přesměrovávání na linkbucks.com - podruhé
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
přesměrovávání na linkbucks.com - podruhé
Mám zase problém, jediná nestandartní operace je že jsem připojil mobilní telefon - android, kvůli nabíjení přes usb
zda se projevilo ihned nebo později nevím
s dovolením postupuji jak minule
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-01-2014 02
Ran by hp-doma (administrator) on HP-DOMA-PC on 26-01-2014 20:41:50
Running from C:\Users\hp-doma\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvCplDaemon] - C:\Windows\system32\NvCpl.dll [16395880 2009-11-28] (NVIDIA Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2096424 2010-05-27] (Synaptics Incorporated)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [2837768 2010-02-26] (ESET)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [HPCam_Menu] - c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [QlbCtrl.exe] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1095000 2013-12-30] (Garmin Ltd or its subsidiaries)
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_170_ActiveX.exe -update activex [531336 2013-12-10] (Adobe Systems Incorporated)
HKU\Katka\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc32.cab
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: HKLM-x32 {BF3CD111-6278-11D2-9EA3-00A0C9251384} http://www.o2c.de/download/O2CPlayer.CAB
Handler: ipp - No CLSID Value -
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp - No CLSID Value -
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{A80D1E02-25E2-4C5D-861A-FA3AD7FC44ED}: [NameServer]8.8.8.8
Chrome:
=======
CHR Extension: (Peněženka Google) - C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx [2013-08-31]
==================== Services (Whitelisted) =================
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42336 2010-02-26] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810120 2010-02-26] (ESET)
R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250712 2013-12-30] (Garmin Ltd or its subsidiaries)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 NitroReaderDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe [341296 2011-06-21] (Nitro PDF Software)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 TVCapSvc; c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe [296360 2009-10-06] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [317328 2011-08-01] (WDC)
S4 WDFMEService; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [1978256 2011-08-01] (Western Digital )
R2 WDRulesService; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [1338256 2011-08-01] (Western Digital )
==================== Drivers (Whitelisted) ====================
R3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163888 2010-02-26] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [139704 2010-02-26] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [169592 2010-02-26] (ESET)
R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [33608 2010-02-26] (ESET)
R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50600 2010-02-26] (ESET)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R3 seehcri; C:\Windows\System32\DRIVERS\seehcri.sys [34032 2010-08-16] (Sony Ericsson Mobile Communications)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
U2 ezSharedSvc;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-26 20:41 - 2014-01-26 20:43 - 00014238 _____ C:\Users\hp-doma\Downloads\FRST.txt
2014-01-26 20:41 - 2014-01-26 20:41 - 02078208 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-26 20:41 - 2014-01-26 20:41 - 00000000 ____D C:\FRST
2014-01-26 20:40 - 2014-01-26 20:40 - 00112640 _____ (forum.viry.cz) C:\Users\hp-doma\Downloads\Nepotvrzeno 172706.crdownload
2014-01-26 13:36 - 2014-01-26 13:36 - 00001888 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2014-01-25 20:34 - 2014-01-26 13:31 - 00000914 _____ C:\Windows\setupact.log
2014-01-25 20:34 - 2014-01-25 20:34 - 00000000 _____ C:\Windows\setuperr.log
2014-01-20 17:42 - 2014-01-21 13:26 - 00000000 ____D C:\Users\hp-doma\Desktop\KATKA
2014-01-15 21:34 - 2014-01-15 22:15 - 00000000 ____D C:\Users\hp-doma\Downloads\5_Interphone
2014-01-15 21:33 - 2014-01-15 21:33 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone (1).zip
2014-01-15 21:31 - 2014-01-15 21:31 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone.zip
2014-01-15 21:28 - 2014-01-15 21:28 - 00002023 _____ C:\Users\hp-doma\Documents\katka.txt
2014-01-15 21:27 - 2014-01-15 21:32 - 00000000 ____D C:\Users\hp-doma\Downloads\5_CellularLine
2014-01-15 21:26 - 2014-01-15 21:26 - 00054088 _____ C:\Users\hp-doma\Downloads\5_CellularLine.zip
2014-01-15 21:26 - 2014-01-15 21:26 - 00017120 _____ C:\Users\hp-doma\Downloads\5_Kitvision.zip
2014-01-15 17:44 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 17:44 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 17:44 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-14 21:39 - 2014-01-14 21:39 - 00233472 _____ C:\Users\hp-doma\Downloads\spolecny_cenik_KMBETA.xls
2014-01-14 14:59 - 2014-01-26 14:59 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForhp-doma.job
2014-01-12 14:09 - 2014-01-12 14:09 - 00000000 ____D C:\Users\hp-doma\Documents\My PSP Files
2014-01-12 13:22 - 2014-01-12 13:22 - 00002776 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-12 13:22 - 2014-01-12 13:22 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-12 13:22 - 2014-01-12 13:22 - 00000000 ____D C:\Program Files\CCleaner
2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe
2014-01-11 09:40 - 2014-01-11 09:40 - 00000000 ____D C:\Users\hp-doma\Desktop\FRST-OlderVersion
2014-01-10 22:33 - 2014-01-10 22:33 - 00015327 _____ C:\Users\hp-doma\Desktop\LM.bat
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 19:08 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-10 18:32 - 2014-01-12 13:01 - 00000000 ____D C:\AdwCleaner
2014-01-09 15:45 - 2014-01-12 13:00 - 00000000 ____D C:\Qoobox
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:08 - 2014-01-08 20:09 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:13 - 2014-01-08 18:14 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:17 - 2014-01-08 09:18 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:50 - 2014-01-07 18:51 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 20:29 - 2014-01-04 20:30 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:27 - 2014-01-04 20:29 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:04 - 2014-01-04 19:06 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:38 - 2014-01-04 17:39 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:22 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
==================== One Month Modified Files and Folders =======
2014-01-26 20:43 - 2014-01-26 20:41 - 00014238 _____ C:\Users\hp-doma\Downloads\FRST.txt
2014-01-26 20:41 - 2014-01-26 20:41 - 02078208 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-26 20:41 - 2014-01-26 20:41 - 00000000 ____D C:\FRST
2014-01-26 20:40 - 2014-01-26 20:40 - 00112640 _____ (forum.viry.cz) C:\Users\hp-doma\Downloads\Nepotvrzeno 172706.crdownload
2014-01-26 14:59 - 2014-01-14 14:59 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForhp-doma.job
2014-01-26 14:59 - 2013-04-01 19:38 - 00003198 _____ C:\Windows\System32\Tasks\HPCeeScheduleForhp-doma
2014-01-26 14:09 - 2012-08-18 15:10 - 00000000 ___RD C:\Users\hp-doma\Desktop\karaoke
2014-01-26 13:40 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-26 13:40 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-26 13:39 - 2011-11-03 11:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Nitro PDF
2014-01-26 13:37 - 2013-05-17 20:59 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-26 13:37 - 2010-01-09 06:55 - 00631526 _____ C:\Windows\system32\perfh005.dat
2014-01-26 13:37 - 2010-01-09 06:55 - 00122148 _____ C:\Windows\system32\perfc005.dat
2014-01-26 13:37 - 2009-07-14 06:13 - 01470298 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-26 13:36 - 2014-01-26 13:36 - 00001888 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2014-01-26 13:36 - 2011-07-29 16:01 - 00000000 ____D C:\ProgramData\Garmin
2014-01-26 13:36 - 2011-07-29 15:56 - 00000000 ____D C:\Program Files (x86)\Garmin
2014-01-26 13:36 - 2010-12-26 20:44 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\GARMIN
2014-01-26 13:36 - 2010-02-05 01:21 - 01869101 _____ C:\Windows\WindowsUpdate.log
2014-01-26 13:31 - 2014-01-25 20:34 - 00000914 _____ C:\Windows\setupact.log
2014-01-26 13:31 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-25 20:34 - 2014-01-25 20:34 - 00000000 _____ C:\Windows\setuperr.log
2014-01-24 23:06 - 2010-04-03 19:54 - 00000000 ____D C:\!!!!DIGIFOTO
2014-01-21 13:26 - 2014-01-20 17:42 - 00000000 ____D C:\Users\hp-doma\Desktop\KATKA
2014-01-20 21:10 - 2010-03-16 20:53 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Skype
2014-01-19 08:33 - 2010-03-15 16:59 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-01-16 21:05 - 2010-12-27 13:02 - 00002380 _____ C:\Users\hp-doma\Desktop\Google Chrome.lnk
2014-01-16 10:55 - 2010-03-15 16:27 - 00102320 _____ C:\Users\hp-doma\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-16 10:48 - 2009-07-14 06:08 - 00032600 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-16 10:48 - 2009-07-14 05:45 - 00398576 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-15 23:13 - 2013-07-18 08:04 - 00000000 ____D C:\Windows\system32\MRT
2014-01-15 23:10 - 2010-03-27 17:49 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-15 22:15 - 2014-01-15 21:34 - 00000000 ____D C:\Users\hp-doma\Downloads\5_Interphone
2014-01-15 21:33 - 2014-01-15 21:33 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone (1).zip
2014-01-15 21:32 - 2014-01-15 21:27 - 00000000 ____D C:\Users\hp-doma\Downloads\5_CellularLine
2014-01-15 21:31 - 2014-01-15 21:31 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone.zip
2014-01-15 21:28 - 2014-01-15 21:28 - 00002023 _____ C:\Users\hp-doma\Documents\katka.txt
2014-01-15 21:26 - 2014-01-15 21:26 - 00054088 _____ C:\Users\hp-doma\Downloads\5_CellularLine.zip
2014-01-15 21:26 - 2014-01-15 21:26 - 00017120 _____ C:\Users\hp-doma\Downloads\5_Kitvision.zip
2014-01-14 21:59 - 2010-04-13 17:14 - 00002004 ____H C:\Users\hp-doma\Documents\Default.rdp
2014-01-14 21:59 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2014-01-14 21:39 - 2014-01-14 21:39 - 00233472 _____ C:\Users\hp-doma\Downloads\spolecny_cenik_KMBETA.xls
2014-01-12 17:01 - 2010-08-16 17:57 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony Ericsson
2014-01-12 17:01 - 2010-08-16 17:43 - 00000000 ____D C:\Program Files (x86)\Sony Ericsson
2014-01-12 17:00 - 2011-10-09 12:04 - 00000000 ____D C:\Users\hp-doma\Documents\Room Arranger
2014-01-12 16:57 - 2010-08-16 17:43 - 00000000 ____D C:\ProgramData\Sony Ericsson
2014-01-12 16:57 - 2010-01-08 22:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-12 16:35 - 2012-10-28 16:14 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hry.cz
2014-01-12 16:35 - 2012-10-28 16:14 - 00000000 ____D C:\Program Files (x86)\Hry.cz
2014-01-12 16:20 - 2010-01-08 22:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-12 16:19 - 2010-01-08 22:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2014-01-12 16:19 - 2010-01-08 22:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2014-01-12 16:16 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2014-01-12 16:02 - 2010-03-16 19:52 - 00000013 _____ C:\Windows\vbaddin.ini
2014-01-12 16:02 - 2009-07-14 04:20 - 00000000 __RSD C:\Windows\Media
2014-01-12 14:11 - 2010-03-25 19:42 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Corel
2014-01-12 14:11 - 2010-02-05 01:31 - 00000000 ____D C:\Program Files (x86)\Corel
2014-01-12 14:11 - 2010-01-08 23:05 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\Setup
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\oobe
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\MUI
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\com
2014-01-12 14:09 - 2014-01-12 14:09 - 00000000 ____D C:\Users\hp-doma\Documents\My PSP Files
2014-01-12 13:22 - 2014-01-12 13:22 - 00002776 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-12 13:22 - 2014-01-12 13:22 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-12 13:22 - 2014-01-12 13:22 - 00000000 ____D C:\Program Files\CCleaner
2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe
2014-01-12 13:01 - 2014-01-10 18:32 - 00000000 ____D C:\AdwCleaner
2014-01-12 13:01 - 2010-03-15 16:23 - 00000000 ____D C:\Users\hp-doma
2014-01-12 13:00 - 2014-01-09 15:45 - 00000000 ____D C:\Qoobox
2014-01-11 09:40 - 2014-01-11 09:40 - 00000000 ____D C:\Users\hp-doma\Desktop\FRST-OlderVersion
2014-01-11 09:40 - 2013-07-07 18:47 - 00000000 ____D C:\Users\hp-doma\AppData\Local\CRE
2014-01-10 22:33 - 2014-01-10 22:33 - 00015327 _____ C:\Users\hp-doma\Desktop\LM.bat
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 18:37 - 2013-10-15 19:03 - 00000601 _____ C:\Users\hp-doma\Desktop\Search.lnk
2014-01-10 18:37 - 2013-10-09 18:43 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-01-10 17:30 - 2012-10-05 21:16 - 00000000 ____D C:\Firefox
2014-01-10 17:27 - 2011-10-28 17:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Winamp
2014-01-10 17:26 - 2009-09-07 02:57 - 00000000 ____D C:\Windows\Panther
2014-01-09 17:46 - 2010-03-25 19:42 - 00000000 ____D C:\Users\Administrator
2014-01-09 17:46 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2014-01-09 17:41 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2014-01-09 16:00 - 2009-07-14 03:34 - 82051072 _____ C:\Windows\system32\config\software.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 25427968 _____ C:\Windows\system32\config\system.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00524288 _____ C:\Windows\system32\config\default.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\security.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\sam.bak
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 21:06 - 2010-10-27 08:50 - 00000000 ____D C:\Windows\Minidump
2014-01-04 20:30 - 2014-01-04 20:29 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:29 - 2014-01-04 20:27 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:07 - 2013-10-21 20:10 - 00000000 ____D C:\Games
2014-01-04 19:06 - 2014-01-04 19:04 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:39 - 2014-01-04 17:38 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:23 - 2014-01-02 21:22 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
2013-12-28 10:09 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
Some content of TEMP:
====================
C:\Users\hp-doma\AppData\Local\Temp\tmpC189.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-19 10:37
==================== End Of Log ============================
zda se projevilo ihned nebo později nevím
s dovolením postupuji jak minule
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-01-2014 02
Ran by hp-doma (administrator) on HP-DOMA-PC on 26-01-2014 20:41:50
Running from C:\Users\hp-doma\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvCplDaemon] - C:\Windows\system32\NvCpl.dll [16395880 2009-11-28] (NVIDIA Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2096424 2010-05-27] (Synaptics Incorporated)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [2837768 2010-02-26] (ESET)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [HPCam_Menu] - c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [QlbCtrl.exe] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1095000 2013-12-30] (Garmin Ltd or its subsidiaries)
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_170_ActiveX.exe -update activex [531336 2013-12-10] (Adobe Systems Incorporated)
HKU\Katka\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc32.cab
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: HKLM-x32 {BF3CD111-6278-11D2-9EA3-00A0C9251384} http://www.o2c.de/download/O2CPlayer.CAB
Handler: ipp - No CLSID Value -
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp - No CLSID Value -
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{A80D1E02-25E2-4C5D-861A-FA3AD7FC44ED}: [NameServer]8.8.8.8
Chrome:
=======
CHR Extension: (Peněženka Google) - C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx [2013-08-31]
==================== Services (Whitelisted) =================
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42336 2010-02-26] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810120 2010-02-26] (ESET)
R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250712 2013-12-30] (Garmin Ltd or its subsidiaries)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 NitroReaderDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe [341296 2011-06-21] (Nitro PDF Software)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 TVCapSvc; c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe [296360 2009-10-06] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [317328 2011-08-01] (WDC)
S4 WDFMEService; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [1978256 2011-08-01] (Western Digital )
R2 WDRulesService; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [1338256 2011-08-01] (Western Digital )
==================== Drivers (Whitelisted) ====================
R3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163888 2010-02-26] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [139704 2010-02-26] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [169592 2010-02-26] (ESET)
R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [33608 2010-02-26] (ESET)
R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50600 2010-02-26] (ESET)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R3 seehcri; C:\Windows\System32\DRIVERS\seehcri.sys [34032 2010-08-16] (Sony Ericsson Mobile Communications)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
U2 ezSharedSvc;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-26 20:41 - 2014-01-26 20:43 - 00014238 _____ C:\Users\hp-doma\Downloads\FRST.txt
2014-01-26 20:41 - 2014-01-26 20:41 - 02078208 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-26 20:41 - 2014-01-26 20:41 - 00000000 ____D C:\FRST
2014-01-26 20:40 - 2014-01-26 20:40 - 00112640 _____ (forum.viry.cz) C:\Users\hp-doma\Downloads\Nepotvrzeno 172706.crdownload
2014-01-26 13:36 - 2014-01-26 13:36 - 00001888 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2014-01-25 20:34 - 2014-01-26 13:31 - 00000914 _____ C:\Windows\setupact.log
2014-01-25 20:34 - 2014-01-25 20:34 - 00000000 _____ C:\Windows\setuperr.log
2014-01-20 17:42 - 2014-01-21 13:26 - 00000000 ____D C:\Users\hp-doma\Desktop\KATKA
2014-01-15 21:34 - 2014-01-15 22:15 - 00000000 ____D C:\Users\hp-doma\Downloads\5_Interphone
2014-01-15 21:33 - 2014-01-15 21:33 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone (1).zip
2014-01-15 21:31 - 2014-01-15 21:31 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone.zip
2014-01-15 21:28 - 2014-01-15 21:28 - 00002023 _____ C:\Users\hp-doma\Documents\katka.txt
2014-01-15 21:27 - 2014-01-15 21:32 - 00000000 ____D C:\Users\hp-doma\Downloads\5_CellularLine
2014-01-15 21:26 - 2014-01-15 21:26 - 00054088 _____ C:\Users\hp-doma\Downloads\5_CellularLine.zip
2014-01-15 21:26 - 2014-01-15 21:26 - 00017120 _____ C:\Users\hp-doma\Downloads\5_Kitvision.zip
2014-01-15 17:44 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 17:44 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 17:44 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 17:44 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-14 21:39 - 2014-01-14 21:39 - 00233472 _____ C:\Users\hp-doma\Downloads\spolecny_cenik_KMBETA.xls
2014-01-14 14:59 - 2014-01-26 14:59 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForhp-doma.job
2014-01-12 14:09 - 2014-01-12 14:09 - 00000000 ____D C:\Users\hp-doma\Documents\My PSP Files
2014-01-12 13:22 - 2014-01-12 13:22 - 00002776 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-12 13:22 - 2014-01-12 13:22 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-12 13:22 - 2014-01-12 13:22 - 00000000 ____D C:\Program Files\CCleaner
2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe
2014-01-11 09:40 - 2014-01-11 09:40 - 00000000 ____D C:\Users\hp-doma\Desktop\FRST-OlderVersion
2014-01-10 22:33 - 2014-01-10 22:33 - 00015327 _____ C:\Users\hp-doma\Desktop\LM.bat
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 19:08 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-10 18:32 - 2014-01-12 13:01 - 00000000 ____D C:\AdwCleaner
2014-01-09 15:45 - 2014-01-12 13:00 - 00000000 ____D C:\Qoobox
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:08 - 2014-01-08 20:09 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:13 - 2014-01-08 18:14 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:17 - 2014-01-08 09:18 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:50 - 2014-01-07 18:51 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 20:29 - 2014-01-04 20:30 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:27 - 2014-01-04 20:29 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:04 - 2014-01-04 19:06 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:38 - 2014-01-04 17:39 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:22 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
==================== One Month Modified Files and Folders =======
2014-01-26 20:43 - 2014-01-26 20:41 - 00014238 _____ C:\Users\hp-doma\Downloads\FRST.txt
2014-01-26 20:41 - 2014-01-26 20:41 - 02078208 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-26 20:41 - 2014-01-26 20:41 - 00000000 ____D C:\FRST
2014-01-26 20:40 - 2014-01-26 20:40 - 00112640 _____ (forum.viry.cz) C:\Users\hp-doma\Downloads\Nepotvrzeno 172706.crdownload
2014-01-26 14:59 - 2014-01-14 14:59 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForhp-doma.job
2014-01-26 14:59 - 2013-04-01 19:38 - 00003198 _____ C:\Windows\System32\Tasks\HPCeeScheduleForhp-doma
2014-01-26 14:09 - 2012-08-18 15:10 - 00000000 ___RD C:\Users\hp-doma\Desktop\karaoke
2014-01-26 13:40 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-26 13:40 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-26 13:39 - 2011-11-03 11:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Nitro PDF
2014-01-26 13:37 - 2013-05-17 20:59 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-26 13:37 - 2010-01-09 06:55 - 00631526 _____ C:\Windows\system32\perfh005.dat
2014-01-26 13:37 - 2010-01-09 06:55 - 00122148 _____ C:\Windows\system32\perfc005.dat
2014-01-26 13:37 - 2009-07-14 06:13 - 01470298 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-26 13:36 - 2014-01-26 13:36 - 00001888 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2014-01-26 13:36 - 2011-07-29 16:01 - 00000000 ____D C:\ProgramData\Garmin
2014-01-26 13:36 - 2011-07-29 15:56 - 00000000 ____D C:\Program Files (x86)\Garmin
2014-01-26 13:36 - 2010-12-26 20:44 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\GARMIN
2014-01-26 13:36 - 2010-02-05 01:21 - 01869101 _____ C:\Windows\WindowsUpdate.log
2014-01-26 13:31 - 2014-01-25 20:34 - 00000914 _____ C:\Windows\setupact.log
2014-01-26 13:31 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-25 20:34 - 2014-01-25 20:34 - 00000000 _____ C:\Windows\setuperr.log
2014-01-24 23:06 - 2010-04-03 19:54 - 00000000 ____D C:\!!!!DIGIFOTO
2014-01-21 13:26 - 2014-01-20 17:42 - 00000000 ____D C:\Users\hp-doma\Desktop\KATKA
2014-01-20 21:10 - 2010-03-16 20:53 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Skype
2014-01-19 08:33 - 2010-03-15 16:59 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-01-16 21:05 - 2010-12-27 13:02 - 00002380 _____ C:\Users\hp-doma\Desktop\Google Chrome.lnk
2014-01-16 10:55 - 2010-03-15 16:27 - 00102320 _____ C:\Users\hp-doma\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-16 10:48 - 2009-07-14 06:08 - 00032600 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-16 10:48 - 2009-07-14 05:45 - 00398576 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-15 23:13 - 2013-07-18 08:04 - 00000000 ____D C:\Windows\system32\MRT
2014-01-15 23:10 - 2010-03-27 17:49 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-15 22:15 - 2014-01-15 21:34 - 00000000 ____D C:\Users\hp-doma\Downloads\5_Interphone
2014-01-15 21:33 - 2014-01-15 21:33 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone (1).zip
2014-01-15 21:32 - 2014-01-15 21:27 - 00000000 ____D C:\Users\hp-doma\Downloads\5_CellularLine
2014-01-15 21:31 - 2014-01-15 21:31 - 00025024 _____ C:\Users\hp-doma\Downloads\5_Interphone.zip
2014-01-15 21:28 - 2014-01-15 21:28 - 00002023 _____ C:\Users\hp-doma\Documents\katka.txt
2014-01-15 21:26 - 2014-01-15 21:26 - 00054088 _____ C:\Users\hp-doma\Downloads\5_CellularLine.zip
2014-01-15 21:26 - 2014-01-15 21:26 - 00017120 _____ C:\Users\hp-doma\Downloads\5_Kitvision.zip
2014-01-14 21:59 - 2010-04-13 17:14 - 00002004 ____H C:\Users\hp-doma\Documents\Default.rdp
2014-01-14 21:59 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2014-01-14 21:39 - 2014-01-14 21:39 - 00233472 _____ C:\Users\hp-doma\Downloads\spolecny_cenik_KMBETA.xls
2014-01-12 17:01 - 2010-08-16 17:57 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony Ericsson
2014-01-12 17:01 - 2010-08-16 17:43 - 00000000 ____D C:\Program Files (x86)\Sony Ericsson
2014-01-12 17:00 - 2011-10-09 12:04 - 00000000 ____D C:\Users\hp-doma\Documents\Room Arranger
2014-01-12 16:57 - 2010-08-16 17:43 - 00000000 ____D C:\ProgramData\Sony Ericsson
2014-01-12 16:57 - 2010-01-08 22:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-12 16:35 - 2012-10-28 16:14 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hry.cz
2014-01-12 16:35 - 2012-10-28 16:14 - 00000000 ____D C:\Program Files (x86)\Hry.cz
2014-01-12 16:20 - 2010-01-08 22:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-12 16:19 - 2010-01-08 22:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2014-01-12 16:19 - 2010-01-08 22:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2014-01-12 16:16 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2014-01-12 16:02 - 2010-03-16 19:52 - 00000013 _____ C:\Windows\vbaddin.ini
2014-01-12 16:02 - 2009-07-14 04:20 - 00000000 __RSD C:\Windows\Media
2014-01-12 14:11 - 2010-03-25 19:42 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Corel
2014-01-12 14:11 - 2010-02-05 01:31 - 00000000 ____D C:\Program Files (x86)\Corel
2014-01-12 14:11 - 2010-01-08 23:05 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\Setup
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\oobe
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\MUI
2014-01-12 14:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\com
2014-01-12 14:09 - 2014-01-12 14:09 - 00000000 ____D C:\Users\hp-doma\Documents\My PSP Files
2014-01-12 13:22 - 2014-01-12 13:22 - 00002776 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-12 13:22 - 2014-01-12 13:22 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-12 13:22 - 2014-01-12 13:22 - 00000000 ____D C:\Program Files\CCleaner
2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe
2014-01-12 13:01 - 2014-01-10 18:32 - 00000000 ____D C:\AdwCleaner
2014-01-12 13:01 - 2010-03-15 16:23 - 00000000 ____D C:\Users\hp-doma
2014-01-12 13:00 - 2014-01-09 15:45 - 00000000 ____D C:\Qoobox
2014-01-11 09:40 - 2014-01-11 09:40 - 00000000 ____D C:\Users\hp-doma\Desktop\FRST-OlderVersion
2014-01-11 09:40 - 2013-07-07 18:47 - 00000000 ____D C:\Users\hp-doma\AppData\Local\CRE
2014-01-10 22:33 - 2014-01-10 22:33 - 00015327 _____ C:\Users\hp-doma\Desktop\LM.bat
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 18:37 - 2013-10-15 19:03 - 00000601 _____ C:\Users\hp-doma\Desktop\Search.lnk
2014-01-10 18:37 - 2013-10-09 18:43 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-01-10 17:30 - 2012-10-05 21:16 - 00000000 ____D C:\Firefox
2014-01-10 17:27 - 2011-10-28 17:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Winamp
2014-01-10 17:26 - 2009-09-07 02:57 - 00000000 ____D C:\Windows\Panther
2014-01-09 17:46 - 2010-03-25 19:42 - 00000000 ____D C:\Users\Administrator
2014-01-09 17:46 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2014-01-09 17:41 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2014-01-09 16:00 - 2009-07-14 03:34 - 82051072 _____ C:\Windows\system32\config\software.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 25427968 _____ C:\Windows\system32\config\system.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00524288 _____ C:\Windows\system32\config\default.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\security.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\sam.bak
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 21:06 - 2010-10-27 08:50 - 00000000 ____D C:\Windows\Minidump
2014-01-04 20:30 - 2014-01-04 20:29 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:29 - 2014-01-04 20:27 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:07 - 2013-10-21 20:10 - 00000000 ____D C:\Games
2014-01-04 19:06 - 2014-01-04 19:04 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:39 - 2014-01-04 17:38 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:23 - 2014-01-02 21:22 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
2013-12-28 10:09 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
Some content of TEMP:
====================
C:\Users\hp-doma\AppData\Local\Temp\tmpC189.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-19 10:37
==================== End Of Log ============================
Re: přesměrovávání na linkbucks.com - podruhé
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2014 02
Ran by hp-doma at 2014-01-26 20:44:45
Running from C:\Users\hp-doma\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AV: ESET Smart Security 4.2 (Enabled - Up to date) {CB0F8167-5331-BA19-698E-64816B6801A5}
AS: ESET Smart Security 4.2 (Enabled - Up to date) {706E6083-750B-B597-533E-5FF310EF4B18}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
FW: ESET personal firewall (Enabled) {F3340042-195E-BB41-42D1-CDB495BB46DE}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader 9.4.7 - Czech (x32 Version: 9.4.7 - Adobe Systems Incorporated)
Adobe Shockwave Player (x32 Version: 11.5.1.601 - Adobe Systems, Inc.)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.615 - Adobe Systems, Inc.)
Apple Application Support (x32 Version: 2.3.4 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Asistent pro přihlášení ke službě Windows Live (x32 Version: 5.000.818.5 - Microsoft Corporation)
aTube Catcher (x32 Version: 2.9.1462 - DsNET Corp)
Avanquest update (x32 Version: 1.25 - Avanquest Software)
AVerMedia TV Tuner Card 1.0.0.4 (x32 Version: 1.0.0.4 - AVerMedia TECHNOLOGIES, Inc.)
Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.18.41 - Broadcom Corporation)
CCleaner (Version: 4.09 - Piriform)
Corel VideoStudio 12 (x32 Version: 12.0.0.0000 - Corel Corporation)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.) Hidden
DigitalPersona Personal 4.11 (Version: 4.11.3826 - DigitalPersona, Inc.)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) Hidden
Elevated Installer (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries) Hidden
ENE CIR Receiver Driver (Version: 2.7.4.0 - ENE)
ESET Smart Security (Version: 4.2.35.3 - ESET, spol. s r.o.)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0 - Hewlett-Packard)
Facebook Video Calling 2.0.0.447 (x32 Version: 2.0.447 - Skype Limited)
Free MP3 Cutter 1.01 (x32 Version: - PolySoft Solutions)
Garmin Communicator Plugin (x32 Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.1 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin USB Drivers (x32 Version: 2.3.0.0 - Garmin Ltd or its subsidiaries)
Google Earth (x32 Version: 7.1.2.2041 - Google)
Google Chrome (HKCU Version: 32.0.1700.76 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (Version: 4.0.3.1 - Hewlett-Packard)
HP Advisor (x32 Version: 3.3.9512.3162 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Games (x32 Version: 1.0.0.71 - WildTangent)
HP Integrated Module with Bluetooth wireless technology (Version: 6.2.1.500 - Broadcom Corporation)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard) Hidden
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard)
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard) Hidden
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard)
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard) Hidden
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard) Hidden
HP MediaSmart SmartMenu (Version: 3.1.0.1 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard) Hidden
HP Quick Launch Buttons (x32 Version: 6.50.7.1 - Hewlett-Packard)
HP Setup (x32 Version: 1.2.3560.3170 - Hewlett-Packard)
HP Support Assistant (x32 Version: 7.0.39.15 - Hewlett-Packard Company)
HP Update (x32 Version: 5.001.000.014 - Hewlett-Packard)
HP User Guides 0153 (x32 Version: 1.01.0000 - Hewlett-Packard)
HP Wireless Assistant (x32 Version: 3.50.9.1 - Hewlett-Packard)
IDT Audio (x32 Version: 1.0.6249.0 - IDT)
Intel® Matrix Storage Manager (Version: - Intel Corporation)
IrfanView (remove only) (x32 Version: - )
Java 7 Update 7 (x32 Version: 7.0.70 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 15 (64-bit) (Version: 6.0.150 - Sun Microsystems, Inc.)
Java(TM) 6 Update 37 (x32 Version: 6.0.370 - Oracle)
Java(TM) SE Development Kit 6 Update 15 (64-bit) (Version: 1.6.0.150 - Sun Microsystems, Inc.)
JMicron Flash Media Controller Driver (x32 Version: 1.0.32.1 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Kryštofova dobrodružství CZ (x32 Version: 1.0.0 - Taktik)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.) Hidden
LightScribe System Software (x32 Version: 1.18.8.1 - LightScribe)
Magic Desktop (x32 Version: - EasyBits Software AS)
Malwarebytes Anti-Malware verze 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (x32 Version: 2.9 - Microsoft Corporation)
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (x32 Version: 08.05.0822 - Microsoft Corporation)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard) Hidden
Mozilla Maintenance Service (x32 Version: 17.0.6 - Mozilla)
Mozilla Thunderbird 17.0.6 (x86 cs) (x32 Version: 17.0.6 - Mozilla)
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation)
Nástroj pro odesílání služby Windows Live (x32 Version: 14.0.8014.1029 - Microsoft Corporation)
Nero BurnLite 10 (x32 Version: 10.0.10500.5.100 - Nero AG)
Nero BurnLite 10 (x32 Version: 10.0.10600 - Nero AG)
Nero Control Center 10 (x32 Version: 10.0.13100.3.1 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 1.0.10700 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.15100.0.1 - Nero AG) Hidden
Nero Update (x32 Version: 1.0.0018 - Nero AG)
Nitro PDF Reader 2 (Version: 2.0.0.29 - Nitro PDF Software)
NVIDIA Drivers (Version: 1.9 - NVIDIA Corporation)
OpenOffice.org 3.4 (x32 Version: 3.4.9590 - OpenOffice.org)
Opera 11.00 (x32 Version: 11.00 - Opera Software ASA)
Plants vs. Zombies (x32 Version: - PopCap Games)
Plants vs. Zombies 1.0.0.1051 (x32 Version: - )
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.)
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.) Hidden
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.)
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.) Hidden
QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
Realtek Ethernet Controller Driver For Windows Vista and Later (x32 Version: 1.00.0010 - Realtek)
Recovery Manager (x32 Version: 5.5.2214 - CyberLink Corp.) Hidden
Skype™ 6.3 (x32 Version: 6.3.107 - Skype Technologies S.A.)
Sweet Home 3D (HKCU Version: - eTeks)
Synaptics Pointing Device Driver (Version: 15.0.17.4 - Synaptics Incorporated)
TeamViewer 7 (x32 Version: 7.0.17271 - TeamViewer)
Total Commander (Remove or Repair) (x32 Version: 7.50a - Ghisler Software GmbH)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation)
Validity Sensors DDK (Version: 3.1.366 - Validity Sensors, Inc.)
vanBasco's Karaoke Player (x32 Version: - )
Veselé Omalovánky 1 - malování pro děti (x32 Version: - Martin Roubec)
Video Viewer (x32 Version: 0.1.3.0 - )
VideoStudio (x32 Version: 12.0.0.0000 - Corel Corporation) Hidden
WD SmartWare (Version: 1.5.1 - Western Digital)
Winamp (x32 Version: 5.622 - Nullsoft, Inc)
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (Version: 06/15/2009 6.2.0.9000 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (Version: 06/03/2009 2.3.0.0 - Garmin)
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Media Encoder 9 Series (x32 Version: - )
Windows Media Encoder 9 Series (x32 Version: 9.00.2980 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0 - win.rar GmbH)
Zoner Photo Studio 11 (x32 Version: - ZONER software)
==================== Restore Points =========================
15-01-2014 22:09:23 Windows Update
20-01-2014 11:22:15 Windows Update
24-01-2014 04:23:04 Windows Update
26-01-2014 12:33:54 Garmin Express
26-01-2014 12:36:59 Garmin Express
==================== Hosts content: ==========================
2009-07-14 03:34 - 2014-01-11 09:40 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0B093606-56E7-4B08-99D1-4837D1C03538} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: {190762B5-7497-4B4B-A9D5-D572539406FD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {27A139B9-5237-474E-8268-BEA322F1336C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {2C933AB2-81B0-44EF-9243-957B14EE9700} - System32\Tasks\CLMLSvc => c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-10-05] (CyberLink)
Task: {2D59F92A-AEF3-4F0F-AD8D-A3BBEAE09CDE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {4A73C7A7-6C9F-488F-80E9-580EF5461327} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
Task: {67FCE5FC-0F7B-4679-8F82-B1F436511C6A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {6AB3C148-2CC7-4062-B736-32E7841055EA} - System32\Tasks\{D1BFB819-2173-4D26-B29C-43ABE6720B9F} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-04-19] (Skype Technologies S.A.)
Task: {6B157214-FFCC-4B95-9841-520EB60303E9} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {6F5F9E9F-7E5D-4E20-949A-939A59484439} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {70F195D6-CAB9-4F52-9D90-E95746330699} - System32\Tasks\TVAgent => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [2009-10-06] (CyberLink Corp.)
Task: {783CB638-6F4C-4C22-B908-BC1986BC3B7F} - System32\Tasks\{4054CB77-FB75-48E2-A88E-190BB9F228A3} => C:\Users\hp-doma\Downloads\ThunderbirdSetup15.0.1.exe [2012-09-19] (Mozilla)
Task: {83CA772B-EDBC-4FDF-AC72-065D4DA34CBA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {8CA1ACED-556A-4B12-8430-C8EB0828CC57} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company)
Task: {8F05E3C5-78EB-4933-A118-034FB8D09DB1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {C4C28B3D-5796-42D3-9AE4-E8FCE6C76672} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {C9EF8C2F-B2D4-4303-ADCA-CDFE5F5D9131} - System32\Tasks\CapSvcInst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [2009-10-06] (CL)
Task: {D8A4E887-1F8B-400D-8601-D4F5C6AC1FBA} - System32\Tasks\HPCeeScheduleForhp-doma => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {DB91DCD9-D4B9-48E3-AC29-8686DD18A3A6} - System32\Tasks\CapUninst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [2009-10-06] (CL)
Task: {EF2C7F7F-7095-4973-8F06-7545CAB61E29} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {F6C05155-0739-400F-BC64-B87CF3DF5A8C} - System32\Tasks\CapSchedInst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [2009-10-06] (CL)
Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2009-10-06 22:57 - 2009-10-06 22:57 - 00279976 ____N () c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLCapEngine.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2009-10-05 23:08 - 2009-10-05 23:08 - 00931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
2014-01-16 21:05 - 2014-01-11 11:28 - 00715544 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\libglesv2.dll
2014-01-16 21:05 - 2014-01-11 11:28 - 00100120 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\libegl.dll
2014-01-16 21:05 - 2014-01-11 11:29 - 04055320 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\pdf.dll
2014-01-16 21:05 - 2014-01-11 11:29 - 00399640 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\ppGoogleNaClPluginChrome.dll
2014-01-16 21:05 - 2014-01-11 11:28 - 01634584 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll
2014-01-16 21:05 - 2014-01-11 11:29 - 13615896 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Objekt indexování nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Modul plug-in v <Search.JetPropStore> nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Služba Windows Search nenačetla informace o úložišti vlastností.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800) (0xc0041800)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Vyhledávací služby zjistila, že index {id=4700} obsahuje poškozené datové soubory. Služba se pokusí tyto potíže automaticky odstranit vytvořením nového indexu.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Služba Windows Search neotevřela úložiště vlastností databázového stroje Jet.
Podrobnosti:
0x%08x (0xc0041800 - Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800))
Error: (01/26/2014 01:32:39 PM) (Source: ESENT) (User: )
Description: Windows (4620) Windows: Při otevírání souboru protokolu C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0078B.log došlo k chybě -1811.
System errors:
=============
Error: (01/26/2014 01:33:08 PM) (Source: Service Control Manager) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.
Error: (01/26/2014 01:33:08 PM) (Source: Service Control Manager) (User: )
Description: Služba Windows Search ukončena s chybou %%-1073473535, specifickou pro službu.
Error: (01/26/2014 01:31:39 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (13:29:57, 26.1.2014) bylo neočekávané.
Error: (01/26/2014 01:29:06 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (13:24:54, 26.1.2014) bylo neočekávané.
Error: (01/25/2014 08:56:22 AM) (Source: Disk) (User: )
Description: Zařízení \Device\Harddisk1\DR4 ještě není připraveno pro přístup.
Error: (01/22/2014 07:16:09 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (19:13:41, 22.1.2014) bylo neočekávané.
Error: (01/22/2014 07:13:48 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby PlugPlay bylo dosaženo časového limitu (30000 ms).
Error: (01/22/2014 07:13:42 PM) (Source: Service Control Manager) (User: )
Description: Služba ESET Service přestala během spouštění reagovat.
Error: (01/22/2014 07:13:18 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby MMCSS bylo dosaženo časového limitu (30000 ms).
Error: (01/22/2014 07:12:48 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby MBAMService bylo dosaženo časového limitu (30000 ms).
Microsoft Office Sessions:
=========================
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)
Search.TripoliIndexer
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Search.JetPropStore
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800) (0xc0041800)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
The catalog is corrupt
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
4700
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
0x%08x (0xc0041800 - Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800))
Error: (01/26/2014 01:32:39 PM) (Source: ESENT)(User: )
Description: Windows4620Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0078B.log-1811
CodeIntegrity Errors:
===================================
Date: 2014-01-09 15:58:33.157
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-01-09 15:58:32.907
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Percentage of memory in use: 52%
Total physical RAM: 4022.87 MB
Available physical RAM: 1904.04 MB
Total Pagefile: 8043.91 MB
Available Pagefile: 5404.72 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:448.39 GB) (Free:179.93 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:17.08 GB) (Free:2.77 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: A47F08C4)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=448 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
==================== End Of Log ============================
Ran by hp-doma at 2014-01-26 20:44:45
Running from C:\Users\hp-doma\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AV: ESET Smart Security 4.2 (Enabled - Up to date) {CB0F8167-5331-BA19-698E-64816B6801A5}
AS: ESET Smart Security 4.2 (Enabled - Up to date) {706E6083-750B-B597-533E-5FF310EF4B18}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
FW: ESET personal firewall (Enabled) {F3340042-195E-BB41-42D1-CDB495BB46DE}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader 9.4.7 - Czech (x32 Version: 9.4.7 - Adobe Systems Incorporated)
Adobe Shockwave Player (x32 Version: 11.5.1.601 - Adobe Systems, Inc.)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.615 - Adobe Systems, Inc.)
Apple Application Support (x32 Version: 2.3.4 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Asistent pro přihlášení ke službě Windows Live (x32 Version: 5.000.818.5 - Microsoft Corporation)
aTube Catcher (x32 Version: 2.9.1462 - DsNET Corp)
Avanquest update (x32 Version: 1.25 - Avanquest Software)
AVerMedia TV Tuner Card 1.0.0.4 (x32 Version: 1.0.0.4 - AVerMedia TECHNOLOGIES, Inc.)
Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.18.41 - Broadcom Corporation)
CCleaner (Version: 4.09 - Piriform)
Corel VideoStudio 12 (x32 Version: 12.0.0.0000 - Corel Corporation)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.) Hidden
DigitalPersona Personal 4.11 (Version: 4.11.3826 - DigitalPersona, Inc.)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) Hidden
Elevated Installer (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries) Hidden
ENE CIR Receiver Driver (Version: 2.7.4.0 - ENE)
ESET Smart Security (Version: 4.2.35.3 - ESET, spol. s r.o.)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0 - Hewlett-Packard)
Facebook Video Calling 2.0.0.447 (x32 Version: 2.0.447 - Skype Limited)
Free MP3 Cutter 1.01 (x32 Version: - PolySoft Solutions)
Garmin Communicator Plugin (x32 Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.1 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 2.3.18.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin USB Drivers (x32 Version: 2.3.0.0 - Garmin Ltd or its subsidiaries)
Google Earth (x32 Version: 7.1.2.2041 - Google)
Google Chrome (HKCU Version: 32.0.1700.76 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (Version: 4.0.3.1 - Hewlett-Packard)
HP Advisor (x32 Version: 3.3.9512.3162 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Games (x32 Version: 1.0.0.71 - WildTangent)
HP Integrated Module with Bluetooth wireless technology (Version: 6.2.1.500 - Broadcom Corporation)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard) Hidden
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard)
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard) Hidden
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard)
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard) Hidden
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard) Hidden
HP MediaSmart SmartMenu (Version: 3.1.0.1 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard) Hidden
HP Quick Launch Buttons (x32 Version: 6.50.7.1 - Hewlett-Packard)
HP Setup (x32 Version: 1.2.3560.3170 - Hewlett-Packard)
HP Support Assistant (x32 Version: 7.0.39.15 - Hewlett-Packard Company)
HP Update (x32 Version: 5.001.000.014 - Hewlett-Packard)
HP User Guides 0153 (x32 Version: 1.01.0000 - Hewlett-Packard)
HP Wireless Assistant (x32 Version: 3.50.9.1 - Hewlett-Packard)
IDT Audio (x32 Version: 1.0.6249.0 - IDT)
Intel® Matrix Storage Manager (Version: - Intel Corporation)
IrfanView (remove only) (x32 Version: - )
Java 7 Update 7 (x32 Version: 7.0.70 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 15 (64-bit) (Version: 6.0.150 - Sun Microsystems, Inc.)
Java(TM) 6 Update 37 (x32 Version: 6.0.370 - Oracle)
Java(TM) SE Development Kit 6 Update 15 (64-bit) (Version: 1.6.0.150 - Sun Microsystems, Inc.)
JMicron Flash Media Controller Driver (x32 Version: 1.0.32.1 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Kryštofova dobrodružství CZ (x32 Version: 1.0.0 - Taktik)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.) Hidden
LightScribe System Software (x32 Version: 1.18.8.1 - LightScribe)
Magic Desktop (x32 Version: - EasyBits Software AS)
Malwarebytes Anti-Malware verze 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (x32 Version: 2.9 - Microsoft Corporation)
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (x32 Version: 08.05.0822 - Microsoft Corporation)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard) Hidden
Mozilla Maintenance Service (x32 Version: 17.0.6 - Mozilla)
Mozilla Thunderbird 17.0.6 (x86 cs) (x32 Version: 17.0.6 - Mozilla)
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation)
Nástroj pro odesílání služby Windows Live (x32 Version: 14.0.8014.1029 - Microsoft Corporation)
Nero BurnLite 10 (x32 Version: 10.0.10500.5.100 - Nero AG)
Nero BurnLite 10 (x32 Version: 10.0.10600 - Nero AG)
Nero Control Center 10 (x32 Version: 10.0.13100.3.1 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 1.0.10700 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.15100.0.1 - Nero AG) Hidden
Nero Update (x32 Version: 1.0.0018 - Nero AG)
Nitro PDF Reader 2 (Version: 2.0.0.29 - Nitro PDF Software)
NVIDIA Drivers (Version: 1.9 - NVIDIA Corporation)
OpenOffice.org 3.4 (x32 Version: 3.4.9590 - OpenOffice.org)
Opera 11.00 (x32 Version: 11.00 - Opera Software ASA)
Plants vs. Zombies (x32 Version: - PopCap Games)
Plants vs. Zombies 1.0.0.1051 (x32 Version: - )
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.)
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.) Hidden
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.)
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.) Hidden
QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
Realtek Ethernet Controller Driver For Windows Vista and Later (x32 Version: 1.00.0010 - Realtek)
Recovery Manager (x32 Version: 5.5.2214 - CyberLink Corp.) Hidden
Skype™ 6.3 (x32 Version: 6.3.107 - Skype Technologies S.A.)
Sweet Home 3D (HKCU Version: - eTeks)
Synaptics Pointing Device Driver (Version: 15.0.17.4 - Synaptics Incorporated)
TeamViewer 7 (x32 Version: 7.0.17271 - TeamViewer)
Total Commander (Remove or Repair) (x32 Version: 7.50a - Ghisler Software GmbH)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation)
Validity Sensors DDK (Version: 3.1.366 - Validity Sensors, Inc.)
vanBasco's Karaoke Player (x32 Version: - )
Veselé Omalovánky 1 - malování pro děti (x32 Version: - Martin Roubec)
Video Viewer (x32 Version: 0.1.3.0 - )
VideoStudio (x32 Version: 12.0.0.0000 - Corel Corporation) Hidden
WD SmartWare (Version: 1.5.1 - Western Digital)
Winamp (x32 Version: 5.622 - Nullsoft, Inc)
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (Version: 06/15/2009 6.2.0.9000 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (Version: 06/03/2009 2.3.0.0 - Garmin)
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Media Encoder 9 Series (x32 Version: - )
Windows Media Encoder 9 Series (x32 Version: 9.00.2980 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0 - win.rar GmbH)
Zoner Photo Studio 11 (x32 Version: - ZONER software)
==================== Restore Points =========================
15-01-2014 22:09:23 Windows Update
20-01-2014 11:22:15 Windows Update
24-01-2014 04:23:04 Windows Update
26-01-2014 12:33:54 Garmin Express
26-01-2014 12:36:59 Garmin Express
==================== Hosts content: ==========================
2009-07-14 03:34 - 2014-01-11 09:40 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0B093606-56E7-4B08-99D1-4837D1C03538} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: {190762B5-7497-4B4B-A9D5-D572539406FD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {27A139B9-5237-474E-8268-BEA322F1336C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {2C933AB2-81B0-44EF-9243-957B14EE9700} - System32\Tasks\CLMLSvc => c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-10-05] (CyberLink)
Task: {2D59F92A-AEF3-4F0F-AD8D-A3BBEAE09CDE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {4A73C7A7-6C9F-488F-80E9-580EF5461327} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
Task: {67FCE5FC-0F7B-4679-8F82-B1F436511C6A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {6AB3C148-2CC7-4062-B736-32E7841055EA} - System32\Tasks\{D1BFB819-2173-4D26-B29C-43ABE6720B9F} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-04-19] (Skype Technologies S.A.)
Task: {6B157214-FFCC-4B95-9841-520EB60303E9} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {6F5F9E9F-7E5D-4E20-949A-939A59484439} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {70F195D6-CAB9-4F52-9D90-E95746330699} - System32\Tasks\TVAgent => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [2009-10-06] (CyberLink Corp.)
Task: {783CB638-6F4C-4C22-B908-BC1986BC3B7F} - System32\Tasks\{4054CB77-FB75-48E2-A88E-190BB9F228A3} => C:\Users\hp-doma\Downloads\ThunderbirdSetup15.0.1.exe [2012-09-19] (Mozilla)
Task: {83CA772B-EDBC-4FDF-AC72-065D4DA34CBA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {8CA1ACED-556A-4B12-8430-C8EB0828CC57} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company)
Task: {8F05E3C5-78EB-4933-A118-034FB8D09DB1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {C4C28B3D-5796-42D3-9AE4-E8FCE6C76672} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {C9EF8C2F-B2D4-4303-ADCA-CDFE5F5D9131} - System32\Tasks\CapSvcInst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [2009-10-06] (CL)
Task: {D8A4E887-1F8B-400D-8601-D4F5C6AC1FBA} - System32\Tasks\HPCeeScheduleForhp-doma => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {DB91DCD9-D4B9-48E3-AC29-8686DD18A3A6} - System32\Tasks\CapUninst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [2009-10-06] (CL)
Task: {EF2C7F7F-7095-4973-8F06-7545CAB61E29} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {F6C05155-0739-400F-BC64-B87CF3DF5A8C} - System32\Tasks\CapSchedInst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [2009-10-06] (CL)
Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2009-10-06 22:57 - 2009-10-06 22:57 - 00279976 ____N () c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLCapEngine.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2009-10-05 23:08 - 2009-10-05 23:08 - 00931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
2014-01-16 21:05 - 2014-01-11 11:28 - 00715544 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\libglesv2.dll
2014-01-16 21:05 - 2014-01-11 11:28 - 00100120 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\libegl.dll
2014-01-16 21:05 - 2014-01-11 11:29 - 04055320 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\pdf.dll
2014-01-16 21:05 - 2014-01-11 11:29 - 00399640 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\ppGoogleNaClPluginChrome.dll
2014-01-16 21:05 - 2014-01-11 11:28 - 01634584 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll
2014-01-16 21:05 - 2014-01-11 11:29 - 13615896 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\32.0.1700.76\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Objekt indexování nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Modul plug-in v <Search.JetPropStore> nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Služba Windows Search nenačetla informace o úložišti vlastností.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800) (0xc0041800)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Vyhledávací služby zjistila, že index {id=4700} obsahuje poškozené datové soubory. Služba se pokusí tyto potíže automaticky odstranit vytvořením nového indexu.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service) (User: )
Description: Služba Windows Search neotevřela úložiště vlastností databázového stroje Jet.
Podrobnosti:
0x%08x (0xc0041800 - Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800))
Error: (01/26/2014 01:32:39 PM) (Source: ESENT) (User: )
Description: Windows (4620) Windows: Při otevírání souboru protokolu C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0078B.log došlo k chybě -1811.
System errors:
=============
Error: (01/26/2014 01:33:08 PM) (Source: Service Control Manager) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.
Error: (01/26/2014 01:33:08 PM) (Source: Service Control Manager) (User: )
Description: Služba Windows Search ukončena s chybou %%-1073473535, specifickou pro službu.
Error: (01/26/2014 01:31:39 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (13:29:57, 26.1.2014) bylo neočekávané.
Error: (01/26/2014 01:29:06 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (13:24:54, 26.1.2014) bylo neočekávané.
Error: (01/25/2014 08:56:22 AM) (Source: Disk) (User: )
Description: Zařízení \Device\Harddisk1\DR4 ještě není připraveno pro přístup.
Error: (01/22/2014 07:16:09 PM) (Source: EventLog) (User: )
Description: Předchozí vypnutí systému (19:13:41, 22.1.2014) bylo neočekávané.
Error: (01/22/2014 07:13:48 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby PlugPlay bylo dosaženo časového limitu (30000 ms).
Error: (01/22/2014 07:13:42 PM) (Source: Service Control Manager) (User: )
Description: Služba ESET Service přestala během spouštění reagovat.
Error: (01/22/2014 07:13:18 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby MMCSS bylo dosaženo časového limitu (30000 ms).
Error: (01/22/2014 07:12:48 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby MBAMService bylo dosaženo časového limitu (30000 ms).
Microsoft Office Sessions:
=========================
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/26/2014 01:32:49 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)
Search.TripoliIndexer
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Search.JetPropStore
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800) (0xc0041800)
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
The catalog is corrupt
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
4700
Error: (01/26/2014 01:32:39 PM) (Source: Windows Search Service)(User: )
Description: Podrobnosti:
0x%08x (0xc0041800 - Databáze indexu obsahu je poškozená. (HRESULT : 0xc0041800))
Error: (01/26/2014 01:32:39 PM) (Source: ESENT)(User: )
Description: Windows4620Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0078B.log-1811
CodeIntegrity Errors:
===================================
Date: 2014-01-09 15:58:33.157
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-01-09 15:58:32.907
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Percentage of memory in use: 52%
Total physical RAM: 4022.87 MB
Available physical RAM: 1904.04 MB
Total Pagefile: 8043.91 MB
Available Pagefile: 5404.72 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:448.39 GB) (Free:179.93 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:17.08 GB) (Free:2.77 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: A47F08C4)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=448 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
==================== End Of Log ============================
Re: přesměrovávání na linkbucks.com - podruhé
Zdravim
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: přesměrovávání na linkbucks.com - podruhé
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Home Premium x64
Ran by hp-doma on ne 26.01.2014 at 21:01:31,65
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon
~~~ Files
Successfully deleted: [File] "C:\Users\Public\Desktop\play more great games!.url"
~~~ Folders
Successfully deleted: [Folder] "C:\Users\hp-doma\appdata\local\appshat mobile apps"
Successfully deleted: [Folder] "C:\Users\hp-doma\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\hp-doma\appdata\locallow\datamngr"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 26.01.2014 at 21:10:26,01
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Home Premium x64
Ran by hp-doma on ne 26.01.2014 at 21:01:31,65
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon
~~~ Files
Successfully deleted: [File] "C:\Users\Public\Desktop\play more great games!.url"
~~~ Folders
Successfully deleted: [Folder] "C:\Users\hp-doma\appdata\local\appshat mobile apps"
Successfully deleted: [Folder] "C:\Users\hp-doma\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\hp-doma\appdata\locallow\datamngr"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 26.01.2014 at 21:10:26,01
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: přesměrovávání na linkbucks.com - podruhé
# AdwCleaner v3.017 - Report created 26/01/2014 at 21:16:06
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : hp-doma - HP-DOMA-PC
# Running from : C:\Users\hp-doma\Downloads\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Google Chrome v
[ File : C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R2].txt - [843 octets] - [26/01/2014 21:15:10]
AdwCleaner[S1].txt - [767 octets] - [26/01/2014 21:16:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [826 octets] ##########
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : hp-doma - HP-DOMA-PC
# Running from : C:\Users\hp-doma\Downloads\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Google Chrome v
[ File : C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R2].txt - [843 octets] - [26/01/2014 21:15:10]
AdwCleaner[S1].txt - [767 octets] - [26/01/2014 21:16:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [826 octets] ##########
Re: přesměrovávání na linkbucks.com - podruhé
- Pokud pouzivate Win Vista ci W7, kliknete na OTM pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
srinfo; autoclean; emptyclsid; iedefaults; FFdefaults; CHRdefaults; process; hijackthis; emptyalltemp; resethosts;- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: přesměrovávání na linkbucks.com - podruhé
Zoek.exe v5.0.0.0 Updated 25-January-2014
Tool run by hp-doma on ne 26.01.2014 at 22:22:52,43.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\hp-doma\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2014-01-26-211533.log 1312 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled\{395610AE-C624-4f58-B89E-23733EA00F9A} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled\{395610AE-C624-4f58-B89E-23733EA00F9A} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled\{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Running Processes ======================
C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files (x86)\Nero\Update\NASvc.exe
C:\Users\hp-doma\Desktop\zoek.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\hp-doma\AppData\Roaming\SmileysWeLove deleted
C:\Users\hp-doma\AppData\Roaming\eCyber deleted
C:\ProgramData\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player deleted
C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat deleted
C:\Users\Katka\AppData\LocalLow\DataMngr deleted
C:\Users\Public\Documents\AlawarWrapper deleted
C:\Users\hp-doma\Desktop\Search.lnk deleted
"C:\Users\hp-doma\AppData\Local\{D5BCED06-E174-4821-8796-31F5EB24C6F8}" deleted
"C:\Users\hp-doma\AppData\Roaming\vPacs" deleted
======== System Restore Points ========
RP544: 15.1.2014 23:09:23 - Windows Update
RP545: 20.1.2014 12:22:15 - Windows Update
RP546: 24.1.2014 5:23:04 - Windows Update
RP547: 26.1.2014 13:33:54 - Garmin Express
RP548: 26.1.2014 13:36:59 - Garmin Express
RP549: 26.1.2014 22:15:02 - zoek.exe restore point
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt" [24.03.2010 18:25]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\firefoxext" [24.03.2010 18:25]
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
malebckkmhhonigohmeacppccacdpkjm - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx[]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
==== Reset Google Chrome ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\malebckkmhhonigohmeacppccacdpkjm deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppsHat deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel File Shell Monitor deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\opsfno deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SDP deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Companion deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe deleted successfully
==== HijackThis Entries ======================
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam"
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/3.0 ... ontrol.CAB
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{A80D1E02-25E2-4C5D-861A-FA3AD7FC44ED}: NameServer = 8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) - Unknown owner - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
O23 - Service: WDRulesService - Western Digital - C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\hp-doma\Documents\Martin Beránek\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=35 folders=14 15312410 bytes)
==== Empty Temp Folders ======================
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Katka\AppData\Local\Temp emptied successfully
C:\Users\Public\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\hp-doma\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\hp-doma\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on ne 26.01.2014 at 22:44:51,67 ======================
Tool run by hp-doma on ne 26.01.2014 at 22:22:52,43.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\hp-doma\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2014-01-26-211533.log 1312 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled\{395610AE-C624-4f58-B89E-23733EA00F9A} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled\{395610AE-C624-4f58-B89E-23733EA00F9A} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled\{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Running Processes ======================
C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files (x86)\Nero\Update\NASvc.exe
C:\Users\hp-doma\Desktop\zoek.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\hp-doma\AppData\Roaming\SmileysWeLove deleted
C:\Users\hp-doma\AppData\Roaming\eCyber deleted
C:\ProgramData\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player deleted
C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat deleted
C:\Users\Katka\AppData\LocalLow\DataMngr deleted
C:\Users\Public\Documents\AlawarWrapper deleted
C:\Users\hp-doma\Desktop\Search.lnk deleted
"C:\Users\hp-doma\AppData\Local\{D5BCED06-E174-4821-8796-31F5EB24C6F8}" deleted
"C:\Users\hp-doma\AppData\Roaming\vPacs" deleted
======== System Restore Points ========
RP544: 15.1.2014 23:09:23 - Windows Update
RP545: 20.1.2014 12:22:15 - Windows Update
RP546: 24.1.2014 5:23:04 - Windows Update
RP547: 26.1.2014 13:33:54 - Garmin Express
RP548: 26.1.2014 13:36:59 - Garmin Express
RP549: 26.1.2014 22:15:02 - zoek.exe restore point
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt" [24.03.2010 18:25]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\firefoxext" [24.03.2010 18:25]
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
malebckkmhhonigohmeacppccacdpkjm - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx[]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
==== Reset Google Chrome ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\malebckkmhhonigohmeacppccacdpkjm deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppsHat deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel File Shell Monitor deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\opsfno deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SDP deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Companion deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe deleted successfully
==== HijackThis Entries ======================
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam"
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/3.0 ... ontrol.CAB
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384} (O2C-Player Version 1.x) - http://www.o2c.de/download/O2CPlayer.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{A80D1E02-25E2-4C5D-861A-FA3AD7FC44ED}: NameServer = 8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) - Unknown owner - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
O23 - Service: WDRulesService - Western Digital - C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\hp-doma\Documents\Martin Beránek\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=35 folders=14 15312410 bytes)
==== Empty Temp Folders ======================
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Katka\AppData\Local\Temp emptied successfully
C:\Users\Public\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\hp-doma\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\hp-doma\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on ne 26.01.2014 at 22:44:51,67 ======================
Re: přesměrovávání na linkbucks.com - podruhé
Re: přesměrovávání na linkbucks.com - podruhé
na eset mame zakoupenou licenci
mse - microsoft security essential -odinstaluji
dnes se zatím vir neprojevil
od zítřka nebudu na pc až do soboty
mse - microsoft security essential -odinstaluji
dnes se zatím vir neprojevil
od zítřka nebudu na pc až do soboty
Naposledy upravil(a) katma dne 27 Led 2014 20:45, celkem upraveno 1 x.
Re: přesměrovávání na linkbucks.com - podruhé
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start Handler: ipp - No CLSID Value - Handler-x32: ipp - No CLSID Value - HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_170_ActiveX.exe -update activex [531336 2013-12-10] (Adobe Systems Incorporated) CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2013-08-31] CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx [2013-08-31] DisabelService: RichVideo S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] U2 ezSharedSvc; C:\Program Files\Enigma Software Group 2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe 2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe 2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe 2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe 2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe Hosts: CMD: shutdown /r /f /t 2 End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: přesměrovávání na linkbucks.com - podruhé
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 05-02-2014
Ran by hp-doma at 2014-02-06 20:12:23 Run:1
Running from C:\Users\hp-doma\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
Handler: ipp - No CLSID Value -
Handler-x32: ipp - No CLSID Value -
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_170_ActiveX.exe -update activex [531336 2013-12-10] (Adobe Systems Incorporated)
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx [2013-08-31]
DisabelService: RichVideo
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
U2 ezSharedSvc;
C:\Program Files\Enigma Software Group
2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe
2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCR\PROTOCOLS\Handler\Handler: ipp - No CLSID Value - => Key not found.
HKCR\Wow6432Node\PROTOCOLS\Handler\Handler-x32: ipp - No CLSID Value - => Key not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\\FlashPlayerUpdate => Value not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic => Key not found.
"C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\malebckkmhhonigohmeacppccacdpkjm => Key not found.
"C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx" => File/Directory not found.
esgiguard => Service deleted successfully.
ezSharedSvc => Service deleted successfully.
"C:\Program Files\Enigma Software Group" => File/Directory not found.
C:\Users\hp-doma\Downloads\ccsetup409.exe => Moved successfully.
C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe => Moved successfully.
C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe => Moved successfully.
C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe => Moved successfully.
C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Ran by hp-doma at 2014-02-06 20:12:23 Run:1
Running from C:\Users\hp-doma\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
Handler: ipp - No CLSID Value -
Handler-x32: ipp - No CLSID Value -
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_170_ActiveX.exe -update activex [531336 2013-12-10] (Adobe Systems Incorporated)
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx [2013-08-31]
DisabelService: RichVideo
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
U2 ezSharedSvc;
C:\Program Files\Enigma Software Group
2014-01-12 13:21 - 2014-01-12 13:21 - 04645232 _____ (Piriform Ltd) C:\Users\hp-doma\Downloads\ccsetup409.exe
2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCR\PROTOCOLS\Handler\Handler: ipp - No CLSID Value - => Key not found.
HKCR\Wow6432Node\PROTOCOLS\Handler\Handler-x32: ipp - No CLSID Value - => Key not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\\FlashPlayerUpdate => Value not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\aaaaimdcedbpbcjjbbnfcbbjcngmomic => Key not found.
"C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\malebckkmhhonigohmeacppccacdpkjm => Key not found.
"C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx" => File/Directory not found.
esgiguard => Service deleted successfully.
ezSharedSvc => Service deleted successfully.
"C:\Program Files\Enigma Software Group" => File/Directory not found.
C:\Users\hp-doma\Downloads\ccsetup409.exe => Moved successfully.
C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe => Moved successfully.
C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe => Moved successfully.
C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe => Moved successfully.
C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Re: přesměrovávání na linkbucks.com - podruhé
je tam furt - mrcha
Re: přesměrovávání na linkbucks.com - podruhé
- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
srinfo; autoclean; emptyclsid; iedefaults; FFdefaults; CHRdefaults; emptyalltemp; resethosts;- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: přesměrovávání na linkbucks.com - podruhé
Zoek.exe v5.0.0.0 Updated 07-February-2014
Tool run by hp-doma on so 08.02.2014 at 19:44:49,61.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\hp-doma\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2014-01-26-211533.log 1312 bytes
C:\zoek-results2014-01-26-214451.log 21189 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
======== System Restore Points ========
RP544: 15.1.2014 23:09:23 - Windows Update
RP545: 20.1.2014 12:22:15 - Windows Update
RP546: 24.1.2014 5:23:04 - Windows Update
RP547: 26.1.2014 13:33:54 - Garmin Express
RP548: 26.1.2014 13:36:59 - Garmin Express
RP549: 26.1.2014 22:15:02 - zoek.exe restore point
RP550: 28.1.2014 13:28:25 - Windows Update
RP551: 1.2.2014 0:56:36 - Windows Update
RP552: 4.2.2014 13:05:11 - Windows Update
RP553: 8.2.2014 19:39:21 - Windows Update
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt" [24.03.2010 18:25]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\firefoxext" [24.03.2010 18:25]
==== Chrome Look ======================
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
==== Reset Google Chrome ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\hp-doma\Documents\Martin Beránek\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\Documents\Martin Berßnek\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=35 folders=14 15312410 bytes)
==== Empty Temp Folders ======================
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Katka\AppData\Local\Temp emptied successfully
C:\Users\Public\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\hp-doma\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\hp-doma\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found
==== EOF on so 08.02.2014 at 20:10:28,57 ======================
Tool run by hp-doma on so 08.02.2014 at 19:44:49,61.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\hp-doma\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2014-01-26-211533.log 1312 bytes
C:\zoek-results2014-01-26-214451.log 21189 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
======== System Restore Points ========
RP544: 15.1.2014 23:09:23 - Windows Update
RP545: 20.1.2014 12:22:15 - Windows Update
RP546: 24.1.2014 5:23:04 - Windows Update
RP547: 26.1.2014 13:33:54 - Garmin Express
RP548: 26.1.2014 13:36:59 - Garmin Express
RP549: 26.1.2014 22:15:02 - zoek.exe restore point
RP550: 28.1.2014 13:28:25 - Windows Update
RP551: 1.2.2014 0:56:36 - Windows Update
RP552: 4.2.2014 13:05:11 - Windows Update
RP553: 8.2.2014 19:39:21 - Windows Update
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt" [24.03.2010 18:25]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files (x86)\DigitalPersona\Bin\firefoxext" [24.03.2010 18:25]
==== Chrome Look ======================
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
==== Reset Google Chrome ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\hp-doma\Documents\Martin Beránek\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp-doma\Documents\Martin Berßnek\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=35 folders=14 15312410 bytes)
==== Empty Temp Folders ======================
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Katka\AppData\Local\Temp emptied successfully
C:\Users\Public\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\hp-doma\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\hp-doma\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found
==== EOF on so 08.02.2014 at 20:10:28,57 ======================
Re: přesměrovávání na linkbucks.com - podruhé
Nejaka zmena??



Přispějete na provoz fóra?