Dale Search
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Dale Search
Mam problem s Dale Search, log prikladam.
Dakujem!
Logfile of random's system information tool 1.06 (written by random/random)
Run by Peter at 2013-10-19 14:30:07
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 184 GB (39%) free of 477 GB
Total RAM: 3070 MB (44% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14 175776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2012-08-17 537528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2013-04-23 878784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}]
dalesearch Helper Object - C:\Program Files\dalesearch\dalesearch\1.8.16.19\bh\dalesearch.dll [2013-03-19 255896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a45e3fa8-5048-4372-94ad-c6661671f7fc}]
Kozaka - C:\Program Files\Kozaka\Kozakabho.dll [2013-10-10 249624]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll [2012-08-17 484280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14 4372120]
{81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - dalesearch Toolbar - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll [2013-03-19 329624]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-07-03 6266880]
"PinnacleDriverCheck"=C:\Windows\system32\PSDrvCheck.exe [2004-03-10 406016]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"UVS11 Preload"=C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [2007-04-12 341488]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2007-12-17 61440]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
"ArcSoft Connection Service"=C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [2013-10-10 356128]
"WD Drive Unlocker"=C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [2011-12-16 1687968]
"WD Quick View"=C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [2011-12-15 3998616]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2013-04-23 311152]
"CanonQuickMenu"=C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [2012-04-03 1273448]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"SkyDrive"=C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [2013-08-14 257136]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []
"KiesPreload"=C:\Program Files\Samsung\Kies\Kies.exe [2013-04-23 1561968]
""=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-06-11 844168]
"Google Update"=C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-18 136176]
C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0
"NoDriveAutoRun"=3
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDriveTypeAutoRun"=
"NoDriveAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-10-19 14:24:53 ----D---- C:\rsit
2013-10-19 14:10:29 ----A---- C:\AdwCleaner[S6].txt
2013-10-19 14:09:50 ----A---- C:\AdwCleaner[R9].txt
2013-10-19 00:00:22 ----D---- C:\Program Files\dalesearch
2013-10-19 00:00:17 ----D---- C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-18 23:59:59 ----D---- C:\Users\Peter\AppData\Roaming\BabSolution
2013-10-18 23:59:57 ----D---- C:\Program Files\Kozaka
2013-10-18 23:59:25 ----D---- C:\Users\Peter\AppData\Roaming\GoforFiles
2013-10-18 23:59:25 ----D---- C:\Program Files\GoforFiles
2013-10-18 23:54:15 ----D---- C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51:42 ----D---- C:\Program Files\Adobe Download Assistant
2013-10-18 23:51:37 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-10-10 23:57:29 ----A---- C:\Windows\system32\vbscript.dll
2013-10-10 23:57:29 ----A---- C:\Windows\system32\mshtmled.dll
2013-10-10 23:57:25 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-10 23:57:25 ----A---- C:\Windows\system32\ieui.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\wininet.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\url.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\jscript9.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\jscript.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57:23 ----A---- C:\Windows\system32\urlmon.dll
2013-10-10 23:57:23 ----A---- C:\Windows\system32\mshtml.dll
2013-10-10 23:57:23 ----A---- C:\Windows\system32\iertutil.dll
2013-10-10 23:57:22 ----A---- C:\Windows\system32\ieframe.dll
2013-10-10 16:52:32 ----A---- C:\Windows\system32\DWrite.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\FntCache.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10core.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d2d1.dll
2013-10-10 16:52:29 ----A---- C:\Windows\system32\cdd.dll
2013-10-10 16:51:58 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51:40 ----A---- C:\Windows\system32\atmlib.dll
2013-10-10 16:51:40 ----A---- C:\Windows\system32\atmfd.dll
2013-10-10 16:51:17 ----A---- C:\Windows\system32\comctl32.dll
======List of files/folders modified in the last 1 months======
2013-10-19 14:30:09 ----D---- C:\Program Files\trend micro
2013-10-19 14:30:05 ----D---- C:\Windows\temp
2013-10-19 14:29:48 ----D---- C:\Windows\Prefetch
2013-10-19 14:16:20 ----D---- C:\ProgramData\Kaspersky Lab
2013-10-19 14:12:36 ----D---- C:\ProgramData\NVIDIA
2013-10-19 14:10:31 ----D---- C:\ProgramData
2013-10-19 08:47:04 ----SHD---- C:\Windows\Installer
2013-10-19 08:47:04 ----D---- C:\Config.Msi
2013-10-19 08:47:03 ----D---- C:\ProgramData\Skype
2013-10-19 03:00:32 ----SHD---- C:\System Volume Information
2013-10-19 00:00:46 ----D---- C:\Windows\system32\Tasks
2013-10-19 00:00:22 ----D---- C:\Program Files
2013-10-18 23:52:00 ----D---- C:\ProgramData\Adobe
2013-10-18 23:51:38 ----D---- C:\Program Files\Adobe
2013-10-18 23:51:37 ----D---- C:\Program Files\Common Files
2013-10-18 23:50:46 ----D---- C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:29:38 ----D---- C:\ProgramData\CanonIJPLM
2013-10-18 00:14:09 ----RD---- C:\Program Files\Skype
2013-10-17 18:48:30 ----D---- C:\Users\Peter\AppData\Roaming\Skype
2013-10-16 15:04:43 ----D---- C:\Windows\System32
2013-10-16 15:04:43 ----D---- C:\Windows\inf
2013-10-16 15:04:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25:38 ----D---- C:\Users\Peter\AppData\Roaming\vlc
2013-10-11 21:57:31 ----D---- C:\Windows
2013-10-11 17:52:43 ----D---- C:\Windows\Tasks
2013-10-11 17:20:38 ----D---- C:\Windows\Microsoft.NET
2013-10-11 17:19:46 ----RSD---- C:\Windows\assembly
2013-10-11 16:47:09 ----D---- C:\Windows\system32\wbem
2013-10-11 16:47:09 ----D---- C:\Windows\system32\migration
2013-10-11 16:47:09 ----D---- C:\Windows\system32\drivers
2013-10-11 16:47:09 ----D---- C:\Program Files\Internet Explorer
2013-10-11 00:10:52 ----D---- C:\Windows\winsxs
2013-10-11 00:10:28 ----D---- C:\ProgramData\Microsoft Help
2013-10-11 00:03:07 ----D---- C:\Windows\system32\MRT
2013-10-11 00:00:32 ----D---- C:\Windows\Debug
2013-10-11 00:00:30 ----A---- C:\Windows\system32\mrt.exe
2013-10-10 23:57:48 ----D---- C:\Windows\system32\catroot
2013-10-10 23:57:47 ----D---- C:\Windows\system32\catroot2
2013-10-09 00:39:31 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-10-08 23:51:22 ----D---- C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50:30 ----D---- C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-01 17:25:41 ----D---- C:\ProgramData\CanonIJ
2013-09-25 17:39:48 ----D---- C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16:11 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-09-21 16:08:34 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2013-10-10 595552]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2012-08-02 24408]
R1 kltdi;kltdi; C:\Windows\system32\DRIVERS\kltdi.sys [2013-06-18 44000]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2013-04-23 145040]
R1 PCLEPCI;PCLEPCI; \??\C:\Windows\system32\drivers\pclepci.sys [2004-07-16 14165]
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};Power Control [2010/02/15 11:29:08]; \??\C:\Program Files\CyberLink\PowerDVD8\000.fcl [2010-01-12 87536]
R3 ASAPIW2k;ASAPIW2K; C:\Windows\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2009-04-28 19456]
R3 gMouUsb;USB Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb.sys [2009-03-04 11520]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2013-10-10 25696]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2013-10-10 25696]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-26 8939296]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-12-27 47360]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-02-14 118784]
R3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S1 networx;networx; C:\Windows\system32\drivers\networx.sys []
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2008-01-19 45696]
S3 ASPI;Advanced SCSI Programming Interface Driver; \??\C:\Windows\System32\DRIVERS\ASPI32.sys [2002-07-17 84832]
S3 Avc;AVC Device; C:\Windows\system32\DRIVERS\avc.sys [2008-01-19 40448]
S3 AVCSTRM;AVC Streaming Filter Driver; C:\Windows\system32\DRIVERS\avcstrm.sys [2008-01-19 14208]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CFcatchme;CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-04-03 83864]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 INIDVD;Initio USB DVD Filter Driver; C:\Windows\system32\DRIVERS\inidvd.sys [2008-09-24 15640]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-07-03 2152088]
S3 MSDV;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2008-01-19 52608]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTAPE;Microsoft AV/C Tape Subunit Device; C:\Windows\system32\DRIVERS\mstape.sys [2008-01-19 50048]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 SCR33X USB Smart Card Reader;SCR33X USB Smart Card Reader; C:\Windows\system32\DRIVERS\SCR33X2K.sys [2004-04-06 64088]
S3 SCR3XX2K;SCR3xx USB SmartCardReader; C:\Windows\system32\DRIVERS\SCR3XX2K.sys [2009-10-25 57600]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-04-03 181912]
S3 TVICHW32;TVICHW32; \??\C:\Windows\system32\DRIVERS\TVICHW32.SYS [2009-07-07 23600]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 USBCCID;USB Smart Card reader; C:\Windows\system32\DRIVERS\usbccid.sys [2009-04-11 30208]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam.sys [2011-12-16 11520]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-09 169312]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AVP;Služba Kaspersky Anti-Virus; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [2013-10-10 356128]
R2 BcmSqlStartupSvc;Spúšacia služba produktu Business Contact Manager SQL Server; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2009-02-23 30312]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2012-03-28 140456]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-26 1260320]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2009-07-02 244904]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 86880]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 Update Kozaka;Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [2013-10-10 65304]
R2 WDDMService;WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [2011-12-15 265624]
R2 WDDriveService;WD Drive Manager; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [2012-09-06 248248]
R2 WDFMEService;WDFME; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [2011-12-15 1591176]
R2 WDRulesService;WDRules; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [2011-12-15 1091992]
R3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-21 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-10-07 867080]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-21 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-21 118680]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
-----------------EOF-----------------
Dakujem!
Logfile of random's system information tool 1.06 (written by random/random)
Run by Peter at 2013-10-19 14:30:07
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 184 GB (39%) free of 477 GB
Total RAM: 3070 MB (44% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14 175776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2012-08-17 537528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2013-04-23 878784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}]
dalesearch Helper Object - C:\Program Files\dalesearch\dalesearch\1.8.16.19\bh\dalesearch.dll [2013-03-19 255896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a45e3fa8-5048-4372-94ad-c6661671f7fc}]
Kozaka - C:\Program Files\Kozaka\Kozakabho.dll [2013-10-10 249624]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll [2012-08-17 484280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14 4372120]
{81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - dalesearch Toolbar - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll [2013-03-19 329624]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-07-03 6266880]
"PinnacleDriverCheck"=C:\Windows\system32\PSDrvCheck.exe [2004-03-10 406016]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"UVS11 Preload"=C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [2007-04-12 341488]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2007-12-17 61440]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
"ArcSoft Connection Service"=C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [2013-10-10 356128]
"WD Drive Unlocker"=C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [2011-12-16 1687968]
"WD Quick View"=C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [2011-12-15 3998616]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2013-04-23 311152]
"CanonQuickMenu"=C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [2012-04-03 1273448]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"SkyDrive"=C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [2013-08-14 257136]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []
"KiesPreload"=C:\Program Files\Samsung\Kies\Kies.exe [2013-04-23 1561968]
""=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-06-11 844168]
"Google Update"=C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-18 136176]
C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0
"NoDriveAutoRun"=3
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDriveTypeAutoRun"=
"NoDriveAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-10-19 14:24:53 ----D---- C:\rsit
2013-10-19 14:10:29 ----A---- C:\AdwCleaner[S6].txt
2013-10-19 14:09:50 ----A---- C:\AdwCleaner[R9].txt
2013-10-19 00:00:22 ----D---- C:\Program Files\dalesearch
2013-10-19 00:00:17 ----D---- C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-18 23:59:59 ----D---- C:\Users\Peter\AppData\Roaming\BabSolution
2013-10-18 23:59:57 ----D---- C:\Program Files\Kozaka
2013-10-18 23:59:25 ----D---- C:\Users\Peter\AppData\Roaming\GoforFiles
2013-10-18 23:59:25 ----D---- C:\Program Files\GoforFiles
2013-10-18 23:54:15 ----D---- C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51:42 ----D---- C:\Program Files\Adobe Download Assistant
2013-10-18 23:51:37 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-10-10 23:57:29 ----A---- C:\Windows\system32\vbscript.dll
2013-10-10 23:57:29 ----A---- C:\Windows\system32\mshtmled.dll
2013-10-10 23:57:25 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-10 23:57:25 ----A---- C:\Windows\system32\ieui.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\wininet.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\url.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\jscript9.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\jscript.dll
2013-10-10 23:57:24 ----A---- C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57:23 ----A---- C:\Windows\system32\urlmon.dll
2013-10-10 23:57:23 ----A---- C:\Windows\system32\mshtml.dll
2013-10-10 23:57:23 ----A---- C:\Windows\system32\iertutil.dll
2013-10-10 23:57:22 ----A---- C:\Windows\system32\ieframe.dll
2013-10-10 16:52:32 ----A---- C:\Windows\system32\DWrite.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\FntCache.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10core.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d3d10.dll
2013-10-10 16:52:31 ----A---- C:\Windows\system32\d2d1.dll
2013-10-10 16:52:29 ----A---- C:\Windows\system32\cdd.dll
2013-10-10 16:51:58 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51:40 ----A---- C:\Windows\system32\atmlib.dll
2013-10-10 16:51:40 ----A---- C:\Windows\system32\atmfd.dll
2013-10-10 16:51:17 ----A---- C:\Windows\system32\comctl32.dll
======List of files/folders modified in the last 1 months======
2013-10-19 14:30:09 ----D---- C:\Program Files\trend micro
2013-10-19 14:30:05 ----D---- C:\Windows\temp
2013-10-19 14:29:48 ----D---- C:\Windows\Prefetch
2013-10-19 14:16:20 ----D---- C:\ProgramData\Kaspersky Lab
2013-10-19 14:12:36 ----D---- C:\ProgramData\NVIDIA
2013-10-19 14:10:31 ----D---- C:\ProgramData
2013-10-19 08:47:04 ----SHD---- C:\Windows\Installer
2013-10-19 08:47:04 ----D---- C:\Config.Msi
2013-10-19 08:47:03 ----D---- C:\ProgramData\Skype
2013-10-19 03:00:32 ----SHD---- C:\System Volume Information
2013-10-19 00:00:46 ----D---- C:\Windows\system32\Tasks
2013-10-19 00:00:22 ----D---- C:\Program Files
2013-10-18 23:52:00 ----D---- C:\ProgramData\Adobe
2013-10-18 23:51:38 ----D---- C:\Program Files\Adobe
2013-10-18 23:51:37 ----D---- C:\Program Files\Common Files
2013-10-18 23:50:46 ----D---- C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:29:38 ----D---- C:\ProgramData\CanonIJPLM
2013-10-18 00:14:09 ----RD---- C:\Program Files\Skype
2013-10-17 18:48:30 ----D---- C:\Users\Peter\AppData\Roaming\Skype
2013-10-16 15:04:43 ----D---- C:\Windows\System32
2013-10-16 15:04:43 ----D---- C:\Windows\inf
2013-10-16 15:04:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25:38 ----D---- C:\Users\Peter\AppData\Roaming\vlc
2013-10-11 21:57:31 ----D---- C:\Windows
2013-10-11 17:52:43 ----D---- C:\Windows\Tasks
2013-10-11 17:20:38 ----D---- C:\Windows\Microsoft.NET
2013-10-11 17:19:46 ----RSD---- C:\Windows\assembly
2013-10-11 16:47:09 ----D---- C:\Windows\system32\wbem
2013-10-11 16:47:09 ----D---- C:\Windows\system32\migration
2013-10-11 16:47:09 ----D---- C:\Windows\system32\drivers
2013-10-11 16:47:09 ----D---- C:\Program Files\Internet Explorer
2013-10-11 00:10:52 ----D---- C:\Windows\winsxs
2013-10-11 00:10:28 ----D---- C:\ProgramData\Microsoft Help
2013-10-11 00:03:07 ----D---- C:\Windows\system32\MRT
2013-10-11 00:00:32 ----D---- C:\Windows\Debug
2013-10-11 00:00:30 ----A---- C:\Windows\system32\mrt.exe
2013-10-10 23:57:48 ----D---- C:\Windows\system32\catroot
2013-10-10 23:57:47 ----D---- C:\Windows\system32\catroot2
2013-10-09 00:39:31 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-10-08 23:51:22 ----D---- C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50:30 ----D---- C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-01 17:25:41 ----D---- C:\ProgramData\CanonIJ
2013-09-25 17:39:48 ----D---- C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16:11 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-09-21 16:08:34 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2013-10-10 595552]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2012-08-02 24408]
R1 kltdi;kltdi; C:\Windows\system32\DRIVERS\kltdi.sys [2013-06-18 44000]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2013-04-23 145040]
R1 PCLEPCI;PCLEPCI; \??\C:\Windows\system32\drivers\pclepci.sys [2004-07-16 14165]
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};Power Control [2010/02/15 11:29:08]; \??\C:\Program Files\CyberLink\PowerDVD8\000.fcl [2010-01-12 87536]
R3 ASAPIW2k;ASAPIW2K; C:\Windows\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2009-04-28 19456]
R3 gMouUsb;USB Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb.sys [2009-03-04 11520]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2013-10-10 25696]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2013-10-10 25696]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2013-02-26 8939296]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-12-27 47360]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-02-14 118784]
R3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S1 networx;networx; C:\Windows\system32\drivers\networx.sys []
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2008-01-19 45696]
S3 ASPI;Advanced SCSI Programming Interface Driver; \??\C:\Windows\System32\DRIVERS\ASPI32.sys [2002-07-17 84832]
S3 Avc;AVC Device; C:\Windows\system32\DRIVERS\avc.sys [2008-01-19 40448]
S3 AVCSTRM;AVC Streaming Filter Driver; C:\Windows\system32\DRIVERS\avcstrm.sys [2008-01-19 14208]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CFcatchme;CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-04-03 83864]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 INIDVD;Initio USB DVD Filter Driver; C:\Windows\system32\DRIVERS\inidvd.sys [2008-09-24 15640]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-07-03 2152088]
S3 MSDV;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2008-01-19 52608]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTAPE;Microsoft AV/C Tape Subunit Device; C:\Windows\system32\DRIVERS\mstape.sys [2008-01-19 50048]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 SCR33X USB Smart Card Reader;SCR33X USB Smart Card Reader; C:\Windows\system32\DRIVERS\SCR33X2K.sys [2004-04-06 64088]
S3 SCR3XX2K;SCR3xx USB SmartCardReader; C:\Windows\system32\DRIVERS\SCR3XX2K.sys [2009-10-25 57600]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-04-03 181912]
S3 TVICHW32;TVICHW32; \??\C:\Windows\system32\DRIVERS\TVICHW32.SYS [2009-07-07 23600]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 USBCCID;USB Smart Card reader; C:\Windows\system32\DRIVERS\usbccid.sys [2009-04-11 30208]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam.sys [2011-12-16 11520]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-09 169312]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AVP;Služba Kaspersky Anti-Virus; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [2013-10-10 356128]
R2 BcmSqlStartupSvc;Spúšacia služba produktu Business Contact Manager SQL Server; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2009-02-23 30312]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2012-03-28 140456]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-26 1260320]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2009-07-02 244904]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 86880]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 Update Kozaka;Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [2013-10-10 65304]
R2 WDDMService;WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [2011-12-15 265624]
R2 WDDriveService;WD Drive Manager; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [2012-09-06 248248]
R2 WDFMEService;WDFME; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [2011-12-15 1591176]
R2 WDRulesService;WDRules; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [2011-12-15 1091992]
R3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-21 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-10-07 867080]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-21 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-21 118680]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
-----------------EOF-----------------
Re: Dale Search
Zdravim
Stahnete Shortcut Cleaner http://www.bleepingcomputer.com/downloa ... t-cleaner/
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Spustte tradicne dvouklikem
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v miste spusteni jako sc-cleaner.txt, ten sem vlozte
- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
Re: Dale Search
Prikladam
Shortcut Cleaner 1.2.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/
Windows Version: Windows Vista (TM) Home Premium Service Pack 2
Program started at: 10/19/2013 06:49:11 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\Peter\Desktop
0 bad shortcuts found.
Program finished at: 10/19/2013 06:49:16 PM
Execution time: 0 hours(s), 0 minute(s), and 5 seconds(s)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows Vista (TM) Home Premium x86
Ran by Peter on so 19. 10. 2013 at 18:50:20,30
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\Microsoft\Internet Explorer\Main\\Start Page
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\secman.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\SweetIM
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\epupdater
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\babsolution"
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\goforfiles"
Successfully deleted: [Folder] "C:\Users\Peter\appdata\local\cre"
Failed to delete: [Folder] "C:\Program Files\goforfiles"
Successfully deleted: [Folder] "C:\Program Files\myfree codec"
Successfully deleted: [Folder] "C:\Program Files\toolkitservice"
Successfully deleted: [Folder] "C:\Users\Peter\start menu\programs\browser manager"
Successfully deleted: [Empty Folder] C:\Users\Peter\appdata\local\{B6EBDB8C-F9C3-487C-A067-9AE578462AD4}
~~~ FireFox
Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\toolkitsearch.xml"
Successfully deleted the following from C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\prefs.js
user_pref("browser.newtab.url", "hxxp://www.dalesearch.com/?babsrc=NT_ss&mntrId ... 6&tsp=5039");
user_pref("browser.startup.homepage", "hxxp://www.dalesearch.com/?babsrc=HP_ss&mntrId ... 6&tsp=5039");
Emptied folder: C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\minidumps [319 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19. 10. 2013 at 18:54:53,71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Shortcut Cleaner 1.2.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/
Windows Version: Windows Vista (TM) Home Premium Service Pack 2
Program started at: 10/19/2013 06:49:11 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\Peter\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\Peter\Desktop
0 bad shortcuts found.
Program finished at: 10/19/2013 06:49:16 PM
Execution time: 0 hours(s), 0 minute(s), and 5 seconds(s)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows Vista (TM) Home Premium x86
Ran by Peter on so 19. 10. 2013 at 18:50:20,30
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\Microsoft\Internet Explorer\Main\\Start Page
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\secman.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2392522767-3960030484-1258025880-1004\Software\SweetIM
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F814E51-9FB6-4A8A-B137-D4485C8D6DDA}
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\epupdater
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\babsolution"
Successfully deleted: [Folder] "C:\Users\Peter\AppData\Roaming\goforfiles"
Successfully deleted: [Folder] "C:\Users\Peter\appdata\local\cre"
Failed to delete: [Folder] "C:\Program Files\goforfiles"
Successfully deleted: [Folder] "C:\Program Files\myfree codec"
Successfully deleted: [Folder] "C:\Program Files\toolkitservice"
Successfully deleted: [Folder] "C:\Users\Peter\start menu\programs\browser manager"
Successfully deleted: [Empty Folder] C:\Users\Peter\appdata\local\{B6EBDB8C-F9C3-487C-A067-9AE578462AD4}
~~~ FireFox
Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\toolkitsearch.xml"
Successfully deleted the following from C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\prefs.js
user_pref("browser.newtab.url", "hxxp://www.dalesearch.com/?babsrc=NT_ss&mntrId ... 6&tsp=5039");
user_pref("browser.startup.homepage", "hxxp://www.dalesearch.com/?babsrc=HP_ss&mntrId ... 6&tsp=5039");
Emptied folder: C:\Users\Peter\AppData\Roaming\mozilla\firefox\profiles\a30emazl.default\minidumps [319 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19. 10. 2013 at 18:54:53,71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: Dale Search
Poprosim o FRSTL http://forum.viry.cz/viewtopic.php?f=13&t=133100
Re: Dale Search
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-10-2013
Ran by Peter (administrator) on PETERPC on 19-10-2013 23:05:58
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: 041B
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
() C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital) C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDFME.exe
(http://goforfiles.com/) C:\Program Files\GoforFiles\GFFUpdater.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Pinnacle Systems GmbH) C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Genius\ioCentre\gTaskBar.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Western Digital) C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gKbdTask.exe
() C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gIMMgm.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
() C:\Genius\ioCentre\gTaskSwitch.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMSWCS.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Kozaka) C:\Program Files\Kozaka\updateKozaka.exe
(Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6266880 2008-07-03] (Realtek Semiconductor)
HKLM\...\Run: [PinnacleDriverCheck] - C:\Windows\system32\PSDrvCheck.exe [406016 2004-03-10] ()
HKLM\...\Run: [USBToolTip] - C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH)
HKLM\...\Run: [UVS11 Preload] - C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [341488 2007-04-12] (InterVideo Digital Technology Corporation)
HKLM\...\Run: [ioCentre] - C:\Genius\ioCentre\gTaskBar.exe [61440 2007-12-17] ()
HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-09-04] (CANON INC.)
HKLM\...\Run: [ArcSoft Connection Service] - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [LifeCam] - C:\Program Files\Microsoft LifeCam\LifeExp.exe [135536 2010-12-13] (Microsoft Corporation)
HKLM\...\Run: [AVP] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
HKLM\...\Run: [WD Drive Unlocker] - C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM\...\Run: [WD Quick View] - C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [3998616 2011-12-15] (Western Digital Technologies, Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [SkyDrive] - C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-14] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [GAINWARD] - C:\Program Files\EXPERTool\TBPanel.exe /A
HKU\USER\...\Run: [LightScribe Control Panel] - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [ 2009-08-20] (Hewlett-Packard Company)
Startup: C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Orezávač obrazovky a spúšťač programu OneNote 2007.lnk
ShortcutTarget: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Kozaka - {a45e3fa8-5048-4372-94ad-c6661671f7fc} - C:\Program Files\Kozaka\Kozakabho.dll (Kozaka)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM - dalesearch Toolbar - {81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll (Montera Technologeis LTD)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU -Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
DPF: {4C3CEE0B-4F2F-44C3-9586-4368F3200143} https://moja.tatrabanka.sk/ibanking/ICApki.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\zoznam-sk.xml
FF Extension: InternetSearch - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@startsearcher.com
FF Extension: VideoFileDownload - Download YouTube Videos - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@videofiledownload.com
FF Extension: No Name - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\4sharedToolbar.xpi
FF Extension: onair_FM - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\onair_FM@marek.chrenko.net.xpi
FF Extension: Kaspersky URL Advisor - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF HKLM\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
Chrome:
=======
CHR Extension: (LyricsTube) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bebdghdpchfhbbmfeddkijldlpnkbjkk\1.110
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4190
CHR HKLM\...\Chrome\Extension: [abepbblpkilpjohncjbccmdjhdhbnhdj] - C:\Program Files\SingAlong\Chrome.crx
CHR HKLM\...\Chrome\Extension: [cljghnkcnkhedlnhdgbcbefjoapionoc] - C:\Users\Peter\AppData\Local\eToolKit\Beemp3.crx
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx
CHR HKLM\...\Chrome\Extension: [dnlhamhiejpiajljicfphhpiahoojipl] - C:\Users\Peter\AppData\Local\eToolKit\FacebookShare.crx
CHR HKLM\...\Chrome\Extension: [dpmoonohndgmmnlcnjajheaahmnjlbmj] - C:\Users\Peter\AppData\Local\eToolKit\FacebookStatus.crx
CHR HKLM\...\Chrome\Extension: [eelchhiiipbeleiimmhpdfbagkcjdmdm] - C:\Users\Peter\AppData\Local\eToolKit\FacebookChat.crx
CHR HKLM\...\Chrome\Extension: [fppahmlkambbejgkiidklamcmhealjag] - C:\Users\Peter\AppData\Local\eToolKit\FacebookLike.crx
CHR HKLM\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx
CHR HKLM\...\Chrome\Extension: [jchankggehakkafdlalgmfbodgfilnbg] - C:\Users\Peter\AppData\Local\eToolKit\FacebookMain.crx
CHR HKLM\...\Chrome\Extension: [jedcimnjemkbmkkngncfgfpjgfcapimk] - C:\Users\Peter\AppData\Local\eToolKit\Extmanager.crx
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
========================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AdobeActiveFileMonitor8.0; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated)
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [244904 2009-07-02] ()
R2 Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [65304 2013-10-10] (Kozaka)
R2 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [45696 2008-01-19] (Microsoft Corporation)
R3 ASAPIW2k; C:\Windows\System32\drivers\ASAPIW2k.sys [11264 2004-03-10] (Pinnacle Systems GmbH)
S3 ASPI; C:\Windows\System32\DRIVERS\ASPI32.sys [84832 2002-07-17] (Adaptec)
S3 AVCSTRM; C:\Windows\System32\DRIVERS\avcstrm.sys [14208 2008-01-19] (Microsoft Corporation)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [19456 2009-04-28] ()
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2009-03-04] ()
S3 INIDVD; C:\Windows\System32\DRIVERS\inidvd.sys [15640 2008-09-24] (Initio Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [595552 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [24408 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [44000 2013-06-18] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [145040 2013-04-23] (Kaspersky Lab ZAO)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH)
S3 MSTAPE; C:\Windows\System32\DRIVERS\mstape.sys [50048 2008-01-19] (Microsoft Corporation)
R1 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2004-07-16] (Pinnacle Systems GmbH)
S3 SCR33X USB Smart Card Reader; C:\Windows\System32\DRIVERS\SCR33X2K.sys [64088 2004-04-06] (SCM Microsystems Inc.)
S3 SCR3XX2K; C:\Windows\System32\DRIVERS\SCR3XX2K.sys [57600 2009-10-25] (SCM Microsystems Inc.)
S3 TVICHW32; C:\Windows\system32\DRIVERS\TVICHW32.SYS [23600 2009-07-07] (EnTech Taiwan)
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}; C:\Program Files\CyberLink\PowerDVD8\000.fcl [87536 2010-01-12] (CyberLink Corp.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys [x]
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [74848 2013-04-23] (Kaspersky Lab ZAO)
S1 networx; system32\drivers\networx.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-18 23:59 - 2013-10-19 18:51 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-18 23:59 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-12 13:22 - 2013-10-12 15:17 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:52 - 2013-10-19 22:57 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-11 17:52 - 2013-10-19 17:57 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-10 23:57 - 2013-09-22 12:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 23:57 - 2013-09-22 12:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-10 23:57 - 2013-09-22 12:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 23:57 - 2013-09-22 12:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 23:57 - 2013-09-22 12:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-10 23:57 - 2013-09-22 12:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 23:57 - 2013-09-22 12:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57 - 2013-09-22 12:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 23:57 - 2013-09-22 12:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-10 23:57 - 2013-09-22 12:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 23:57 - 2013-09-22 12:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-10 23:57 - 2013-09-22 11:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 16:52 - 2013-08-29 09:36 - 02050048 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 16:52 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-10-10 16:52 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 16:52 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-10-10 16:52 - 2013-07-12 11:04 - 00134272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 16:52 - 2013-07-12 11:04 - 00073344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-10 16:51 - 2013-08-29 09:56 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2013-10-10 16:51 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 16:51 - 2013-07-03 04:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-10 16:51 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-10 16:51 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 16:51 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 16:51 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 16:51 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-10 16:51 - 2011-05-05 15:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-10 16:50 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-08 13:37 - 2013-10-19 22:43 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-08 13:37 - 2013-10-19 14:15 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-02 19:23 - 2013-10-02 19:31 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:18 - 2013-09-21 20:19 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
==================== One Month Modified Files and Folders =======
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:04 - 2013-10-19 23:00 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 23:03 - 2013-01-17 01:15 - 00000000 ___RD C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:57 - 2013-10-11 17:52 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-19 22:43 - 2013-10-08 13:37 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-19 22:40 - 2009-07-02 20:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-10-19 22:38 - 2013-03-15 22:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-19 19:55 - 2009-07-01 22:08 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:51 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:50 - 2008-11-27 19:26 - 01781291 _____ C:\Windows\WindowsUpdate.log
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 18:47 - 2009-07-01 21:05 - 00009728 _____ C:\Users\Peter\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-19 17:57 - 2013-10-11 17:52 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-19 14:48 - 2012-01-03 22:39 - 00000000 ____D C:\ProgramData\Skype
2013-10-19 14:30 - 2013-01-16 20:25 - 00000000 ____D C:\Program Files\trend micro
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:15 - 2013-10-08 13:37 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-19 14:12 - 2008-11-27 19:04 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-19 14:12 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-19 14:11 - 2006-11-02 15:01 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-19 00:00 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:52 - 2009-07-10 19:23 - 00000000 ____D C:\ProgramData\Adobe
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 23:51 - 2009-07-10 19:23 - 00000000 ____D C:\Program Files\Adobe
2013-10-18 23:50 - 2009-07-10 19:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2013-10-18 23:50 - 2009-07-01 20:37 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:40 - 2009-08-12 18:50 - 00000000 ____D C:\Users\Peter\Documents\Adobe
2013-10-18 17:29 - 2013-09-14 12:40 - 00000000 ____D C:\ProgramData\CanonIJPLM
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-18 00:14 - 2012-07-21 14:41 - 00000000 ___RD C:\Program Files\Skype
2013-10-17 18:48 - 2012-01-03 22:39 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2013-10-17 01:06 - 2013-06-02 16:03 - 00000000 ____D C:\Users\Peter\Documents\samko
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-16 15:04 - 2009-07-11 03:21 - 00084436 _____ C:\Windows\system32\perfh01B.dat
2013-10-16 15:04 - 2009-07-11 03:21 - 00028304 _____ C:\Windows\system32\perfc01B.dat
2013-10-16 15:04 - 2006-11-02 12:33 - 00865920 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25 - 2009-11-12 19:35 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2013-10-12 15:17 - 2013-10-12 13:22 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:20 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-10-11 16:50 - 2006-11-02 14:47 - 00521160 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-11 00:10 - 2008-11-27 19:09 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-11 00:03 - 2013-08-14 23:23 - 00000000 ____D C:\Windows\system32\MRT
2013-10-11 00:00 - 2006-11-02 12:24 - 78106760 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-10 16:30 - 2012-10-25 19:09 - 00595552 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klmouflt.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klkbdflt.sys
2013-10-10 16:30 - 2012-06-19 18:28 - 00135776 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-09 08:06 - 2009-08-09 14:15 - 00000000 ____D C:\Users\Peter\Documents\Excel
2013-10-09 00:39 - 2012-07-21 10:07 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-09 00:39 - 2011-06-08 17:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-08 23:51 - 2009-07-01 20:40 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50 - 2009-11-12 19:36 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-02 19:31 - 2013-10-02 19:23 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-10-01 17:25 - 2010-10-07 22:30 - 00000000 ____D C:\ProgramData\CanonIJ
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-25 17:39 - 2010-10-07 22:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16 - 2012-09-25 00:13 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-09-22 12:29 - 2013-10-10 23:57 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-22 12:14 - 2013-10-10 23:57 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-09-22 12:13 - 2013-10-10 23:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-22 12:13 - 2013-10-10 23:57 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-22 12:12 - 2013-10-10 23:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-09-22 12:09 - 2013-10-10 23:57 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-22 12:08 - 2013-10-10 23:57 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-09-22 12:07 - 2013-10-10 23:57 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-22 12:06 - 2013-10-10 23:57 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-09-22 12:05 - 2013-10-10 23:57 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-22 12:03 - 2013-10-10 23:57 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-09-22 11:59 - 2013-10-10 23:57 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:19 - 2013-09-21 20:18 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
2013-09-21 16:08 - 2013-08-18 17:36 - 00000000 ____D C:\Program Files\Mozilla Firefox
Files to move or delete:
====================
C:\Users\Peter\AppData\Roaming\desktop.ini
Some content of TEMP:
====================
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-19 14:21
Ran by Peter (administrator) on PETERPC on 19-10-2013 23:05:58
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: 041B
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
() C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital) C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDFME.exe
(http://goforfiles.com/) C:\Program Files\GoforFiles\GFFUpdater.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Pinnacle Systems GmbH) C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Genius\ioCentre\gTaskBar.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Western Digital) C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gKbdTask.exe
() C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gIMMgm.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
() C:\Genius\ioCentre\gTaskSwitch.exe
() C:\Genius\ioCentre\gMouseTask.exe
() C:\Genius\ioCentre\gZoom.exe
() C:\Genius\ioCentre\gKbStatus.exe
() C:\Genius\ioCentre\gDeskMgm.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMSWCS.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Kozaka) C:\Program Files\Kozaka\updateKozaka.exe
(Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6266880 2008-07-03] (Realtek Semiconductor)
HKLM\...\Run: [PinnacleDriverCheck] - C:\Windows\system32\PSDrvCheck.exe [406016 2004-03-10] ()
HKLM\...\Run: [USBToolTip] - C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH)
HKLM\...\Run: [UVS11 Preload] - C:\Program Files\Ulead Systems\Ulead VideoStudio 11 SE DVD\uvPL.exe [341488 2007-04-12] (InterVideo Digital Technology Corporation)
HKLM\...\Run: [ioCentre] - C:\Genius\ioCentre\gTaskBar.exe [61440 2007-12-17] ()
HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-09-04] (CANON INC.)
HKLM\...\Run: [ArcSoft Connection Service] - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [LifeCam] - C:\Program Files\Microsoft LifeCam\LifeExp.exe [135536 2010-12-13] (Microsoft Corporation)
HKLM\...\Run: [AVP] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
HKLM\...\Run: [WD Drive Unlocker] - C:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM\...\Run: [WD Quick View] - C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [3998616 2011-12-15] (Western Digital Technologies, Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [SkyDrive] - C:\Users\Peter\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-14] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\USER\...\Run: [GAINWARD] - C:\Program Files\EXPERTool\TBPanel.exe /A
HKU\USER\...\Run: [LightScribe Control Panel] - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [ 2009-08-20] (Hewlett-Packard Company)
Startup: C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Orezávač obrazovky a spúšťač programu OneNote 2007.lnk
ShortcutTarget: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Kozaka - {a45e3fa8-5048-4372-94ad-c6661671f7fc} - C:\Program Files\Kozaka\Kozakabho.dll (Kozaka)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM - dalesearch Toolbar - {81F88FCF-3CB0-4D17-84E1-9A6CEDEE192A} - C:\Program Files\dalesearch\dalesearch\1.8.16.19\dalesearchTlbr.dll (Montera Technologeis LTD)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU -Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
DPF: {4C3CEE0B-4F2F-44C3-9586-4368F3200143} https://moja.tatrabanka.sk/ibanking/ICApki.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Peter\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\zoznam-sk.xml
FF Extension: InternetSearch - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@startsearcher.com
FF Extension: VideoFileDownload - Download YouTube Videos - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\plugin@videofiledownload.com
FF Extension: No Name - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\4sharedToolbar.xpi
FF Extension: onair_FM - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\Extensions\onair_FM@marek.chrenko.net.xpi
FF Extension: Kaspersky URL Advisor - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF HKLM\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
Chrome:
=======
CHR Extension: (LyricsTube) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bebdghdpchfhbbmfeddkijldlpnkbjkk\1.110
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190
CHR Extension: () - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4190
CHR HKLM\...\Chrome\Extension: [abepbblpkilpjohncjbccmdjhdhbnhdj] - C:\Program Files\SingAlong\Chrome.crx
CHR HKLM\...\Chrome\Extension: [cljghnkcnkhedlnhdgbcbefjoapionoc] - C:\Users\Peter\AppData\Local\eToolKit\Beemp3.crx
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx
CHR HKLM\...\Chrome\Extension: [dnlhamhiejpiajljicfphhpiahoojipl] - C:\Users\Peter\AppData\Local\eToolKit\FacebookShare.crx
CHR HKLM\...\Chrome\Extension: [dpmoonohndgmmnlcnjajheaahmnjlbmj] - C:\Users\Peter\AppData\Local\eToolKit\FacebookStatus.crx
CHR HKLM\...\Chrome\Extension: [eelchhiiipbeleiimmhpdfbagkcjdmdm] - C:\Users\Peter\AppData\Local\eToolKit\FacebookChat.crx
CHR HKLM\...\Chrome\Extension: [fppahmlkambbejgkiidklamcmhealjag] - C:\Users\Peter\AppData\Local\eToolKit\FacebookLike.crx
CHR HKLM\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx
CHR HKLM\...\Chrome\Extension: [jchankggehakkafdlalgmfbodgfilnbg] - C:\Users\Peter\AppData\Local\eToolKit\FacebookMain.crx
CHR HKLM\...\Chrome\Extension: [jedcimnjemkbmkkngncfgfpjgfcapimk] - C:\Users\Peter\AppData\Local\eToolKit\Extmanager.crx
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
========================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AdobeActiveFileMonitor8.0; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated)
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [244904 2009-07-02] ()
R2 Update Kozaka; C:\Program Files\Kozaka\updateKozaka.exe [65304 2013-10-10] (Kozaka)
R2 WDDriveService; C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [45696 2008-01-19] (Microsoft Corporation)
R3 ASAPIW2k; C:\Windows\System32\drivers\ASAPIW2k.sys [11264 2004-03-10] (Pinnacle Systems GmbH)
S3 ASPI; C:\Windows\System32\DRIVERS\ASPI32.sys [84832 2002-07-17] (Adaptec)
S3 AVCSTRM; C:\Windows\System32\DRIVERS\avcstrm.sys [14208 2008-01-19] (Microsoft Corporation)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
R3 gHidPnp; C:\Windows\System32\Drivers\gHidPnp.Sys [19456 2009-04-28] ()
R3 gMouUsb; C:\Windows\System32\DRIVERS\gMouUsb.sys [11520 2009-03-04] ()
S3 INIDVD; C:\Windows\System32\DRIVERS\inidvd.sys [15640 2008-09-24] (Initio Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [595552 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [24408 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-10-10] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [44000 2013-06-18] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [145040 2013-04-23] (Kaspersky Lab ZAO)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH)
S3 MSTAPE; C:\Windows\System32\DRIVERS\mstape.sys [50048 2008-01-19] (Microsoft Corporation)
R1 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2004-07-16] (Pinnacle Systems GmbH)
S3 SCR33X USB Smart Card Reader; C:\Windows\System32\DRIVERS\SCR33X2K.sys [64088 2004-04-06] (SCM Microsystems Inc.)
S3 SCR3XX2K; C:\Windows\System32\DRIVERS\SCR3XX2K.sys [57600 2009-10-25] (SCM Microsystems Inc.)
S3 TVICHW32; C:\Windows\system32\DRIVERS\TVICHW32.SYS [23600 2009-07-07] (EnTech Taiwan)
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}; C:\Program Files\CyberLink\PowerDVD8\000.fcl [87536 2010-01-12] (CyberLink Corp.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 CFcatchme; \??\C:\Users\Peter\AppData\Local\Temp\CFcatchme.sys [x]
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [74848 2013-04-23] (Kaspersky Lab ZAO)
S1 networx; system32\drivers\networx.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-18 23:59 - 2013-10-19 18:51 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-18 23:59 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-12 13:22 - 2013-10-12 15:17 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:52 - 2013-10-19 22:57 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-11 17:52 - 2013-10-19 17:57 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-10 23:57 - 2013-09-22 12:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 23:57 - 2013-09-22 12:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 23:57 - 2013-09-22 12:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-10 23:57 - 2013-09-22 12:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 23:57 - 2013-09-22 12:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 23:57 - 2013-09-22 12:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-10 23:57 - 2013-09-22 12:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 23:57 - 2013-09-22 12:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-10 23:57 - 2013-09-22 12:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 23:57 - 2013-09-22 12:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-10 23:57 - 2013-09-22 12:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 23:57 - 2013-09-22 12:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 23:57 - 2013-09-22 12:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-10 23:57 - 2013-09-22 11:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 16:52 - 2013-08-29 09:36 - 02050048 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 16:52 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-10-10 16:52 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-10-10 16:52 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-10-10 16:52 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-10-10 16:52 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-10-10 16:52 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-10-10 16:52 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 16:52 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-10-10 16:52 - 2013-07-12 11:04 - 00134272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 16:52 - 2013-07-12 11:04 - 00073344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-10 16:51 - 2013-08-29 09:56 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2013-10-10 16:51 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 16:51 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 16:51 - 2013-07-03 04:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-10 16:51 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-10 16:51 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-10 16:51 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 16:51 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 16:51 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 16:51 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-10 16:51 - 2011-05-05 15:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-10 16:50 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-08 13:37 - 2013-10-19 22:43 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-08 13:37 - 2013-10-19 14:15 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-02 19:23 - 2013-10-02 19:31 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:18 - 2013-09-21 20:19 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
==================== One Month Modified Files and Folders =======
2013-10-19 23:05 - 2013-10-19 23:05 - 00000000 ____D C:\FRST
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:04 - 2013-10-19 23:00 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 23:03 - 2013-01-17 01:15 - 00000000 ___RD C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:58 - 2006-11-02 14:47 - 00004160 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-19 22:57 - 2013-10-11 17:52 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
2013-10-19 22:43 - 2013-10-08 13:37 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-19 22:40 - 2009-07-02 20:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-10-19 22:38 - 2013-03-15 22:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-19 19:55 - 2009-07-01 22:08 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI
2013-10-19 19:53 - 2013-10-19 19:53 - 00000400 _____ C:\Windows\DXError.log
2013-10-19 19:53 - 2013-10-19 19:53 - 00000144 _____ C:\Windows\DirectX.log
2013-10-19 18:54 - 2013-10-19 18:54 - 00003638 _____ C:\Users\Peter\Desktop\JRT.txt
2013-10-19 18:51 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\GoforFiles
2013-10-19 18:50 - 2013-10-19 18:50 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 18:50 - 2008-11-27 19:26 - 01781291 _____ C:\Windows\WindowsUpdate.log
2013-10-19 18:49 - 2013-10-19 18:49 - 00001814 _____ C:\sc-cleaner.txt
2013-10-19 18:47 - 2009-07-01 21:05 - 00009728 _____ C:\Users\Peter\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-19 17:57 - 2013-10-11 17:52 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
2013-10-19 14:48 - 2012-01-03 22:39 - 00000000 ____D C:\ProgramData\Skype
2013-10-19 14:30 - 2013-01-16 20:25 - 00000000 ____D C:\Program Files\trend micro
2013-10-19 14:24 - 2013-10-19 14:24 - 00000000 ____D C:\rsit
2013-10-19 14:15 - 2013-10-08 13:37 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-19 14:12 - 2008-11-27 19:04 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-19 14:12 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-19 14:11 - 2006-11-02 15:01 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-19 14:10 - 2013-10-19 14:10 - 00002280 _____ C:\AdwCleaner[S6].txt
2013-10-19 14:09 - 2013-10-19 14:09 - 00002092 _____ C:\AdwCleaner[R9].txt
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
2013-10-19 00:00 - 2013-10-18 23:59 - 00000000 ____D C:\Program Files\Kozaka
2013-10-18 23:58 - 2013-10-18 23:58 - 06642944 _____ (http://www.goforfiles.com/) C:\Users\Peter\Downloads\free_photoshop_full_version_vista_downloader_sk_99028.exe
2013-10-18 23:54 - 2013-10-18 23:54 - 00000000 ____D C:\Users\Peter\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-18 23:52 - 2009-07-10 19:23 - 00000000 ____D C:\ProgramData\Adobe
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-10-18 23:51 - 2013-10-18 23:51 - 00000000 ____D C:\Program Files\Adobe Download Assistant
2013-10-18 23:51 - 2009-07-10 19:23 - 00000000 ____D C:\Program Files\Adobe
2013-10-18 23:50 - 2009-07-10 19:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2013-10-18 23:50 - 2009-07-01 20:37 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Adobe
2013-10-18 17:40 - 2009-08-12 18:50 - 00000000 ____D C:\Users\Peter\Documents\Adobe
2013-10-18 17:29 - 2013-09-14 12:40 - 00000000 ____D C:\ProgramData\CanonIJPLM
2013-10-18 16:33 - 2013-10-18 16:33 - 00166584 _____ () C:\Users\Peter\Downloads\7ZipSetup.exe
2013-10-18 00:14 - 2012-07-21 14:41 - 00000000 ___RD C:\Program Files\Skype
2013-10-17 18:48 - 2012-01-03 22:39 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2013-10-17 01:06 - 2013-06-02 16:03 - 00000000 ____D C:\Users\Peter\Documents\samko
2013-10-16 17:03 - 2013-10-16 17:03 - 00011842 _____ C:\Users\Peter\Downloads\tabulka.husarik11.odt
2013-10-16 15:04 - 2009-07-11 03:21 - 00084436 _____ C:\Windows\system32\perfh01B.dat
2013-10-16 15:04 - 2009-07-11 03:21 - 00028304 _____ C:\Windows\system32\perfc01B.dat
2013-10-16 15:04 - 2006-11-02 12:33 - 00865920 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-14 21:25 - 2009-11-12 19:35 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2013-10-12 15:17 - 2013-10-12 13:22 - 713956044 _____ C:\Users\Peter\Downloads\she-s-all-that.avi
2013-10-11 21:57 - 2013-10-11 21:57 - 00000788 _____ C:\Windows\setupact.log
2013-10-11 21:57 - 2013-10-11 21:57 - 00000000 _____ C:\Windows\setuperr.log
2013-10-11 17:20 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-10-11 16:50 - 2006-11-02 14:47 - 00521160 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-11 00:10 - 2008-11-27 19:09 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-11 00:03 - 2013-08-14 23:23 - 00000000 ____D C:\Windows\system32\MRT
2013-10-11 00:00 - 2006-11-02 12:24 - 78106760 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-10 16:30 - 2012-10-25 19:09 - 00595552 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klmouflt.sys
2013-10-10 16:30 - 2012-10-25 19:09 - 00025696 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klkbdflt.sys
2013-10-10 16:30 - 2012-06-19 18:28 - 00135776 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys
2013-10-09 16:32 - 2013-10-09 16:32 - 00602551 _____ C:\Users\Peter\Downloads\image(5).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00516423 _____ C:\Users\Peter\Downloads\image(4).jpeg
2013-10-09 16:32 - 2013-10-09 16:32 - 00478815 _____ C:\Users\Peter\Downloads\image(3).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00606713 _____ C:\Users\Peter\Downloads\image.jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00591517 _____ C:\Users\Peter\Downloads\image(1).jpeg
2013-10-09 16:31 - 2013-10-09 16:31 - 00582405 _____ C:\Users\Peter\Downloads\image(2).jpeg
2013-10-09 08:06 - 2009-08-09 14:15 - 00000000 ____D C:\Users\Peter\Documents\Excel
2013-10-09 00:39 - 2012-07-21 10:07 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-09 00:39 - 2011-06-08 17:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-08 23:51 - 2009-07-01 20:40 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Mozilla
2013-10-06 12:50 - 2009-11-12 19:36 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dvdcss
2013-10-02 19:31 - 2013-10-02 19:23 - 00037450 _____ C:\Users\Peter\Downloads\Realizmus-
2013-10-01 17:25 - 2010-10-07 22:30 - 00000000 ____D C:\ProgramData\CanonIJ
2013-09-30 23:54 - 2013-09-30 23:54 - 00005047 _____ C:\Users\Peter\Downloads\782013_signed.xml
2013-09-25 17:39 - 2010-10-07 22:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Canon
2013-09-25 17:16 - 2012-09-25 00:13 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-09-22 12:29 - 2013-10-10 23:57 - 12336128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-22 12:22 - 2013-10-10 23:57 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-22 12:14 - 2013-10-10 23:57 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-09-22 12:13 - 2013-10-10 23:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-22 12:13 - 2013-10-10 23:57 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-22 12:12 - 2013-10-10 23:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-09-22 12:09 - 2013-10-10 23:57 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-22 12:08 - 2013-10-10 23:57 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-09-22 12:07 - 2013-10-10 23:57 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-22 12:06 - 2013-10-10 23:57 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-09-22 12:05 - 2013-10-10 23:57 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-22 12:03 - 2013-10-10 23:57 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-22 12:03 - 2013-10-10 23:57 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-09-22 11:59 - 2013-10-10 23:57 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-21 20:19 - 2013-09-21 20:19 - 00000000 ____D C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB
2013-09-21 20:19 - 2013-09-21 20:18 - 02727500 _____ C:\Users\Peter\Downloads\Stolety-starik,-ktery-vylezl-z-okna-a-zmizel---Jonas-Jonasson-PDF-ePUB.rar
2013-09-21 16:08 - 2013-08-18 17:36 - 00000000 ____D C:\Program Files\Mozilla Firefox
Files to move or delete:
====================
C:\Users\Peter\AppData\Roaming\desktop.ini
Some content of TEMP:
====================
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-19 14:21
Re: Dale Search
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.) HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.) HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation) HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung) HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung) HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx 2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe 2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE 2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch 2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch C:\Users\Peter\AppData\Roaming\desktop.ini C:\Users\Peter\AppData\Local\temp\7z920.exe C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe C:\Users\Peter\AppData\Local\temp\BabylonTB.exe C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe C:\Users\Peter\AppData\Local\temp\htmlayout.dll C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe C:\Windows\tasks\Adobe Flash Player Updater.job C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job Hosts: End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: Dale Search
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 19-10-2013
Ran by Peter at 2013-10-20 20:45:31 Run:1
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
C:\Users\Peter\AppData\Roaming\desktop.ini
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\CanonQuickMenu => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\WMPNSCFG => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\KiesPreload => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search bar => Value deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Secondary Start Pages => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml => Moved successfully.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup => Moved successfully.
C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\pialekdjmfmckiccfkgbbgphficjdekh => Key deleted successfully.
"C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx" => File/Directory not found.
C:\Users\Peter\Downloads\FRSTLauncher.exe => Moved successfully.
C:\Users\Peter\AppData\Local\MSGBOX.EXE => Moved successfully.
"C:\Users\Peter\AppData\Roaming\dalesearch" => File/Directory not found.
"C:\Program Files\dalesearch" => File/Directory not found.
C:\Users\Peter\AppData\Roaming\desktop.ini => Moved successfully.
"C:\Users\Peter\AppData\Local\temp\7z920.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\BabylonTB.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\htmlayout.dll" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe" => File/Directory not found.
C:\Windows\tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====
Ran by Peter at 2013-10-20 20:45:31 Run:1
Running from C:\Users\Peter\Desktop\SW Ochrana, Obnova a Čistenie
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-04-23] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CanonQuickMenu] - C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKCU\...\Run: [Skype] - "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1561968 2013-04-23] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844168 2013-06-11] (Samsung)
HKCU\...\Run: [Google Update] - C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-18] (Google Inc.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml
FF SearchPlugin: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml
CHR HKLM\...\Chrome\Extension: [pialekdjmfmckiccfkgbbgphficjdekh] - C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx
2013-10-19 23:04 - 2013-10-19 23:04 - 00112128 _____ (forum.viry.cz) C:\Users\Peter\Downloads\FRSTLauncher.exe
2013-10-19 23:00 - 2013-10-19 23:04 - 00029696 _____ C:\Users\Peter\AppData\Local\MSGBOX.EXE
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Users\Peter\AppData\Roaming\dalesearch
2013-10-19 00:00 - 2013-10-19 00:00 - 00000000 ____D C:\Program Files\dalesearch
C:\Users\Peter\AppData\Roaming\desktop.ini
C:\Users\Peter\AppData\Local\temp\7z920.exe
C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe
C:\Users\Peter\AppData\Local\temp\BabylonTB.exe
C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe
C:\Users\Peter\AppData\Local\temp\htmlayout.dll
C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe
C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe
C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\CanonQuickMenu => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\WMPNSCFG => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\KiesPreload => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search bar => Value deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Secondary Start Pages => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\dalesearch.xml => Moved successfully.
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\a30emazl.default\searchplugins\searchplugins-backup => Moved successfully.
C:\Program Files\mozilla firefox\searchplugins\toolkitsearch.xml => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\pialekdjmfmckiccfkgbbgphficjdekh => Key deleted successfully.
"C:\Users\Peter\AppData\Roaming\BabSolution\CR\dalesearch.crx" => File/Directory not found.
C:\Users\Peter\Downloads\FRSTLauncher.exe => Moved successfully.
C:\Users\Peter\AppData\Local\MSGBOX.EXE => Moved successfully.
"C:\Users\Peter\AppData\Roaming\dalesearch" => File/Directory not found.
"C:\Program Files\dalesearch" => File/Directory not found.
C:\Users\Peter\AppData\Roaming\desktop.ini => Moved successfully.
"C:\Users\Peter\AppData\Local\temp\7z920.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\appshat-distribution.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\BabylonTB.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\DiVapton_sm.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\htmlayout.dll" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60082817.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\toolbar60086873.exe" => File/Directory not found.
"C:\Users\Peter\AppData\Local\temp\UpdateCheckerSetup.exe" => File/Directory not found.
C:\Windows\tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004Core.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2392522767-3960030484-1258025880-1004UA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====
Re: Dale Search
Tak jeste uklidime
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC
- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte
Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy



Přispějete na provoz fóra?