
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vir na flashce
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vir na flashce
Dobrý den, mám problém s flashkou, všechny soubory se vždy po uložení změní na zástupce a nelze nic dělat.
Nevím si rady, tak prosím o pomoc. díky moc!
můj RSIT
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-04-2014
Ran by Tomáš (administrator) on TOMÁŠ-PC on 16-04-2014 12:56:42
Running from C:\Users\Tomáš\Desktop
Windows Vista (TM) Home Premium Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 7
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(CyberLink) C:\Acer\Empowering Technology\eAudio\eAudio.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Realtek Semiconductor Corp.) C:\Users\TOM~1\AppData\Local\Temp\RtkBtMnt.exe
(Egis Incorporated) C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
(Acer Inc.) C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
(Acer Inc.) C:\Acer\Empowering Technology\eNet\eNet Service.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\SCIA\Protection\lmgrd.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\SCIA\Protection\lmgrd.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
() C:\Program Files\ICQ6Toolbar\ICQ Service.exe
(Nemetschek SCIA) C:\Program Files\Common Files\SCIA\Protection\SCIA.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
() C:\Acer\Mobility Center\MobilityService.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
(Nalpeiron Ltd.) C:\Windows\system32\NLSSRV32.EXE
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\system32\PrintCtrl.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
(Acer Inc.) C:\Program Files\Acer\Acer VCM\RS_Service.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Conexant Systems, Inc.) C:\Windows\system32\DRIVERS\xaudio.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\QtZgAcer.EXE
(CyberLink Corp.) C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe
() C:\Windows\PLFSetI.exe
(ActMask Co.,Ltd - http://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Last.fm) C:\Program Files\Last.fm\Last.fm Scrobbler.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Acer Inc.) C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
(Acer Inc.) C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
(Acer Inc.) C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(ESET) C:\Program Files\ESET\ESET Online Scanner\OnlineScannerApp.exe
() C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [eAudio] => C:\Acer\Empowering Technology\eAudio\eAudio.exe [1286144 2007-10-10] (CyberLink)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [178712 2007-11-22] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [4702208 2008-01-24] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] => C:\Windows\Skytel.exe [1826816 2008-01-24] (Realtek Semiconductor Corp.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\QtZgAcer.EXE [707080 2008-01-02] (Dritek System Inc.)
HKLM\...\Run: [PlayMovie] => C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe [200704 2008-01-22] (CyberLink Corp.)
HKLM\...\Run: [WarReg_PopUp] => C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe [303104 2008-01-29] (Acer Incorporated)
HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2007-10-23] ()
HKLM\...\Run: [eRecoveryService] => [X]
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2010-09-23] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [PrintDisp] => C:\Windows\system32\PrintDisp.exe [826368 2011-02-19] (ActMask Co.,Ltd - http://www.all2pdf.com)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [ApnUpdater] => C:\Program Files\Ask.com\Updater\Updater.exe [1568976 2012-06-20] (Ask)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-19] (AVAST Software)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-19\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1233920 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1233920 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Tomáš\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Tomáš\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [hgntkdlkml] => wscript.exe //B "C:\Users\Tomáš\AppData\Roaming\hgntkdlkml.vbe"
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hgntkdlkml.vbe ()
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\KN StrongDC.lnk
ShortcutTarget: KN StrongDC.lnk -> C:\Program Files\KN_StrongDC\StrongDC.exe ()
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.0.lnk
ShortcutTarget: OpenOffice.org 3.0.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT3220468
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://global.acer.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM - ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
URLSearchHook: HKCU - (No Name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
URLSearchHook: HKCU - ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
SearchScopes: HKLM - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - DefaultScope {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/web/{searchTe ... 1f3c56792f
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... EAC168A8CC&
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {68EE8512-63E5-4945-BC05-7CC06D1C6C8E} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKCU - {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB9} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = http://uk.search.yahoo.com/search?p={se ... r=chr-acer
SearchScopes: HKCU - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} URL = http://search.alcohol-toolbar.com/searc ... arch-field
BHO: No Name - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.35.10\bh\BabylonToolbar.dll (Babylon BHO)
BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll (HiTRUST)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
BHO: No Name - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
BHO: Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
Toolbar: HKLM - ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKLM - Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.35.10\BabylonToolbarTlbr.dll (Babylon Ltd.)
Toolbar: HKLM - Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files\PDF Architect\PDFIEPlugin.dll (pdfforge GbR)
Toolbar: HKCU - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKCU - Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKCU - No Name - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 %SystemRoot%\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 147.229.16.95 147.229.16.170
FireFox:
========
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll No File
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll (Foxit Software Company)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Seznam lištička - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2013-12-10]
FF Extension: ICQ Toolbar - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-02-26]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-02-26]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-02-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt [2013-01-30]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-09]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/?clid=12454
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\34.0.1847.116\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.260.3) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U26) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll No File
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll No File
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2003) - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\34.0.1847.116\pdf.dll ()
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.40.135.1_0\McChPlg.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll No File
CHR Plugin: (Skype Toolbars) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8312_0\npSkypeChromePlugin.dll No File
CHR Plugin: (DivX Player Netscape Plugin) - C:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll (Foxit Software Company)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Updater) - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (Avira Toolbar) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangmfdabjilefmognkgcebjgcojek [2012-06-30]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-01-15]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-01-15]
CHR Extension: (Adblock Plus) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-28]
CHR Extension: (uTorrentControl_v2) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda [2013-10-09]
CHR Extension: (SiteAdvisor) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2011-07-09]
CHR Extension: (Speed Test 127) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\jljheddigenhleadfofeccneimcmlefp [2013-12-10]
CHR Extension: (Skype Click to Call) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-10-09]
CHR Extension: (Peněženka Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-09]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-01-15]
CHR HKLM\...\Chrome\Extension: [aaaangmfdabjilefmognkgcebjgcojek] - C:\Users\Tomáš\AppData\Local\APN\GoogleCRXs\aaaangmfdabjilefmognkgcebjgcojek_7.14.1.0.crx [2012-03-25]
CHR HKLM\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Tomáš\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]
CHR HKLM\...\Chrome\Extension: [jljheddigenhleadfofeccneimcmlefp] - C:\Users\Tomáš\AppData\Roaming\speedtest4354\speedtest4354.crx [2013-10-15]
CHR HKLM\...\Chrome\Extension: [lbgfiglojokgabdbhegbpjgojgppppgf] - C:\Users\Tomáš\AppData\Roaming\freegames4357\freegames4357.crx [2013-10-22]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
CHR HKCU\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Tomáš\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]
========================== Services (Whitelisted) =================
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-19] (AVAST Software)
R2 eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [491008 2008-02-25] (Egis Incorporated)
R2 eLockService; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [24576 2007-10-01] (Acer Inc.)
R2 eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [131072 2007-12-20] (Acer Inc.)
S2 eRecoveryService; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [57344 2007-09-10] (Acer Inc.)
S2 eSettingsService; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [24576 2007-12-19] ()
R3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2011-09-19] (Flexera Software, Inc.)
R2 FlexNET SCIA; C:\Program Files\Common Files\SCIA\Protection\lmgrd.exe [1334096 2009-11-21] (Flexera Software, Inc.)
S2 gupdate1c984c24c8dfdff; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-02-02] (Google Inc.)
R2 ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [247096 2010-09-06] ()
R2 MobilityService; C:\Acer\Mobility Center\MobilityService.exe [110592 2007-11-27] ()
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [65536 2009-10-28] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM)
R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [266343 2007-12-04] ()
R2 RS_Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [233472 2007-09-28] (Acer Inc.)
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
S2 Wisaroc; C:\Windows\Wisaroc.exe [1686020 2010-11-08] (Remak)
S2 WMIService; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [167936 2007-09-20] (acer)
S2 McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [X]
S2 Winmgmt; C:\PROGRA~2\6jlnbjrqfl.plz [X]
==================== Drivers (Whitelisted) ====================
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-04-16] (AVAST Software)
R1 AswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2014-04-16] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-04-16] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [776976 2014-04-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [411552 2014-04-16] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2014-04-16] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [180760 2014-04-16] ()
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [192056 2008-01-21] (Společnost Microsoft)
S3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36608 2009-03-31] ()
R2 int15; C:\Acer\Empowering Technology\eRecovery\int15.sys [15392 2007-07-03] (Acer, Inc.)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1081912 2008-01-21] (Společnost Microsoft)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1729152 2007-12-14] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [477240 2012-06-16] (Duplex Secure Ltd.)
S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [90112 2009-03-20] (MCCI)
S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14976 2009-03-20] (MCCI Corporation)
S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [121856 2009-03-20] (MCCI Corporation)
R3 winbondcir; C:\Windows\System32\DRIVERS\winbondcir.sys [43008 2008-01-24] (Winbond Electronics Corporation)
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl [41456 2008-01-04] (Cyberlink Corp.)
U3 a26z2pbj; C:\Windows\system32\Drivers\a26z2pbj.sys [0 ] (Intel Corporation)
S3 asbp2poa; \??\C:\Users\TOM~1\AppData\Local\Temp\asbp2poa.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 pgfilter; \??\C:\Program Files\PeerGuardian2\pgfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-16 12:56 - 2014-04-16 12:58 - 00029554 _____ () C:\Users\Tomáš\Desktop\FRST.txt
2014-04-16 12:56 - 2014-04-16 12:56 - 00029696 _____ () C:\Users\Tomáš\AppData\Local\MSGBOX.EXE
2014-04-16 12:56 - 2014-04-16 12:56 - 00015327 _____ () C:\Users\Tomáš\Desktop\LM.bat
2014-04-16 12:55 - 2014-04-16 12:55 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Desktop\FRSTLauncher (1).exe
2014-04-16 12:52 - 2014-04-16 12:52 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 784142.crdownload
2014-04-16 12:44 - 2014-04-16 12:56 - 00000000 ____D () C:\FRST
2014-04-16 12:42 - 2014-04-16 12:43 - 01042944 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2014-04-16 11:14 - 2014-04-16 11:14 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 592181.crdownload
2014-04-16 11:13 - 2014-04-16 11:14 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 65969.crdownload
2014-04-16 11:06 - 2014-04-16 11:06 - 00608638 _____ () C:\Users\Tomáš\Desktop\výstavba energie moje.xlsx
2014-04-16 10:11 - 2014-04-16 10:11 - 02346904 _____ (ESET) C:\Users\Tomáš\Downloads\esetsmartinstaller_csy.exe
2014-04-16 10:09 - 2014-04-16 10:09 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-04-16 00:06 - 2014-04-16 00:06 - 00000000 ____D () C:\Program Files\USBDriveFresher
2014-04-16 00:05 - 2014-04-16 00:05 - 04166327 _____ (Affinity-Tools ) C:\Users\Tomáš\Downloads\usbfreshersetup.exe
2014-04-15 23:42 - 2014-01-06 21:42 - 00612263 ___SH () C:\Users\Tomáš\AppData\Roaming\hgntkdlkml.vbe
2014-04-15 14:51 - 2014-04-15 14:55 - 66852894 _____ () C:\Users\Tomáš\Downloads\sigur-ros---ágćtis-byrjun-(1999).rar
2014-04-14 19:32 - 2014-04-14 20:28 - 473128913 _____ () C:\Users\Tomáš\Downloads\Game-of-Thrones-S04E01-cz-titulky-vlozeny.mp4
2014-04-13 15:10 - 2014-04-13 15:10 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123 (1).xls
2014-04-13 11:34 - 2014-04-13 11:34 - 01831129 _____ () C:\Users\Tomáš\Downloads\prilohy_25995.zip
2014-04-13 11:33 - 2014-04-16 12:55 - 00000000 ____D () C:\Users\Tomáš\Desktop\stuůl
2014-04-13 11:33 - 2014-04-13 11:33 - 01416410 _____ () C:\Users\Tomáš\Downloads\prilohy_26007.zip
2014-04-12 21:44 - 2014-04-12 22:12 - 454262631 _____ () C:\Users\Tomáš\Downloads\CH04-Vybrané-stati-z-pozemního-stavitelství-(S-PST).rar
2014-04-12 20:33 - 2014-04-12 21:23 - 884569082 _____ () C:\Users\Tomáš\Downloads\CH04---Vybrané-stati-z-pozemního-stavitelství.rar
2014-04-12 18:56 - 2014-04-12 19:26 - 81336979 _____ () C:\Users\Tomáš\Downloads\www.NewAlbumReleases.net_The Pains of Being Pure at Heart - Days of Abandon (2014).rar
2014-04-11 19:18 - 2014-04-11 19:18 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-04-11 19:17 - 2014-04-11 19:18 - 10245808 _____ (BlueStack Systems Inc.) C:\Users\Tomáš\Downloads\BlueStacks-SplitInstaller_native.exe
2014-04-09 19:56 - 2014-04-09 19:56 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123.xls
2014-04-09 19:56 - 2014-04-09 19:56 - 00230912 _____ () C:\Users\Tomáš\Downloads\Vypocet-vetrovych-oblasti.xls
2014-04-08 15:09 - 2014-04-08 15:11 - 63741683 _____ () C:\Users\Tomáš\Downloads\JMC-Automatic.zip
2014-04-07 22:01 - 2014-04-12 22:16 - 00000000 ____D () C:\Users\Tomáš\Desktop\diplomky
2014-04-03 10:18 - 2014-04-03 10:18 - 03134125 _____ () C:\Users\Tomáš\Downloads\MOJE.xlsx
2014-04-02 12:42 - 2014-04-02 12:42 - 00000851 _____ () C:\Users\Tomáš\Desktop\Wdls 4.1 demo.lnk
2014-04-02 12:42 - 2014-04-02 12:42 - 00000000 ____D () C:\Program Files\Astra 92
2014-04-02 12:42 - 2013-03-11 09:02 - 00040960 _____ () C:\Windows\system32\BCGCBResCSY.dll
2014-04-02 12:42 - 2013-03-11 08:56 - 00082296 _____ () C:\Users\Tomáš\Downloads\Documents\Vestavba haly.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00059553 _____ () C:\Users\Tomáš\Downloads\Documents\Atrium.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00053076 _____ () C:\Users\Tomáš\Downloads\Documents\Přes chodbu.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00041262 _____ () C:\Users\Tomáš\Downloads\Documents\Podkroví.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00025730 _____ () C:\Users\Tomáš\Downloads\Documents\L místnost.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00021020 _____ () C:\Users\Tomáš\Downloads\Documents\Wdls.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00000004 __RSH () C:\Windows\AstraWdls41_d.sec
2014-04-02 12:42 - 2010-01-06 10:56 - 00045056 _____ (ASTRA 92 a.s.) C:\Windows\system32\AstraSec125.dll
2014-04-02 12:42 - 2010-01-06 10:56 - 00045056 _____ (ASTRA 92 a.s.) C:\Windows\system32\AstraData120.dll
2014-04-02 12:42 - 2000-12-20 07:26 - 00688128 _____ () C:\Windows\system32\BCGCB474.dll
2014-04-01 12:07 - 2014-04-01 12:07 - 02233692 _____ () C:\Users\Tomáš\Downloads\MOJE+LAMELA.xlsx
2014-03-29 18:09 - 2014-03-29 18:09 - 00374784 _____ () C:\Users\Tomáš\Downloads\UT_08_L_N.xls
2014-03-29 18:09 - 2014-03-29 18:09 - 00286208 _____ () C:\Users\Tomáš\Downloads\UT_08_L_Z.xls
2014-03-29 17:33 - 2014-03-29 17:33 - 00349184 _____ () C:\Users\Tomáš\Downloads\32_18_05-Průřezové-moduly.ppt
2014-03-24 23:50 - 2014-03-24 23:51 - 00000000 ____D () C:\Program Files\Stavební fyzika
2014-03-23 20:43 - 2014-03-23 20:43 - 02619392 _____ () C:\Users\Tomáš\Downloads\RP24.ppt
2014-03-23 20:22 - 2014-03-24 23:51 - 00000000 ____D () C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tepelná technika
2014-03-23 19:46 - 2014-02-19 21:35 - 00000000 ____D () C:\Users\Tomáš\Desktop\Stavebni fyzika 2010_CRACKED
2014-03-22 21:31 - 2014-03-22 21:31 - 00110201 _____ () C:\Users\Tomáš\Downloads\zvuk2000v1_5.zip
2014-03-19 22:06 - 2014-04-16 00:11 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk středa
==================== One Month Modified Files and Folders =======
2014-04-16 12:58 - 2014-04-16 12:56 - 00029554 _____ () C:\Users\Tomáš\Desktop\FRST.txt
2014-04-16 12:56 - 2014-04-16 12:56 - 00029696 _____ () C:\Users\Tomáš\AppData\Local\MSGBOX.EXE
2014-04-16 12:56 - 2014-04-16 12:56 - 00015327 _____ () C:\Users\Tomáš\Desktop\LM.bat
2014-04-16 12:56 - 2014-04-16 12:44 - 00000000 ____D () C:\FRST
2014-04-16 12:55 - 2014-04-16 12:55 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Desktop\FRSTLauncher (1).exe
2014-04-16 12:55 - 2014-04-13 11:33 - 00000000 ____D () C:\Users\Tomáš\Desktop\stuůl
2014-04-16 12:54 - 2008-08-26 17:07 - 00000000 ____D () C:\Users\Tomáš\AppData\Local\Last.fm
2014-04-16 12:52 - 2014-04-16 12:52 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 784142.crdownload
2014-04-16 12:43 - 2014-04-16 12:42 - 01042944 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2014-04-16 12:33 - 2012-09-12 16:22 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-16 12:31 - 2009-06-30 15:50 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-16 11:59 - 2006-11-02 14:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-16 11:59 - 2006-11-02 14:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-16 11:53 - 2008-08-26 20:06 - 01573159 _____ () C:\Windows\WindowsUpdate.log
2014-04-16 11:15 - 2009-02-02 01:04 - 00000924 _____ () C:\Windows\Tasks\Google Software Updater.job
2014-04-16 11:14 - 2014-04-16 11:14 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 592181.crdownload
2014-04-16 11:14 - 2014-04-16 11:13 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 65969.crdownload
2014-04-16 11:06 - 2014-04-16 11:06 - 00608638 _____ () C:\Users\Tomáš\Desktop\výstavba energie moje.xlsx
2014-04-16 10:12 - 2008-08-26 14:47 - 00000000 ____D () C:\Program Files\ESET
2014-04-16 10:11 - 2014-04-16 10:11 - 02346904 _____ (ESET) C:\Users\Tomáš\Downloads\esetsmartinstaller_csy.exe
2014-04-16 10:09 - 2014-04-16 10:09 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-04-16 10:09 - 2013-10-09 11:21 - 00411552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-04-16 10:09 - 2013-10-09 11:21 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-04-16 10:09 - 2013-10-09 11:21 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-04-16 10:09 - 2013-10-09 11:21 - 00001877 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-04-16 10:09 - 2013-10-09 11:20 - 00776976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-04-16 10:09 - 2013-10-09 11:20 - 00271264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-04-16 10:09 - 2013-10-09 11:20 - 00180760 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-04-16 10:09 - 2013-10-09 11:20 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-04-16 10:09 - 2013-10-09 11:20 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-04-16 10:08 - 2013-12-10 10:02 - 00000000 ____D () C:\Users\Tomáš\AppData\Roaming\Seznam.cz
2014-04-16 10:00 - 2009-06-30 15:50 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-16 09:59 - 2013-10-09 10:56 - 63485374 _____ () C:\Windows\PFRO.log
2014-04-16 09:59 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-16 00:15 - 2008-08-28 16:54 - 00000012 _____ () C:\Windows\bthservsdp.dat
2014-04-16 00:15 - 2006-11-02 15:01 - 00032526 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-04-16 00:11 - 2014-03-19 22:06 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk středa
2014-04-16 00:06 - 2014-04-16 00:06 - 00000000 ____D () C:\Program Files\USBDriveFresher
2014-04-16 00:05 - 2014-04-16 00:05 - 04166327 _____ (Affinity-Tools ) C:\Users\Tomáš\Downloads\usbfreshersetup.exe
2014-04-15 14:55 - 2014-04-15 14:51 - 66852894 _____ () C:\Users\Tomáš\Downloads\sigur-ros---ágćtis-byrjun-(1999).rar
2014-04-14 20:28 - 2014-04-14 19:32 - 473128913 _____ () C:\Users\Tomáš\Downloads\Game-of-Thrones-S04E01-cz-titulky-vlozeny.mp4
2014-04-14 19:33 - 2009-02-02 01:11 - 00001975 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-13 17:07 - 2013-09-05 18:15 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-13 17:01 - 2006-11-02 12:24 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-04-13 15:10 - 2014-04-13 15:10 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123 (1).xls
2014-04-13 11:34 - 2014-04-13 11:34 - 01831129 _____ () C:\Users\Tomáš\Downloads\prilohy_25995.zip
2014-04-13 11:33 - 2014-04-13 11:33 - 01416410 _____ () C:\Users\Tomáš\Downloads\prilohy_26007.zip
2014-04-12 22:16 - 2014-04-07 22:01 - 00000000 ____D () C:\Users\Tomáš\Desktop\diplomky
2014-04-12 22:12 - 2014-04-12 21:44 - 454262631 _____ () C:\Users\Tomáš\Downloads\CH04-Vybrané-stati-z-pozemního-stavitelství-(S-PST).rar
2014-04-12 21:23 - 2014-04-12 20:33 - 884569082 _____ () C:\Users\Tomáš\Downloads\CH04---Vybrané-stati-z-pozemního-stavitelství.rar
2014-04-12 19:26 - 2014-04-12 18:56 - 81336979 _____ () C:\Users\Tomáš\Downloads\www.NewAlbumReleases.net_The Pains of Being Pure at Heart - Days of Abandon (2014).rar
2014-04-11 19:18 - 2014-04-11 19:18 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-04-11 19:18 - 2014-04-11 19:17 - 10245808 _____ (BlueStack Systems Inc.) C:\Users\Tomáš\Downloads\BlueStacks-SplitInstaller_native.exe
2014-04-10 19:35 - 2008-08-30 16:05 - 00064000 _____ () C:\Users\Tomáš\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-09 19:56 - 2014-04-09 19:56 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123.xls
2014-04-09 19:56 - 2014-04-09 19:56 - 00230912 _____ () C:\Users\Tomáš\Downloads\Vypocet-vetrovych-oblasti.xls
2014-04-08 15:11 - 2014-04-08 15:09 - 63741683 _____ () C:\Users\Tomáš\Downloads\JMC-Automatic.zip
2014-04-07 22:03 - 2014-03-01 12:46 - 00000000 ____D () C:\Users\Tomáš\Desktop\diplomky tom
2014-04-03 15:44 - 2012-04-12 22:17 - 00004096 _____ () C:\Users\Tomáš\AppData\Local\keyfile3.drm
2014-04-03 10:18 - 2014-04-03 10:18 - 03134125 _____ () C:\Users\Tomáš\Downloads\MOJE.xlsx
2014-04-02 22:45 - 2014-03-05 22:16 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk výstavba
2014-04-02 12:42 - 2014-04-02 12:42 - 00000851 _____ () C:\Users\Tomáš\Desktop\Wdls 4.1 demo.lnk
2014-04-02 12:42 - 2014-04-02 12:42 - 00000000 ____D () C:\Program Files\Astra 92
2014-04-02 09:54 - 2013-10-09 11:21 - 00006183 _____ () C:\Windows\setupact.log
2014-04-01 12:07 - 2014-04-01 12:07 - 02233692 _____ () C:\Users\Tomáš\Downloads\MOJE+LAMELA.xlsx
2014-03-29 18:09 - 2014-03-29 18:09 - 00374784 _____ () C:\Users\Tomáš\Downloads\UT_08_L_N.xls
2014-03-29 18:09 - 2014-03-29 18:09 - 00286208 _____ () C:\Users\Tomáš\Downloads\UT_08_L_Z.xls
2014-03-29 17:33 - 2014-03-29 17:33 - 00349184 _____ () C:\Users\Tomáš\Downloads\32_18_05-Průřezové-moduly.ppt
2014-03-24 23:51 - 2014-03-24 23:50 - 00000000 ____D () C:\Program Files\Stavební fyzika
2014-03-24 23:51 - 2014-03-23 20:22 - 00000000 ____D () C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tepelná technika
2014-03-24 23:50 - 2011-11-15 11:40 - 00000000 ____D () C:\Program Files\Common Files\Svoboda Software
2014-03-24 23:10 - 2014-02-22 20:46 - 00000000 ____D () C:\Users\Tomáš\Desktop\Off
2014-03-23 20:43 - 2014-03-23 20:43 - 02619392 _____ () C:\Users\Tomáš\Downloads\RP24.ppt
2014-03-22 21:31 - 2014-03-22 21:31 - 00110201 _____ () C:\Users\Tomáš\Downloads\zvuk2000v1_5.zip
2014-03-20 21:52 - 2011-11-15 11:40 - 00000000 ____D () C:\Users\Tomáš\Desktop\Stavební fyzika
2014-03-18 23:39 - 2014-02-25 21:19 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk
2014-03-17 21:40 - 2013-02-06 14:17 - 00000000 ____D () C:\Users\Tomáš\Desktop\BP 2013!!!
2014-03-17 19:38 - 2010-02-24 22:30 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
Files to move or delete:
====================
C:\ProgramData\lfqrjbnlj6.ctrl
C:\ProgramData\lfqrjbnlj6.pff
C:\ProgramData\rf0fl.exe
Some content of TEMP:
====================
C:\Users\Tomáš\AppData\Local\Temp\BackupSetup.exe
C:\Users\Tomáš\AppData\Local\Temp\install_helper.exe
C:\Users\Tomáš\AppData\Local\Temp\RtkBtMnt.exe
C:\Users\Tomáš\AppData\Local\Temp\tbuTo0.dll
C:\Users\Tomáš\AppData\Local\Temp\{9B18B9BE-96A5-44E4-80C0-211E401997F6}-GoogleUpdateSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-16 10:10
==================== End Of Log ============================
Nevím si rady, tak prosím o pomoc. díky moc!
můj RSIT
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-04-2014
Ran by Tomáš (administrator) on TOMÁŠ-PC on 16-04-2014 12:56:42
Running from C:\Users\Tomáš\Desktop
Windows Vista (TM) Home Premium Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 7
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(CyberLink) C:\Acer\Empowering Technology\eAudio\eAudio.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Realtek Semiconductor Corp.) C:\Users\TOM~1\AppData\Local\Temp\RtkBtMnt.exe
(Egis Incorporated) C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
(Acer Inc.) C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
(Acer Inc.) C:\Acer\Empowering Technology\eNet\eNet Service.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\SCIA\Protection\lmgrd.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\SCIA\Protection\lmgrd.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
() C:\Program Files\ICQ6Toolbar\ICQ Service.exe
(Nemetschek SCIA) C:\Program Files\Common Files\SCIA\Protection\SCIA.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
() C:\Acer\Mobility Center\MobilityService.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
(Nalpeiron Ltd.) C:\Windows\system32\NLSSRV32.EXE
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\system32\PrintCtrl.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
(Acer Inc.) C:\Program Files\Acer\Acer VCM\RS_Service.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Conexant Systems, Inc.) C:\Windows\system32\DRIVERS\xaudio.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Flexera Software, Inc.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\QtZgAcer.EXE
(CyberLink Corp.) C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe
() C:\Windows\PLFSetI.exe
(ActMask Co.,Ltd - http://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Last.fm) C:\Program Files\Last.fm\Last.fm Scrobbler.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Acer Inc.) C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
(Acer Inc.) C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
(Acer Inc.) C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(ESET) C:\Program Files\ESET\ESET Online Scanner\OnlineScannerApp.exe
() C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [eAudio] => C:\Acer\Empowering Technology\eAudio\eAudio.exe [1286144 2007-10-10] (CyberLink)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [178712 2007-11-22] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [4702208 2008-01-24] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] => C:\Windows\Skytel.exe [1826816 2008-01-24] (Realtek Semiconductor Corp.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\QtZgAcer.EXE [707080 2008-01-02] (Dritek System Inc.)
HKLM\...\Run: [PlayMovie] => C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe [200704 2008-01-22] (CyberLink Corp.)
HKLM\...\Run: [WarReg_PopUp] => C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe [303104 2008-01-29] (Acer Incorporated)
HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2007-10-23] ()
HKLM\...\Run: [eRecoveryService] => [X]
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2010-09-23] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [PrintDisp] => C:\Windows\system32\PrintDisp.exe [826368 2011-02-19] (ActMask Co.,Ltd - http://www.all2pdf.com)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [ApnUpdater] => C:\Program Files\Ask.com\Updater\Updater.exe [1568976 2012-06-20] (Ask)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-19] (AVAST Software)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-19\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1233920 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1233920 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Tomáš\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Tomáš\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-715463585-2862221041-1881526869-1000\...\Run: [hgntkdlkml] => wscript.exe //B "C:\Users\Tomáš\AppData\Roaming\hgntkdlkml.vbe"
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hgntkdlkml.vbe ()
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\KN StrongDC.lnk
ShortcutTarget: KN StrongDC.lnk -> C:\Program Files\KN_StrongDC\StrongDC.exe ()
Startup: C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.0.lnk
ShortcutTarget: OpenOffice.org 3.0.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT3220468
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://global.acer.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM - ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
URLSearchHook: HKCU - (No Name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
URLSearchHook: HKCU - ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
SearchScopes: HKLM - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - DefaultScope {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/web/{searchTe ... 1f3c56792f
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... EAC168A8CC&
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {68EE8512-63E5-4945-BC05-7CC06D1C6C8E} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKCU - {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB9} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = http://uk.search.yahoo.com/search?p={se ... r=chr-acer
SearchScopes: HKCU - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} URL = http://search.alcohol-toolbar.com/searc ... arch-field
BHO: No Name - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.35.10\bh\BabylonToolbar.dll (Babylon BHO)
BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll (HiTRUST)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
BHO: No Name - {B922D405-6D13-4A2B-AE89-08A030DA4402} - No File
BHO: Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
Toolbar: HKLM - ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKLM - Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.35.10\BabylonToolbarTlbr.dll (Babylon Ltd.)
Toolbar: HKLM - Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files\PDF Architect\PDFIEPlugin.dll (pdfforge GbR)
Toolbar: HKCU - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKCU - Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKCU - No Name - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 %SystemRoot%\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 147.229.16.95 147.229.16.170
FireFox:
========
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll No File
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll (Foxit Software Company)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Seznam lištička - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2013-12-10]
FF Extension: ICQ Toolbar - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-02-26]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-02-26]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-02-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt [2013-01-30]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-09]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/?clid=12454
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\34.0.1847.116\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.260.3) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U26) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll No File
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll No File
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2003) - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\34.0.1847.116\pdf.dll ()
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.40.135.1_0\McChPlg.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll No File
CHR Plugin: (Skype Toolbars) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8312_0\npSkypeChromePlugin.dll No File
CHR Plugin: (DivX Player Netscape Plugin) - C:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll (Foxit Software Company)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Updater) - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (Avira Toolbar) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangmfdabjilefmognkgcebjgcojek [2012-06-30]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-01-15]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-01-15]
CHR Extension: (Adblock Plus) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-28]
CHR Extension: (uTorrentControl_v2) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda [2013-10-09]
CHR Extension: (SiteAdvisor) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2011-07-09]
CHR Extension: (Speed Test 127) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\jljheddigenhleadfofeccneimcmlefp [2013-12-10]
CHR Extension: (Skype Click to Call) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-10-09]
CHR Extension: (Peněženka Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-09]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-01-15]
CHR HKLM\...\Chrome\Extension: [aaaangmfdabjilefmognkgcebjgcojek] - C:\Users\Tomáš\AppData\Local\APN\GoogleCRXs\aaaangmfdabjilefmognkgcebjgcojek_7.14.1.0.crx [2012-03-25]
CHR HKLM\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Tomáš\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]
CHR HKLM\...\Chrome\Extension: [jljheddigenhleadfofeccneimcmlefp] - C:\Users\Tomáš\AppData\Roaming\speedtest4354\speedtest4354.crx [2013-10-15]
CHR HKLM\...\Chrome\Extension: [lbgfiglojokgabdbhegbpjgojgppppgf] - C:\Users\Tomáš\AppData\Roaming\freegames4357\freegames4357.crx [2013-10-22]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
CHR HKCU\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Tomáš\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]
========================== Services (Whitelisted) =================
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-19] (AVAST Software)
R2 eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [491008 2008-02-25] (Egis Incorporated)
R2 eLockService; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [24576 2007-10-01] (Acer Inc.)
R2 eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [131072 2007-12-20] (Acer Inc.)
S2 eRecoveryService; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [57344 2007-09-10] (Acer Inc.)
S2 eSettingsService; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [24576 2007-12-19] ()
R3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2011-09-19] (Flexera Software, Inc.)
R2 FlexNET SCIA; C:\Program Files\Common Files\SCIA\Protection\lmgrd.exe [1334096 2009-11-21] (Flexera Software, Inc.)
S2 gupdate1c984c24c8dfdff; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-02-02] (Google Inc.)
R2 ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [247096 2010-09-06] ()
R2 MobilityService; C:\Acer\Mobility Center\MobilityService.exe [110592 2007-11-27] ()
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [65536 2009-10-28] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM)
R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [266343 2007-12-04] ()
R2 RS_Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [233472 2007-09-28] (Acer Inc.)
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
S2 Wisaroc; C:\Windows\Wisaroc.exe [1686020 2010-11-08] (Remak)
S2 WMIService; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [167936 2007-09-20] (acer)
S2 McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [X]
S2 Winmgmt; C:\PROGRA~2\6jlnbjrqfl.plz [X]
==================== Drivers (Whitelisted) ====================
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-04-16] (AVAST Software)
R1 AswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2014-04-16] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-04-16] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [776976 2014-04-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [411552 2014-04-16] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2014-04-16] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [180760 2014-04-16] ()
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [192056 2008-01-21] (Společnost Microsoft)
S3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36608 2009-03-31] ()
R2 int15; C:\Acer\Empowering Technology\eRecovery\int15.sys [15392 2007-07-03] (Acer, Inc.)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1081912 2008-01-21] (Společnost Microsoft)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1729152 2007-12-14] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [477240 2012-06-16] (Duplex Secure Ltd.)
S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [90112 2009-03-20] (MCCI)
S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14976 2009-03-20] (MCCI Corporation)
S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [121856 2009-03-20] (MCCI Corporation)
R3 winbondcir; C:\Windows\System32\DRIVERS\winbondcir.sys [43008 2008-01-24] (Winbond Electronics Corporation)
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl [41456 2008-01-04] (Cyberlink Corp.)
U3 a26z2pbj; C:\Windows\system32\Drivers\a26z2pbj.sys [0 ] (Intel Corporation)
S3 asbp2poa; \??\C:\Users\TOM~1\AppData\Local\Temp\asbp2poa.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 pgfilter; \??\C:\Program Files\PeerGuardian2\pgfilter.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-16 12:56 - 2014-04-16 12:58 - 00029554 _____ () C:\Users\Tomáš\Desktop\FRST.txt
2014-04-16 12:56 - 2014-04-16 12:56 - 00029696 _____ () C:\Users\Tomáš\AppData\Local\MSGBOX.EXE
2014-04-16 12:56 - 2014-04-16 12:56 - 00015327 _____ () C:\Users\Tomáš\Desktop\LM.bat
2014-04-16 12:55 - 2014-04-16 12:55 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Desktop\FRSTLauncher (1).exe
2014-04-16 12:52 - 2014-04-16 12:52 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 784142.crdownload
2014-04-16 12:44 - 2014-04-16 12:56 - 00000000 ____D () C:\FRST
2014-04-16 12:42 - 2014-04-16 12:43 - 01042944 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2014-04-16 11:14 - 2014-04-16 11:14 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 592181.crdownload
2014-04-16 11:13 - 2014-04-16 11:14 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 65969.crdownload
2014-04-16 11:06 - 2014-04-16 11:06 - 00608638 _____ () C:\Users\Tomáš\Desktop\výstavba energie moje.xlsx
2014-04-16 10:11 - 2014-04-16 10:11 - 02346904 _____ (ESET) C:\Users\Tomáš\Downloads\esetsmartinstaller_csy.exe
2014-04-16 10:09 - 2014-04-16 10:09 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-04-16 00:06 - 2014-04-16 00:06 - 00000000 ____D () C:\Program Files\USBDriveFresher
2014-04-16 00:05 - 2014-04-16 00:05 - 04166327 _____ (Affinity-Tools ) C:\Users\Tomáš\Downloads\usbfreshersetup.exe
2014-04-15 23:42 - 2014-01-06 21:42 - 00612263 ___SH () C:\Users\Tomáš\AppData\Roaming\hgntkdlkml.vbe
2014-04-15 14:51 - 2014-04-15 14:55 - 66852894 _____ () C:\Users\Tomáš\Downloads\sigur-ros---ágćtis-byrjun-(1999).rar
2014-04-14 19:32 - 2014-04-14 20:28 - 473128913 _____ () C:\Users\Tomáš\Downloads\Game-of-Thrones-S04E01-cz-titulky-vlozeny.mp4
2014-04-13 15:10 - 2014-04-13 15:10 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123 (1).xls
2014-04-13 11:34 - 2014-04-13 11:34 - 01831129 _____ () C:\Users\Tomáš\Downloads\prilohy_25995.zip
2014-04-13 11:33 - 2014-04-16 12:55 - 00000000 ____D () C:\Users\Tomáš\Desktop\stuůl
2014-04-13 11:33 - 2014-04-13 11:33 - 01416410 _____ () C:\Users\Tomáš\Downloads\prilohy_26007.zip
2014-04-12 21:44 - 2014-04-12 22:12 - 454262631 _____ () C:\Users\Tomáš\Downloads\CH04-Vybrané-stati-z-pozemního-stavitelství-(S-PST).rar
2014-04-12 20:33 - 2014-04-12 21:23 - 884569082 _____ () C:\Users\Tomáš\Downloads\CH04---Vybrané-stati-z-pozemního-stavitelství.rar
2014-04-12 18:56 - 2014-04-12 19:26 - 81336979 _____ () C:\Users\Tomáš\Downloads\www.NewAlbumReleases.net_The Pains of Being Pure at Heart - Days of Abandon (2014).rar
2014-04-11 19:18 - 2014-04-11 19:18 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-04-11 19:17 - 2014-04-11 19:18 - 10245808 _____ (BlueStack Systems Inc.) C:\Users\Tomáš\Downloads\BlueStacks-SplitInstaller_native.exe
2014-04-09 19:56 - 2014-04-09 19:56 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123.xls
2014-04-09 19:56 - 2014-04-09 19:56 - 00230912 _____ () C:\Users\Tomáš\Downloads\Vypocet-vetrovych-oblasti.xls
2014-04-08 15:09 - 2014-04-08 15:11 - 63741683 _____ () C:\Users\Tomáš\Downloads\JMC-Automatic.zip
2014-04-07 22:01 - 2014-04-12 22:16 - 00000000 ____D () C:\Users\Tomáš\Desktop\diplomky
2014-04-03 10:18 - 2014-04-03 10:18 - 03134125 _____ () C:\Users\Tomáš\Downloads\MOJE.xlsx
2014-04-02 12:42 - 2014-04-02 12:42 - 00000851 _____ () C:\Users\Tomáš\Desktop\Wdls 4.1 demo.lnk
2014-04-02 12:42 - 2014-04-02 12:42 - 00000000 ____D () C:\Program Files\Astra 92
2014-04-02 12:42 - 2013-03-11 09:02 - 00040960 _____ () C:\Windows\system32\BCGCBResCSY.dll
2014-04-02 12:42 - 2013-03-11 08:56 - 00082296 _____ () C:\Users\Tomáš\Downloads\Documents\Vestavba haly.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00059553 _____ () C:\Users\Tomáš\Downloads\Documents\Atrium.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00053076 _____ () C:\Users\Tomáš\Downloads\Documents\Přes chodbu.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00041262 _____ () C:\Users\Tomáš\Downloads\Documents\Podkroví.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00025730 _____ () C:\Users\Tomáš\Downloads\Documents\L místnost.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00021020 _____ () C:\Users\Tomáš\Downloads\Documents\Wdls.dls
2014-04-02 12:42 - 2013-03-11 08:56 - 00000004 __RSH () C:\Windows\AstraWdls41_d.sec
2014-04-02 12:42 - 2010-01-06 10:56 - 00045056 _____ (ASTRA 92 a.s.) C:\Windows\system32\AstraSec125.dll
2014-04-02 12:42 - 2010-01-06 10:56 - 00045056 _____ (ASTRA 92 a.s.) C:\Windows\system32\AstraData120.dll
2014-04-02 12:42 - 2000-12-20 07:26 - 00688128 _____ () C:\Windows\system32\BCGCB474.dll
2014-04-01 12:07 - 2014-04-01 12:07 - 02233692 _____ () C:\Users\Tomáš\Downloads\MOJE+LAMELA.xlsx
2014-03-29 18:09 - 2014-03-29 18:09 - 00374784 _____ () C:\Users\Tomáš\Downloads\UT_08_L_N.xls
2014-03-29 18:09 - 2014-03-29 18:09 - 00286208 _____ () C:\Users\Tomáš\Downloads\UT_08_L_Z.xls
2014-03-29 17:33 - 2014-03-29 17:33 - 00349184 _____ () C:\Users\Tomáš\Downloads\32_18_05-Průřezové-moduly.ppt
2014-03-24 23:50 - 2014-03-24 23:51 - 00000000 ____D () C:\Program Files\Stavební fyzika
2014-03-23 20:43 - 2014-03-23 20:43 - 02619392 _____ () C:\Users\Tomáš\Downloads\RP24.ppt
2014-03-23 20:22 - 2014-03-24 23:51 - 00000000 ____D () C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tepelná technika
2014-03-23 19:46 - 2014-02-19 21:35 - 00000000 ____D () C:\Users\Tomáš\Desktop\Stavebni fyzika 2010_CRACKED
2014-03-22 21:31 - 2014-03-22 21:31 - 00110201 _____ () C:\Users\Tomáš\Downloads\zvuk2000v1_5.zip
2014-03-19 22:06 - 2014-04-16 00:11 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk středa
==================== One Month Modified Files and Folders =======
2014-04-16 12:58 - 2014-04-16 12:56 - 00029554 _____ () C:\Users\Tomáš\Desktop\FRST.txt
2014-04-16 12:56 - 2014-04-16 12:56 - 00029696 _____ () C:\Users\Tomáš\AppData\Local\MSGBOX.EXE
2014-04-16 12:56 - 2014-04-16 12:56 - 00015327 _____ () C:\Users\Tomáš\Desktop\LM.bat
2014-04-16 12:56 - 2014-04-16 12:44 - 00000000 ____D () C:\FRST
2014-04-16 12:55 - 2014-04-16 12:55 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Desktop\FRSTLauncher (1).exe
2014-04-16 12:55 - 2014-04-13 11:33 - 00000000 ____D () C:\Users\Tomáš\Desktop\stuůl
2014-04-16 12:54 - 2008-08-26 17:07 - 00000000 ____D () C:\Users\Tomáš\AppData\Local\Last.fm
2014-04-16 12:52 - 2014-04-16 12:52 - 00112640 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 784142.crdownload
2014-04-16 12:43 - 2014-04-16 12:42 - 01042944 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2014-04-16 12:33 - 2012-09-12 16:22 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-16 12:31 - 2009-06-30 15:50 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-16 11:59 - 2006-11-02 14:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-16 11:59 - 2006-11-02 14:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-16 11:53 - 2008-08-26 20:06 - 01573159 _____ () C:\Windows\WindowsUpdate.log
2014-04-16 11:15 - 2009-02-02 01:04 - 00000924 _____ () C:\Windows\Tasks\Google Software Updater.job
2014-04-16 11:14 - 2014-04-16 11:14 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 592181.crdownload
2014-04-16 11:14 - 2014-04-16 11:13 - 00112107 _____ (forum.viry.cz) C:\Users\Tomáš\Downloads\Nepotvrzeno 65969.crdownload
2014-04-16 11:06 - 2014-04-16 11:06 - 00608638 _____ () C:\Users\Tomáš\Desktop\výstavba energie moje.xlsx
2014-04-16 10:12 - 2008-08-26 14:47 - 00000000 ____D () C:\Program Files\ESET
2014-04-16 10:11 - 2014-04-16 10:11 - 02346904 _____ (ESET) C:\Users\Tomáš\Downloads\esetsmartinstaller_csy.exe
2014-04-16 10:09 - 2014-04-16 10:09 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-04-16 10:09 - 2013-10-09 11:21 - 00411552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-04-16 10:09 - 2013-10-09 11:21 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-04-16 10:09 - 2013-10-09 11:21 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-04-16 10:09 - 2013-10-09 11:21 - 00001877 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-04-16 10:09 - 2013-10-09 11:20 - 00776976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-04-16 10:09 - 2013-10-09 11:20 - 00271264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-04-16 10:09 - 2013-10-09 11:20 - 00180760 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-04-16 10:09 - 2013-10-09 11:20 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-04-16 10:09 - 2013-10-09 11:20 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-04-16 10:08 - 2013-12-10 10:02 - 00000000 ____D () C:\Users\Tomáš\AppData\Roaming\Seznam.cz
2014-04-16 10:00 - 2009-06-30 15:50 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-16 09:59 - 2013-10-09 10:56 - 63485374 _____ () C:\Windows\PFRO.log
2014-04-16 09:59 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-16 00:15 - 2008-08-28 16:54 - 00000012 _____ () C:\Windows\bthservsdp.dat
2014-04-16 00:15 - 2006-11-02 15:01 - 00032526 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-04-16 00:11 - 2014-03-19 22:06 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk středa
2014-04-16 00:06 - 2014-04-16 00:06 - 00000000 ____D () C:\Program Files\USBDriveFresher
2014-04-16 00:05 - 2014-04-16 00:05 - 04166327 _____ (Affinity-Tools ) C:\Users\Tomáš\Downloads\usbfreshersetup.exe
2014-04-15 14:55 - 2014-04-15 14:51 - 66852894 _____ () C:\Users\Tomáš\Downloads\sigur-ros---ágćtis-byrjun-(1999).rar
2014-04-14 20:28 - 2014-04-14 19:32 - 473128913 _____ () C:\Users\Tomáš\Downloads\Game-of-Thrones-S04E01-cz-titulky-vlozeny.mp4
2014-04-14 19:33 - 2009-02-02 01:11 - 00001975 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-13 17:07 - 2013-09-05 18:15 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-13 17:01 - 2006-11-02 12:24 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-04-13 15:10 - 2014-04-13 15:10 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123 (1).xls
2014-04-13 11:34 - 2014-04-13 11:34 - 01831129 _____ () C:\Users\Tomáš\Downloads\prilohy_25995.zip
2014-04-13 11:33 - 2014-04-13 11:33 - 01416410 _____ () C:\Users\Tomáš\Downloads\prilohy_26007.zip
2014-04-12 22:16 - 2014-04-07 22:01 - 00000000 ____D () C:\Users\Tomáš\Desktop\diplomky
2014-04-12 22:12 - 2014-04-12 21:44 - 454262631 _____ () C:\Users\Tomáš\Downloads\CH04-Vybrané-stati-z-pozemního-stavitelství-(S-PST).rar
2014-04-12 21:23 - 2014-04-12 20:33 - 884569082 _____ () C:\Users\Tomáš\Downloads\CH04---Vybrané-stati-z-pozemního-stavitelství.rar
2014-04-12 19:26 - 2014-04-12 18:56 - 81336979 _____ () C:\Users\Tomáš\Downloads\www.NewAlbumReleases.net_The Pains of Being Pure at Heart - Days of Abandon (2014).rar
2014-04-11 19:18 - 2014-04-11 19:18 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-04-11 19:18 - 2014-04-11 19:17 - 10245808 _____ (BlueStack Systems Inc.) C:\Users\Tomáš\Downloads\BlueStacks-SplitInstaller_native.exe
2014-04-10 19:35 - 2008-08-30 16:05 - 00064000 _____ () C:\Users\Tomáš\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-09 19:56 - 2014-04-09 19:56 - 00622080 _____ () C:\Users\Tomáš\Downloads\kalkulator-ejot-hmozdinky-ver123.xls
2014-04-09 19:56 - 2014-04-09 19:56 - 00230912 _____ () C:\Users\Tomáš\Downloads\Vypocet-vetrovych-oblasti.xls
2014-04-08 15:11 - 2014-04-08 15:09 - 63741683 _____ () C:\Users\Tomáš\Downloads\JMC-Automatic.zip
2014-04-07 22:03 - 2014-03-01 12:46 - 00000000 ____D () C:\Users\Tomáš\Desktop\diplomky tom
2014-04-03 15:44 - 2012-04-12 22:17 - 00004096 _____ () C:\Users\Tomáš\AppData\Local\keyfile3.drm
2014-04-03 10:18 - 2014-04-03 10:18 - 03134125 _____ () C:\Users\Tomáš\Downloads\MOJE.xlsx
2014-04-02 22:45 - 2014-03-05 22:16 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk výstavba
2014-04-02 12:42 - 2014-04-02 12:42 - 00000851 _____ () C:\Users\Tomáš\Desktop\Wdls 4.1 demo.lnk
2014-04-02 12:42 - 2014-04-02 12:42 - 00000000 ____D () C:\Program Files\Astra 92
2014-04-02 09:54 - 2013-10-09 11:21 - 00006183 _____ () C:\Windows\setupact.log
2014-04-01 12:07 - 2014-04-01 12:07 - 02233692 _____ () C:\Users\Tomáš\Downloads\MOJE+LAMELA.xlsx
2014-03-29 18:09 - 2014-03-29 18:09 - 00374784 _____ () C:\Users\Tomáš\Downloads\UT_08_L_N.xls
2014-03-29 18:09 - 2014-03-29 18:09 - 00286208 _____ () C:\Users\Tomáš\Downloads\UT_08_L_Z.xls
2014-03-29 17:33 - 2014-03-29 17:33 - 00349184 _____ () C:\Users\Tomáš\Downloads\32_18_05-Průřezové-moduly.ppt
2014-03-24 23:51 - 2014-03-24 23:50 - 00000000 ____D () C:\Program Files\Stavební fyzika
2014-03-24 23:51 - 2014-03-23 20:22 - 00000000 ____D () C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tepelná technika
2014-03-24 23:50 - 2011-11-15 11:40 - 00000000 ____D () C:\Program Files\Common Files\Svoboda Software
2014-03-24 23:10 - 2014-02-22 20:46 - 00000000 ____D () C:\Users\Tomáš\Desktop\Off
2014-03-23 20:43 - 2014-03-23 20:43 - 02619392 _____ () C:\Users\Tomáš\Downloads\RP24.ppt
2014-03-22 21:31 - 2014-03-22 21:31 - 00110201 _____ () C:\Users\Tomáš\Downloads\zvuk2000v1_5.zip
2014-03-20 21:52 - 2011-11-15 11:40 - 00000000 ____D () C:\Users\Tomáš\Desktop\Stavební fyzika
2014-03-18 23:39 - 2014-02-25 21:19 - 00000000 ____D () C:\Users\Tomáš\Desktop\tisk
2014-03-17 21:40 - 2013-02-06 14:17 - 00000000 ____D () C:\Users\Tomáš\Desktop\BP 2013!!!
2014-03-17 19:38 - 2010-02-24 22:30 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
Files to move or delete:
====================
C:\ProgramData\lfqrjbnlj6.ctrl
C:\ProgramData\lfqrjbnlj6.pff
C:\ProgramData\rf0fl.exe
Some content of TEMP:
====================
C:\Users\Tomáš\AppData\Local\Temp\BackupSetup.exe
C:\Users\Tomáš\AppData\Local\Temp\install_helper.exe
C:\Users\Tomáš\AppData\Local\Temp\RtkBtMnt.exe
C:\Users\Tomáš\AppData\Local\Temp\tbuTo0.dll
C:\Users\Tomáš\AppData\Local\Temp\{9B18B9BE-96A5-44E4-80C0-211E401997F6}-GoogleUpdateSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-16 10:10
==================== End Of Log ============================
Re: Vir na flashce
Zdravim
Zapojte do PC vsechny USB klice (flashky, ext. disky apod.)



- Stahne a ulozte na plochu UsbFix http://www.viry.cz/forum/viewtopic.php?f=24&t=102308
- Spustte a kliknete na Deletion
- Po dokonceni sem vlozte log, pokud na Vas nevyskoci, najdete jej zde C:\UsbFix.txt


Re: Vir na flashce
bohužel mi usbfix mi vyhazuje chybu
Line 6208 (File C:Usbfix/go.exe
Error:variable must be of type Object
Line 6208 (File C:Usbfix/go.exe
Error:variable must be of type Object
Naposledy upravil(a) tomesPJ dne 16 dub 2014 19:39, celkem upraveno 2 x.
Re: Vir na flashce









- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: Vir na flashce
vyosek píše:U te krasavice co ma v kase do 50,- aby ji nikdo neokradl
Mam platit 38 Kc, davam ji 50 a jeji skromny dotaz "Mensi nemate???"
![]()
![]()
![]()
![]()
Tak na to pujdem jinak, bude to sice tezsi, ale to pujde
![]()
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
junkware mi nějak nejel a u toho adwCleaner mám provádět s flashkou v notasu nebo bez? řešíme vir v pc nebo flashce?

Tohle je teda bez té flashky:
# AdwCleaner v3.023 - Report created 16/04/2014 at 15:19:17
# Updated 01/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 1 (32 bits)
# Username : Tomáš - TOMÁŠ-PC
# Running from : C:\Users\Tomáš\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : ICQ Service
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Deleted : C:\Program Files\Ask.com
Folder Deleted : C:\Program Files\BabylonToolbar
Folder Deleted : C:\Program Files\BitLord
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files\ICQ6Toolbar
Folder Deleted : C:\Program Files\MyPC Backup
Folder Deleted : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Folder Deleted : C:\Users\Tomáš\AppData\Local\apn
Folder Deleted : C:\Users\Tomáš\AppData\Local\AskToolbar
Folder Deleted : C:\Users\Tomáš\AppData\Local\Babylon
Folder Deleted : C:\Users\Tomáš\AppData\Local\Conduit
Folder Deleted : C:\Users\Tomáš\AppData\Local\PackageAware
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\pdfforge
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\Search Settings
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Solvusoft
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\ICQToolbarData
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Folder Deleted : C:\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\Extensions\ffxtlbr@babylon.com
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\Extensions\toolbar@ask.com
Folder Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda
[!] Folder Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda
File Deleted : C:\Program Files\Mozilla Firefox\Extensions\pdfforge@mybrowserbar.com
File Deleted : C:\Program Files\Mozilla Firefox\Extensions\wtxpcom@mybrowserbar.com
File Deleted : C:\END
File Deleted : C:\Windows\system32\roboot.exe
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\Askcom.xml
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\Babylon.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\bingp.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\daemon-search.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin.gif
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin.src
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\user.js
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_apps.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_apps.conduit.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_facebook.conduitapps.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_facebook.conduitapps.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\user data\default\local storage\hxxp_pricegong.conduitapps.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\user data\default\local storage\hxxp_pricegong.conduitapps.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{23C1A363-5499-44D0-8113-05ABD3679768}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{23C1A363-5499-44D0-8113-05ABD3679768}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0DAC18F3-E664-4081-AE93-BC7580945A04}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ICQ Service.exe
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Key Deleted : HKLM\SOFTWARE\Classes\b
Key Deleted : HKLM\SOFTWARE\Classes\Babylon.dskBnd
Key Deleted : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\bbylnApp.appCore
Key Deleted : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj
Key Deleted : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Deleted : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc
Key Deleted : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook
Key Deleted : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3220468
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5D723752-5899-47E8-99B4-62C824EF9E13}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{291BCCC1-6890-484A-89D3-318C928DAC1B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B8276A94-891D-453C-9FF3-715C042A2575}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FFB9ADCB-8C79-4C29-81D3-74D46A93D370}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F994E0D9-8335-48F1-99C2-A712C21F8D5F}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B922D405-6D13-4A2B-AE89-08A030DA4402}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\AskToolbar
Key Deleted : HKCU\Software\BabylonToolbar
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\BabylonToolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\dt soft\daemon tools toolbar
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\pdfforge
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0B139A7-E8D5-49E8-A7BF-12421E652208}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ICQToolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A0B139A7-E8D5-49E8-A7BF-12421E652208}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BabylonToolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\FLV Player
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ICQToolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyPC Backup
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30C16B15B255BD349A1157B8A83E2AF9
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1CAE30F47D14B41B5FC8FA53658044
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
***** [ Browsers ] *****
-\\ Internet Explorer v7.0.6001.18639
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v25.0.1 (cs)
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\prefs.js ]
Line Deleted : user_pref("CT3220468.autoDisableScopes", -1);
Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Line Deleted : user_pref("extensions.BabylonToolbar.babTrack", "affID=101241");
Line Deleted : user_pref("extensions.BabylonToolbar.bbDpng", 16);
Line Deleted : user_pref("extensions.BabylonToolbar.dfltLng", "en");
Line Deleted : user_pref("extensions.BabylonToolbar.dfltSrch", true);
Line Deleted : user_pref("extensions.BabylonToolbar.hmpg", true);
Line Deleted : user_pref("extensions.BabylonToolbar.id", "1cbbe4de000000000000001f3c56792f");
Line Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15237");
Line Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Line Deleted : user_pref("extensions.BabylonToolbar.keyWordUrl", "hxxp://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=1cbbe4de000000000000001f3c56792f&tlver=1.4.35.10&affID=101241");
Line Deleted : user_pref("extensions.BabylonToolbar.lastDP", 16);
Line Deleted : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.4.35.1017:30:52");
Line Deleted : user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "25.0");
Line Deleted : user_pref("extensions.BabylonToolbar.newTab", true);
Line Deleted : user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?babsrc=NT_FFUP");
Line Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Line Deleted : user_pref("extensions.BabylonToolbar.propectorlck", 136207318);
Line Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 1);
Line Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Line Deleted : user_pref("extensions.BabylonToolbar.ptch_0717", true);
Line Deleted : user_pref("extensions.BabylonToolbar.smplGrp", "azb");
Line Deleted : user_pref("extensions.BabylonToolbar.srcExt", "ss");
Line Deleted : user_pref("extensions.BabylonToolbar.srchPrvdr", "Search the web (Babylon)");
Line Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.4.35.10");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsnTs", "1.4.35.1017:30:52");
Line Deleted : user_pref("extensions.enabledAddons", "ffxtlbr%40babylon.com:1.1.9,%7B800b5000-a755-47e1-992b-48a1c1357f07%7D:1.5.3,%7Bea614400-e918-4741-9a97-7a972ff7c30b%7D:2.5.15,%7B82AF8DCA-6DE9-405D-BD5E-43525BD[...]
Line Deleted : user_pref("extensions.enabledItems", "{800b5000-a755-47e1-992b-48a1c1357f07}:1.1.7,{B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1,{20a82645-c095-46ed-80e3-08825760534b}:1.2.1,toolbar@ask.com:3.11.3.1559[...]
Line Deleted : user_pref("extensions.illimitux.ilx_pref_pt_veoh", true);
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
Line Deleted : user_pref("icqtoolbar.engineVerified", true);
Line Deleted : user_pref("icqtoolbar.facebookSmilesAddonShowedPopup", true);
Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
Line Deleted : user_pref("icqtoolbar.geolastmodified", 1397645293);
Line Deleted : user_pref("icqtoolbar.history", "pearl%20jam||the%20tallest%20man%20on%20earth%20lastfm||who%20the%20fuck%20arctic||the%20white%20stripes%20titulky||nirvana||sledujeme%20seri%C3%A1ly||colours%20of%20o[...]
Line Deleted : user_pref("icqtoolbar.hpChange", true);
Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
Line Deleted : user_pref("icqtoolbar.installTime", "1343398445");
Line Deleted : user_pref("icqtoolbar.installsource", "1");
Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "25.0.1");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uniqueID", "128855350012885538221288636195699");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1397645311);
Line Deleted : user_pref("icqtoolbar.userEngineApproved", true);
Line Deleted : user_pref("icqtoolbar.userHpApproved", true);
Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [31976 octets] - [16/04/2014 15:17:35]
AdwCleaner[S0].txt - [32370 octets] - [16/04/2014 15:19:17]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [32431 octets] ##########
Naposledy upravil(a) tomesPJ dne 16 dub 2014 19:39, celkem upraveno 1 x.
Re: Vir na flashce
tady ještě verze s flashkou,nevim jestli se lisi nebo ne.....
# AdwCleaner v3.023 - Report created 16/04/2014 at 15:46:34
# Updated 01/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 1 (32 bits)
# Username : Tomáš - TOMÁŠ-PC
# Running from : C:\Users\Tomáš\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
***** [ Browsers ] *****
-\\ Internet Explorer v7.0.6001.18639
-\\ Mozilla Firefox v25.0.1 (cs)
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\prefs.js ]
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [31976 octets] - [16/04/2014 15:17:35]
AdwCleaner[R1].txt - [1214 octets] - [16/04/2014 15:44:52]
AdwCleaner[S0].txt - [32512 octets] - [16/04/2014 15:19:17]
AdwCleaner[S1].txt - [1137 octets] - [16/04/2014 15:46:34]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1197 octets] ##########
# AdwCleaner v3.023 - Report created 16/04/2014 at 15:46:34
# Updated 01/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 1 (32 bits)
# Username : Tomáš - TOMÁŠ-PC
# Running from : C:\Users\Tomáš\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
***** [ Browsers ] *****
-\\ Internet Explorer v7.0.6001.18639
-\\ Mozilla Firefox v25.0.1 (cs)
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\bcy537zz.default\prefs.js ]
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\n9ujpqah.default-1349801324926\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [31976 octets] - [16/04/2014 15:17:35]
AdwCleaner[R1].txt - [1214 octets] - [16/04/2014 15:44:52]
AdwCleaner[S0].txt - [32512 octets] - [16/04/2014 15:19:17]
AdwCleaner[S1].txt - [1137 octets] - [16/04/2014 15:46:34]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1197 octets] ##########
Re: Vir na flashce






Re: Vir na flashce
tak jsem to rozjel,restartoval se mi pc, pak naběhl program a asi po 2 minutách mi vyskočila zase ta chybová hláška....bylo to na 5%....
Re: Vir na flashce

Re: Vir na flashce
pod písmenem H
Re: Vir na flashce


- Do okna vlozte skript nize
Kód: Vybrat vše
:dir H:\
- Kliknete na Look
- Tlacitko Look se zmeni na Scanning a zsedne
- Pockejte pokud se tlacitko Scanning opet nezmeni na Look - tak poznate ze SystemLook dokoncil svou praci
- Vyskoci na Vas log s nazvem SystemLook (pripadne bude ulozen na plose), jeho obsah mi sem vlozte
Re: Vir na flashce
no tak mi jeden kamarád poradil....pomocí programu smadav vyčistím flashku, do které poté mohu nahrát soubory které po odebrání z pc fungují...ale po vložení do pc se opět vše změní na zástupce,zkoušel jsem pc vyčistit opět pomocí toho smadavu ale i po skončení testu a opravení je tam vir stále...
tady log ze systemlook:
SystemLook 30.07.11 by jpshortstuff
Log created at 09:36 on 24/04/2014 by Tomáš
Administrator - Elevation successful
========== dir ==========
H: - Parameters: "(none)"
---Files---
2011.lnk --a---- 577 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Game.lnk --a---- 629 bytes [07:31 24/04/2014] [07:31 24/04/2014]
hgntkdlkml.vbe ---hs-- 612263 bytes [07:31 24/04/2014] [19:42 06/01/2014]
antemasque.lnk --a---- 589 bytes [07:31 24/04/2014] [07:31 24/04/2014]
MICIN.DIR.lnk --a---- 587 bytes [07:31 24/04/2014] [07:32 24/04/2014]
Ben Frost - A U R O R A [2014] [Album].lnk --a---- 685 bytes [07:31 24/04/2014] [07:31 24/04/2014]
The Afghan Whigs - Do to the Beast (2014).lnk --a---- 683 bytes [07:31 24/04/2014] [07:31 24/04/2014]
2014 - The Unnatural World.lnk --a---- 637 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Funeral.lnk --a---- 583 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk --a---- 795 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk --a---- 749 bytes [07:32 24/04/2014] [07:32 24/04/2014]
lykke li výber.lnk --a---- 605 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Chuck Ragan - Covering Ground [2011].lnk --a---- 661 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Cloud Nothings - Here and Nowhere Else (2014).lnk --a---- 687 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Sonic Youth - Rather Ripped [UK] [2006].lnk --a---- 671 bytes [07:32 24/04/2014] [07:32 24/04/2014]
---Folders---
antemasque d--hs-- [11:51 21/04/2014]
Ben Frost - A U R O R A [2014] [Album] d--hs-- [08:55 16/04/2014]
The Afghan Whigs - Do to the Beast (2014) d--hs-- [20:44 17/04/2014]
MICIN.DIR d--hs-- [14:46 16/01/2004]
2011 d--hs-- [20:54 17/04/2014]
2014 - The Unnatural World d--hs-- [13:10 17/04/2014]
Funeral d--hs-- [13:50 17/04/2014]
Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1 d--hs-- [11:54 21/04/2014]
Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1 d--hs-- [12:44 23/04/2014]
lykke li výber d--hs-- [19:06 17/04/2014]
Chuck Ragan - Covering Ground [2011] d--hs-- [19:32 17/04/2014]
Cloud Nothings - Here and Nowhere Else (2014) d--hs-- [20:33 17/04/2014]
Sonic Youth - Rather Ripped [UK] [2006] d--hs-- [20:39 17/04/2014]
-= EOF =-
tady log ze systemlook:
SystemLook 30.07.11 by jpshortstuff
Log created at 09:36 on 24/04/2014 by Tomáš
Administrator - Elevation successful
========== dir ==========
H: - Parameters: "(none)"
---Files---
2011.lnk --a---- 577 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Game.lnk --a---- 629 bytes [07:31 24/04/2014] [07:31 24/04/2014]
hgntkdlkml.vbe ---hs-- 612263 bytes [07:31 24/04/2014] [19:42 06/01/2014]
antemasque.lnk --a---- 589 bytes [07:31 24/04/2014] [07:31 24/04/2014]
MICIN.DIR.lnk --a---- 587 bytes [07:31 24/04/2014] [07:32 24/04/2014]
Ben Frost - A U R O R A [2014] [Album].lnk --a---- 685 bytes [07:31 24/04/2014] [07:31 24/04/2014]
The Afghan Whigs - Do to the Beast (2014).lnk --a---- 683 bytes [07:31 24/04/2014] [07:31 24/04/2014]
2014 - The Unnatural World.lnk --a---- 637 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Funeral.lnk --a---- 583 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk --a---- 795 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk --a---- 749 bytes [07:32 24/04/2014] [07:32 24/04/2014]
lykke li výber.lnk --a---- 605 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Chuck Ragan - Covering Ground [2011].lnk --a---- 661 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Cloud Nothings - Here and Nowhere Else (2014).lnk --a---- 687 bytes [07:32 24/04/2014] [07:32 24/04/2014]
Sonic Youth - Rather Ripped [UK] [2006].lnk --a---- 671 bytes [07:32 24/04/2014] [07:32 24/04/2014]
---Folders---
antemasque d--hs-- [11:51 21/04/2014]
Ben Frost - A U R O R A [2014] [Album] d--hs-- [08:55 16/04/2014]
The Afghan Whigs - Do to the Beast (2014) d--hs-- [20:44 17/04/2014]
MICIN.DIR d--hs-- [14:46 16/01/2004]
2011 d--hs-- [20:54 17/04/2014]
2014 - The Unnatural World d--hs-- [13:10 17/04/2014]
Funeral d--hs-- [13:50 17/04/2014]
Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1 d--hs-- [11:54 21/04/2014]
Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1 d--hs-- [12:44 23/04/2014]
lykke li výber d--hs-- [19:06 17/04/2014]
Chuck Ragan - Covering Ground [2011] d--hs-- [19:32 17/04/2014]
Cloud Nothings - Here and Nowhere Else (2014) d--hs-- [20:33 17/04/2014]
Sonic Youth - Rather Ripped [UK] [2006] d--hs-- [20:39 17/04/2014]
-= EOF =-
Re: Vir na flashce




- Spust poznamkovy blok (Start-spustit-notepad)
- Zkopiruj skript nize
Kód: Vybrat vše
Start H:\hgntkdlkml.vbe H:\2011.lnk H:\Game.lnk H:\antemasque.lnk H:\MICIN.DIR.lnk H:\Ben Frost - A U R O R A [2014] [Album].lnk H:\The Afghan Whigs - Do to the Beast (2014).lnk H:\2014 - The Unnatural World.lnk H:\Funeral.lnk H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk H:\lykke li výber.lnk H:\Chuck Ragan - Covering Ground [2011].lnk H:\Cloud Nothings - Here and Nowhere Else (2014).lnk H:\Sonic Youth - Rather Ripped [UK] [2006].lnk CMD: attrib -s -h "H:\antemasque" CMD: attrib -s -h "H:\Ben Frost - A U R O R A" CMD: attrib -s -h "H:\The Afghan Whigs - Do to the Beast (2014)" CMD: attrib -s -h "H:\MICIN.DIR" CMD: attrib -s -h "H:\2011" CMD: attrib -s -h "H:\2014 - The Unnatural World" CMD: attrib -s -h "H:\Funeral" CMD: attrib -s -h "H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1" CMD: attrib -s -h "H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1" CMD: attrib -s -h "H:\lykke li výber" CMD: attrib -s -h "H:\Chuck Ragan - Covering Ground [2011]" CMD: attrib -s -h "H:\Cloud Nothings - Here and Nowhere Else (2014)" CMD: attrib -s -h "H:\Sonic Youth - Rather Ripped [UK] [2006]" End
- Uloz vytvoreny TXT jako fixlist.txt
- Presun vytvoreny fixlist vedle FRST = na plochu

- Kliknie na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: Vir na flashce
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 24-04-2014
Ran by Tomáš at 2014-04-24 10:11:42 Run:1
Running from C:\Users\Tomáš\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
H:\hgntkdlkml.vbe
H:\2011.lnk
H:\Game.lnk
H:\antemasque.lnk
H:\MICIN.DIR.lnk
H:\Ben Frost - A U R O R A [2014] [Album].lnk
H:\The Afghan Whigs - Do to the Beast (2014).lnk
H:\2014 - The Unnatural World.lnk
H:\Funeral.lnk
H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk
H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk
H:\lykke li výber.lnk
H:\Chuck Ragan - Covering Ground [2011].lnk
H:\Cloud Nothings - Here and Nowhere Else (2014).lnk
H:\Sonic Youth - Rather Ripped [UK] [2006].lnk
CMD: attrib -s -h "H:\antemasque"
CMD: attrib -s -h "H:\Ben Frost - A U R O R A"
CMD: attrib -s -h "H:\The Afghan Whigs - Do to the Beast (2014)"
CMD: attrib -s -h "H:\MICIN.DIR"
CMD: attrib -s -h "H:\2011"
CMD: attrib -s -h "H:\2014 - The Unnatural World"
CMD: attrib -s -h "H:\Funeral"
CMD: attrib -s -h "H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1"
CMD: attrib -s -h "H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1"
CMD: attrib -s -h "H:\lykke li výber"
CMD: attrib -s -h "H:\Chuck Ragan - Covering Ground [2011]"
CMD: attrib -s -h "H:\Cloud Nothings - Here and Nowhere Else (2014)"
CMD: attrib -s -h "H:\Sonic Youth - Rather Ripped [UK] [2006]"
End
*****************
H:\hgntkdlkml.vbe => Moved successfully.
H:\2011.lnk => Moved successfully.
"H:\Game.lnk" => File/Directory not found.
H:\antemasque.lnk => Moved successfully.
H:\MICIN.DIR.lnk => Moved successfully.
H:\Ben Frost - A U R O R A [2014] [Album].lnk => Moved successfully.
H:\The Afghan Whigs - Do to the Beast (2014).lnk => Moved successfully.
H:\2014 - The Unnatural World.lnk => Moved successfully.
H:\Funeral.lnk => Moved successfully.
H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk => Moved successfully.
H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk => Moved successfully.
H:\lykke li výber.lnk => Moved successfully.
H:\Chuck Ragan - Covering Ground [2011].lnk => Moved successfully.
H:\Cloud Nothings - Here and Nowhere Else (2014).lnk => Moved successfully.
H:\Sonic Youth - Rather Ripped [UK] [2006].lnk => Moved successfully.
========= attrib -s -h "H:\antemasque" =========
========= End of CMD: =========
========= attrib -s -h "H:\Ben Frost - A U R O R A" =========
Soubor nebyl nalezen - H:\Ben Frost - A U R O R A.
========= End of CMD: =========
========= attrib -s -h "H:\The Afghan Whigs - Do to the Beast (2014)" =========
========= End of CMD: =========
========= attrib -s -h "H:\MICIN.DIR" =========
========= End of CMD: =========
========= attrib -s -h "H:\2011" =========
========= End of CMD: =========
========= attrib -s -h "H:\2014 - The Unnatural World" =========
========= End of CMD: =========
========= attrib -s -h "H:\Funeral" =========
========= End of CMD: =========
========= attrib -s -h "H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1" =========
========= End of CMD: =========
========= attrib -s -h "H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1" =========
========= End of CMD: =========
========= attrib -s -h "H:\lykke li výber" =========
========= End of CMD: =========
========= attrib -s -h "H:\Chuck Ragan - Covering Ground [2011]" =========
========= End of CMD: =========
========= attrib -s -h "H:\Cloud Nothings - Here and Nowhere Else (2014)" =========
========= End of CMD: =========
========= attrib -s -h "H:\Sonic Youth - Rather Ripped [UK] [2006]" =========
========= End of CMD: =========
==== End of Fixlog ====
Ran by Tomáš at 2014-04-24 10:11:42 Run:1
Running from C:\Users\Tomáš\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
H:\hgntkdlkml.vbe
H:\2011.lnk
H:\Game.lnk
H:\antemasque.lnk
H:\MICIN.DIR.lnk
H:\Ben Frost - A U R O R A [2014] [Album].lnk
H:\The Afghan Whigs - Do to the Beast (2014).lnk
H:\2014 - The Unnatural World.lnk
H:\Funeral.lnk
H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk
H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk
H:\lykke li výber.lnk
H:\Chuck Ragan - Covering Ground [2011].lnk
H:\Cloud Nothings - Here and Nowhere Else (2014).lnk
H:\Sonic Youth - Rather Ripped [UK] [2006].lnk
CMD: attrib -s -h "H:\antemasque"
CMD: attrib -s -h "H:\Ben Frost - A U R O R A"
CMD: attrib -s -h "H:\The Afghan Whigs - Do to the Beast (2014)"
CMD: attrib -s -h "H:\MICIN.DIR"
CMD: attrib -s -h "H:\2011"
CMD: attrib -s -h "H:\2014 - The Unnatural World"
CMD: attrib -s -h "H:\Funeral"
CMD: attrib -s -h "H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1"
CMD: attrib -s -h "H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1"
CMD: attrib -s -h "H:\lykke li výber"
CMD: attrib -s -h "H:\Chuck Ragan - Covering Ground [2011]"
CMD: attrib -s -h "H:\Cloud Nothings - Here and Nowhere Else (2014)"
CMD: attrib -s -h "H:\Sonic Youth - Rather Ripped [UK] [2006]"
End
*****************
H:\hgntkdlkml.vbe => Moved successfully.
H:\2011.lnk => Moved successfully.
"H:\Game.lnk" => File/Directory not found.
H:\antemasque.lnk => Moved successfully.
H:\MICIN.DIR.lnk => Moved successfully.
H:\Ben Frost - A U R O R A [2014] [Album].lnk => Moved successfully.
H:\The Afghan Whigs - Do to the Beast (2014).lnk => Moved successfully.
H:\2014 - The Unnatural World.lnk => Moved successfully.
H:\Funeral.lnk => Moved successfully.
H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1.lnk => Moved successfully.
H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1.lnk => Moved successfully.
H:\lykke li výber.lnk => Moved successfully.
H:\Chuck Ragan - Covering Ground [2011].lnk => Moved successfully.
H:\Cloud Nothings - Here and Nowhere Else (2014).lnk => Moved successfully.
H:\Sonic Youth - Rather Ripped [UK] [2006].lnk => Moved successfully.
========= attrib -s -h "H:\antemasque" =========
========= End of CMD: =========
========= attrib -s -h "H:\Ben Frost - A U R O R A" =========
Soubor nebyl nalezen - H:\Ben Frost - A U R O R A.
========= End of CMD: =========
========= attrib -s -h "H:\The Afghan Whigs - Do to the Beast (2014)" =========
========= End of CMD: =========
========= attrib -s -h "H:\MICIN.DIR" =========
========= End of CMD: =========
========= attrib -s -h "H:\2011" =========
========= End of CMD: =========
========= attrib -s -h "H:\2014 - The Unnatural World" =========
========= End of CMD: =========
========= attrib -s -h "H:\Funeral" =========
========= End of CMD: =========
========= attrib -s -h "H:\Arcade Fire - Live @ Coachella Valley Music & Arts Festival, USA, 13-04-2014 - CD 1" =========
========= End of CMD: =========
========= attrib -s -h "H:\Arcade Fire - Live @ Lollapalooza Festival, Chile, 30-03-2014 - CD 1" =========
========= End of CMD: =========
========= attrib -s -h "H:\lykke li výber" =========
========= End of CMD: =========
========= attrib -s -h "H:\Chuck Ragan - Covering Ground [2011]" =========
========= End of CMD: =========
========= attrib -s -h "H:\Cloud Nothings - Here and Nowhere Else (2014)" =========
========= End of CMD: =========
========= attrib -s -h "H:\Sonic Youth - Rather Ripped [UK] [2006]" =========
========= End of CMD: =========
==== End of Fixlog ====
Re: Vir na flashce
Tak co flash disk, jak je na tom??