-12-15] (Western Digital Technologies, Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [SkyDrive] - C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-14] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [GAINWARD] - C:\Program Files\EXPERTool\TBPanel.exe /A
HKU\USER\...\Run: [LightScribe Control Panel] - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [ 2009-08-20] (Hewlett-Packard Company)
Startup: C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Orezávač obrazovky a spúšťač programu OneNote 2007.lnk
ShortcutTarget: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Kozaka - {a45e3fa8-5048-4372-94ad-c6661671f7fc} - C:\Program Files\Kozaka\Kozakabho.dll (Kozaka)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM - dalesearch Toolbar - {81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll (Montera Technologeis LTD)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU -Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
DPF: {4C3CEE0B-4F2F-44C3-9586-4368F3200143} https://moja.tatrabanka.sk/ibanking/ICApki.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\zoznam-sk.xml
FF Extension: InternetSearch - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@startsearcher.com
FF Extension: VideoFileDownload - Download YouTube Videos - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@videofiledownload.com
FF Extension: No Name - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\4sharedToolbar.xpi
FF Extension: onair_FM - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\onair_FM@marek.chrenko.net.xpi
FF Extension: Kaspersky URL Advisor - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF HKLM\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
Chrome:
=======
CHR Extension: (LyricsTube) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bebdghdpchfhbbmfeddkijldlpnkbjkk\1.110
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4190
CHR HKLM\...\Chrome\Extension: [abepbblpkilpjohncjbccmdjhdhbnhdj] - C:\Program Files\SingAlong\Chrome.crx
CHR HKLM\...\Chrome\Extension: [cljghnkcnkhedlnhdgbcbefjoapionoc] - C:\Users\Peter\AppData\Local\eToolKit\Beemp3.crx
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx
CHR HKLM\...\Chrome\Extension: [dnlhamhiejpiajljicfphhpiahoojipl] - C:\Users\Peter\AppData\Local\eToolKit\FacebookShare.crx
CHR HKLM\...\Chrome\Extension: [dpmoonohndgmmnlcnjajheaahmnjlbmj] - C:\Users\Peter\AppData\Local\eToolKit\FacebookStatus.crx
CHR HKLM\...\Chrome\Extension: [eelchhiiipbeleiimmhpdfbagkcjdmdm] - C:\Users\Peter\AppData\Local\eToolKit\FacebookChat.crx
CHR HKLM\...\Chrome\Extension: [fppahmlkambbejgkiidklamcmhealjag] - C:\Users\Peter\AppData\Local\eToolKit\FacebookLike.crx
CHR HKLM\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx
CHR HKLM\...\Chrome\Extension: [jchankggehakkafdlalgmfbodgfilnbg] - C:\Users\Peter\AppData\Local\eToolKit\FacebookMain.crx
CHR HKLM\...\Chrome\Extension: [jedcimnjemkbmkkngncfgfpjgfcapimk] - C:\Users\Peter\AppData\Local\eToolKit\Extmanager.crx
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
========================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AdobeActiveFileMonitor8.0; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated)
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [244904 2009-07-02] ()
R2 Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [65304 2013-10-10] (Kozaka)
R2 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [45696 2008-01-19] (Microsoft Corporation)
R3 ASAPIW2k; C:\Windows\System32\drivers\ASAPIW2k.sys [11264 2004-03-10] (Pinnacle Systems GmbH)
S3 ASPI; C:\Windows\System32\DRIVERS\ASPI32.sys [84832 2002-07-17] (Adaptec)
S3 AVCSTRM; C:\Windows\System32\DRIVERS\avcstrm.sys [14208 2008-01-19] (Microsoft Corporation)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [19456 2009-04-28] ()
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2009-03-04] ()
S3 INIDVD; C:\Windows\System32\DRIVERS\inidvd.sys [15640 2008-09-24] (Initio Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [595552 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [24408 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [44000 2013-06-18] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [145040 2013-04-23] (Kaspersky Lab ZAO)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH)
S3 MSTAPE; C:\Windows\System32\DRIVERS\mstape.sys [50048 2008-01-19] (Microsoft Corporation)
R1 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2004-07-16] (Pinnacle Systems GmbH)
S3 SCR33X USB Smart Card Reader; C:\Windows\System32\DRIVERS\SCR33X2K.sys [64088 2004-04-06] (SCM Microsystems Inc.)
S3 SCR3XX2K; C:\Windows\System32\DRIVERS\SCR3XX2K.sys [57600 2009-10-25] (SCM Microsystems Inc.)
S3 TVICHW32; C:\Windows\system32\DRIVERS\TVICHW32.SYS [23600 2009-07-07] (EnTech Taiwan)
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}; C:\Program Files\CyberLink\PowerDVD8\000.fcl [87536 2010-01-12] (CyberLink Corp.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys [x]
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [74848 2013-04-23] (Kaspersky Lab ZAO)
S1 networx; system32\drivers\networx.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-18 23:59 - 2013-10-19 18:51 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-18 23:59 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-12 13:22 - 2013-10-12 15:17 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:52 - 2013-10-19 22:57 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-11 17:52 - 2013-10-19 17:57 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-10 23:57 - 2013-09-22 12:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 23:57 - 2013-09-22 12:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-10 23:57 - 2013-09-22 12:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 23:57 - 2013-09-22 12:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 23:57 - 2013-09-22 12:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-10 23:57 - 2013-09-22 12:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 23:57 - 2013-09-22 12:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57 - 2013-09-22 12:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 23:57 - 2013-09-22 12:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-10 23:57 - 2013-09-22 12:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 23:57 - 2013-09-22 12:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-10 23:57 - 2013-09-22 11:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 16:52 - 2013-08-29 09:36 - 02050048 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 16:52 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-10-10 16:52 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 16:52 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-10-10 16:52 - 2013-07-12 11:04 - 00134272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 16:52 - 2013-07-12 11:04 - 00073344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-10 16:51 - 2013-08-29 09:56 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2013-10-10 16:51 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 16:51 - 2013-07-03 04:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-10 16:51 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-10 16:51 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 16:51 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 16:51 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 16:51 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-10 16:51 - 2011-05-05 15:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-10 16:50 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-08 13:37 - 2013-10-19 22:43 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-08 13:37 - 2013-10-19 14:15 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-02 19:23 - 2013-10-02 19:31 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:18 - 2013-09-21 20:19 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
==================== One Month Modified Files and Folders =======
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:04 - 2013-10-19 23:00 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 23:03 - 2013-01-17 01:15 - 00000000 ___RD C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:57 - 2013-10-11 17:52 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-19 22:43 - 2013-10-08 13:37 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-19 22:40 - 2009-07-02 20:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-10-19 22:38 - 2013-03-15 22:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-19 19:55 - 2009-07-01 22:08 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:51 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:50 - 2008-11-27 19:26 - 01781291 _____ C:\Windows\WindowsUpdate.log
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 18:47 - 2009-07-01 21:05 - 00009728 _____ C:\Users\Peter\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-19 17:57 - 2013-10-11 17:52 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-19 14:48 - 2012-01-03 22:39 - 00000000 ____D C:\ProgramData\Skype
2013-10-19 14:30 - 2013-01-16 20:25 - 00000000 ____D C:\Program Files\trend micro
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:15 - 2013-10-08 13:37 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-19 14:12 - 2008-11-27 19:04 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-19 14:12 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-19 14:11 - 2006-11-02 15:01 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-19 00:00 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:52 - 2009-07-10 19:23 - 00000000 ____D C:\ProgramData\Adobe
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 23:51 - 2009-07-10 19:23 - 00000000 ____D C:\Program Files\Adobe
2013-10-18 23:50 - 2009-07-10 19:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2013-10-18 23:50 - 2009-07-01 20:37 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:40 - 2009-08-12 18:50 - 00000000 ____D C:\Users\Peter\Documents\Adobe
2013-10-18 17:29 - 2013-09-14 12:40 - 00000000 ____D C:\ProgramData\CanonIJPLM
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-18 00:14 - 2012-07-21 14:41 - 00000000 ___RD C:\Program Files\Skype
2013-10-17 18:48 - 2012-01-03 22:39 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2013-10-17 01:06 - 2013-06-02 16:03 - 00000000 ____D C:\Users\Peter\Documents\samko
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-16 15:04 - 2009-07-11 03:21 - 00084436 _____ C:\Windows\system32\perfh01B.dat
2013-10-16 15:04 - 2009-07-11 03:21 - 00028304 _____ C:\Windows\system32\perfc01B.dat
2013-10-16 15:04 - 2006-11-02 12:33 - 00865920 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25 - 2009-11-12 19:35 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2013-10-12 15:17 - 2013-10-12 13:22 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:20 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-10-11 16:50 - 2006-11-02 14:47 - 00521160 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-11 00:10 - 2008-11-27 19:09 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-11 00:03 - 2013-08-14 23:23 - 00000000 ____D C:\Windows\system32\MRT
2013-10-11 00:00 - 2006-11-02 12:24 - 78106760 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-10 16:30 - 2012-10-25 19:09 - 00595552 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klmouflt.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klkbdflt.sys
2013-10-10 16:30 - 2012-06-19 18:28 - 00135776 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-09 08:06 - 2009-08-09 14:15 - 00000000 ____D C:\Users\Peter\Documents\Excel
2013-10-09 00:39 - 2012-07-21 10:07 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-09 00:39 - 2011-06-08 17:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-08 23:51 - 2009-07-01 20:40 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50 - 2009-11-12 19:36 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-02 19:31 - 2013-10-02 19:23 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-10-01 17:25 - 2010-10-07 22:30 - 00000000 ____D C:\ProgramData\CanonIJ
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-25 17:39 - 2010-10-07 22:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16 - 2012-09-25 00:13 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-09-22 12:29 - 2013-10-10 23:57 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-22 12:14 - 2013-10-10 23:57 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-09-22 12:13 - 2013-10-10 23:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-22 12:13 - 2013-10-10 23:57 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-22 12:12 - 2013-10-10 23:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-09-22 12:09 - 2013-10-10 23:57 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-22 12:08 - 2013-10-10 23:57 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-09-22 12:07 - 2013-10-10 23:57 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-22 12:06 - 2013-10-10 23:57 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-09-22 12:05 - 2013-10-10 23:57 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-22 12:03 - 2013-10-10 23:57 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-09-22 11:59 - 2013-10-10 23:57 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:19 - 2013-09-21 20:18 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
2013-09-21 16:08 - 2013-08-18 17:36 - 00000000 ____D C:\Program Files\Mozilla Firefox
Files to move or delete:
====================
C:\Users\Peter\AppData\Roaming\desktop.ini
Some content of TEMP:
====================
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-19 14:21
Ran by Peter (administrator) on PETERPC on 19-10-2013 23:05:58
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: 041B
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
() C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital) C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDFME.exe
(http://goforfiles.com/) C:\Program Files\GoforFiles\GFFUpdater.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Pinnacle Systems GmbH) C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Genius\ioCentre\gTaskBar.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Western Digital) C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gKbdTask.exe
() C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gIMMgm.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
() C:\Genius\ioCentre\gTaskSwitch.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMSWCS.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Kozaka) C:\Program Files\Kozaka\updateKozaka.exe
(Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6266880 2008-07-03] (Realtek Semiconductor)
HKLM\...\Run: [PinnacleDriverCheck] - C:\Windows\system32\PSDrvCheck.exe [406016 2004-03-10] ()
HKLM\...\Run: [USBToolTip] - C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH)
HKLM\...\Run: [UVS11 Preload] - C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [341488 2007-04-12] (InterVideo Digital Technology Corporation)
HKLM\...\Run: [ioCentre] - C:\Genius\ioCentre\gTaskBar.exe [61440 2007-12-17] ()
HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-09-04] (CANON INC.)
HKLM\...\Run: [ArcSoft Connection Service] - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [LifeCam] - C:\Program Files\Microsoft LifeCam\LifeExp.exe [135536 2010-12-13] (Microsoft Corporation)
HKLM\...\Run: [AVP] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
HKLM\...\Run: [WD Drive Unlocker] - C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM\...\Run: [WD Quick View] - C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [3998616 2011-12-15] (Western Digital Technologies, Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [SkyDrive] - C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-14] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [GAINWARD] - C:\Program Files\EXPERTool\TBPanel.exe /A
HKU\USER\...\Run: [LightScribe Control Panel] - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [ 2009-08-20] (Hewlett-Packard Company)
Startup: C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Orezávač obrazovky a spúšťač programu OneNote 2007.lnk
ShortcutTarget: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Kozaka - {a45e3fa8-5048-4372-94ad-c6661671f7fc} - C:\Program Files\Kozaka\Kozakabho.dll (Kozaka)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM - dalesearch Toolbar - {81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll (Montera Technologeis LTD)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU -Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
DPF: {4C3CEE0B-4F2F-44C3-9586-4368F3200143} https://moja.tatrabanka.sk/ibanking/ICApki.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\zoznam-sk.xml
FF Extension: InternetSearch - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@startsearcher.com
FF Extension: VideoFileDownload - Download YouTube Videos - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@videofiledownload.com
FF Extension: No Name - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\4sharedToolbar.xpi
FF Extension: onair_FM - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\onair_FM@marek.chrenko.net.xpi
FF Extension: Kaspersky URL Advisor - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF HKLM\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
Chrome:
=======
CHR Extension: (LyricsTube) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bebdghdpchfhbbmfeddkijldlpnkbjkk\1.110
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4190
CHR HKLM\...\Chrome\Extension: [abepbblpkilpjohncjbccmdjhdhbnhdj] - C:\Program Files\SingAlong\Chrome.crx
CHR HKLM\...\Chrome\Extension: [cljghnkcnkhedlnhdgbcbefjoapionoc] - C:\Users\Peter\AppData\Local\eToolKit\Beemp3.crx
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx
CHR HKLM\...\Chrome\Extension: [dnlhamhiejpiajljicfphhpiahoojipl] - C:\Users\Peter\AppData\Local\eToolKit\FacebookShare.crx
CHR HKLM\...\Chrome\Extension: [dpmoonohndgmmnlcnjajheaahmnjlbmj] - C:\Users\Peter\AppData\Local\eToolKit\FacebookStatus.crx
CHR HKLM\...\Chrome\Extension: [eelchhiiipbeleiimmhpdfbagkcjdmdm] - C:\Users\Peter\AppData\Local\eToolKit\FacebookChat.crx
CHR HKLM\...\Chrome\Extension: [fppahmlkambbejgkiidklamcmhealjag] - C:\Users\Peter\AppData\Local\eToolKit\FacebookLike.crx
CHR HKLM\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx
CHR HKLM\...\Chrome\Extension: [jchankggehakkafdlalgmfbodgfilnbg] - C:\Users\Peter\AppData\Local\eToolKit\FacebookMain.crx
CHR HKLM\...\Chrome\Extension: [jedcimnjemkbmkkngncfgfpjgfcapimk] - C:\Users\Peter\AppData\Local\eToolKit\Extmanager.crx
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
========================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AdobeActiveFileMonitor8.0; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated)
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [244904 2009-07-02] ()
R2 Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [65304 2013-10-10] (Kozaka)
R2 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [45696 2008-01-19] (Microsoft Corporation)
R3 ASAPIW2k; C:\Windows\System32\drivers\ASAPIW2k.sys [11264 2004-03-10] (Pinnacle Systems GmbH)
S3 ASPI; C:\Windows\System32\DRIVERS\ASPI32.sys [84832 2002-07-17] (Adaptec)
S3 AVCSTRM; C:\Windows\System32\DRIVERS\avcstrm.sys [14208 2008-01-19] (Microsoft Corporation)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [19456 2009-04-28] ()
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2009-03-04] ()
S3 INIDVD; C:\Windows\System32\DRIVERS\inidvd.sys [15640 2008-09-24] (Initio Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [595552 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [24408 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [44000 2013-06-18] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [145040 2013-04-23] (Kaspersky Lab ZAO)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH)
S3 MSTAPE; C:\Windows\System32\DRIVERS\mstape.sys [50048 2008-01-19] (Microsoft Corporation)
R1 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2004-07-16] (Pinnacle Systems GmbH)
S3 SCR33X USB Smart Card Reader; C:\Windows\System32\DRIVERS\SCR33X2K.sys [64088 2004-04-06] (SCM Microsystems Inc.)
S3 SCR3XX2K; C:\Windows\System32\DRIVERS\SCR3XX2K.sys [57600 2009-10-25] (SCM Microsystems Inc.)
S3 TVICHW32; C:\Windows\system32\DRIVERS\TVICHW32.SYS [23600 2009-07-07] (EnTech Taiwan)
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}; C:\Program Files\CyberLink\PowerDVD8\000.fcl [87536 2010-01-12] (CyberLink Corp.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys [x]
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [74848 2013-04-23] (Kaspersky Lab ZAO)
S1 networx; system32\drivers\networx.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-18 23:59 - 2013-10-19 18:51 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-18 23:59 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-12 13:22 - 2013-10-12 15:17 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:52 - 2013-10-19 22:57 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-11 17:52 - 2013-10-19 17:57 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-10 23:57 - 2013-09-22 12:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 23:57 - 2013-09-22 12:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-10 23:57 - 2013-09-22 12:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 23:57 - 2013-09-22 12:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 23:57 - 2013-09-22 12:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-10 23:57 - 2013-09-22 12:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 23:57 - 2013-09-22 12:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57 - 2013-09-22 12:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 23:57 - 2013-09-22 12:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-10 23:57 - 2013-09-22 12:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 23:57 - 2013-09-22 12:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-10 23:57 - 2013-09-22 11:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 16:52 - 2013-08-29 09:36 - 02050048 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 16:52 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-10-10 16:52 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 16:52 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-10-10 16:52 - 2013-07-12 11:04 - 00134272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 16:52 - 2013-07-12 11:04 - 00073344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-10 16:51 - 2013-08-29 09:56 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2013-10-10 16:51 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 16:51 - 2013-07-03 04:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-10 16:51 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-10 16:51 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 16:51 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 16:51 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 16:51 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-10 16:51 - 2011-05-05 15:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-10 16:50 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-08 13:37 - 2013-10-19 22:43 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-08 13:37 - 2013-10-19 14:15 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-02 19:23 - 2013-10-02 19:31 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:18 - 2013-09-21 20:19 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
==================== One Month Modified Files and Folders =======
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:04 - 2013-10-19 23:00 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 23:03 - 2013-01-17 01:15 - 00000000 ___RD C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:57 - 2013-10-11 17:52 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-19 22:43 - 2013-10-08 13:37 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-19 22:40 - 2009-07-02 20:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-10-19 22:38 - 2013-03-15 22:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-19 19:55 - 2009-07-01 22:08 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:51 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:50 - 2008-11-27 19:26 - 01781291 _____ C:\Windows\WindowsUpdate.log
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 18:47 - 2009-07-01 21:05 - 00009728 _____ C:\Users\Peter\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-19 17:57 - 2013-10-11 17:52 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-19 14:48 - 2012-01-03 22:39 - 00000000 ____D C:\ProgramData\Skype
2013-10-19 14:30 - 2013-01-16 20:25 - 00000000 ____D C:\Program Files\trend micro
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:15 - 2013-10-08 13:37 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-19 14:12 - 2008-11-27 19:04 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-19 14:12 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-19 14:11 - 2006-11-02 15:01 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-19 00:00 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:52 - 2009-07-10 19:23 - 00000000 ____D C:\ProgramData\Adobe
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 23:51 - 2009-07-10 19:23 - 00000000 ____D C:\Program Files\Adobe
2013-10-18 23:50 - 2009-07-10 19:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2013-10-18 23:50 - 2009-07-01 20:37 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:40 - 2009-08-12 18:50 - 00000000 ____D C:\Users\Peter\Documents\Adobe
2013-10-18 17:29 - 2013-09-14 12:40 - 00000000 ____D C:\ProgramData\CanonIJPLM
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-18 00:14 - 2012-07-21 14:41 - 00000000 ___RD C:\Program Files\Skype
2013-10-17 18:48 - 2012-01-03 22:39 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2013-10-17 01:06 - 2013-06-02 16:03 - 00000000 ____D C:\Users\Peter\Documents\samko
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-16 15:04 - 2009-07-11 03:21 - 00084436 _____ C:\Windows\system32\perfh01B.dat
2013-10-16 15:04 - 2009-07-11 03:21 - 00028304 _____ C:\Windows\system32\perfc01B.dat
2013-10-16 15:04 - 2006-11-02 12:33 - 00865920 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25 - 2009-11-12 19:35 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2013-10-12 15:17 - 2013-10-12 13:22 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:20 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-10-11 16:50 - 2006-11-02 14:47 - 00521160 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-11 00:10 - 2008-11-27 19:09 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-11 00:03 - 2013-08-14 23:23 - 00000000 ____D C:\Windows\system32\MRT
2013-10-11 00:00 - 2006-11-02 12:24 - 78106760 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-10 16:30 - 2012-10-25 19:09 - 00595552 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klmouflt.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klkbdflt.sys
2013-10-10 16:30 - 2012-06-19 18:28 - 00135776 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-09 08:06 - 2009-08-09 14:15 - 00000000 ____D C:\Users\Peter\Documents\Excel
2013-10-09 00:39 - 2012-07-21 10:07 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-09 00:39 - 2011-06-08 17:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-08 23:51 - 2009-07-01 20:40 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50 - 2009-11-12 19:36 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-02 19:31 - 2013-10-02 19:23 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-10-01 17:25 - 2010-10-07 22:30 - 00000000 ____D C:\ProgramData\CanonIJ
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-25 17:39 - 2010-10-07 22:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16 - 2012-09-25 00:13 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-09-22 12:29 - 2013-10-10 23:57 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-22 12:14 - 2013-10-10 23:57 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-09-22 12:13 - 2013-10-10 23:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-22 12:13 - 2013-10-10 23:57 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-22 12:12 - 2013-10-10 23:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-09-22 12:09 - 2013-10-10 23:57 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-22 12:08 - 2013-10-10 23:57 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-09-22 12:07 - 2013-10-10 23:57 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-22 12:06 - 2013-10-10 23:57 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-09-22 12:05 - 2013-10-10 23:57 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-22 12:03 - 2013-10-10 23:57 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-09-22 11:59 - 2013-10-10 23:57 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:19 - 2013-09-21 20:18 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
2013-09-21 16:08 - 2013-08-18 17:36 - 00000000 ____D C:\Program Files\Mozilla Firefox
Files to move or delete:
====================
C:\Users\Peter\AppData\Roaming\desktop.ini
Some content of TEMP:
====================
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-19 14:21
Re: Dale Search
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.) HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.) HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation) HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung) HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung) HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx 2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe 2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE 2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch 2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch C:\Users\Peter\AppData\Roaming\desktop.ini C:\Users\Peter\AppData\Local\temp\7z920.exe C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe C:\Users\Peter\AppData\Local\temp\BabylonTB.exe C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe C:\Users\Peter\AppData\Local\temp\htmlayout.dll C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job Hosts: End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: Dale Search
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 19-10-2013
Ran by Peter at 2013-10-20 20:45:31 Run:1
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
C:\Users\Peter\AppData\Roaming\desktop.ini
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\CanonQuickMenu => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\WMPNSCFG => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\KiesPreload => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search bar => Value deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Secondary Start Pages => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml => Moved successfully.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup => Moved successfully.
C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\pialekdjmfmckiccfkgbbgphficjdekh => Key deleted successfully.
"C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx" => File/Directory not found.
C:\Users\Peter\Downloads\FRSTLauncher.exe => Moved successfully.
C:\Users\Peter\AppData\Local\MSGBOX.EXE => Moved successfully.
"C:\Users\Peter\AppData\Roaming\dalesearch" => File/Directory not found.
"C:\Program Files\dalesearch" => File/Directory not found.
C:\Users\Peter\AppData\Roaming\desktop.ini => Moved successfully.
"C:\Users\Peter\AppData\Local\temp\7z920.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\BabylonTB.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\htmlayout.dll" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe" => File/Directory not found.
C:\Windows\tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====
Ran by Peter at 2013-10-20 20:45:31 Run:1
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
C:\Users\Peter\AppData\Roaming\desktop.ini
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\CanonQuickMenu => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\WMPNSCFG => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\KiesPreload => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search bar => Value deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Secondary Start Pages => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml => Moved successfully.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup => Moved successfully.
C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\pialekdjmfmckiccfkgbbgphficjdekh => Key deleted successfully.
"C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx" => File/Directory not found.
C:\Users\Peter\Downloads\FRSTLauncher.exe => Moved successfully.
C:\Users\Peter\AppData\Local\MSGBOX.EXE => Moved successfully.
"C:\Users\Peter\AppData\Roaming\dalesearch" => File/Directory not found.
"C:\Program Files\dalesearch" => File/Directory not found.
C:\Users\Peter\AppData\Roaming\desktop.ini => Moved successfully.
"C:\Users\Peter\AppData\Local\temp\7z920.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\BabylonTB.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\htmlayout.dll" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe" => File/Directory not found.
C:\Windows\tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====
Re: Dale Search
Tak jeste uklidime
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC
- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte
Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy



Přispějete na provoz fóra?