Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Vyskakuje reklama

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
dirtyharry
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 čer 2014 06:31

Vyskakuje reklama

#1 Příspěvek od dirtyharry »

Zdravím, PC se chová normálně, na každé stránce, kterou otevřu, tak na mě vyskočí reklama

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-06-2014
Ran by aaa (administrator) on AAA-PC on 19-06-2014 07:39:38
Running from C:\Users\aaa\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3873704 2014-06-09] (AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-29] (Microsoft Corporation)
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6503704 2013-12-05] (SUPERAntiSpyware)
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [773496 2013-03-11] (ZONER software)
AppInit_DLLs-x32: c:\progra~2\sn0310~1.boo => "c:\progra~2\sn0310~1.boo" File Not Found

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/search?q={searchT ... d=ie7&rlz=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Tcpip\..\Interfaces\{D9D90F37-1FF0-4B3B-A690-5BD76485D182}: [NameServer]10.10.2.10,80.82.144.94

FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: www.google.com
CHR StartupUrls: "www.google.com"
CHR Extension: (Dokumenty Google) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-25]
CHR Extension: (avast! Online Security) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-25]
CHR Extension: (Best Buyer) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp [2014-05-22]
CHR Extension: (Peněženka Google) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-25]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-04-25]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-11] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-04-25] (AVAST Software)
R2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2011-02-04] (Nalpeiron Ltd.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-04-25] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-04-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-04-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-04-25] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-16] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-04-25] ()
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-06-19 07:39 - 2014-06-19 07:40 - 00009418 _____ () C:\Users\aaa\Desktop\FRST.txt
2014-06-19 07:39 - 2014-06-19 07:39 - 00000000 ____D () C:\FRST
2014-06-19 07:35 - 2014-06-19 07:35 - 02082304 _____ (Farbar) C:\Users\aaa\Desktop\FRST64.exe
2014-06-19 00:01 - 2014-06-19 00:22 - 888573952 _____ () C:\Users\aaa\Downloads\Prci, prci, prcicky 8 - Skolni sraz (American Reunion) 2012 CZ dabing.avi
2014-06-18 21:59 - 2014-06-18 21:59 - 66950888 _____ () C:\Users\aaa\Downloads\Nepotvrzeno 657345.crdownload
2014-06-18 13:53 - 2014-06-19 00:57 - 00017100 _____ () C:\Users\aaa\Downloads\renders.flame
2014-06-18 13:53 - 2014-06-18 15:14 - 00014194 _____ () C:\Users\aaa\Downloads\renders.bak
2014-06-15 09:56 - 2014-06-15 09:56 - 00000000 ____D () C:\Users\aaa\Documents\Aurora3D
2014-06-14 06:03 - 2014-06-14 06:03 - 00001126 _____ () C:\Users\Public\Desktop\Aurora 3D Text & Logo Maker.lnk
2014-06-14 06:03 - 2014-06-14 06:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora 3D Text & Logo Maker
2014-06-14 06:02 - 2014-06-14 06:02 - 00000000 ____D () C:\Program Files (x86)\Aurora3D
2014-06-14 06:02 - 2011-04-10 11:22 - 00667648 _____ (Optima SC Inc.) C:\Windows\SysWOW64\vp8vfw.dll
2014-06-13 12:38 - 2014-06-13 12:38 - 00000132 _____ () C:\Users\aaa\AppData\Roaming\Adobe Formát GIF CS6 – předvolby
2014-06-13 08:35 - 2014-06-13 08:35 - 00000964 _____ () C:\Users\Public\Desktop\Xara 3D Maker 7.lnk
2014-06-13 08:35 - 2014-06-13 08:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\MAGIX
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\ProgramData\MAGIX
2014-06-13 08:11 - 2014-06-13 08:35 - 00000000 ____D () C:\Program Files (x86)\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\ProgramData\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-06-11 20:14 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-11 20:14 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-11 20:14 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-11 20:14 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 20:14 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-11 20:14 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-06-11 20:14 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-06-11 20:14 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-11 20:14 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-11 20:14 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-11 20:14 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-11 20:14 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-11 20:14 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-11 20:14 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-06-11 20:14 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-11 20:14 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-06-11 20:14 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-11 20:14 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 20:14 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-11 20:14 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-06-11 20:14 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-06-11 20:14 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-06-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-06-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-06-11 20:13 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-11 20:13 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-11 20:13 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-11 20:13 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-11 20:13 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-11 20:13 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-11 20:13 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-11 20:13 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-11 20:13 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-11 20:13 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-11 20:13 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-11 20:13 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-11 20:13 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-11 20:13 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-11 20:13 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-11 20:13 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-11 20:13 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-11 20:13 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-11 20:13 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-11 20:13 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-06-11 20:13 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-11 20:13 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-11 20:13 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-11 20:13 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-11 20:13 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-11 20:13 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-11 20:13 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-11 20:13 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-06-11 20:13 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-11 20:13 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-11 20:13 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-11 20:13 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-11 20:13 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-11 20:13 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-11 20:13 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-06-11 20:13 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-11 20:13 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-11 20:13 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-11 20:13 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-11 20:13 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-11 20:13 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-11 20:13 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\Documents\Zaxwerks
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Zaxwerks
2014-06-10 13:24 - 2014-06-10 13:24 - 00003216 _____ () C:\Windows\System32\Tasks\{0717B030-459F-4C30-B0CF-315B711EA472}
2014-06-10 13:22 - 2014-06-10 13:22 - 00000000 ____D () C:\ProgramData\Zaxwerks
2014-06-10 13:03 - 2014-06-10 13:03 - 00000000 ____D () C:\Users\aaa\.AS
2014-06-10 12:53 - 2014-06-10 12:53 - 00001069 _____ () C:\Users\aaa\Desktop\Exposure 5.lnk
2014-06-10 12:53 - 2014-06-10 12:53 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alien Skin Software
2014-06-04 20:27 - 2014-06-04 20:27 - 00000000 ____D () C:\Users\aaa\AppData\Local\Topaz Labs
2014-06-04 20:26 - 2014-06-04 20:26 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Topaz Software Manager
2014-06-03 18:35 - 2014-06-03 18:43 - 00000000 __HDC () C:\ProgramData\{EE095810-EED4-4DA0-94B4-24E9E1294094}
2014-06-03 18:35 - 2014-06-03 18:43 - 00000000 __HDC () C:\ProgramData\{170C1966-15F2-48B8-AB1A-1EAAD775C8BE}
2014-06-03 17:46 - 2014-06-03 17:46 - 00000000 ____D () C:\Users\aaa\AppData\Local\Downloaded Installations
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{C0248468-281D-4ECB-A01F-E572F77F5EF3}
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{300BFA2D-5586-44AB-A644-E5831FD1934A}
2014-06-02 10:54 - 2014-06-13 08:12 - 00000000 ____D () C:\Users\aaa\AppData\Local\Xara
2014-06-02 10:49 - 2014-06-02 10:49 - 00000000 ____D () C:\ProgramData\Mr Retro
2014-06-02 10:34 - 2014-06-02 10:38 - 00000000 ____D () C:\tmp
2014-06-02 10:33 - 2014-06-02 10:33 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Blender Foundation
2014-06-02 10:28 - 2014-06-02 10:28 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\Users\aaa\.thumbnails
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2014-06-02 10:27 - 2014-06-02 10:27 - 00000000 ____D () C:\Program Files\Blender Foundation
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Maker3D
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Configure
2014-05-29 11:27 - 2014-05-29 11:31 - 1239224730 _____ () C:\Users\aaa\Downloads\Vlk z Wall Street 2013 CZ dabing.avi
2014-05-28 08:54 - 2014-06-19 07:15 - 00835777 ____N () C:\Windows\WindowsUpdate.log
2014-05-27 11:42 - 2014-05-27 11:42 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\ProgramData\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Program Files\Tiffen
2014-05-23 00:46 - 2014-06-18 21:07 - 00000000 ____D () C:\Users\aaa\Downloads\Nová složka
2014-05-22 16:50 - 2014-05-22 16:50 - 00000000 ____D () C:\ProgramData\Excellent4App
2014-05-22 16:49 - 2014-05-27 05:36 - 00000000 ____D () C:\ProgramData\YoutubeAdblocker
2014-05-22 16:49 - 2014-05-27 05:36 - 00000000 ____D () C:\ProgramData\saave neeeT
2014-05-22 16:49 - 2014-05-22 16:49 - 00000000 ____D () C:\Program Files (x86)\YoutubeAdblocker
2014-05-22 16:49 - 2014-05-22 16:49 - 00000000 ____D () C:\Program Files (x86)\saave neeeT
2014-05-22 16:48 - 2014-05-22 16:50 - 00000000 ____D () C:\ProgramData\InstallMate
2014-05-22 16:48 - 2014-05-22 16:50 - 00000000 ____D () C:\ProgramData\5ff506e05f9558ce
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\aaa\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\aaa\AppData\Local\Chromatic Browser
2014-05-22 10:53 - 2014-05-22 10:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-05-21 21:54 - 2014-05-21 21:54 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2014-05-21 21:54 - 2014-05-21 21:54 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-05-21 20:40 - 2014-05-21 21:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2014-05-21 20:40 - 2014-05-21 20:40 - 00000000 ____D () C:\Users\aaa\AppData\Local\Comodo
2014-05-21 20:39 - 2014-05-21 20:39 - 00000000 ____D () C:\FFOutput
2014-05-21 20:38 - 2014-05-21 21:55 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2014-05-21 19:06 - 2014-05-21 20:53 - 00004608 _____ () C:\Users\aaa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-21 12:49 - 2014-05-21 12:54 - 00000000 ____D () C:\totalcmd
2014-05-21 12:49 - 2014-05-21 12:49 - 00000646 _____ () C:\Users\aaa\Desktop\Total Commander 64 bit.lnk
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\GHISLER
2014-05-21 12:46 - 2014-05-14 18:08 - 00000000 ____D () C:\Users\aaa\Downloads\Total Commander 8.51a Final

==================== One Month Modified Files and Folders =======

2014-06-19 07:40 - 2014-06-19 07:39 - 00009418 _____ () C:\Users\aaa\Desktop\FRST.txt
2014-06-19 07:39 - 2014-06-19 07:39 - 00000000 ____D () C:\FRST
2014-06-19 07:35 - 2014-06-19 07:35 - 02082304 _____ (Farbar) C:\Users\aaa\Desktop\FRST64.exe
2014-06-19 07:35 - 2014-04-25 18:04 - 00003954 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{6908B811-8B81-4117-A965-6E309F7C7D55}
2014-06-19 07:29 - 2014-04-25 18:11 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-19 07:19 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-19 07:19 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-19 07:15 - 2014-05-28 08:54 - 00835777 ____N () C:\Windows\WindowsUpdate.log
2014-06-19 07:11 - 2014-04-25 18:10 - 00000942 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-19 07:11 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-19 02:34 - 2014-05-08 15:44 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\vlc
2014-06-19 00:57 - 2014-06-18 13:53 - 00017100 _____ () C:\Users\aaa\Downloads\renders.flame
2014-06-19 00:22 - 2014-06-19 00:01 - 888573952 _____ () C:\Users\aaa\Downloads\Prci, prci, prcicky 8 - Skolni sraz (American Reunion) 2012 CZ dabing.avi
2014-06-18 22:30 - 2014-04-25 18:12 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-06-18 21:59 - 2014-06-18 21:59 - 66950888 _____ () C:\Users\aaa\Downloads\Nepotvrzeno 657345.crdownload
2014-06-18 21:07 - 2014-05-23 00:46 - 00000000 ____D () C:\Users\aaa\Downloads\Nová složka
2014-06-18 15:14 - 2014-06-18 13:53 - 00014194 _____ () C:\Users\aaa\Downloads\renders.bak
2014-06-18 15:06 - 2014-05-17 13:52 - 00000132 _____ () C:\Users\aaa\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-06-18 09:10 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-06-18 00:17 - 2014-05-17 12:36 - 00000000 ____D () C:\Users\aaa\AppData\Local\CrashDumps
2014-06-17 18:59 - 2009-07-14 07:08 - 00032626 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-06-15 09:56 - 2014-06-15 09:56 - 00000000 ____D () C:\Users\aaa\Documents\Aurora3D
2014-06-14 06:03 - 2014-06-14 06:03 - 00001126 _____ () C:\Users\Public\Desktop\Aurora 3D Text & Logo Maker.lnk
2014-06-14 06:03 - 2014-06-14 06:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora 3D Text & Logo Maker
2014-06-14 06:02 - 2014-06-14 06:02 - 00000000 ____D () C:\Program Files (x86)\Aurora3D
2014-06-13 12:38 - 2014-06-13 12:38 - 00000132 _____ () C:\Users\aaa\AppData\Roaming\Adobe Formát GIF CS6 – předvolby
2014-06-13 10:01 - 2009-07-14 06:45 - 05128320 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-06-13 09:09 - 2014-04-25 18:09 - 00158136 _____ () C:\Users\aaa\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-13 08:35 - 2014-06-13 08:35 - 00000964 _____ () C:\Users\Public\Desktop\Xara 3D Maker 7.lnk
2014-06-13 08:35 - 2014-06-13 08:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
2014-06-13 08:35 - 2014-06-13 08:11 - 00000000 ____D () C:\Program Files (x86)\Xara
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\MAGIX
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\ProgramData\MAGIX
2014-06-13 08:12 - 2014-06-02 10:54 - 00000000 ____D () C:\Users\aaa\AppData\Local\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\ProgramData\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-06-12 11:15 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-06-11 23:28 - 2014-04-25 19:14 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-11 23:27 - 2014-04-25 19:14 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-06-11 23:24 - 2014-04-30 10:18 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-06-11 18:19 - 2014-05-10 09:32 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Alien Skin
2014-06-11 18:19 - 2014-05-10 09:24 - 00000000 ____D () C:\ProgramData\Alien Skin
2014-06-11 18:17 - 2014-05-10 09:26 - 00000000 ____D () C:\Users\aaa\AppData\Local\Alien Skin
2014-06-11 18:12 - 2014-05-10 09:24 - 00000000 ____D () C:\Program Files (x86)\Alien Skin
2014-06-11 14:46 - 2014-05-10 09:24 - 00000000 ____D () C:\Program Files\Alien Skin
2014-06-10 14:14 - 2014-05-08 17:48 - 00000000 ____D () C:\fotky
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\Documents\Zaxwerks
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Zaxwerks
2014-06-10 13:27 - 2011-02-19 23:03 - 00051024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcomp100.dll
2014-06-10 13:24 - 2014-06-10 13:24 - 00003216 _____ () C:\Windows\System32\Tasks\{0717B030-459F-4C30-B0CF-315B711EA472}
2014-06-10 13:22 - 2014-06-10 13:22 - 00000000 ____D () C:\ProgramData\Zaxwerks
2014-06-10 13:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Resources
2014-06-10 13:03 - 2014-06-10 13:03 - 00000000 ____D () C:\Users\aaa\.AS
2014-06-10 13:03 - 2014-04-25 16:46 - 00000000 ____D () C:\Users\aaa
2014-06-10 12:53 - 2014-06-10 12:53 - 00001069 _____ () C:\Users\aaa\Desktop\Exposure 5.lnk
2014-06-10 12:53 - 2014-06-10 12:53 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alien Skin Software
2014-06-10 12:48 - 2009-07-14 17:18 - 00668540 _____ () C:\Windows\system32\perfh005.dat
2014-06-10 12:48 - 2009-07-14 17:18 - 00141200 _____ () C:\Windows\system32\perfc005.dat
2014-06-10 12:48 - 2009-07-14 07:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-09 23:54 - 2014-05-10 08:15 - 00000000 ____D () C:\hudba
2014-06-09 21:39 - 2014-04-25 18:12 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-06-09 21:36 - 2014-05-10 09:47 - 00000000 ____D () C:\Program Files\Common Files\Topaz Labs
2014-06-09 21:36 - 2014-05-08 15:38 - 00000000 ____D () C:\Program Files\Adobe photoshop CS6 13.0 [Extended x86+x64] CZ
2014-06-09 21:36 - 2009-07-14 17:36 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-06-09 21:36 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-06-08 11:13 - 2014-06-11 20:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-08 11:08 - 2014-06-11 20:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-04 20:27 - 2014-06-04 20:27 - 00000000 ____D () C:\Users\aaa\AppData\Local\Topaz Labs
2014-06-04 20:26 - 2014-06-04 20:26 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Topaz Software Manager
2014-06-03 18:43 - 2014-06-03 18:35 - 00000000 __HDC () C:\ProgramData\{EE095810-EED4-4DA0-94B4-24E9E1294094}
2014-06-03 18:43 - 2014-06-03 18:35 - 00000000 __HDC () C:\ProgramData\{170C1966-15F2-48B8-AB1A-1EAAD775C8BE}
2014-06-03 18:35 - 2014-05-18 17:31 - 00000000 ____D () C:\Program Files (x86)\Topaz Labs
2014-06-03 17:56 - 2014-05-09 14:44 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-06-03 17:46 - 2014-06-03 17:46 - 00000000 ____D () C:\Users\aaa\AppData\Local\Downloaded Installations
2014-06-03 00:09 - 2014-05-08 14:04 - 00000000 ____D () C:\photoshop
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{C0248468-281D-4ECB-A01F-E572F77F5EF3}
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{300BFA2D-5586-44AB-A644-E5831FD1934A}
2014-06-02 10:49 - 2014-06-02 10:49 - 00000000 ____D () C:\ProgramData\Mr Retro
2014-06-02 10:38 - 2014-06-02 10:34 - 00000000 ____D () C:\tmp
2014-06-02 10:33 - 2014-06-02 10:33 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Blender Foundation
2014-06-02 10:28 - 2014-06-02 10:28 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\Users\aaa\.thumbnails
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2014-06-02 10:27 - 2014-06-02 10:27 - 00000000 ____D () C:\Program Files\Blender Foundation
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Maker3D
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Configure
2014-05-30 17:13 - 2014-05-09 14:46 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\onOne Software
2014-05-30 12:21 - 2014-06-11 20:13 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-30 12:02 - 2014-06-11 20:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-30 12:02 - 2014-06-11 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-30 11:45 - 2014-06-11 20:13 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-30 11:39 - 2014-06-11 20:13 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-30 11:39 - 2014-06-11 20:13 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-30 11:38 - 2014-06-11 20:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-30 11:28 - 2014-06-11 20:13 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-30 11:27 - 2014-06-11 20:13 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-30 11:24 - 2014-06-11 20:13 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-30 11:21 - 2014-06-11 20:13 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-30 11:21 - 2014-06-11 20:13 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-30 11:20 - 2014-06-11 20:13 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-30 11:18 - 2014-06-11 20:14 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-30 11:11 - 2014-06-11 20:13 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-30 11:08 - 2014-06-11 20:13 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-30 11:06 - 2014-06-11 20:13 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-30 11:02 - 2014-06-11 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-30 10:55 - 2014-06-11 20:14 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-30 10:49 - 2014-06-11 20:13 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-30 10:46 - 2014-06-11 20:13 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-30 10:44 - 2014-06-11 20:13 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-30 10:44 - 2014-06-11 20:13 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-30 10:43 - 2014-06-11 20:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-30 10:42 - 2014-06-11 20:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-30 10:38 - 2014-06-11 20:13 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-30 10:35 - 2014-06-11 20:13 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-30 10:34 - 2014-06-11 20:13 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-30 10:33 - 2014-06-11 20:13 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-30 10:30 - 2014-06-11 20:13 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-30 10:29 - 2014-06-11 20:13 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-30 10:28 - 2014-06-11 20:13 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-30 10:27 - 2014-06-11 20:14 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-30 10:24 - 2014-06-11 20:13 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-30 10:23 - 2014-06-11 20:13 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-30 10:16 - 2014-06-11 20:14 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-30 10:10 - 2014-06-11 20:14 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-30 10:06 - 2014-06-11 20:13 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-30 10:04 - 2014-06-11 20:14 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-30 10:02 - 2014-06-11 20:13 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-30 09:56 - 2014-06-11 20:13 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-30 09:56 - 2014-06-11 20:13 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-30 09:54 - 2014-06-11 20:14 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-30 09:50 - 2014-06-11 20:13 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-05-30 09:49 - 2014-06-11 20:13 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-30 09:43 - 2014-06-11 20:13 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-30 09:40 - 2014-06-11 20:13 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-30 09:30 - 2014-06-11 20:13 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-30 09:21 - 2014-06-11 20:13 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-30 09:15 - 2014-06-11 20:14 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-30 09:13 - 2014-06-11 20:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-30 09:13 - 2014-06-11 20:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-29 18:27 - 2014-04-30 09:50 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Adobe
2014-05-29 11:31 - 2014-05-29 11:27 - 1239224730 _____ () C:\Users\aaa\Downloads\Vlk z Wall Street 2013 CZ dabing.avi
2014-05-27 11:42 - 2014-05-27 11:42 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\ProgramData\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Program Files\Tiffen
2014-05-27 05:36 - 2014-05-22 16:49 - 00000000 ____D () C:\ProgramData\YoutubeAdblocker
2014-05-27 05:36 - 2014-05-22 16:49 - 00000000 ____D () C:\ProgramData\saave neeeT
2014-05-27 04:53 - 2014-04-25 18:11 - 00002171 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-22 17:10 - 2014-05-09 14:19 - 00000000 ____D () C:\Users\aaa\AppData\Local\Nik Software
2014-05-22 17:10 - 2014-05-09 14:19 - 00000000 ____D () C:\ProgramData\Nik Software
2014-05-22 16:50 - 2014-05-22 16:50 - 00000000 ____D () C:\ProgramData\Excellent4App
2014-05-22 16:50 - 2014-05-22 16:48 - 00000000 ____D () C:\ProgramData\InstallMate
2014-05-22 16:50 - 2014-05-22 16:48 - 00000000 ____D () C:\ProgramData\5ff506e05f9558ce
2014-05-22 16:49 - 2014-05-22 16:49 - 00000000 ____D () C:\Program Files (x86)\YoutubeAdblocker
2014-05-22 16:49 - 2014-05-22 16:49 - 00000000 ____D () C:\Program Files (x86)\saave neeeT
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\aaa\AppData\Local\Torch
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\aaa\AppData\Local\Chromatic Browser
2014-05-22 16:48 - 2014-04-25 18:10 - 00000000 ____D () C:\Users\aaa\AppData\Local\Google
2014-05-22 10:53 - 2014-05-22 10:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-05-21 21:55 - 2014-05-21 20:38 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2014-05-21 21:54 - 2014-05-21 21:54 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2014-05-21 21:54 - 2014-05-21 21:54 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-05-21 21:54 - 2014-05-21 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2014-05-21 20:53 - 2014-05-21 19:06 - 00004608 _____ () C:\Users\aaa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-21 20:40 - 2014-05-21 20:40 - 00000000 ____D () C:\Users\aaa\AppData\Local\Comodo
2014-05-21 20:39 - 2014-05-21 20:39 - 00000000 ____D () C:\FFOutput
2014-05-21 19:40 - 2014-04-25 21:38 - 00000000 ____D () C:\Users\aaa\AppData\Local\Microsoft Help
2014-05-21 12:54 - 2014-05-21 12:49 - 00000000 ____D () C:\totalcmd
2014-05-21 12:49 - 2014-05-21 12:49 - 00000646 _____ () C:\Users\aaa\Desktop\Total Commander 64 bit.lnk
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\GHISLER

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-06-08 06:52

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakuje reklama

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dirtyharry
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 čer 2014 06:31

Re: Vyskakuje reklama

#3 Příspěvek od dirtyharry »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by aaa on źt 19.06.2014 at 8:28:02,05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\ilivid



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\youtubeadblocker"
Successfully deleted: [Folder] "C:\Program Files (x86)\youtubeadblocker"



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 19.06.2014 at 8:39:37,67
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




# AdwCleaner v3.212 - Report created 19/06/2014 at 08:57:38
# Updated 05/06/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : aaa - AAA-PC
# Running from : C:\Users\aaa\Desktop\adwcleaner_3.212.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\saave neeeT
Folder Deleted : C:\Program Files (x86)\saave neeeT
Folder Deleted : C:\Users\aaa\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\aaa\AppData\Local\PackageAware
Folder Deleted : C:\Users\aaa\AppData\Local\torch
Folder Deleted : C:\Users\Administrator\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\torch
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\torch
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{1a34a8e0}
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7DD5E91C-3864-77EC-7635-D14910C2A03E}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17126


-\\ Google Chrome v35.0.1916.114

[ File : C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Extension] : accoabnhhdjmeebbkapkmplaaeeeanjh
Deleted [Extension] : hdeefhgmacclfolecpdfopibfjcemagp

*************************

AdwCleaner[R0].txt - [3546 octets] - [19/06/2014 08:48:39]
AdwCleaner[S0].txt - [3398 octets] - [19/06/2014 08:57:38]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3458 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakuje reklama

#4 Příspěvek od vyosek »

:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dirtyharry
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 čer 2014 06:31

Re: Vyskakuje reklama

#5 Příspěvek od dirtyharry »

tady to máte :)


Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by aaa on źt 19.06.2014 at 9:43:42,28.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\aaa\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

19.6.2014 9:44:35 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~3\InstallMate deleted
"C:\PROGRA~3\5ff506e05f9558ce\{4820778D-AB0D-6D18-C316-52A6A0E1D507}" deleted
"C:\PROGRA~3\5ff506e05f9558ce\{7DD5E91C-3864-77EC-7635-D14910C2A03E}" deleted
"C:\PROGRA~3\5ff506e05f9558ce\{7DD5E91C-3864-77EC-7635-D14910C2A03E}.old" deleted
"C:\PROGRA~3\5ff506e05f9558ce\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}" deleted
"C:\PROGRA~3\5ff506e05f9558ce" deleted

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[25.04.2014 18:10]

save net - aaa\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - aaa\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - aaa\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
avast Online Security - aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Best Buyer - aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
save net - aaa\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - aaa\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - aaa\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
save net - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Best Buyer - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
save net - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
save net - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Best Buyer - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
save net - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
save net - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Best Buyer - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
save net - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
save net - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
Best Buyer - UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
save net - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh
Best Buyer - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp
YoutubeAdblocker - UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp
avast Online Security - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Chrome Fix ======================

C:\Users\aaa\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hdeefhgmacclfolecpdfopibfjcemagp deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hdeefhgmacclfolecpdfopibfjcemagp_0.localstorage deleted successfully
C:\Users\aaa\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\accoabnhhdjmeebbkapkmplaaeeeanjh deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_accoabnhhdjmeebbkapkmplaaeeeanjh_0.localstorage deleted successfully
C:\Users\aaa\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp deleted successfully
C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hbepadcdhpahlikldbochnhfleejiokp_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.google.com/search?q={searchT ... d=ie7&rlz="
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"

==== Reset Google Chrome ======================

C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\d5c86047-566d-42c7-b7d7-d7318d72c29f deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\aaa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\aaa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=190 folders=82 4268447 bytes)

==== Empty Temp Folders ======================

C:\Users\aaa\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\aaa\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on źt 19.06.2014 at 10:02:57,03 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakuje reklama

#6 Příspěvek od vyosek »

:arrow: Tak jeste poladime drobnosti - poprosim o FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dirtyharry
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 čer 2014 06:31

Re: Vyskakuje reklama

#7 Příspěvek od dirtyharry »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-06-2014
Ran by aaa (administrator) on AAA-PC on 19-06-2014 10:14:40
Running from C:\Users\aaa\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3873704 2014-06-09] (AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-29] (Microsoft Corporation)
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6503704 2013-12-05] (SUPERAntiSpyware)
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [773496 2013-03-11] (ZONER software)
AppInit_DLLs-x32: c:\progra~2\sn0310~1.boo => "c:\progra~2\sn0310~1.boo" File Not Found

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/search?q={searchT ... d=ie7&rlz=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Tcpip\..\Interfaces\{D9D90F37-1FF0-4B3B-A690-5BD76485D182}: [NameServer]10.10.2.10,80.82.144.94

FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-25]
CHR Extension: (Disk Google) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-19]
CHR Extension: (YouTube) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-19]
CHR Extension: (Vyhledávání Google) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-19]
CHR Extension: (avast! Online Security) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-25]
CHR Extension: (Peněženka Google) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-25]
CHR Extension: (Gmail) - C:\Users\aaa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-19]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-04-25]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-11] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-04-25] (AVAST Software)
R2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2011-02-04] (Nalpeiron Ltd.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-04-25] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-04-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-04-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-04-25] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-16] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-04-25] ()
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-06-19 10:01 - 2014-06-19 09:43 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-06-19 09:44 - 2014-06-19 10:02 - 00018006 _____ () C:\zoek-results.log
2014-06-19 09:42 - 2014-06-19 09:59 - 00000000 ____D () C:\zoek_backup
2014-06-19 09:41 - 2014-06-19 09:41 - 01285120 _____ () C:\Users\aaa\Desktop\zoek.exe
2014-06-19 08:59 - 2014-06-19 10:02 - 00000112 _____ () C:\Windows\setupact.log
2014-06-19 08:59 - 2014-06-19 08:59 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 08:58 - 2014-06-19 10:02 - 00001074 _____ () C:\Windows\PFRO.log
2014-06-19 08:49 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-06-19 08:48 - 2014-06-19 09:04 - 00000000 ____D () C:\AdwCleaner
2014-06-19 08:39 - 2014-06-19 08:39 - 00001269 _____ () C:\Users\aaa\Desktop\JRT.txt
2014-06-19 08:27 - 2014-06-19 08:27 - 00000000 ____D () C:\Windows\ERUNT
2014-06-19 08:26 - 2014-06-19 09:02 - 00003538 _____ () C:\Users\aaa\Desktop\Nový textový dokument.txt
2014-06-19 08:25 - 2014-06-19 08:26 - 01333465 _____ () C:\Users\aaa\Desktop\adwcleaner_3.212.exe
2014-06-19 08:25 - 2014-06-19 08:25 - 01016261 _____ (Thisisu) C:\Users\aaa\Desktop\JRT.exe
2014-06-19 07:39 - 2014-06-19 10:15 - 00010059 _____ () C:\Users\aaa\Desktop\FRST.txt
2014-06-19 07:39 - 2014-06-19 10:14 - 00000000 ____D () C:\FRST
2014-06-19 07:35 - 2014-06-19 07:35 - 02082304 _____ (Farbar) C:\Users\aaa\Desktop\FRST64.exe
2014-06-19 00:01 - 2014-06-19 00:22 - 888573952 _____ () C:\Users\aaa\Downloads\Prci, prci, prcicky 8 - Skolni sraz (American Reunion) 2012 CZ dabing.avi
2014-06-15 09:56 - 2014-06-15 09:56 - 00000000 ____D () C:\Users\aaa\Documents\Aurora3D
2014-06-14 06:03 - 2014-06-14 06:03 - 00001126 _____ () C:\Users\Public\Desktop\Aurora 3D Text & Logo Maker.lnk
2014-06-14 06:03 - 2014-06-14 06:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora 3D Text & Logo Maker
2014-06-14 06:02 - 2014-06-14 06:02 - 00000000 ____D () C:\Program Files (x86)\Aurora3D
2014-06-14 06:02 - 2011-04-10 11:22 - 00667648 _____ (Optima SC Inc.) C:\Windows\SysWOW64\vp8vfw.dll
2014-06-13 12:38 - 2014-06-13 12:38 - 00000132 _____ () C:\Users\aaa\AppData\Roaming\Adobe Formát GIF CS6 – předvolby
2014-06-13 08:35 - 2014-06-13 08:35 - 00000964 _____ () C:\Users\Public\Desktop\Xara 3D Maker 7.lnk
2014-06-13 08:35 - 2014-06-13 08:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\MAGIX
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\ProgramData\MAGIX
2014-06-13 08:11 - 2014-06-13 08:35 - 00000000 ____D () C:\Program Files (x86)\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\ProgramData\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-06-11 20:14 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-11 20:14 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-11 20:14 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-11 20:14 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 20:14 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-11 20:14 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-06-11 20:14 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-06-11 20:14 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-11 20:14 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-11 20:14 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-11 20:14 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-11 20:14 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-11 20:14 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-11 20:14 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-06-11 20:14 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-11 20:14 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-06-11 20:14 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-11 20:14 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 20:14 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-11 20:14 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-06-11 20:14 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-06-11 20:14 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-06-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-06-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-06-11 20:13 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-11 20:13 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-11 20:13 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-11 20:13 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-11 20:13 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-11 20:13 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-11 20:13 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-11 20:13 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-11 20:13 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-11 20:13 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-11 20:13 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-11 20:13 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-11 20:13 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-11 20:13 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-11 20:13 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-11 20:13 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-11 20:13 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-11 20:13 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-11 20:13 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-11 20:13 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-06-11 20:13 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-11 20:13 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-11 20:13 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-11 20:13 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-11 20:13 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-11 20:13 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-11 20:13 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-11 20:13 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-06-11 20:13 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-11 20:13 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-11 20:13 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-11 20:13 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-11 20:13 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-11 20:13 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-11 20:13 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-06-11 20:13 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-11 20:13 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-11 20:13 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-11 20:13 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-11 20:13 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-11 20:13 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-11 20:13 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\Documents\Zaxwerks
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Zaxwerks
2014-06-10 13:24 - 2014-06-10 13:24 - 00003216 _____ () C:\Windows\System32\Tasks\{0717B030-459F-4C30-B0CF-315B711EA472}
2014-06-10 13:22 - 2014-06-10 13:22 - 00000000 ____D () C:\ProgramData\Zaxwerks
2014-06-10 13:03 - 2014-06-10 13:03 - 00000000 ____D () C:\Users\aaa\.AS
2014-06-10 12:53 - 2014-06-10 12:53 - 00001069 _____ () C:\Users\aaa\Desktop\Exposure 5.lnk
2014-06-10 12:53 - 2014-06-10 12:53 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alien Skin Software
2014-06-04 20:27 - 2014-06-04 20:27 - 00000000 ____D () C:\Users\aaa\AppData\Local\Topaz Labs
2014-06-04 20:26 - 2014-06-04 20:26 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Topaz Software Manager
2014-06-03 18:35 - 2014-06-03 18:43 - 00000000 __HDC () C:\ProgramData\{EE095810-EED4-4DA0-94B4-24E9E1294094}
2014-06-03 18:35 - 2014-06-03 18:43 - 00000000 __HDC () C:\ProgramData\{170C1966-15F2-48B8-AB1A-1EAAD775C8BE}
2014-06-03 17:46 - 2014-06-03 17:46 - 00000000 ____D () C:\Users\aaa\AppData\Local\Downloaded Installations
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{C0248468-281D-4ECB-A01F-E572F77F5EF3}
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{300BFA2D-5586-44AB-A644-E5831FD1934A}
2014-06-02 10:54 - 2014-06-13 08:12 - 00000000 ____D () C:\Users\aaa\AppData\Local\Xara
2014-06-02 10:49 - 2014-06-02 10:49 - 00000000 ____D () C:\ProgramData\Mr Retro
2014-06-02 10:34 - 2014-06-02 10:38 - 00000000 ____D () C:\tmp
2014-06-02 10:33 - 2014-06-02 10:33 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Blender Foundation
2014-06-02 10:28 - 2014-06-02 10:28 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\Users\aaa\.thumbnails
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2014-06-02 10:27 - 2014-06-02 10:27 - 00000000 ____D () C:\Program Files\Blender Foundation
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Maker3D
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Configure
2014-05-29 11:27 - 2014-05-29 11:31 - 1239224730 _____ () C:\Users\aaa\Downloads\Vlk z Wall Street 2013 CZ dabing.avi
2014-05-28 08:54 - 2014-06-19 10:06 - 00848716 _____ () C:\Windows\WindowsUpdate.log
2014-05-27 11:42 - 2014-05-27 11:42 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\ProgramData\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Program Files\Tiffen
2014-05-23 00:46 - 2014-06-18 21:07 - 00000000 ____D () C:\Users\aaa\Downloads\Nová složka
2014-05-22 16:50 - 2014-05-22 16:50 - 00000000 ____D () C:\ProgramData\Excellent4App
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator
2014-05-22 10:53 - 2014-05-22 10:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-05-21 21:54 - 2014-05-21 21:54 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2014-05-21 21:54 - 2014-05-21 21:54 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-05-21 20:40 - 2014-05-21 21:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2014-05-21 20:40 - 2014-05-21 20:40 - 00000000 ____D () C:\Users\aaa\AppData\Local\Comodo
2014-05-21 20:39 - 2014-05-21 20:39 - 00000000 ____D () C:\FFOutput
2014-05-21 20:38 - 2014-05-21 21:55 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2014-05-21 19:06 - 2014-05-21 20:53 - 00004608 _____ () C:\Users\aaa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-21 12:49 - 2014-05-21 12:54 - 00000000 ____D () C:\totalcmd
2014-05-21 12:49 - 2014-05-21 12:49 - 00000646 _____ () C:\Users\aaa\Desktop\Total Commander 64 bit.lnk
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\GHISLER
2014-05-21 12:46 - 2014-05-14 18:08 - 00000000 ____D () C:\Users\aaa\Downloads\Total Commander 8.51a Final

==================== One Month Modified Files and Folders =======

2014-06-19 10:15 - 2014-06-19 07:39 - 00010059 _____ () C:\Users\aaa\Desktop\FRST.txt
2014-06-19 10:14 - 2014-06-19 07:39 - 00000000 ____D () C:\FRST
2014-06-19 10:09 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-19 10:09 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-19 10:06 - 2014-05-28 08:54 - 00848716 _____ () C:\Windows\WindowsUpdate.log
2014-06-19 10:02 - 2014-06-19 09:44 - 00018006 _____ () C:\zoek-results.log
2014-06-19 10:02 - 2014-06-19 08:59 - 00000112 _____ () C:\Windows\setupact.log
2014-06-19 10:02 - 2014-06-19 08:58 - 00001074 _____ () C:\Windows\PFRO.log
2014-06-19 10:02 - 2014-04-25 18:10 - 00000942 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-19 10:02 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-19 09:59 - 2014-06-19 09:42 - 00000000 ____D () C:\zoek_backup
2014-06-19 09:43 - 2014-06-19 10:01 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-06-19 09:41 - 2014-06-19 09:41 - 01285120 _____ () C:\Users\aaa\Desktop\zoek.exe
2014-06-19 09:29 - 2014-04-25 18:11 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-19 09:04 - 2014-06-19 08:48 - 00000000 ____D () C:\AdwCleaner
2014-06-19 09:02 - 2014-06-19 08:26 - 00003538 _____ () C:\Users\aaa\Desktop\Nový textový dokument.txt
2014-06-19 08:59 - 2014-06-19 08:59 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 08:39 - 2014-06-19 08:39 - 00001269 _____ () C:\Users\aaa\Desktop\JRT.txt
2014-06-19 08:27 - 2014-06-19 08:27 - 00000000 ____D () C:\Windows\ERUNT
2014-06-19 08:26 - 2014-06-19 08:25 - 01333465 _____ () C:\Users\aaa\Desktop\adwcleaner_3.212.exe
2014-06-19 08:25 - 2014-06-19 08:25 - 01016261 _____ (Thisisu) C:\Users\aaa\Desktop\JRT.exe
2014-06-19 07:51 - 2014-04-25 18:04 - 00003954 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{6908B811-8B81-4117-A965-6E309F7C7D55}
2014-06-19 07:35 - 2014-06-19 07:35 - 02082304 _____ (Farbar) C:\Users\aaa\Desktop\FRST64.exe
2014-06-19 02:34 - 2014-05-08 15:44 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\vlc
2014-06-19 00:22 - 2014-06-19 00:01 - 888573952 _____ () C:\Users\aaa\Downloads\Prci, prci, prcicky 8 - Skolni sraz (American Reunion) 2012 CZ dabing.avi
2014-06-18 22:30 - 2014-04-25 18:12 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-06-18 21:07 - 2014-05-23 00:46 - 00000000 ____D () C:\Users\aaa\Downloads\Nová složka
2014-06-18 15:06 - 2014-05-17 13:52 - 00000132 _____ () C:\Users\aaa\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-06-18 09:10 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-06-18 00:17 - 2014-05-17 12:36 - 00000000 ____D () C:\Users\aaa\AppData\Local\CrashDumps
2014-06-17 18:59 - 2009-07-14 07:08 - 00032626 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-06-15 09:56 - 2014-06-15 09:56 - 00000000 ____D () C:\Users\aaa\Documents\Aurora3D
2014-06-14 06:03 - 2014-06-14 06:03 - 00001126 _____ () C:\Users\Public\Desktop\Aurora 3D Text & Logo Maker.lnk
2014-06-14 06:03 - 2014-06-14 06:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora 3D Text & Logo Maker
2014-06-14 06:02 - 2014-06-14 06:02 - 00000000 ____D () C:\Program Files (x86)\Aurora3D
2014-06-13 12:38 - 2014-06-13 12:38 - 00000132 _____ () C:\Users\aaa\AppData\Roaming\Adobe Formát GIF CS6 – předvolby
2014-06-13 10:01 - 2009-07-14 06:45 - 05128320 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-06-13 09:09 - 2014-04-25 18:09 - 00158136 _____ () C:\Users\aaa\AppData\Local\GDIPFONTCACHEV1.DAT
2014-06-13 08:35 - 2014-06-13 08:35 - 00000964 _____ () C:\Users\Public\Desktop\Xara 3D Maker 7.lnk
2014-06-13 08:35 - 2014-06-13 08:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
2014-06-13 08:35 - 2014-06-13 08:11 - 00000000 ____D () C:\Program Files (x86)\Xara
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\MAGIX
2014-06-13 08:12 - 2014-06-13 08:12 - 00000000 ____D () C:\ProgramData\MAGIX
2014-06-13 08:12 - 2014-06-02 10:54 - 00000000 ____D () C:\Users\aaa\AppData\Local\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\ProgramData\Xara
2014-06-13 08:11 - 2014-06-13 08:11 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-06-12 11:15 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-06-11 23:28 - 2014-04-25 19:14 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-11 23:27 - 2014-04-25 19:14 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-06-11 23:24 - 2014-04-30 10:18 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-06-11 18:19 - 2014-05-10 09:32 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Alien Skin
2014-06-11 18:19 - 2014-05-10 09:24 - 00000000 ____D () C:\ProgramData\Alien Skin
2014-06-11 18:17 - 2014-05-10 09:26 - 00000000 ____D () C:\Users\aaa\AppData\Local\Alien Skin
2014-06-11 18:12 - 2014-05-10 09:24 - 00000000 ____D () C:\Program Files (x86)\Alien Skin
2014-06-11 14:46 - 2014-05-10 09:24 - 00000000 ____D () C:\Program Files\Alien Skin
2014-06-10 14:14 - 2014-05-08 17:48 - 00000000 ____D () C:\fotky
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\Documents\Zaxwerks
2014-06-10 13:31 - 2014-06-10 13:31 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Zaxwerks
2014-06-10 13:27 - 2011-02-19 23:03 - 00051024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcomp100.dll
2014-06-10 13:24 - 2014-06-10 13:24 - 00003216 _____ () C:\Windows\System32\Tasks\{0717B030-459F-4C30-B0CF-315B711EA472}
2014-06-10 13:22 - 2014-06-10 13:22 - 00000000 ____D () C:\ProgramData\Zaxwerks
2014-06-10 13:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Resources
2014-06-10 13:03 - 2014-06-10 13:03 - 00000000 ____D () C:\Users\aaa\.AS
2014-06-10 13:03 - 2014-04-25 16:46 - 00000000 ____D () C:\Users\aaa
2014-06-10 12:53 - 2014-06-10 12:53 - 00001069 _____ () C:\Users\aaa\Desktop\Exposure 5.lnk
2014-06-10 12:53 - 2014-06-10 12:53 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alien Skin Software
2014-06-10 12:48 - 2009-07-14 17:18 - 00668540 _____ () C:\Windows\system32\perfh005.dat
2014-06-10 12:48 - 2009-07-14 17:18 - 00141200 _____ () C:\Windows\system32\perfc005.dat
2014-06-10 12:48 - 2009-07-14 07:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-09 23:54 - 2014-05-10 08:15 - 00000000 ____D () C:\hudba
2014-06-09 21:39 - 2014-04-25 18:12 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-06-09 21:36 - 2014-05-10 09:47 - 00000000 ____D () C:\Program Files\Common Files\Topaz Labs
2014-06-09 21:36 - 2014-05-08 15:38 - 00000000 ____D () C:\Program Files\Adobe photoshop CS6 13.0 [Extended x86+x64] CZ
2014-06-09 21:36 - 2009-07-14 17:36 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-06-09 21:36 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-06-08 11:13 - 2014-06-11 20:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-08 11:08 - 2014-06-11 20:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-04 20:27 - 2014-06-04 20:27 - 00000000 ____D () C:\Users\aaa\AppData\Local\Topaz Labs
2014-06-04 20:26 - 2014-06-04 20:26 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Topaz Software Manager
2014-06-03 18:43 - 2014-06-03 18:35 - 00000000 __HDC () C:\ProgramData\{EE095810-EED4-4DA0-94B4-24E9E1294094}
2014-06-03 18:43 - 2014-06-03 18:35 - 00000000 __HDC () C:\ProgramData\{170C1966-15F2-48B8-AB1A-1EAAD775C8BE}
2014-06-03 18:35 - 2014-05-18 17:31 - 00000000 ____D () C:\Program Files (x86)\Topaz Labs
2014-06-03 17:56 - 2014-05-09 14:44 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-06-03 17:46 - 2014-06-03 17:46 - 00000000 ____D () C:\Users\aaa\AppData\Local\Downloaded Installations
2014-06-03 00:09 - 2014-05-08 14:04 - 00000000 ____D () C:\photoshop
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{C0248468-281D-4ECB-A01F-E572F77F5EF3}
2014-06-02 10:55 - 2014-06-02 10:55 - 00002944 _____ () C:\Windows\System32\Tasks\{300BFA2D-5586-44AB-A644-E5831FD1934A}
2014-06-02 10:49 - 2014-06-02 10:49 - 00000000 ____D () C:\ProgramData\Mr Retro
2014-06-02 10:38 - 2014-06-02 10:34 - 00000000 ____D () C:\tmp
2014-06-02 10:33 - 2014-06-02 10:33 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Blender Foundation
2014-06-02 10:28 - 2014-06-02 10:28 - 00001897 _____ () C:\Users\Public\Desktop\Blender.lnk
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\Users\aaa\.thumbnails
2014-06-02 10:28 - 2014-06-02 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2014-06-02 10:27 - 2014-06-02 10:27 - 00000000 ____D () C:\Program Files\Blender Foundation
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Maker3D
2014-06-02 10:13 - 2014-06-02 10:13 - 00000000 ____D () C:\Users\aaa\AppData\Local\Configure
2014-05-30 17:13 - 2014-05-09 14:46 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\onOne Software
2014-05-30 12:21 - 2014-06-11 20:13 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-30 12:02 - 2014-06-11 20:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-30 12:02 - 2014-06-11 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-30 11:45 - 2014-06-11 20:13 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-30 11:39 - 2014-06-11 20:13 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-30 11:39 - 2014-06-11 20:13 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-30 11:38 - 2014-06-11 20:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-30 11:28 - 2014-06-11 20:13 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-30 11:27 - 2014-06-11 20:13 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-30 11:24 - 2014-06-11 20:13 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-30 11:21 - 2014-06-11 20:13 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-30 11:21 - 2014-06-11 20:13 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-30 11:20 - 2014-06-11 20:13 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-30 11:18 - 2014-06-11 20:14 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-30 11:11 - 2014-06-11 20:13 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-30 11:08 - 2014-06-11 20:13 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-30 11:06 - 2014-06-11 20:13 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-30 11:02 - 2014-06-11 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-30 10:55 - 2014-06-11 20:14 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-30 10:49 - 2014-06-11 20:13 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-30 10:46 - 2014-06-11 20:13 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-30 10:44 - 2014-06-11 20:13 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-30 10:44 - 2014-06-11 20:13 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-30 10:43 - 2014-06-11 20:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-30 10:42 - 2014-06-11 20:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-30 10:38 - 2014-06-11 20:13 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-30 10:35 - 2014-06-11 20:13 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-30 10:34 - 2014-06-11 20:13 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-30 10:33 - 2014-06-11 20:13 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-30 10:30 - 2014-06-11 20:13 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-30 10:29 - 2014-06-11 20:13 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-30 10:28 - 2014-06-11 20:13 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-30 10:27 - 2014-06-11 20:14 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-30 10:24 - 2014-06-11 20:13 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-30 10:23 - 2014-06-11 20:13 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-30 10:16 - 2014-06-11 20:14 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-30 10:10 - 2014-06-11 20:14 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-30 10:06 - 2014-06-11 20:13 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-30 10:04 - 2014-06-11 20:14 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-30 10:02 - 2014-06-11 20:13 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-30 09:56 - 2014-06-11 20:13 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-30 09:56 - 2014-06-11 20:13 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-30 09:54 - 2014-06-11 20:14 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-30 09:50 - 2014-06-11 20:13 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-05-30 09:49 - 2014-06-11 20:13 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-30 09:43 - 2014-06-11 20:13 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-30 09:40 - 2014-06-11 20:13 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-30 09:30 - 2014-06-11 20:13 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-30 09:21 - 2014-06-11 20:13 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-30 09:15 - 2014-06-11 20:14 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-30 09:13 - 2014-06-11 20:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-30 09:13 - 2014-06-11 20:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-29 18:27 - 2014-04-30 09:50 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Adobe
2014-05-29 11:31 - 2014-05-29 11:27 - 1239224730 _____ () C:\Users\aaa\Downloads\Vlk z Wall Street 2013 CZ dabing.avi
2014-05-27 11:42 - 2014-05-27 11:42 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\ProgramData\Tiffen
2014-05-27 11:39 - 2014-05-27 11:39 - 00000000 ____D () C:\Program Files\Tiffen
2014-05-27 04:53 - 2014-04-25 18:11 - 00002171 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-22 17:10 - 2014-05-09 14:19 - 00000000 ____D () C:\Users\aaa\AppData\Local\Nik Software
2014-05-22 17:10 - 2014-05-09 14:19 - 00000000 ____D () C:\ProgramData\Nik Software
2014-05-22 16:50 - 2014-05-22 16:50 - 00000000 ____D () C:\ProgramData\Excellent4App
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Guest
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-05-22 16:48 - 2014-05-22 16:48 - 00000000 ____D () C:\Users\Administrator
2014-05-22 16:48 - 2014-04-25 18:10 - 00000000 ____D () C:\Users\aaa\AppData\Local\Google
2014-05-22 10:53 - 2014-05-22 10:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-05-21 21:55 - 2014-05-21 20:38 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2014-05-21 21:54 - 2014-05-21 21:54 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2014-05-21 21:54 - 2014-05-21 21:54 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-05-21 21:54 - 2014-05-21 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2014-05-21 20:53 - 2014-05-21 19:06 - 00004608 _____ () C:\Users\aaa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-21 20:40 - 2014-05-21 20:40 - 00000000 ____D () C:\Users\aaa\AppData\Local\Comodo
2014-05-21 20:39 - 2014-05-21 20:39 - 00000000 ____D () C:\FFOutput
2014-05-21 19:40 - 2014-04-25 21:38 - 00000000 ____D () C:\Users\aaa\AppData\Local\Microsoft Help
2014-05-21 12:54 - 2014-05-21 12:49 - 00000000 ____D () C:\totalcmd
2014-05-21 12:49 - 2014-05-21 12:49 - 00000646 _____ () C:\Users\aaa\Desktop\Total Commander 64 bit.lnk
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-05-21 12:49 - 2014-05-21 12:49 - 00000000 ____D () C:\Users\aaa\AppData\Roaming\GHISLER

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-06-08 06:52

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakuje reklama

#8 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
    HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-29] (Microsoft Corporation)
    HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6503704 2013-12-05] (SUPERAntiSpyware)
    HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [AdobeBridge] => [X]
    HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [773496 2013-03-11] (ZONER software)
    AppInit_DLLs-x32: c:\progra~2\sn0310~1.boo => "c:\progra~2\sn0310~1.boo" File Not Found
    
    SearchScopes: HKLM-x32 - DefaultScope value is missing.
    
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    
    2014-06-19 10:01 - 2014-06-19 09:43 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-06-19 09:44 - 2014-06-19 10:02 - 00018006 _____ () C:\zoek-results.log
    2014-06-19 09:42 - 2014-06-19 09:59 - 00000000 ____D () C:\zoek_backup
    2014-06-19 09:41 - 2014-06-19 09:41 - 01285120 _____ () C:\Users\aaa\Desktop\zoek.exe
    2014-06-19 08:59 - 2014-06-19 10:02 - 00000112 _____ () C:\Windows\setupact.log
    2014-06-19 08:59 - 2014-06-19 08:59 - 00000000 _____ () C:\Windows\setuperr.log
    2014-06-19 08:58 - 2014-06-19 10:02 - 00001074 _____ () C:\Windows\PFRO.log
    2014-06-19 08:49 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
    2014-06-19 08:48 - 2014-06-19 09:04 - 00000000 ____D () C:\AdwCleaner
    2014-06-19 08:39 - 2014-06-19 08:39 - 00001269 _____ () C:\Users\aaa\Desktop\JRT.txt
    2014-06-19 08:27 - 2014-06-19 08:27 - 00000000 ____D () C:\Windows\ERUNT
    2014-06-19 08:26 - 2014-06-19 09:02 - 00003538 _____ () C:\Users\aaa\Desktop\Nový textový dokument.txt
    2014-06-19 08:25 - 2014-06-19 08:26 - 01333465 _____ () C:\Users\aaa\Desktop\adwcleaner_3.212.exe
    2014-06-19 08:25 - 2014-06-19 08:25 - 01016261 _____ (Thisisu) C:\Users\aaa\Desktop\JRT.exe
    2014-06-19 07:39 - 2014-06-19 10:15 - 00010059 _____ () C:\Users\aaa\Desktop\FRST.txt
    
    Hosts:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dirtyharry
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 čer 2014 06:31

Re: Vyskakuje reklama

#9 Příspěvek od dirtyharry »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-06-2014
Ran by aaa at 2014-06-19 13:38:34 Run:1
Running from C:\Users\aaa\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-29] (Microsoft Corporation)
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6503704 2013-12-05] (SUPERAntiSpyware)
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [773496 2013-03-11] (ZONER software)
AppInit_DLLs-x32: c:\progra~2\sn0310~1.boo => "c:\progra~2\sn0310~1.boo" File Not Found

SearchScopes: HKLM-x32 - DefaultScope value is missing.

CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

2014-06-19 10:01 - 2014-06-19 09:43 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-06-19 09:44 - 2014-06-19 10:02 - 00018006 _____ () C:\zoek-results.log
2014-06-19 09:42 - 2014-06-19 09:59 - 00000000 ____D () C:\zoek_backup
2014-06-19 09:41 - 2014-06-19 09:41 - 01285120 _____ () C:\Users\aaa\Desktop\zoek.exe
2014-06-19 08:59 - 2014-06-19 10:02 - 00000112 _____ () C:\Windows\setupact.log
2014-06-19 08:59 - 2014-06-19 08:59 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 08:58 - 2014-06-19 10:02 - 00001074 _____ () C:\Windows\PFRO.log
2014-06-19 08:49 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-06-19 08:48 - 2014-06-19 09:04 - 00000000 ____D () C:\AdwCleaner
2014-06-19 08:39 - 2014-06-19 08:39 - 00001269 _____ () C:\Users\aaa\Desktop\JRT.txt
2014-06-19 08:27 - 2014-06-19 08:27 - 00000000 ____D () C:\Windows\ERUNT
2014-06-19 08:26 - 2014-06-19 09:02 - 00003538 _____ () C:\Users\aaa\Desktop\Nový textový dokument.txt
2014-06-19 08:25 - 2014-06-19 08:26 - 01333465 _____ () C:\Users\aaa\Desktop\adwcleaner_3.212.exe
2014-06-19 08:25 - 2014-06-19 08:25 - 01016261 _____ (Thisisu) C:\Users\aaa\Desktop\JRT.exe
2014-06-19 07:39 - 2014-06-19 10:15 - 00010059 _____ () C:\Users\aaa\Desktop\FRST.txt

Hosts:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SPReview => value deleted successfully.
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
HKU\S-1-5-21-3051522430-3062395621-1012655982-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Zoner Photo Studio Autoupdate => value deleted successfully.
"c:\progra~2\sn0310~1.boo" => Value Data removed successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Policies\Google' => Key deleted successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\aaa\Desktop\zoek.exe => Moved successfully.
C:\Windows\setupact.log => Moved successfully.
C:\Windows\setuperr.log => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\aaa\Desktop\JRT.txt => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\aaa\Desktop\Nový textový dokument.txt => Moved successfully.
C:\Users\aaa\Desktop\adwcleaner_3.212.exe => Moved successfully.
C:\Users\aaa\Desktop\JRT.exe => Moved successfully.
C:\Users\aaa\Desktop\FRST.txt => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakuje reklama

#10 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dirtyharry
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 čer 2014 06:31

Re: Vyskakuje reklama

#11 Příspěvek od dirtyharry »

Děkuji za pomoc :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakuje reklama

#12 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno