Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc - jak odebrat BetterSurf

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
pelo23
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 11 pro 2013 15:54

Prosím o pomoc - jak odebrat BetterSurf

#1 Příspěvek od pelo23 »

Prosím o pomoc s odstraněním BetterSurf,
zasílám log... Moc děkuji předem za pomoc

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-12-2013 01
Ran by uzivatel (administrator) on ACER on 11-12-2013 15:59:45
Running from C:\Documents and Settings\uzivatel\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
() C:\WINDOWS\snuvcdsm.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer VCM\AcerVCM.exe
(Microsoft Corporation) C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
() C:\Documents and Settings\All Users\Data aplikací\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
() C:\Program Files\Okidata\OKI LPR Utility\Okilpr.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\dsiwmis.exe
(Dropbox, Inc.) C:\Documents and Settings\uzivatel\Data aplikací\Dropbox\bin\Dropbox.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
() C:\Documents and Settings\All Users\Data aplikací\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenManager32.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Acer Incorporated) C:\Program Files\Acer\Acer VCM\RS_Service.exe
(Skype Technologies S.A.) C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LMworker.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(forum.viry.cz) C:\Documents and Settings\uzivatel\Plocha\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [IAStorIcon] - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-04-13] (Intel Corporation)
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [19552360 2010-06-22] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AzMixerSel] - C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe [59936 2009-12-11] (Realtek Semiconductor Corp.)
HKLM\...\Run: [BackupManagerTray] - C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [265984 2010-06-11] (NewTech Infosystems, Inc.)
HKLM\...\Run: [PLFSetL] - C:\WINDOWS\PLFSetL.exe [99712 2010-02-12] (Sonix Technology Co., Ltd.)
HKLM\...\Run: [snp2uvc] - rundll32.exe C:\WINDOWS\system32\csnp2uvc.dll,ResetCIDS
HKLM\...\Run: [snuvcdsm] - C:\WINDOWS\snuvcdsm.exe [30080 2010-02-12] ()
HKLM\...\Run: [LManager] - C:\Program Files\Launch Manager\LManager.exe [960080 2010-05-25] (Dritek System Inc.)
HKLM\...\Run: [HotKeysCmds] - C:\WINDOWS\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [548744 2010-04-13] (ELAN Microelectronic Corp.)
HKLM\...\Run: [] - [x]
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2021400 2009-02-06] (ESET)
HKLM\...\Run: [ApnUpdater] - C:\Program Files\Ask.com\Updater\Updater.exe [1648264 2013-04-25] (Ask)
HKLM\...\Run: [KeePass 2 PreLoad] - C:\Program Files\KeePass Password Safe 2\KeePass.exe [1960448 2013-04-05] (Dominik Reichl)
HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1061960 2013-03-21] ()
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [FileOpenBroker] - C:\Program Files\FileOpen\Services\FileOpenBroker32.exe [908144 2013-03-26] (FileOpen Systems Inc.)
HKCU\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [153136 2007-05-16] (Nero AG)
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20549280 2013-10-21] (Skype Technologies S.A.)
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Documents and Settings\uzivatel\Data aplikací\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Documents and Settings\uzivatel\Data aplikací\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-09-03] (Google Inc.)
MountPoints2: {25eadaf3-be9d-11e0-b0de-5cac4c81dea0} - F:\AutoRun.exe
MountPoints2: {9123cbae-27cc-11e0-afcc-5cac4c81dea0} - F:\WDSetup.exe
HKU\Administrator\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2010-09-03] (Google Inc.)
HKU\Administrator\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-05-16] (Nero AG)
HKU\Default User\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2010-09-03] (Google Inc.)
HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files\Acer\Screensaver\run_Acer.exe [ 2010-01-15] ()
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-05-16] (Nero AG)
AppInit_DLLs: C:\Documents and Settings\All Users\Data aplikací\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll [ 2013-11-18] ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Acer VCM.lnk
ShortcutTarget: Acer VCM.lnk -> C:\Program Files\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\OKI LPR Utility.lnk
ShortcutTarget: OKI LPR Utility.lnk -> C:\Program Files\Okidata\OKI LPR Utility\Okilpr.exe ()
Startup: C:\Documents and Settings\uzivatel\Nabídka Start\Programy\Po spuštění\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\uzivatel\Data aplikací\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4762q692
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://mixidj.delta-search.com/?affID=1 ... AC4C81DEA0
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4762q692
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x4762q692
URLSearchHook: HKCU - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
URLSearchHook: HKCU - pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
SearchScopes: HKCU - DefaultScope {2CFCCF38-7F4A-4237-974C-B95385DEC2DB} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://mixidj.delta-search.com/?q={sear ... AC4C81DEA0
SearchScopes: HKCU - {0FFD3D0C-8C7B-48C7-B0C7-A81317B6D1F2} URL = http://websearch.ask.com/redirect?clien ... 7617AB5BDF
SearchScopes: HKCU - {2CFCCF38-7F4A-4237-974C-B95385DEC2DB} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKCU - {72D5A9F1-9337-4AA9-9DAE-846134E551FE} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKCU - {8585E3A3-7C7B-4DD5-8DFF-3FB764470894} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKCU - {8835CDD6-D10F-46F0-82A9-A4DF14903F88} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {95D4C833-8ED1-4AE0-A1F9-BB865ED6443B} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKCU - {98D4BD8F-4AFE-485B-8FB3-B569822795FB} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {AC41F52E-1711-408B-9E8B-FE9D28E4DB54} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKCU - {CB2E2FFC-39C0-4A8E-ADDA-C2944800E637} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {D8F531C8-A515-478D-B58A-0DE143E4FD4F} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKCU - {E9BB2CA7-7110-4ADD-89A0-68C08FA719AB} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 192.168.0.254

FireFox:
========
FF ProfilePath: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default
FF NewTab: user_pref("browser.newtab.url", "");
FF SearchEngineOrder.user_pref("browser.search.order.1", "");: user_pref("browser.search.order.1", "");
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler - C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BitGuard.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BrowserProtect.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\vyhledvn-vide-ve-slub-youtube.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Ask Toolbar - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\Extensions\toolbar@ask.com
FF Extension: Garmin Communicator - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
FF Extension: pdfforge - C:\Program Files\Mozilla Firefox\extensions\pdfforge@mybrowserbar.com
FF Extension: wtxpcom - C:\Program Files\Mozilla Firefox\extensions\wtxpcom@mybrowserbar.com
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [xz123@ya456.com] - C:\Program Files\BetterSurf\ff
FF Extension: BetterSurf - C:\Program Files\BetterSurf\ff
FF HKLM\...\Firefox\Extensions: [12x3q@3244516.com] - C:\Program Files\Better-Surf\ff
FF Extension: Better-Surf - C:\Program Files\Better-Surf\ff
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: Eset Plugin - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

========================== Services (Whitelisted) =================

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 BitGuard; C:\Documents and Settings\All Users\Data aplikací\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe [3780064 2013-11-18] ()
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [20680 2009-02-06] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [727720 2009-02-06] (ESET)
R2 FileOpenManager; C:\Program Files\FileOpen\Services\FileOpenManager32.exe [217456 2013-03-19] (FileOpen Systems Inc.)
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R2 NTI IScheduleSvc; C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [255744 2010-06-11] (NewTech Infosystems, Inc.)
R2 RS_Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [260640 2010-01-29] (Acer Incorporated)
R2 Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
R2 Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [243232 2010-01-28] (Acer Group)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"

==================== Drivers (Whitelisted) ====================

S4 abp480n5; C:\Windows\system32\DRIVERS\ABP480N5.SYS [23552 2008-04-14] (Microsoft Corporation)
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R3 BCM43XX; C:\Windows\System32\DRIVERS\bcmwl5.sys [2972600 2010-05-03] (Broadcom Corporation)
S3 btaudio; C:\Windows\System32\drivers\btaudio.sys [533152 2009-09-18] (Broadcom Corporation.)
R3 BTDriver; C:\Windows\System32\DRIVERS\btport.sys [37160 2008-02-05] (Broadcom Corporation.)
R3 BTKRNL; C:\Windows\System32\DRIVERS\btkrnl.sys [992552 2010-02-26] (Broadcom Corporation.)
S3 BTWDNDIS; C:\Windows\System32\DRIVERS\btwdndis.sys [156816 2008-07-25] (Broadcom Corporation.)
S3 btwmodem; C:\Windows\System32\DRIVERS\btwmodem.sys [37032 2008-02-05] (Broadcom Corporation.)
S3 BTWUSB; C:\Windows\System32\Drivers\btwusb.sys [51752 2010-05-07] (Broadcom Corporation.)
S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
R2 eamon; C:\Windows\System32\DRIVERS\eamon.sys [113448 2009-02-06] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [106208 2009-02-06] (ESET)
R1 epfwtdir; C:\Windows\System32\DRIVERS\epfwtdir.sys [93336 2009-02-06] (ESET)
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [109960 2010-04-13] (ELAN Microelectronic Corp.)
R3 k57w2k; C:\Windows\System32\DRIVERS\k57xp32.sys [221224 2010-05-15] (Broadcom Corporation)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 NTIDrvr; C:\WINDOWS\system32\drivers\NTIDrvr.sys [14592 2010-04-28] (NTI Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1766784 2010-02-12] ()
R3 UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [13824 2010-04-28] (NTI Corporation)
S3 Huawei; system32\DRIVERS\ewdcsc.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]
U1 WS2IFSL;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-11 15:59 - 2013-12-11 15:59 - 00023056 _____ C:\Documents and Settings\uzivatel\Plocha\FRST.txt
2013-12-11 15:59 - 2013-12-11 15:59 - 00000000 ____D C:\FRST
2013-12-11 15:57 - 2013-12-11 15:57 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\uzivatel\Plocha\FRSTLauncher.exe
2013-12-11 15:56 - 2013-12-11 15:57 - 01061389 _____ (Farbar) C:\Documents and Settings\uzivatel\Plocha\FRST.exe
2013-12-11 15:44 - 2013-12-11 15:44 - 01034531 _____ (Thisisu) C:\Documents and Settings\uzivatel\Plocha\JRT.exe
2013-12-11 12:04 - 2013-12-11 14:03 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2013-12-11 07:24 - 2013-12-11 07:24 - 00004124 _____ C:\WINDOWS\KB2893984.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00003622 _____ C:\WINDOWS\KB2892075.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00003608 _____ C:\WINDOWS\KB2898715.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00003601 _____ C:\WINDOWS\KB2893294.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00000000 ____D C:\WINDOWS\LastGood
2013-12-07 08:49 - 2013-12-08 13:47 - 00001667 _____ C:\WINDOWS\setupapi.log
2013-11-26 09:08 - 2013-11-26 09:08 - 00000000 ____D C:\Program Files\Better-Surf
2013-11-23 12:11 - 2013-11-23 12:11 - 00000000 ____D C:\Documents and Settings\uzivatel\Nabídka Start\Programy\BitGuard
2013-11-14 14:09 - 2013-12-11 15:49 - 00000000 ____D C:\Program Files\BetterSurf
2013-11-13 07:03 - 2013-11-13 07:03 - 00009563 _____ C:\WINDOWS\KB2900986.log
2013-11-13 07:03 - 2013-11-13 07:03 - 00004415 _____ C:\WINDOWS\updspapi.log
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$
2013-11-13 07:02 - 2013-11-13 07:03 - 00012165 _____ C:\WINDOWS\KB2888505-IE8.log
2013-11-13 06:59 - 2013-11-13 07:03 - 00015211 _____ C:\WINDOWS\KB2868626.log
2013-11-13 06:59 - 2013-11-13 07:03 - 00014177 _____ C:\WINDOWS\KB2862152.log
2013-11-13 06:59 - 2013-11-13 07:03 - 00013677 _____ C:\WINDOWS\KB2876331.log

==================== One Month Modified Files and Folders =======

2013-12-11 15:59 - 2013-12-11 15:59 - 00023056 _____ C:\Documents and Settings\uzivatel\Plocha\FRST.txt
2013-12-11 15:59 - 2013-12-11 15:59 - 00000000 ____D C:\FRST
2013-12-11 15:59 - 2011-01-18 17:11 - 00000000 ___HD C:\Documents and Settings\uzivatel\Local Settings\Data aplikací
2013-12-11 15:59 - 2011-01-18 17:11 - 00000000 ____D C:\Documents and Settings\uzivatel\Plocha
2013-12-11 15:58 - 2011-03-03 15:42 - 00000000 ____D C:\Documents and Settings\uzivatel\Data aplikací\Skype
2013-12-11 15:57 - 2013-12-11 15:57 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\uzivatel\Plocha\FRSTLauncher.exe
2013-12-11 15:57 - 2013-12-11 15:56 - 01061389 _____ (Farbar) C:\Documents and Settings\uzivatel\Plocha\FRST.exe
2013-12-11 15:57 - 2012-06-19 05:52 - 00000240 _____ C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
2013-12-11 15:54 - 2013-10-16 10:48 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-12-11 15:50 - 2010-09-03 21:08 - 01720258 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-11 15:49 - 2013-11-14 14:09 - 00000000 ____D C:\Program Files\BetterSurf
2013-12-11 15:44 - 2013-12-11 15:44 - 01034531 _____ (Thisisu) C:\Documents and Settings\uzivatel\Plocha\JRT.exe
2013-12-11 15:07 - 2011-03-02 07:52 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-11 14:09 - 2013-04-24 21:00 - 00000402 _____ C:\WINDOWS\Tasks\AmiUpdXp.job
2013-12-11 14:03 - 2013-12-11 12:04 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2013-12-11 14:03 - 2012-04-26 05:24 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-12-11 12:07 - 2011-03-02 07:52 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-11 11:17 - 2010-09-03 21:11 - 00032424 _____ C:\WINDOWS\SchedLgU.Txt
2013-12-11 07:24 - 2013-12-11 07:24 - 00004124 _____ C:\WINDOWS\KB2893984.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00003622 _____ C:\WINDOWS\KB2892075.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00003608 _____ C:\WINDOWS\KB2898715.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00003601 _____ C:\WINDOWS\KB2893294.log
2013-12-11 07:24 - 2013-12-11 07:24 - 00000000 ____D C:\WINDOWS\LastGood
2013-12-11 06:42 - 2013-04-24 21:01 - 00000000 ____D C:\Documents and Settings\uzivatel\Data aplikací\Seznam.cz
2013-12-11 06:38 - 2012-11-21 12:38 - 00000000 ___RD C:\Documents and Settings\uzivatel\Dokumenty\Dropbox
2013-12-11 06:38 - 2012-11-21 12:32 - 00000000 ____D C:\Documents and Settings\uzivatel\Data aplikací\Dropbox
2013-12-11 06:37 - 2010-09-04 06:45 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl
2013-12-11 06:37 - 2010-09-03 23:06 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-12-11 06:37 - 2010-09-03 23:06 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-12-11 06:37 - 2010-09-03 21:11 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-12-10 22:34 - 2011-01-18 17:11 - 00000178 ___SH C:\Documents and Settings\uzivatel\ntuser.ini
2013-12-10 13:01 - 2011-01-26 16:38 - 00003766 ___SH C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
2013-12-10 07:23 - 2013-04-15 10:51 - 00000000 ____D C:\Documents and Settings\uzivatel\Data aplikací\KeePass
2013-12-08 13:47 - 2013-12-07 08:49 - 00001667 _____ C:\WINDOWS\setupapi.log
2013-11-26 12:18 - 2011-11-15 14:49 - 00000000 ____D C:\Program Files\Rizika na PC
2013-11-26 09:08 - 2013-11-26 09:08 - 00000000 ____D C:\Program Files\Better-Surf
2013-11-25 14:34 - 2011-01-18 17:11 - 00000000 ___HD C:\Documents and Settings\uzivatel\Okolní síť
2013-11-25 07:19 - 2013-09-16 05:35 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\BitGuard
2013-11-24 19:42 - 2013-10-23 14:18 - 00000000 ____D C:\Documents and Settings\uzivatel\Data aplikací\vlc
2013-11-23 12:11 - 2013-11-23 12:11 - 00000000 ____D C:\Documents and Settings\uzivatel\Nabídka Start\Programy\BitGuard
2013-11-23 12:11 - 2011-01-18 17:11 - 00000000 ___RD C:\Documents and Settings\uzivatel\Nabídka Start\Programy
2013-11-22 07:28 - 2013-01-24 05:55 - 00000000 ___RD C:\Program Files\Skype
2013-11-22 07:28 - 2011-03-03 15:42 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Skype
2013-11-20 22:01 - 2011-01-18 17:11 - 00000000 ____D C:\Documents and Settings\uzivatel
2013-11-18 07:30 - 2013-04-11 22:15 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-13 07:03 - 2013-11-13 07:03 - 00009563 _____ C:\WINDOWS\KB2900986.log
2013-11-13 07:03 - 2013-11-13 07:03 - 00004415 _____ C:\WINDOWS\updspapi.log
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$
2013-11-13 07:03 - 2013-11-13 07:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$
2013-11-13 07:03 - 2013-11-13 07:02 - 00012165 _____ C:\WINDOWS\KB2888505-IE8.log
2013-11-13 07:03 - 2013-11-13 06:59 - 00015211 _____ C:\WINDOWS\KB2868626.log
2013-11-13 07:03 - 2013-11-13 06:59 - 00014177 _____ C:\WINDOWS\KB2862152.log
2013-11-13 07:03 - 2013-11-13 06:59 - 00013677 _____ C:\WINDOWS\KB2876331.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00039998 _____ C:\WINDOWS\iis6.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00038498 _____ C:\WINDOWS\FaxSetup.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00020596 _____ C:\WINDOWS\ocgen.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00018698 _____ C:\WINDOWS\tsoc.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00012645 _____ C:\WINDOWS\comsetup.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00011560 _____ C:\WINDOWS\msmqinst.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00007954 _____ C:\WINDOWS\ntdtcsetup.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00007007 _____ C:\WINDOWS\netfxocm.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00002844 _____ C:\WINDOWS\MedCtrOC.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00002399 _____ C:\WINDOWS\ocmsn.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00002024 _____ C:\WINDOWS\msgsocm.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00001866 _____ C:\WINDOWS\tabletoc.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00001393 _____ C:\WINDOWS\imsins.log
2013-11-13 07:03 - 2013-10-23 13:51 - 00001393 _____ C:\WINDOWS\imsins.BAK
2013-11-13 07:02 - 2013-07-17 10:32 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-11-13 07:00 - 2011-03-02 08:19 - 80340640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

Some content of TEMP:
====================
C:\Documents and Settings\Administrator\Local Settings\Temp\googletoolbarinstaller_full_signed_6.2.1910.1554.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\kt_setup_1.2.4229.1140.exe
C:\Documents and Settings\Default User\Local Settings\Temp\googletoolbarinstaller_full_signed_6.2.1910.1554.exe
C:\Documents and Settings\Default User\Local Settings\Temp\kt_setup_1.2.4229.1140.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\Better-Surf.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\BetterSurf.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\BetterSurfPlusInstaller.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\BingBarSetup-Partner.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\qoyph2iz.dll
C:\Documents and Settings\uzivatel\Local Settings\Temp\restorer1.0.0.1.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\setup.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\setup_fsu_cid.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\Updater.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2010-09-04 06:45] - [2008-04-14 13:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1

C:\Windows\System32\winlogon.exe
[2010-09-04 06:45] - [2008-04-14 13:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea

C:\Windows\System32\svchost.exe
[2010-09-04 06:45] - [2008-04-14 13:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2010-09-04 06:45] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2010-09-04 06:45] - [2008-04-14 13:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53

C:\Windows\System32\userinit.exe
[2010-09-04 06:45] - [2008-04-14 13:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\Drivers\volsnap.sys
[2010-09-04 06:45] - [2008-04-14 13:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1





===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (ACER) (Fixed) (Total:221.45 GB) (Free:189.87 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (DATA) (Fixed) (Total:222.21 GB) (Free:149.09 GB) NTFS
Drive z: (Dokumenty) (Network) (Total:291.36 GB) (Free:74.76 GB) NTFS

Available physical RAM: 1260.13 MB
Total physical RAM: 2358.64 MB
Percentage of memory in use: 46%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: B30ACE63)
Partition 1: (Not Active) - (Size=22 GB) - (Type=12)
Partition 2: (Not Active) - (Size=100 MB) - (Type=1A)
Partition 3: (Active) - (Size=221 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=222 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\AmiUpdXp.job => C:\Documents and Settings\uzivatel\Data aplikací\SwvUpdater\Updater.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job => C:\Program Files\Ask.com\UpdateTask.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: McAfee VirusScan (Disabled - Up to date) {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
AV: ESET NOD32 Antivirus 4.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: McAfee Personal Firewall (Disabled) {94894B63-8C7F-4050-BDA4-813CA00DA3E8}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Documents and Settings\uzivatel\Plocha" je 528 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\\Program Files\\NewTech Infosystems\\NTI Backup Now 5\\BackupSvc.exe"="C:\\Program Files\\NewTech Infosystems\\NTI Backup Now 5\\BackupSvc.exe:*:Enabled:BackupSvc.exe"
"C:\\Program Files\\NewTech Infosystems\\NTI Backup Now 5\\SchedulerSvc.exe"="C:\\Program Files\\NewTech Infosystems\\NTI Backup Now 5\\SchedulerSvc.exe:*:Enabled:SchedulerSvc.exe"
"C:\\Program Files\\Common Files\\soft602\\langserv.exe"="C:\\Program Files\\Common Files\\soft602\\langserv.exe:*:Enabled:Software602 Spell Checker"
"C:\\Program Files\\Acer\\Acer VCM\\VC.exe"="C:\\Program Files\\Acer\\Acer VCM\\VC.exe:*:Enabled:Acer Video Quality Enhancement"
"C:\\Documents and Settings\\uzivatel\\Data aplikac\\Dropbox\\bin\\Dropbox.exe"="C:\\Documents and Settings\\uzivatel\\Data aplikac\\Dropbox\\bin\\Dropbox.exe:*:Enabled:Dropbox"
"C:\\Documents and Settings\\uzivatel\\Data aplikac\\BitTorrent\\BitTorrent.exe"="C:\\Documents and Settings\\uzivatel\\Data aplikac\\BitTorrent\\BitTorrent.exe:*:Enabled:BitTorrent"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP"="139:TCP:*:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:*:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:*:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:*:Enabled:@xpsp2res.dll,-22002"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002"


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119532
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc - jak odebrat BetterSurf

#2 Příspěvek od Rudy »

Zdravím!

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM\...\Run: [] - [x]
HKLM\...\Run: [ApnUpdater] - C:\Program Files\Ask.com\Updater\Updater.exe [1648264 2013-04-25] (Ask)
C:\Program Files\Ask.com
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-09-03] (Google Inc.)
MountPoints2: {25eadaf3-be9d-11e0-b0de-5cac4c81dea0} - F:\AutoRun.exe
MountPoints2: {9123cbae-27cc-11e0-afcc-5cac4c81dea0} - F:\WDSetup.exe
HKU\Administrator\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2010-09-03] (Google Inc.)
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://mixidj.delta-search.com/?q={sear ... AC4C81DEA0
SearchScopes: HKCU - {0FFD3D0C-8C7B-48C7-B0C7-A81317B6D1F2} URL = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=U3&apn_dtid=YYYYYYYYCZ&apn_uid=6B259279-0B24-4A23-8A17-2AC99612639C&apn_sauid=CB7BB300-6A96-4726-8B08-887617AB5BDF
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
FF ProfilePath: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BitGuard.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BrowserProtect.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\vyhledvn-vide-ve-slub-youtube.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF Extension: Ask Toolbar - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\Extensions\toolbar@ask.com
FF Extension: pdfforge - C:\Program Files\Mozilla Firefox\extensions\pdfforge@mybrowserbar.com
FF Extension: wtxpcom - C:\Program Files\Mozilla Firefox\extensions\wtxpcom@mybrowserbar.com
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [xz123@ya456.com] - C:\Program Files\BetterSurf\ff
FF Extension: BetterSurf - C:\Program Files\BetterSurf\ff
FF HKLM\...\Firefox\Extensions: [12x3q@3244516.com] - C:\Program Files\Better-Surf\ff
FF Extension: Better-Surf - C:\Program Files\Better-Surf\ff
R2 Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
C:\Program Files\Better-Surf
C:\Documents and Settings\uzivatel\Local Settings\Temp
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job => C:\Program Files\Ask.com\UpdateTask.exe
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pelo23
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 11 pro 2013 15:54

Re: Prosím o pomoc - jak odebrat BetterSurf

#3 Příspěvek od pelo23 »

Dobrý den,
provedl jsem fix a vyplivlo to tento log

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 17-12-2013 01
Ran by uzivatel at 2013-12-17 11:31:41 Run:1
Running from C:\Documents and Settings\uzivatel\Plocha
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [] - [x]
HKLM\...\Run: [ApnUpdater] - C:\Program Files\Ask.com\Updater\Updater.exe [1648264 2013-04-25] (Ask)
C:\Program Files\Ask.com
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-09-03] (Google Inc.)
MountPoints2: {25eadaf3-be9d-11e0-b0de-5cac4c81dea0} - F:\AutoRun.exe
MountPoints2: {9123cbae-27cc-11e0-afcc-5cac4c81dea0} - F:\WDSetup.exe
HKU\Administrator\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2010-09-03] (Google Inc.)
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://mixidj.delta-search.com/?q={sear ... AC4C81DEA0
SearchScopes: HKCU - {0FFD3D0C-8C7B-48C7-B0C7-A81317B6D1F2} URL = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=U3&apn_dtid=YYYYYYYYCZ&apn_uid=6B259279-0B24-4A23-8A17-2AC99612639C&apn_sauid=CB7BB300-6A96-4726-8B08-887617AB5BDF
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
FF ProfilePath: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BitGuard.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BrowserProtect.xml
FF SearchPlugin: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\vyhledvn-vide-ve-slub-youtube.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF Extension: Ask Toolbar - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\Extensions\toolbar@ask.com
FF Extension: pdfforge - C:\Program Files\Mozilla Firefox\extensions\pdfforge@mybrowserbar.com
FF Extension: wtxpcom - C:\Program Files\Mozilla Firefox\extensions\wtxpcom@mybrowserbar.com
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [xz123@ya456.com] - C:\Program Files\BetterSurf\ff
FF Extension: BetterSurf - C:\Program Files\BetterSurf\ff
FF HKLM\...\Firefox\Extensions: [12x3q@3244516.com] - C:\Program Files\Better-Surf\ff
FF Extension: Better-Surf - C:\Program Files\Better-Surf\ff
R2 Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
C:\Program Files\Better-Surf
C:\Documents and Settings\uzivatel\Local Settings\Temp
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job => C:\Program Files\Ask.com\UpdateTask.exe
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater => Value deleted successfully.
C:\Program Files\Ask.com => Moved successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{25eadaf3-be9d-11e0-b0de-5cac4c81dea0} => Key deleted successfully.
HKCR\CLSID\{25eadaf3-be9d-11e0-b0de-5cac4c81dea0} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9123cbae-27cc-11e0-afcc-5cac4c81dea0} => Key deleted successfully.
HKCR\CLSID\{9123cbae-27cc-11e0-afcc-5cac4c81dea0} => Key not found.
HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0FFD3D0C-8C7B-48C7-B0C7-A81317B6D1F2} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{0FFD3D0C-8C7B-48C7-B0C7-A81317B6D1F2} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7} => Key deleted successfully.
HKCR\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} => Key deleted successfully.
HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} => Key deleted successfully.
HKCR\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402} => Key deleted successfully.
HKCR\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key deleted successfully.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found.
HKCR\PROTOCOLS\Handler\skype-ie-addon-data => Key deleted successfully.
HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key deleted successfully.
C:\Program Files\Ask.com => Should not be moved.
C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\askcom.xml => Moved successfully.
C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\babylon.xml => Moved successfully.
C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BitGuard.xml => Moved successfully.
C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\BrowserProtect.xml => Moved successfully.
C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\searchplugins\vyhledvn-vide-ve-slub-youtube.xml => Moved successfully.
C:\Program Files\mozilla firefox\searchplugins\babylon.xml => Moved successfully.
C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\ip7m8mgh.default\Extensions\toolbar@ask.com => Moved successfully.
C:\Program Files\Mozilla Firefox\extensions\pdfforge@mybrowserbar.com => Moved successfully.
C:\Program Files\Mozilla Firefox\extensions\wtxpcom@mybrowserbar.com => Moved successfully.
C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} => Moved successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\xz123@ya456.com => Value deleted successfully.
C:\Program Files\BetterSurf\ff => Moved successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\12x3q@3244516.com => Value deleted successfully.
C:\Program Files\Better-Surf\ff => Moved successfully.
Skype C2C Service => Service deleted successfully.
C:\Program Files\Better-Surf => Moved successfully.

"C:\Documents and Settings\uzivatel\Local Settings\Temp" directory move:

Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\aipflib.log" => Scheduled to move on reboot.
C:\Documents and Settings\uzivatel\Local Settings\Temp\AIXqtCtO.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\aminsis.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\aoK3RGYq.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\ASPNETSetup_00000.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\ASPNETSetup_00001.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\AUCHECK_PARSER.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\B.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\B0F.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\B3D.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\b854_appcompat.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\ba60_appcompat.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\bbb1_appcompat.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\bCH+AstP.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\BetterSurfPlusInstaller.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\BingBarSetup-Partner.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\btidtemp.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\btidtemp1.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\btidtemp2.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\C.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CBC.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CBF.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\che175D.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\che72.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\cheA2C7.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\clFKXhnO.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR27B6.tmpClipBoar.dbf => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR27B6.tmpClipBoar.DBT => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR27B6.tmpClipBoar.MDX => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR2EE.tmpClipBoar.dbf => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR2EE.tmpClipBoar.DBT => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR2EE.tmpClipBoar.MDX => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR70D.tmpClipBoar.dbf => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR70D.tmpClipBoar.DBT => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CLR70D.tmpClipBoar.MDX => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\CSC1.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Czech.bin => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\D.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\D36.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\D6F.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\D80.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\dd_clwireg.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\dd_wcf_retCA4047.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\dfMdrJ_E.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\DisplaySwitchPerfLog.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\dopis.docx => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\E.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\E2.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\E3.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\E60.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\E93.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\EALU35Ty.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\ed8c_appcompat.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\EE0.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\EGWxJcBR.exe.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\etilqs_8njoETIEgcCEjoN => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\F.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\FFB.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\File-1.PDF => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\File.PDF => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\flaD88.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\FormAsistent.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\FXWUp_jW.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Harazim_Miroslav_2008.pdf => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Hj_M38Wl.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\HPwfbrKA.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Informace potřebné k řeší PÚ-1.doc => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Informace potřebné k řeší PÚ-2.doc => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Informace potřebné k řeší PÚ.doc => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\IpsHfhop.doc.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\IW_yuGCf.jpg.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\JAUReg.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\JavaDeployReg.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\java_install.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\java_install_reg.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\java_install_sp.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\jinstall.cfg => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\jusched.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\KajLRldH.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Kristian Lesný úraz.doc => Moved successfully.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\LManager.log" => Scheduled to move on reboot.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\LMworker.log" => Scheduled to move on reboot.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 2.0-KB2833940_20130710_140512906-Msi0.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 2.0-KB2833940_20130710_140512906.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 2.0-KB2844285_20130710_135911546-Msi0.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 2.0-KB2844285_20130710_135911546.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 3.0-KB2832411_20130710_135839968-Msi0.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 3.0-KB2832411_20130710_135839968.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 3.5-KB2840629_20130710_140723390-Msi0.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft .NET Framework 3.5-KB2840629_20130710_140723390.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20130916_095024406-MSI_vc_red.msi.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20130916_095024406.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20130916_095137640-MSI_vc_red.msi.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20130916_095137640.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\MMDUtl.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\MSI3261a.LOG => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\MSI4c946.LOG => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\MSI5cc9d.LOG => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\MSI78ea0.LOG => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\netfxupdate.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\npd5_yDz.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\O0fDXqqN.PDF.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\objednávka HL Display 1308-01.pdf => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\oy28UqiU.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\pacJpJPp.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\PCULog0.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\PCULog1.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\PCULog2.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\PCULog3.txt => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_2a8.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_804.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_8c4.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_b08.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_b54.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_b8c.dat => Moved successfully.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_cec.dat" => Scheduled to move on reboot.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_e50.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_fb4.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\PZW906Mm.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Q7RVj2ej.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\qoyph2iz.0.cs => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\qoyph2iz.cmdline => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\qoyph2iz.out => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\qSKSh4Ya.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\R3ajWGuU.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\R5F5aAG4.PDF.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Rc8F2MPA.exe.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\RD2CC9.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\RD2D5E.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\RES2.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\restorer1.0.0.1.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Scan0008.pdf => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\setup.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Silverlight0.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\SilverlightMSI.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\SkypeSetup.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\tzhqyWzd.doc.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\tzYjupEZ.pdf.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Ua_5KrLu.doc.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\uC6RIQ52.doc.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Updater.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\users00 => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\utt1676.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Verejne_brusleni.xls => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog00.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog01.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog02.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog03.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog04.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog05.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog06.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog07.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog08.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog09.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\wmplog10.sqm => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\X18QyMRM.xls.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Xl0000000.xls => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Xl0000001.xls => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\ynZfQfpn.PDF.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\yyg7lkjt.0.cs => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\yyg7lkjt.cmdline => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\yyg7lkjt.out => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\_g_MYepx.doc.part => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~3813.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~DF69A5.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~DF94E1.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~DFC46E.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~WRF0001.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~WRF0002.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\~WRF0003.tmp => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\AskPartnerCobrandingTool.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\instApp.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\RunIE.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\{68C76DE2-A51B-432D-92FD-E6C3745791EF}\InstallFlashPlayer.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\__skype_toolbar_v5_logs\html\iexplore.exe.1100.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\__skype_toolbar_v5_logs\html\iexplore.exe.3100.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\__skype_toolbar_v5_logs\html\iexplore.exe.4376.html => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\__skype_toolbar_v5_logs\html\script.js => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Word8.0\MSForms.exd => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\gilasterr.log => Moved successfully.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-j1m4D7cG8rn4JIZCeADY6SST" => Scheduled to move on reboot.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-jgiaaGSmQ5caLtTAsfmvCBGl" => Scheduled to move on reboot.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-lHFmD0NSJlPrjBHjySlTxRra" => Scheduled to move on reboot.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-qGt3YQx2o7sa4Aj6LTBEhUZ7" => Scheduled to move on reboot.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\Cookies => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\Cookies-journal => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\data_0 => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\data_1 => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\data_2 => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\data_3 => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\scoped_dir2244_20524\index => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nsr2A.tmp\babylon.dll => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nsr2A.tmp\InetLoad.dll => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nsr2A.tmp\installutils.dll => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nslAA2.tmp\babylon.dll => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nslAA2.tmp\InetLoad.dll => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nslAA2.tmp\installutils.dll => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nslAA2.tmp\pack.7z => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\nsd1627.tmp\BitTorrent.exe => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\npGarmin\4.0.4.0 Internal\Garmin Communicator Plugin Worker.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\npGarmin\4.0.4.0 Internal\Garmin Communicator Plugin.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-wrapper.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\FormAsistentFree_DataPrg\Defs\nh_07KoopHlasPojUdal2.fdc => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\FormAsistentFree_DataPrg\Defs\nh_07KoopHlasPojUdal2.fde => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\FormAsistentFree_DataPrg\Defs\nh_07KoopHlasPojUdal2.fdr => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\APNLogs\ci.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\APNLogs\iw.log => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\N3MRXQTT\desktop.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\GTGT88FN\desktop.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\71PUIWWO\desktop.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5\4CN8A8VX\desktop.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\History\History.IE5\desktop.ini => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\History\History.IE5\index.dat => Moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\acrord32_sbx\Cookies\index.dat => Moved successfully.
Could not move "C:\Documents and Settings\uzivatel\Local Settings\Temp" directory. => Scheduled to move on reboot.

C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job => Moved successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2013-12-17 11:33:46)<=

"C:\Documents and Settings\uzivatel\Local Settings\Temp\aipflib.log" => File could not move.
"C:\Documents and Settings\uzivatel\Local Settings\Temp\LManager.log" => File could not move.
"C:\Documents and Settings\uzivatel\Local Settings\Temp\LMworker.log" => File could not move.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Perflib_Perfdata_cec.dat => Is moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-j1m4D7cG8rn4JIZCeADY6SST => Is moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-jgiaaGSmQ5caLtTAsfmvCBGl => Is moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-lHFmD0NSJlPrjBHjySlTxRra => Is moved successfully.
C:\Documents and Settings\uzivatel\Local Settings\Temp\Skype\DbTemp\temp-qGt3YQx2o7sa4Aj6LTBEhUZ7 => Is moved successfully.
"C:\Documents and Settings\uzivatel\Local Settings\Temp" => Directory could not move.

==== End of Fixlog ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119532
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc - jak odebrat BetterSurf

#4 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pelo23
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 11 pro 2013 15:54

Re: Prosím o pomoc - jak odebrat BetterSurf

#5 Příspěvek od pelo23 »

Zdá se, že už je vir pryč - nepotrhává slova v prohlížeči a neodkazuje na nějaké neznámé webstránky.
Myslím, že už to bude v pořádku.

Děkuji moc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119532
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc - jak odebrat BetterSurf

#6 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět