Otravné reklamy v prohlížečích

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
MMMMM
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 145
Registrován: 13 Říj 2005 18:42

Otravné reklamy v prohlížečích

#1 Příspěvek od MMMMM »

Najednou se mi v PC v prohlížečích, FF, chrome, IE začaly objevovat reklamy

Obrázek

Logfile of random's system information tool 1.08 (written by random/random)
Run by Marsal at 2014-07-02 11:30:51
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 123 GB (51%) free of 243 GB
Total RAM: 8063 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:30:53, on 2.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ATnotes\ATnotes.exe
C:\Program Files (x86)\NetSetMan\netsetman.exe
C:\Program Files (x86)\SAT\SCALA\IsWiSupport.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Users\Marsal\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
C:\Siemens_EA\TBII\EMII\BIN\prl.exe
C:\Siemens_EA\TBII\EMII\BIN\rmd.exe
C:\Program Files (x86)\SAT\SCALA\orbix\orbixdw.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\SAT\SCALA\src250.exe
C:\Program Files (x86)\SAT\SCALA\SCALA_KeyBlock.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\trolatunt\bin\trolatunt.BrowserAdapter.exe
C:\Program Files (x86)\Altap Salamander\salamand.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Program Files (x86)\FreeCommander\FreeCommander.exe
C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe
C:\Program Files\trend micro\Marsal.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=12
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: trolatunt - {59bc35cc-f3cb-4e2b-a21d-481d781207af} - C:\Program Files (x86)\trolatunt\trolatuntbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [TBII-PRELOADER] "C:\Siemens_EA\TBII\DB\ORA11R2_CL\BIN\wait4db_tbii.exe" --cmd_path="C:\Siemens_EA\TBII\EMII\BIN\PRL.EXE" --cmd_par=ON
O4 - HKLM\..\Run: [vmware-tray.exe] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\RunOnce: [InnoSetupRegFile.0000000001] "C:\Windows\is-UVKCI.exe" /REG
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Marsal\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Marsal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Marsal\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [ATnotes.exe] C:\Program Files (x86)\ATnotes\ATnotes.exe
O4 - HKCU\..\Run: [NetSetMan] "C:\Program Files (x86)\NetSetMan\netsetman.exe" -h
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_13_0_0_214_Plugin.exe -update plugin
O4 - .DEFAULT User Startup: Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (User 'Default user')
O4 - Startup: SCALA Startup.lnk = C:\Program Files (x86)\SAT\SCALA\IsWiSupport.exe
O4 - Startup: Smart Settings.lnk = C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{95AAD808-2341-44B6-B877-8C810CC30CB9}: NameServer = 192.168.71.34,192.168.71.35
O17 - HKLM\System\CCS\Services\Tcpip\..\{D2118B06-D662-4185-A77F-A85481C96679}: NameServer = 192.168.71.34,192.168.71.35
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Služba Acronis Scheduler2 (AcrSch2Svc) - Acronis - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Digital Delivery Service (DellDigitalDelivery) - Dell Products, LP. - C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
O23 - Service: Dell Feature Enhancement Pack Service (DFEPService) - Dell Inc. - C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Endpoint Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe
O23 - Service: EmbassyService - Unknown owner - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
O23 - Service: ESET SHA Service (ESHASRV) - ESET - C:\Program Files\ESET\ESET Endpoint Antivirus\EShaSrv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Sentinel HASP License Manager (hasplms) - Unknown owner - C:\Windows\system32\hasplms.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: ShrewSoft IKE Daemon (iked) - Unknown owner - C:\Program Files\ShrewSoft\VPN Client\iked.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: ShrewSoft IPSEC Daemon (ipsecd) - Unknown owner - C:\Program Files\ShrewSoft\VPN Client\ipsecd.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: O2FLASH - Unknown owner - C:\Windows\system32\o2flash.exe (file missing)
O23 - Service: OpcEnum - OPC Foundation - C:\Windows\SysWOW64\OpcEnum.exe
O23 - Service: OracleServiceTBII - Oracle Corporation - C:\Siemens_EA\TBII\DB\ORANT\BIN\oracle.exe
O23 - Service: OracleTBIIORA11R2TNSListener - Oracle Corporation - C:\Siemens_EA\TBII\DB\ORANT\BIN\TNSLSNR.EXE
O23 - Service: Dell PBA x64 Service (PbaDrvSvc_x64) - Unknown owner - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SecureStorageService - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Secure Storage Manager\SecureStorageService.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: SI TSS v1.2.1.41 TCS (tcsd_win32.exe) - Unknown owner - C:\Program Files (x86)\Security Innovation\SI TSS\bin\tcsd_win32.exe
O23 - Service: TdmService - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update trolatunt - Unknown owner - C:\Program Files (x86)\trolatunt\updatetrolatunt.exe
O23 - Service: Util trolatunt - Unknown owner - C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe
O23 - Service: VMware Workstation Server (VMwareHostd) - Unknown owner - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: Wave Authentication Manager Service - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WvPCR - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 16484 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 27424832
\??\C:\Windows\system32\conhost.exe "1984271355460536942-819639171-434168761-142331372-9125322941893628917-2081944499
C:\Windows\System32\spoolsv.exe
"C:\Program Files\Common Files\SPBA\upeksvr.exe"
"C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe"
C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe"
"C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
C:\Windows\system32\hasplms.exe -run
"C:\Program Files\ShrewSoft\VPN Client\iked.exe" -service
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files\ShrewSoft\VPN Client\ipsecd.exe" -service
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\system32\o2flash.exe
C:\Siemens_EA\TBII\DB\ORANT\BIN\oracle.exe TBII
C:\Siemens_EA\TBII\DB\ORANT\BIN\TNSLSNR.EXE
"C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\trolatunt\updatetrolatunt.exe"
"C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe"
C:\Windows\SysWOW64\vmnat.exe
"C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe"
WLIDSvcM.exe 2920
"C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\SysWOW64\vmnetdhcp.exe
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
"C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe" -u "C:\ProgramData\VMware\hostd\config.xml"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-f9764051-efc1-4737-8408-325c2e7e1c33 -SystemEventPortName:HostProcess-baea51bb-9bf0-4595-a458-2ecc7fc15297 -IoCancelEventPortName:HostProcess-3868c598-1dfe-4691-80c8-db52ceeea120 -NonStateChangingEventPortName:HostProcess-99fd0b71-b6d3-4a81-91f6-bf1fed948e1a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:906fd6d5-01cc-4b34-91e8-de9d07798822 -DeviceGroupId:WpdFsGroup
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\DellTPad\Apoint.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
"C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe"
"C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe"
"C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\DellTPad\ApMsgFwd.exe" -s{05FA8492-C047-4207-BE65-780D8591C113}
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
"C:\Program Files (x86)\ATnotes\ATnotes.exe"
"Apntex.exe"
"C:\Program Files\DellTPad\HidFind.exe"
\??\C:\Windows\system32\conhost.exe "-19892281791173064736544034876759958758184403266-496105927-1129620933-2000851564
"C:\Program Files (x86)\NetSetMan\netsetman.exe" -h
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\SAT\SCALA\IsWiSupport.exe" AutoStart
"C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
szndesktop.exe default start
"C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
"C:\Users\Marsal\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
"C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
\??\C:\Windows\system32\conhost.exe "149232245657559885-3904179981037595958-201049326514484015-12975079181169069188
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
"C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Siemens_EA\TBII\EMII\BIN\PRL.EXE" ON
"rmd.exe"
"C:\Program Files (x86)\SAT\SCALA\orbix\orbixdw.exe"
"C:\Windows\SysWOW64\RunDll32.exe" "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\SAT\SCALA\rmxscall250.exe" -v
\??\C:\Windows\system32\conhost.exe "7605823821774424302-20967646071625540299-7116965741353581932228044247632707124
"C:\Program Files (x86)\SAT\SCALA\src250.exe"
"C:\Program Files (x86)\SAT\SCALA\SCALA_KeyBlock.exe" /FormSizeMin
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\trolatunt\bin\trolatunt.PurBrowse64.exe" /l false /s false /c "trolatunt" /t "C:\Program Files (x86)\trolatunt\bin\TEMP" /i "http://apitrolatuntco-a.akamaihd.net/gs ... 0000000000" /d {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64 /p bca3cdf4-5d1e-408f-b106-89646236f302:chrome
\??\C:\Windows\system32\conhost.exe "-1637094030-695889224580840640-593887535-1202807619-1237746351882448327118807977
/c bca3cdf4-5d1e-408f-b106-89646236f302 /s /z "n=trolatunt&is=smdvcz&dpt=21"
"C:\Program Files (x86)\Altap Salamander\salamand.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=1860.190b08b0.1420627730 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 1860 "\\.\pipe\gecko-crash-server-pipe.1860" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --proxy-stub-channel=Flash1708.600DA378.18055 --host-broker-channel=Flash1708.600DA378.30523 --host-pid=1708 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --channel=1036.0038F564.1614874691 --proxy-stub-channel=Flash1708.600DA378.18055 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\FreeCommander\FreeCommander.exe"
"C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe"
"C:\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59bc35cc-f3cb-4e2b-a21d-481d781207af}]
trolatunt - C:\Program Files (x86)\trolatunt\trolatuntbho.dll [2014-06-30 249632]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-05-07 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-05-07 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2012-12-22 684016]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-02-13 1425408]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-02-09 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-02-09 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-02-09 440600]
"IntelPROSet"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2012-08-23 4805936]
"TdmNotify"=C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe [2012-11-09 370584]
"DFEPApplication"=C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe [2012-08-15 7077432]
"egui"=C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe [2012-07-04 4133072]
"Služba Acronis Scheduler2"=C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [2013-02-15 516928]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Marsal\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Marsal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"NextLive"=C:\Windows\SysWOW64\rundll32.exe [2009-07-14 44544]
"ATnotes.exe"=C:\Program Files (x86)\ATnotes\ATnotes.exe [2005-01-05 1015808]
"NetSetMan"=C:\Program Files (x86)\NetSetMan\netsetman.exe [2013-11-26 5174952]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_13_0_0_214_Plugin.exe [2014-05-14 847536]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-10-16 291648]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-06-07 56128]
"Dell Webcam Central"=C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [2011-12-16 462974]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"TBII-PRELOADER"=C:\Siemens_EA\TBII\DB\ORA11R2_CL\BIN\wait4db_tbii.exe [2012-06-28 2904687]
"vmware-tray.exe"=C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [2013-02-26 104528]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-05-07 256896]
"TrueImageMonitor.exe"=C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-04-18 6391960]
"AcronisTibMounterMonitor"=C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-01-10 1105328]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"InnoSetupRegFile.0000000001"=C:\Windows\is-UVKCI.exe [2014-07-02 1544704]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Users\Marsal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SCALA Startup.lnk - C:\Program Files (x86)\SAT\SCALA\IsWiSupport.exe
Smart Settings.lnk - C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-02-01 430080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\spba]
C:\Program Files\Common Files\SPBA\homefus2.dll [2012-08-17 2307944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1
"EnableLinkedConnections"=1
"HideFastUserSwitching"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2014-07-02 11:30:51 ----D---- C:\rsit
2014-07-02 11:30:37 ----A---- C:\RSITx64.exe
2014-07-02 11:08:55 ----A---- C:\Windows\is-UVKCI.exe
2014-07-02 11:05:47 ----A---- C:\Nero-7.9.6.0_csy_trial.exe
2014-07-02 09:20:55 ----D---- C:\Test
2014-07-02 06:15:55 ----D---- C:\Program Files (x86)\Altap Salamander
2014-07-01 07:24:57 ----D---- C:\ProgramData\AVAST Software
2014-06-30 09:43:56 ----A---- C:\Windows\system32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64.sys
2014-06-30 08:41:17 ----D---- C:\Program Files (x86)\trolatunt
2014-06-26 11:45:07 ----D---- C:\Users\Marsal\AppData\Roaming\Acronis
2014-06-26 11:44:24 ----A---- C:\Windows\system32\drivers\afcdp.sys
2014-06-26 11:44:23 ----A---- C:\Windows\system32\drivers\tib_mounter.sys
2014-06-26 11:44:23 ----A---- C:\Windows\system32\drivers\tib.sys
2014-06-26 11:44:23 ----A---- C:\Windows\system32\drivers\tdrpman.sys
2014-06-26 11:44:22 ----A---- C:\Windows\system32\drivers\vidsflt.sys
2014-06-26 11:44:22 ----A---- C:\Windows\system32\drivers\vididr.sys
2014-06-26 11:44:21 ----D---- C:\ProgramData\Acronis
2014-06-26 11:44:21 ----A---- C:\Windows\system32\drivers\snapman.sys
2014-06-26 11:44:21 ----A---- C:\Windows\system32\drivers\fltsrv.sys
2014-06-26 10:31:01 ----D---- C:\Logs
2014-06-26 10:31:01 ----D---- C:\Dell
2014-06-25 05:54:06 ----D---- C:\Program Files (x86)\Dell Digital Delivery
2014-06-19 11:19:31 ----D---- C:\Program Files (x86)\Rawet Studio
2014-06-19 11:18:54 ----D---- C:\Rawet
2014-06-18 07:03:55 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-06-16 06:41:01 ----D---- C:\images
2014-06-11 06:08:33 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-06-11 06:08:33 ----A---- C:\Windows\system32\usp10.dll
2014-06-11 06:08:32 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-06-11 06:08:32 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-06-11 06:08:32 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-06-11 06:08:32 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-06-11 06:08:32 ----A---- C:\Windows\system32\msxml6r.dll
2014-06-11 06:08:32 ----A---- C:\Windows\system32\msxml6.dll
2014-06-11 06:08:32 ----A---- C:\Windows\system32\msxml3r.dll
2014-06-11 06:08:32 ----A---- C:\Windows\system32\msxml3.dll
2014-06-11 06:08:32 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-06-11 06:08:32 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 06:08:31 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-06-11 06:08:31 ----A---- C:\Windows\system32\rdpcorets.dll
2014-06-11 06:08:30 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-06-11 06:08:30 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-06-11 06:08:30 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-06-11 06:08:30 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 06:08:29 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-06-11 06:08:29 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-06-11 06:08:29 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 06:08:29 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-06-11 06:08:29 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 06:08:29 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-06-11 06:08:28 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-06-11 06:08:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-06-11 06:08:28 ----A---- C:\Windows\system32\urlmon.dll
2014-06-11 06:08:28 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-06-11 06:08:27 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-06-11 06:08:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-06-11 06:08:27 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-06-11 06:08:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-06-11 06:08:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-06-11 06:08:27 ----A---- C:\Windows\system32\msfeeds.dll
2014-06-11 06:08:27 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-06-11 06:08:27 ----A---- C:\Windows\system32\dxtmsft.dll
2014-06-11 06:08:26 ----A---- C:\Windows\system32\iesetup.dll
2014-06-11 06:08:26 ----A---- C:\Windows\system32\iertutil.dll
2014-06-11 06:08:26 ----A---- C:\Windows\system32\ie4uinit.exe
2014-06-11 06:08:25 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-06-11 06:08:25 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-06-11 06:08:25 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 06:08:25 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-06-11 06:08:25 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-06-11 06:08:25 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-06-11 06:08:25 ----A---- C:\Windows\system32\jsproxy.dll
2014-06-11 06:08:25 ----A---- C:\Windows\system32\iernonce.dll
2014-06-11 06:08:24 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-06-11 06:08:24 ----A---- C:\Windows\system32\ieui.dll
2014-06-11 06:08:24 ----A---- C:\Windows\system32\dxtrans.dll
2014-06-11 06:08:23 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-06-11 06:08:23 ----A---- C:\Windows\system32\mshtmled.dll
2014-06-11 06:08:23 ----A---- C:\Windows\system32\jscript9diag.dll
2014-06-11 06:08:23 ----A---- C:\Windows\system32\ieUnatt.exe
2014-06-11 06:08:23 ----A---- C:\Windows\system32\ieframe.dll
2014-06-11 06:08:22 ----A---- C:\Windows\system32\wininet.dll
2014-06-11 06:08:22 ----A---- C:\Windows\system32\vbscript.dll
2014-06-11 06:08:22 ----A---- C:\Windows\system32\msrating.dll
2014-06-11 06:08:22 ----A---- C:\Windows\system32\jscript9.dll
2014-06-11 06:08:22 ----A---- C:\Windows\system32\ieapfltr.dll
2014-06-11 06:08:21 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-11 06:08:21 ----A---- C:\Windows\system32\mshtml.dll
2014-06-11 06:04:20 ----A---- C:\Windows\system32\aepdu.dll
2014-06-11 06:04:20 ----A---- C:\Windows\system32\aeinv.dll
2014-06-05 06:25:26 ----D---- C:\Users\Marsal\AppData\Roaming\Babylon
2014-06-05 06:25:26 ----D---- C:\ProgramData\Babylon

======List of files/folders modified in the last 1 months======

2014-07-02 11:30:53 ----D---- C:\Windows\Temp
2014-07-02 11:30:53 ----D---- C:\Program Files\trend micro
2014-07-02 11:22:37 ----D---- C:\Windows\system32\Tasks
2014-07-02 11:08:56 ----D---- C:\Windows
2014-07-02 11:08:56 ----D---- C:\Program Files (x86)\CDBurnerXP
2014-07-02 10:32:26 ----D---- C:\Temp
2014-07-02 06:15:55 ----RD---- C:\Program Files (x86)
2014-07-02 06:12:00 ----D---- C:\Windows\system32\config
2014-07-02 06:02:27 ----D---- C:\Windows\System32
2014-07-02 06:02:27 ----D---- C:\Windows\inf
2014-07-02 06:02:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-07-02 06:00:29 ----D---- C:\Users\Marsal\AppData\Roaming\Seznam.cz
2014-07-02 06:00:10 ----A---- C:\Windows\win.ini
2014-07-02 05:56:25 ----A---- C:\Windows\SYSWOW64\log.txt
2014-07-02 05:55:53 ----D---- C:\Users\Marsal\AppData\Roaming\newnext.me
2014-07-02 05:55:28 ----HD---- C:\Windows\system32\WLANProfiles
2014-07-02 05:54:13 ----D---- C:\ProgramData\VMware
2014-07-01 09:26:22 ----D---- C:\Users\Marsal\AppData\Roaming\Kingston
2014-07-01 07:26:07 ----D---- C:\Windows\system32\drivers
2014-07-01 07:24:57 ----D---- C:\ProgramData
2014-06-30 10:05:18 ----D---- C:\Windows\system32\DriverStore
2014-06-30 10:05:18 ----D---- C:\Windows\system32\catroot2
2014-06-30 10:05:18 ----D---- C:\Windows\system32\catroot
2014-06-30 10:05:05 ----D---- C:\Windows\SysWOW64
2014-06-30 06:03:54 ----SHD---- C:\System Volume Information
2014-06-27 09:32:25 ----D---- C:\Windows\system32\wdi
2014-06-26 11:44:42 ----SHD---- C:\Windows\Installer
2014-06-26 11:44:42 ----SHD---- C:\Config.Msi
2014-06-26 11:22:54 ----D---- C:\TBIIdata
2014-06-26 11:00:17 ----D---- C:\Windows\Logs
2014-06-26 10:45:13 ----D---- C:\Install
2014-06-26 10:30:26 ----D---- C:\Program Files (x86)\Dell
2014-06-20 05:58:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-13 08:31:24 ----D---- C:\Windows\rescache
2014-06-12 05:58:36 ----D---- C:\Windows\winsxs
2014-06-11 12:58:09 ----D---- C:\Windows\SYSWOW64\en-US
2014-06-11 12:58:09 ----D---- C:\Windows\system32\en-US
2014-06-11 12:58:09 ----D---- C:\Program Files\Internet Explorer
2014-06-11 12:58:09 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-11 11:59:16 ----D---- C:\Users\Marsal\AppData\Roaming\VMware
2014-06-11 11:40:17 ----D---- C:\Windows\system32\MRT
2014-06-11 11:39:19 ----A---- C:\Windows\system32\MRT.exe
2014-06-11 11:38:41 ----D---- C:\ProgramData\Microsoft Help
2014-06-11 11:38:07 ----SD---- C:\Windows\system32\CompatTel
2014-06-11 11:27:55 ----D---- C:\Program Files\Windows XP Mode
2014-06-05 06:27:11 ----RD---- C:\Program Files
2014-06-04 13:35:26 ----D---- C:\ProgramData\Oracle
2014-06-04 13:35:24 ----D---- C:\Program Files (x86)\Common Files
2014-06-04 13:35:22 ----D---- C:\Program Files (x86)\Java

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2014-06-26 108832]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2012-05-30 569152]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-10-16 20024]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2014-06-26 233760]
R0 stdcfltn;Disk Class Filter Driver for Accelerometer; C:\Windows\system32\DRIVERS\stdcfltn.sys [2011-07-16 22128]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2014-06-26 1120032]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2014-06-26 183224]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2014-06-26 161568]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2014-06-26 117024]
R0 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys [2012-10-24 85104]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-07-10 213416]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-03-29 152136]
R1 vflt;Shrew Soft Lightweight Filter; C:\Windows\system32\DRIVERS\vfilter.sys [2013-07-01 24064]
R2 aksdf;aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [2014-04-28 91784]
R2 aksfridge;aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [2014-05-30 162264]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-03-29 140752]
R2 hardlock;hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2014-04-28 331608]
R2 hcmon;VMware hcmon; \??\C:\Windows\system32\drivers\hcmon.sys [2012-10-11 52376]
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys [2013-02-26 45720]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys [2013-02-26 30800]
R2 VMparport;VMware VMparport; \??\C:\Windows\system32\drivers\VMparport.sys [2013-02-26 31824]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2014-06-26 367200]
R3 akshasp;SafeNet Inc. HASP Key; C:\Windows\system32\DRIVERS\akshasp.sys [2013-03-15 60488]
R3 aksusb;SafeNet Inc. USB Key; C:\Windows\system32\DRIVERS\aksusb.sys [2013-08-09 303624]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x64; C:\Windows\system32\DRIVERS\Apfiltr.sys [2012-12-21 449480]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-03-22 135720]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2013-03-22 80384]
R3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2013-03-22 615464]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2013-03-22 184360]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2013-03-22 211496]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2013-03-22 39976]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2013-03-22 21544]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver; C:\Windows\system32\DRIVERS\CtClsFlt.sys [2010-09-11 176096]
R3 dcdbas;System Management Driver; C:\Windows\system32\DRIVERS\dcdbas64.sys [2012-09-23 39016]
R3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
R3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-21 19968]
R3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys [2012-08-10 482128]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-02-02 14659808]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-10-16 358456]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-10-16 791608]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2012-10-10 25528]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-13 62784]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\Netwsw00.sys [2012-09-30 11523072]
R3 O2SDJRDR;O2SDJRDR; C:\Windows\system32\DRIVERS\o2sdjw7x64.sys [2011-11-15 84712]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 ST_ACCEL;STMicroelectronics Accelerometer Service; C:\Windows\system32\DRIVERS\ST_ACCEL.sys [2012-05-21 68208]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\Windows\system32\DRIVERS\stwrt64.sys [2012-02-13 535552]
R3 usb3Hub;USB-IF USB 3.0 Hub; C:\Windows\system32\DRIVERS\usb3Hub.sys [2012-10-10 47072]
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys [2013-02-26 20120]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2013-03-22 552960]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2014-01-31 94704]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2014-01-31 86896]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2012-10-10 35256]
S3 netvsc;netvsc; C:\Windows\system32\DRIVERS\netvsc60.sys [2010-11-21 168448]
S3 O2MDFRDR;O2MDFRDR; C:\Windows\system32\drivers\O2MDFw7x64.sys [2011-01-03 72808]
S3 O2MDRRDR;O2MDRRDR; C:\Windows\system32\drivers\O2MDRw7x64.sys [2011-01-04 74984]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver; C:\Windows\system32\drivers\Synth3dVsc.sys [2010-11-21 88960]
S3 SynthVid;SynthVid; C:\Windows\system32\DRIVERS\VMBusVideoM.sys [2010-11-21 22528]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2014-06-26 1462560]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 tsusbhub;Remote Deskotop USB Hub; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 vmusb;VMware USB Client Driver; C:\Windows\System32\Drivers\vmusb.sys [2012-10-11 37680]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Služba Acronis Scheduler2; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [2013-02-15 1143720]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2014-06-26 3779576]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2012-02-22 945440]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DellDigitalDelivery;Dell Digital Delivery Service; C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe [2014-04-10 202248]
R2 DFEPService;Dell Feature Enhancement Pack Service; C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe [2012-08-15 2280504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe [2012-07-04 999704]
R2 EmbassyService;EmbassyService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe [2012-11-20 225720]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2012-08-23 629040]
R2 hasplms;Sentinel HASP License Manager; C:\Windows\system32\hasplms.exe [2010-09-27 4180576]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-05-30 13632]
R2 iked;ShrewSoft IKE Daemon; C:\Program Files\ShrewSoft\VPN Client\iked.exe [2013-07-01 1127736]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-07-27 636952]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2011-11-10 189608]
R2 ipsecd;ShrewSoft IPSEC Daemon; C:\Program Files\ShrewSoft\VPN Client\ipsecd.exe [2013-07-01 810808]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-10-23 166432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-10-23 278560]
R2 O2FLASH;O2FLASH; C:\Windows\system32\o2flash.exe [2011-11-16 244328]
R2 OracleServiceTBII;OracleServiceTBII; C:\Siemens_EA\TBII\DB\ORANT\BIN\oracle.exe [2011-03-09 138016256]
R2 OracleTBIIORA11R2TNSListener;OracleTBIIORA11R2TNSListener; C:\Siemens_EA\TBII\DB\ORANT\BIN\TNSLSNR.EXE [2011-03-09 515072]
R2 PbaDrvSvc_x64;Dell PBA x64 Service; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe [2012-11-23 20480]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2012-08-23 149296]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2012-02-13 313856]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-03-26 7091584]
R2 TdmService;TdmService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe [2012-11-09 5157272]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-10-23 365600]
R2 Update trolatunt;Update trolatunt; C:\Program Files (x86)\trolatunt\updatetrolatunt.exe [2014-07-01 318752]
R2 Util trolatunt;Util trolatunt; C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe [2014-07-01 318752]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [2013-02-26 87120]
R2 VMnetDHCP;VMware DHCP Service; C:\Windows\syswow64\vmnetdhcp.exe [2013-02-26 357456]
R2 VMUSBArbService;VMware USB Arbitration Service; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [2012-10-11 918680]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-19 116648]
S2 tcsd_win32.exe;SI TSS v1.2.1.41 TCS; C:\Program Files (x86)\Security Innovation\SI TSS\bin\tcsd_win32.exe [2012-05-11 1643520]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-02-09 276248]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Endpoint Antivirus\EHttpSrv.exe [2012-07-04 35720]
S3 ESHASRV;ESET SHA Service; C:\Program Files\ESET\ESET Endpoint Antivirus\EShaSrv.exe [2012-07-04 190208]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-19 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-18 119408]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-08-23 272688]
S3 OpcEnum;OpcEnum; C:\Windows\SysWOW64\OpcEnum.exe [2011-01-17 172832]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SecureStorageService;SecureStorageService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Secure Storage Manager\SecureStorageService.exe [2012-09-14 2213296]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Otravné reklamy v prohlížečích

#2 Příspěvek od vyosek »

Ahoj :)

:arrow: Prozen PC JunkwareRemoval Tool a AdwCleanerem - logy sem nasyp
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

MMMMM
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 145
Registrován: 13 Říj 2005 18:42

Re: Otravné reklamy v prohlížečích

#3 Příspěvek od MMMMM »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Ultimate x64
Ran by Marsal on po 07.07.2014 at 6:18:25,27
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 07.07.2014 at 6:24:25,70
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



# AdwCleaner v3.200 - Report created 07/07/2014 at 07:41:51
# Updated 22/04/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Marsal - POHRS
# Running from : C:\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Marsal\.android
Folder Deleted : C:\Users\Marsal\AppData\Local\Babylon
Folder Deleted : C:\Users\Marsal\AppData\Local\Bundled software uninstaller
Folder Deleted : C:\Users\Marsal\AppData\Local\genienext
Folder Deleted : C:\Users\Marsal\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi
File Deleted : C:\Users\Eng_TBII\AppData\Roaming\Mozilla\Firefox\Profiles\lowod6tv.default\Extensions\firefox@lemurleap.info.xpi
File Deleted : C:\Users\Marsal\daemonprocess.txt

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jlnfdbbladgcmhhamgkioifhbobjaoof
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17126


-\\ Mozilla Firefox v30.0 (cs)

[ File : C:\Users\Eng_TBII\AppData\Roaming\Mozilla\Firefox\Profiles\lowod6tv.default\prefs.js ]


[ File : C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default\prefs.js ]


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Startup_urls] : hxxps://isearch.avg.com/?cid={6ED243E8-40E3-44A5-90B0-9697346B1C32}&mid=ff2f713e3f4247d0a615b578169ffb1d-2f721287a94b5156b248c980b6176c9da8e664ce&lang=cs&ds=pd011&pr=sa&d=2012-09-28 09:40:19&v=12.2.5.34&sap=hp
Deleted [Extension] : dgpdioedihjhncjafcpgbbjdpbbkikmi

*************************

AdwCleaner[R3].txt - [2772 octets] - [07/07/2014 06:25:44]
AdwCleaner[S2].txt - [2731 octets] - [07/07/2014 07:41:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [2791 octets] ##########

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Otravné reklamy v prohlížečích

#4 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

MMMMM
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 145
Registrován: 13 Říj 2005 18:42

Re: Otravné reklamy v prohlížečích

#5 Příspěvek od MMMMM »

Zoek.exe v5.0.0.0 Updated 05-July-2014
Tool run by Marsal on po 07.07.2014 at 9:30:19,52.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Marsal\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

7.7.2014 9:50:01 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Util trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Util trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Update trolatunt deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update trolatunt deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Eng_TBII\AppData\Roaming\Mozilla\Firefox\Profiles\lowod6tv.default\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");

Added to C:\Users\Eng_TBII\AppData\Roaming\Mozilla\Firefox\Profiles\lowod6tv.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.google.com/calendar/render? ... MhHVa8RkB-");

Added to C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Eng_TBII\AppData\Roaming\Mozilla\Firefox\Profiles\lowod6tv.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_07.07.2014_0956_.backup

ProfilePath: C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default

user.js not found
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- FireFox user.js and prefs.js backups ----

prefs_07.07.2014_0956_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Mozilla Firefox\defaults\preferences\pref.js deleted
C:\PROGRA~3\Shrew Soft VPN.dat deleted
C:\Users\Marsal\AppData\Local\cache deleted
C:\Users\Marsal\Searches deleted
C:\Windows\invcol.tmp deleted
C:\windows\SysNative\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64.sys deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
"C:\Windows\Installer\1a6e07a.msi" deleted
"C:\PROGRA~2\trolatunt\updatetrolatunt.exe" deleted
"C:\PROGRA~2\trolatunt\bin\7za.exe" deleted
"C:\PROGRA~2\trolatunt\bin\trolatunt.PurBrowse64.exe" deleted
"C:\PROGRA~2\trolatunt\bin\utiltrolatunt.exe" deleted
"C:\PROGRA~2\trolatunt" not deleted
"C:\PROGRA~2\trolatunt\bin" not deleted

==== Firefox Extensions ======================

ProfilePath: C:\Users\Eng_TBII\AppData\Roaming\Mozilla\Firefox\Profiles\lowod6tv.default
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

ProfilePath: C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- trolatunt - %ProfilePath%\extensions\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default
A58DE0A570148AF5FF3512B2A340D09F - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll - Shockwave Flash
F3B0E300AFC94E1A775A2D935A7D384F - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll - Shockwave for Director / Shockwave for Director


==== Deleted Firefox Extensions ======================

C:\Users\Marsal\AppData\Roaming\Mozilla\Firefox\Profiles\h4y7wqpe.default\extensions\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}.xpi deleted

==== Chrome Look ======================

Seznam Li\u0161ti\u010Dka - Email - Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam Li\u0161ti\u010Dka - Slovn\u00EDk - Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
Seznam Li\u0161ti\u010Dka - Rychl\u00E1 volba - Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak

==== Chrome Fix ======================

C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_isearch.avg.com_0.localstorage deleted successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_isearch.avg.com_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=12"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=12"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{3965D173-40FC-424F-9703-F831D32C8393} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... kSearch_12"
{5F70A89F-E6EC-42CB-8B76-D511383FEB74} Unknown Url="Not_Found"
{62694250-03A8-4440-96F1-3F6DC0B864AF} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... kSearch_12"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
{7C791268-4AF8-4919-9304-07B755B8A557} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... kSearch_12"
{923B92C4-B653-4002-8D98-F6A77810DEBD} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... kSearch_12"
{B352A849-9513-44A9-B119-CED8E358CF4F} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... kSearch_12"
{C0054516-41EE-4ABF-853D-3D301DC05C2A} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... kSearch_12"
{C7851CF3-22CC-4B91-8736-07D868E1B4CE} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... kSearch_12"
{D70ACB0B-5D3F-43EB-94CA-5127B0180311} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... kSearch_12"

==== Reset Google Chrome ======================

C:\Users\Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3879696279-2694623716-4221884656-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{59bc35cc-f3cb-4e2b-a21d-481d781207af} deleted successfully
HKEY_USERS\S-1-5-21-3879696279-2694623716-4221884656-1006\Software\Microsoft\Internet Explorer\SearchScopes\{5F70A89F-E6EC-42CB-8B76-D511383FEB74} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{59bc35cc-f3cb-4e2b-a21d-481d781207af} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59bc35cc-f3cb-4e2b-a21d-481d781207af} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Eng_TBII\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Marsal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Marsal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IP59CIC1 will be deleted at reboot
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IP59CIC1 will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\Eng_TBII\AppData\Local\Mozilla\Firefox\Profiles\lowod6tv.default\Cache emptied successfully
C:\Users\Marsal\AppData\Local\Mozilla\Firefox\Profiles\h4y7wqpe.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Eng_TBII\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Marsal\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=150 folders=25 10140204 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Drivers\AppData\Local\temp emptied successfully
C:\Users\Eng_TBII\AppData\Local\temp emptied successfully
C:\Users\Marsal\AppData\Local\Temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Marsal\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\PROGRA~2\trolatunt" not found
"C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IP59CIC1" not found
"C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IP59CIC1" not found

==== EOF on po 07.07.2014 at 10:00:59,31 ======================

MMMMM
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 145
Registrován: 13 Říj 2005 18:42

Re: Otravné reklamy v prohlížečích

#6 Příspěvek od MMMMM »

Vypadá, že reklamy zmizeli. Díky moc a zase někdy.

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Otravné reklamy v prohlížečích

#7 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět