Zavirovaný počítač
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Zavirovaný počítač
Zdravím, kamarádky počítač je zavirovaný i po stažení emailu - spamu - s "pohledávkou". Avast našel jen ve spuštěných programech vir Win32:Rootkit-gen [Rtk] a byly nalezeny i různé viry Microsoftem Security Essentials (už jsem je vyměnil za avast a nepamatuji si názvy virů...). Problémy jsou i s vyskakováním různých oken v prohlížeči i na běžných stránkách.
Prosím tedy o kontrolu logu a pokyny jak dále, děkuji mockrát.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Olina at 2014-05-15 20:50:54
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 239 GB (78%) free of 305 GB
Total RAM: 1791 MB (41% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:51:04, on 15.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Freecorder\FLVSrvc.exe
C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.15.10\BabylonToolbarsrv.exe
C:\Windows\wt\updater\wcmdmgr.exe
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Seznam.cz\bin\postak.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Olina\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Olina\Desktop\RSIT.exe
C:\Program Files\trend micro\Olina.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - (no file)
R3 - URLSearchHook: (no name) - {7a5f72d2-9bbf-443f-9d35-26fc7e858e77} - (no file)
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
R3 - URLSearchHook: (no name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll
O2 - BHO: Toolbar BHO - {312f84fb-8970-4fd3-bddb-7012eac4afc9} - C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Search Assistant BHO - {a4c2fb10-84c3-44eb-9f9e-860fa1d9a797} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Search Assistant BHO - {c547c6c2-561b-4169-a2a5-20ba771ca93b} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.3.dll (file missing)
O2 - BHO: Toolbar BHO - {fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d} - C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbar.dll
O3 - Toolbar: VideoDownloadConverter - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Allin1Convert - {cd1a63ba-a08c-431b-9a34-f240aadc728d} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [wcmdmgr] C:\Windows\wt\updater\wcmdmgrl.exe -launch
O4 - HKLM\..\Run: [Freecorder FLV Service] "C:\Program Files\Freecorder\FLVSrvc.exe" /run
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SSDMonitor] C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [VideoDownloadConverter Search Scope Monitor] "C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [VideoDownloadConverter_4z Browser Plugin Loader] C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NSU_agent] "C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe"
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files\Nokia\Nokia Music Player\NokiaMusicPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [Allin1Convert EPM Support] "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hmedint.exe" T8EPMSUP.DLL,S
O4 - HKLM\..\Run: [Allin1Convert Home Page Guard 32 bit] "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\AppIntegrator.exe"
O4 - HKLM\..\Run: [Allin1Convert Search Scope Monitor] "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [Allin1Convert_8h Browser Plugin Loader] C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files\Seznam.cz\bin\postak.exe" -s
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [MobileDocuments] C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Olina\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Olina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\Olina\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1503038219-2209986198-3904582108-1005\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1503038219-2209986198-3904582108-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Canon IJ Status Monitor Canon MG5100 series Printer.lnk = ?
O4 - Startup: Verbatim GREEN BUTTON.lnk = C:\Program Files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Copy to &Lightning Note - C:\Program Files\Corel\WordPerfect Lightning\Programs\WPLightningCopyToNote.hta
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with WordPerfect - c:\Program Files\Corel\WordPerfect Office X5\Programs\WPLauncher.hta
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Allin1ConvertService (Allin1Convert_8hService) - COMPANYVERS_NAME - C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbarsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: VideoDownloadConverterService (VideoDownloadConverter_4zService) - COMPANYVERS_NAME - C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe
--
End of file - 14763 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AmiUpdXp.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Norton Security Scan for Olina.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312f84fb-8970-4fd3-bddb-7012eac4afc9}]
Toolbar BHO - C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll [2013-02-27 707728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-04-14 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-05-15 436600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2011-05-13 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a4c2fb10-84c3-44eb-9f9e-860fa1d9a797}]
Search Assistant BHO - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll [2014-01-23 140360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-29 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c547c6c2-561b-4169-a2a5-20ba771ca93b}]
Search Assistant BHO - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll [2013-02-27 62864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.3.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d}]
Toolbar BHO - C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbar.dll [2014-01-23 859720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{48586425-6bb7-4f51-8dc6-38c88e3ebb58} - VideoDownloadConverter - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll [2013-02-27 707728]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
{cd1a63ba-a08c-431b-9a34-f240aadc728d} - Allin1Convert - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbar.dll [2014-01-23 859720]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-29 194504]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"wcmdmgr"=C:\Windows\wt\updater\wcmdmgrl.exe [2001-01-25 20480]
"Freecorder FLV Service"=C:\Program Files\Freecorder\FLVSrvc.exe [2010-06-26 167936]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-10-06 59240]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848]
"NBAgent"=C:\Program Files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [2010-03-14 1086760]
"SSDMonitor"=C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2011-12-12 103896]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"VideoDownloadConverter Search Scope Monitor"=C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zsrchmn.exe [2013-02-27 42536]
"VideoDownloadConverter_4z Browser Plugin Loader"=C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe [2013-02-27 30096]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2010-03-25 2516296]
"CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2010-04-02 1185112]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NSU_agent"=C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe [2012-02-28 190768]
"NokiaMusic FastStart"=C:\Program Files\Nokia\Nokia Music Player\NokiaMusicPlayer.exe [2011-10-21 2193000]
"Allin1Convert EPM Support"=C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hmedint.exe [2014-01-23 12872]
"Allin1Convert Home Page Guard 32 bit"=C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\AppIntegrator.exe []
"Allin1Convert Search Scope Monitor"=C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hsrchmn.exe [2014-01-23 55368]
"Allin1Convert_8h Browser Plugin Loader"=C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe [2014-01-23 61512]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2014-02-21 152392]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-05-15 3873704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Seznam Postak"=C:\Program Files\Seznam.cz\bin\postak.exe [2012-01-10 491040]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"MobileDocuments"=C:\Program Files\Common Files\Apple\Internet Services\ubd.exe []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2012-08-27 39408]
"cz.seznam.software.autoupdate"=C:\Users\Olina\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Olina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Google+ Auto Backup"=C:\Users\Olina\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe /autostart []
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
C:\Users\Olina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Canon IJ Status Monitor Canon MG5100 series Printer.lnk - C:\Windows\system32\rundll32.exe
Verbatim GREEN BUTTON.lnk - C:\Program Files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoInstrumentation"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=L3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
"vidc.divx"=divx.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvidvfw.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.vorbis"=Vorbis.acm
"msacm.a3d"=a3d.dll
"msacm.ogg"=ogg.dll
"msacm.vorbisenc"=vorbisenc.dll
"msacm.siren"=sirenacm.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"VIDC.X264"=x264vfw.dll
"msacm.ac3acm"=ac3acm.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-05-15 20:50:54 ----D---- C:\rsit
2014-05-15 20:50:54 ----D---- C:\Program Files\trend micro
2014-05-15 20:44:54 ----D---- C:\Users\Olina\AppData\Roaming\AVAST Software
2014-05-15 20:43:58 ----A---- C:\Windows\system32\drivers\aswstm.sys
2014-05-15 20:43:57 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-05-15 20:43:57 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-05-15 20:43:57 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2014-05-15 20:43:56 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-05-15 20:43:56 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-05-15 20:43:56 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-05-15 20:43:55 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-05-15 20:43:54 ----A---- C:\Windows\system32\aswBoot.exe
2014-05-15 20:43:51 ----A---- C:\Windows\avastSS.scr
2014-05-15 20:40:43 ----D---- C:\Program Files\AVAST Software
2014-05-15 20:39:38 ----D---- C:\ProgramData\AVAST Software
2014-05-14 06:37:02 ----D---- C:\Program Files\RichMediaViewV1
2014-05-13 19:59:32 ----D---- C:\Program Files\Common Files\DESIGNER
2014-05-13 19:57:29 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-13 19:57:28 ----A---- C:\Windows\system32\mshtml.dll
2014-05-13 19:55:16 ----A---- C:\Windows\system32\aepdu.dll
2014-05-13 19:55:14 ----A---- C:\Windows\system32\aeinv.dll
2014-05-13 19:55:07 ----A---- C:\Windows\system32\ntkrnlpa.exe
2014-05-13 19:55:06 ----A---- C:\Windows\system32\kerberos.dll
2014-05-13 19:55:05 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-13 19:55:05 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-13 19:55:04 ----A---- C:\Windows\system32\winlogon.exe
2014-05-13 19:55:04 ----A---- C:\Windows\system32\objsel.dll
2014-05-13 19:55:04 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\wdigest.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\schannel.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-13 19:55:03 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\adprovider.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\sspicli.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\lsass.exe
2014-05-13 19:55:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-13 19:55:02 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\credssp.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-13 19:55:01 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-13 19:55:01 ----A---- C:\Windows\system32\secur32.dll
2014-05-13 19:54:17 ----A---- C:\Windows\system32\shell32.dll
2014-05-06 18:15:10 ----SD---- C:\Windows\system32\CompatTel
2014-05-06 18:14:30 ----A---- C:\Windows\system32\vbscript.dll
2014-05-06 18:14:29 ----A---- C:\Windows\system32\ieui.dll
2014-05-06 18:14:25 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-05-06 18:14:24 ----A---- C:\Windows\system32\msrating.dll
2014-05-06 18:14:24 ----A---- C:\Windows\system32\ieapfltr.dll
2014-05-06 18:14:23 ----A---- C:\Windows\system32\msfeeds.dll
2014-05-06 18:14:23 ----A---- C:\Windows\system32\jsproxy.dll
2014-05-06 18:14:22 ----A---- C:\Windows\system32\ie4uinit.exe
2014-05-06 18:14:22 ----A---- C:\Windows\system32\dxtrans.dll
2014-05-06 18:14:22 ----A---- C:\Windows\system32\dxtmsft.dll
2014-05-06 18:14:21 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-06 18:14:21 ----A---- C:\Windows\system32\ieUnatt.exe
2014-05-06 18:14:21 ----A---- C:\Windows\system32\iesetup.dll
2014-05-06 18:14:21 ----A---- C:\Windows\system32\iernonce.dll
2014-05-06 18:14:20 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-06 18:14:20 ----A---- C:\Windows\system32\jscript9diag.dll
2014-05-06 18:14:20 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-05-06 18:14:20 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-05-06 18:14:17 ----A---- C:\Windows\system32\iertutil.dll
2014-05-06 18:14:16 ----A---- C:\Windows\system32\wininet.dll
2014-05-06 18:14:16 ----A---- C:\Windows\system32\urlmon.dll
2014-05-06 18:14:15 ----A---- C:\Windows\system32\ieframe.dll
2014-05-06 18:14:14 ----A---- C:\Windows\system32\jscript9.dll
2014-04-30 10:12:35 ----D---- C:\Program Files\Tbccint
2014-04-25 18:21:37 ----D---- C:\Program Files\MediaBuzzV1
2014-04-19 18:24:14 ----A---- C:\Windows\system32\javaws.exe
2014-04-19 18:24:07 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2014-04-19 18:24:07 ----A---- C:\Windows\system32\javaw.exe
2014-04-19 18:24:07 ----A---- C:\Windows\system32\java.exe
======List of files/folders modified in the last 1 month======
2014-05-15 20:51:04 ----D---- C:\Windows\Temp
2014-05-15 20:51:04 ----D---- C:\Windows\Prefetch
2014-05-15 20:50:54 ----RD---- C:\Program Files
2014-05-15 20:48:46 ----D---- C:\Windows\System32
2014-05-15 20:46:59 ----D---- C:\Program Files\PCData
2014-05-15 20:44:27 ----D---- C:\Windows\system32\drivers
2014-05-15 20:44:09 ----D---- C:\Windows\system32\Tasks
2014-05-15 20:43:54 ----D---- C:\Windows\winsxs
2014-05-15 20:43:54 ----D---- C:\Windows
2014-05-15 20:40:45 ----SHD---- C:\System Volume Information
2014-05-15 20:39:38 ----HD---- C:\ProgramData
2014-05-15 20:38:19 ----SHD---- C:\Windows\Installer
2014-05-15 20:36:09 ----D---- C:\Program Files\MediaWatchV1
2014-05-15 20:34:27 ----D---- C:\Program Files\Freecorder
2014-05-15 20:32:52 ----D---- C:\Users\Olina\AppData\Roaming\Seznam.cz
2014-05-15 20:32:33 ----SD---- C:\ProgramData\Microsoft
2014-05-15 20:32:33 ----D---- C:\Program Files\Microsoft
2014-05-15 20:25:01 ----D---- C:\Windows\system32\config
2014-05-15 10:54:24 ----A---- C:\Windows\NeroDigital.ini
2014-05-15 10:53:02 ----AD---- C:\ProgramData\TEMP
2014-05-15 08:43:24 ----D---- C:\Windows\inf
2014-05-15 08:43:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-14 08:27:24 ----D---- C:\Windows\rescache
2014-05-14 07:16:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-05-14 07:15:33 ----D---- C:\Windows\Microsoft.NET
2014-05-14 07:15:02 ----RSD---- C:\Windows\assembly
2014-05-14 06:38:07 ----A---- C:\extensions.ini
2014-05-14 06:33:47 ----D---- C:\Windows\system32\cs-CZ
2014-05-14 06:33:47 ----D---- C:\Windows\PolicyDefinitions
2014-05-13 20:41:15 ----D---- C:\Windows\Tasks
2014-05-13 20:41:15 ----D---- C:\Windows\system32\wfp
2014-05-13 20:41:15 ----D---- C:\Windows\system32\DriverStore
2014-05-13 20:41:14 ----D---- C:\Windows\system32\CodeIntegrity
2014-05-13 20:41:14 ----D---- C:\Windows\AppCompat
2014-05-13 20:41:08 ----D---- C:\ProgramData\Norton
2014-05-13 20:40:57 ----D---- C:\Windows\system32\wbem
2014-05-13 20:40:57 ----D---- C:\Windows\registration
2014-05-13 20:40:50 ----SD---- C:\Users\Olina\AppData\Roaming\Microsoft
2014-05-13 20:03:19 ----D---- C:\ProgramData\Microsoft Help
2014-05-13 20:02:58 ----D---- C:\Windows\system32\MRT
2014-05-13 19:59:52 ----A---- C:\Windows\system32\MRT.exe
2014-05-13 19:59:32 ----D---- C:\Program Files\Common Files
2014-05-13 19:57:32 ----D---- C:\Windows\system32\catroot
2014-05-13 19:54:03 ----D---- C:\Windows\system32\catroot2
2014-05-06 18:15:10 ----D---- C:\Windows\system32\en-US
2014-05-06 18:15:10 ----D---- C:\Program Files\Internet Explorer
2014-04-19 18:24:20 ----D---- C:\ProgramData\Oracle
2014-04-19 18:24:07 ----D---- C:\Program Files\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-05-15 180632]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-19 691696]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-05-15 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-05-15 777488]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-05-15 411680]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-05-15 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-05-15 67824]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-05-15 68312]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NVNET;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
S0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-05-15 49944]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ar39ujcw;ar39ujcw; C:\Windows\system32\drivers\ar39ujcw.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-13 39272]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 Allin1Convert_8hService;Allin1ConvertService; C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbarsvc.exe [2014-01-23 88648]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-05-15 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2012-12-24 1868432]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2; C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [2011-06-21 196912]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-31 634656]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-19 1259296]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-12-12 793048]
R2 VideoDownloadConverter_4zService;VideoDownloadConverterService; C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe [2013-02-27 42504]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-02-21 553288]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-28 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2011-05-13 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-28 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-31 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 108032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-09-19 1343400]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Prosím tedy o kontrolu logu a pokyny jak dále, děkuji mockrát.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Olina at 2014-05-15 20:50:54
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 239 GB (78%) free of 305 GB
Total RAM: 1791 MB (41% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:51:04, on 15.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Freecorder\FLVSrvc.exe
C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.15.10\BabylonToolbarsrv.exe
C:\Windows\wt\updater\wcmdmgr.exe
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Seznam.cz\bin\postak.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Olina\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Olina\Desktop\RSIT.exe
C:\Program Files\trend micro\Olina.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - (no file)
R3 - URLSearchHook: (no name) - {7a5f72d2-9bbf-443f-9d35-26fc7e858e77} - (no file)
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
R3 - URLSearchHook: (no name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll
O2 - BHO: Toolbar BHO - {312f84fb-8970-4fd3-bddb-7012eac4afc9} - C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Search Assistant BHO - {a4c2fb10-84c3-44eb-9f9e-860fa1d9a797} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Search Assistant BHO - {c547c6c2-561b-4169-a2a5-20ba771ca93b} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.3.dll (file missing)
O2 - BHO: Toolbar BHO - {fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d} - C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbar.dll
O3 - Toolbar: VideoDownloadConverter - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Allin1Convert - {cd1a63ba-a08c-431b-9a34-f240aadc728d} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [wcmdmgr] C:\Windows\wt\updater\wcmdmgrl.exe -launch
O4 - HKLM\..\Run: [Freecorder FLV Service] "C:\Program Files\Freecorder\FLVSrvc.exe" /run
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SSDMonitor] C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [VideoDownloadConverter Search Scope Monitor] "C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [VideoDownloadConverter_4z Browser Plugin Loader] C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NSU_agent] "C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe"
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files\Nokia\Nokia Music Player\NokiaMusicPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [Allin1Convert EPM Support] "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hmedint.exe" T8EPMSUP.DLL,S
O4 - HKLM\..\Run: [Allin1Convert Home Page Guard 32 bit] "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\AppIntegrator.exe"
O4 - HKLM\..\Run: [Allin1Convert Search Scope Monitor] "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [Allin1Convert_8h Browser Plugin Loader] C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files\Seznam.cz\bin\postak.exe" -s
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [MobileDocuments] C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Olina\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Olina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\Olina\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1503038219-2209986198-3904582108-1005\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1503038219-2209986198-3904582108-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Canon IJ Status Monitor Canon MG5100 series Printer.lnk = ?
O4 - Startup: Verbatim GREEN BUTTON.lnk = C:\Program Files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Copy to &Lightning Note - C:\Program Files\Corel\WordPerfect Lightning\Programs\WPLightningCopyToNote.hta
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with WordPerfect - c:\Program Files\Corel\WordPerfect Office X5\Programs\WPLauncher.hta
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Allin1ConvertService (Allin1Convert_8hService) - COMPANYVERS_NAME - C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbarsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: VideoDownloadConverterService (VideoDownloadConverter_4zService) - COMPANYVERS_NAME - C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe
--
End of file - 14763 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AmiUpdXp.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Norton Security Scan for Olina.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312f84fb-8970-4fd3-bddb-7012eac4afc9}]
Toolbar BHO - C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll [2013-02-27 707728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-04-14 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-05-15 436600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2011-05-13 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a4c2fb10-84c3-44eb-9f9e-860fa1d9a797}]
Search Assistant BHO - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll [2014-01-23 140360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-29 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c547c6c2-561b-4169-a2a5-20ba771ca93b}]
Search Assistant BHO - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll [2013-02-27 62864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.3.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d}]
Toolbar BHO - C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbar.dll [2014-01-23 859720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{48586425-6bb7-4f51-8dc6-38c88e3ebb58} - VideoDownloadConverter - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll [2013-02-27 707728]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
{cd1a63ba-a08c-431b-9a34-f240aadc728d} - Allin1Convert - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbar.dll [2014-01-23 859720]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-29 194504]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"wcmdmgr"=C:\Windows\wt\updater\wcmdmgrl.exe [2001-01-25 20480]
"Freecorder FLV Service"=C:\Program Files\Freecorder\FLVSrvc.exe [2010-06-26 167936]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-10-06 59240]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-12 43848]
"NBAgent"=C:\Program Files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [2010-03-14 1086760]
"SSDMonitor"=C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2011-12-12 103896]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"VideoDownloadConverter Search Scope Monitor"=C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zsrchmn.exe [2013-02-27 42536]
"VideoDownloadConverter_4z Browser Plugin Loader"=C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe [2013-02-27 30096]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2010-03-25 2516296]
"CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2010-04-02 1185112]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NSU_agent"=C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe [2012-02-28 190768]
"NokiaMusic FastStart"=C:\Program Files\Nokia\Nokia Music Player\NokiaMusicPlayer.exe [2011-10-21 2193000]
"Allin1Convert EPM Support"=C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hmedint.exe [2014-01-23 12872]
"Allin1Convert Home Page Guard 32 bit"=C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\AppIntegrator.exe []
"Allin1Convert Search Scope Monitor"=C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hsrchmn.exe [2014-01-23 55368]
"Allin1Convert_8h Browser Plugin Loader"=C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe [2014-01-23 61512]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2014-02-21 152392]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-05-15 3873704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Seznam Postak"=C:\Program Files\Seznam.cz\bin\postak.exe [2012-01-10 491040]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"MobileDocuments"=C:\Program Files\Common Files\Apple\Internet Services\ubd.exe []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2012-08-27 39408]
"cz.seznam.software.autoupdate"=C:\Users\Olina\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Olina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Google+ Auto Backup"=C:\Users\Olina\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe /autostart []
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
C:\Users\Olina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Canon IJ Status Monitor Canon MG5100 series Printer.lnk - C:\Windows\system32\rundll32.exe
Verbatim GREEN BUTTON.lnk - C:\Program Files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoInstrumentation"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=L3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
"vidc.divx"=divx.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvidvfw.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.vorbis"=Vorbis.acm
"msacm.a3d"=a3d.dll
"msacm.ogg"=ogg.dll
"msacm.vorbisenc"=vorbisenc.dll
"msacm.siren"=sirenacm.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"VIDC.X264"=x264vfw.dll
"msacm.ac3acm"=ac3acm.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-05-15 20:50:54 ----D---- C:\rsit
2014-05-15 20:50:54 ----D---- C:\Program Files\trend micro
2014-05-15 20:44:54 ----D---- C:\Users\Olina\AppData\Roaming\AVAST Software
2014-05-15 20:43:58 ----A---- C:\Windows\system32\drivers\aswstm.sys
2014-05-15 20:43:57 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-05-15 20:43:57 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-05-15 20:43:57 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2014-05-15 20:43:56 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-05-15 20:43:56 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-05-15 20:43:56 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-05-15 20:43:55 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-05-15 20:43:54 ----A---- C:\Windows\system32\aswBoot.exe
2014-05-15 20:43:51 ----A---- C:\Windows\avastSS.scr
2014-05-15 20:40:43 ----D---- C:\Program Files\AVAST Software
2014-05-15 20:39:38 ----D---- C:\ProgramData\AVAST Software
2014-05-14 06:37:02 ----D---- C:\Program Files\RichMediaViewV1
2014-05-13 19:59:32 ----D---- C:\Program Files\Common Files\DESIGNER
2014-05-13 19:57:29 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-13 19:57:28 ----A---- C:\Windows\system32\mshtml.dll
2014-05-13 19:55:16 ----A---- C:\Windows\system32\aepdu.dll
2014-05-13 19:55:14 ----A---- C:\Windows\system32\aeinv.dll
2014-05-13 19:55:07 ----A---- C:\Windows\system32\ntkrnlpa.exe
2014-05-13 19:55:06 ----A---- C:\Windows\system32\kerberos.dll
2014-05-13 19:55:05 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-13 19:55:05 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-13 19:55:04 ----A---- C:\Windows\system32\winlogon.exe
2014-05-13 19:55:04 ----A---- C:\Windows\system32\objsel.dll
2014-05-13 19:55:04 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\wdigest.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\schannel.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-13 19:55:03 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-13 19:55:03 ----A---- C:\Windows\system32\adprovider.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\sspicli.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\lsass.exe
2014-05-13 19:55:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-13 19:55:02 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\credssp.dll
2014-05-13 19:55:02 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-13 19:55:01 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-13 19:55:01 ----A---- C:\Windows\system32\secur32.dll
2014-05-13 19:54:17 ----A---- C:\Windows\system32\shell32.dll
2014-05-06 18:15:10 ----SD---- C:\Windows\system32\CompatTel
2014-05-06 18:14:30 ----A---- C:\Windows\system32\vbscript.dll
2014-05-06 18:14:29 ----A---- C:\Windows\system32\ieui.dll
2014-05-06 18:14:25 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-05-06 18:14:24 ----A---- C:\Windows\system32\msrating.dll
2014-05-06 18:14:24 ----A---- C:\Windows\system32\ieapfltr.dll
2014-05-06 18:14:23 ----A---- C:\Windows\system32\msfeeds.dll
2014-05-06 18:14:23 ----A---- C:\Windows\system32\jsproxy.dll
2014-05-06 18:14:22 ----A---- C:\Windows\system32\ie4uinit.exe
2014-05-06 18:14:22 ----A---- C:\Windows\system32\dxtrans.dll
2014-05-06 18:14:22 ----A---- C:\Windows\system32\dxtmsft.dll
2014-05-06 18:14:21 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-06 18:14:21 ----A---- C:\Windows\system32\ieUnatt.exe
2014-05-06 18:14:21 ----A---- C:\Windows\system32\iesetup.dll
2014-05-06 18:14:21 ----A---- C:\Windows\system32\iernonce.dll
2014-05-06 18:14:20 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-06 18:14:20 ----A---- C:\Windows\system32\jscript9diag.dll
2014-05-06 18:14:20 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-05-06 18:14:20 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-05-06 18:14:17 ----A---- C:\Windows\system32\iertutil.dll
2014-05-06 18:14:16 ----A---- C:\Windows\system32\wininet.dll
2014-05-06 18:14:16 ----A---- C:\Windows\system32\urlmon.dll
2014-05-06 18:14:15 ----A---- C:\Windows\system32\ieframe.dll
2014-05-06 18:14:14 ----A---- C:\Windows\system32\jscript9.dll
2014-04-30 10:12:35 ----D---- C:\Program Files\Tbccint
2014-04-25 18:21:37 ----D---- C:\Program Files\MediaBuzzV1
2014-04-19 18:24:14 ----A---- C:\Windows\system32\javaws.exe
2014-04-19 18:24:07 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2014-04-19 18:24:07 ----A---- C:\Windows\system32\javaw.exe
2014-04-19 18:24:07 ----A---- C:\Windows\system32\java.exe
======List of files/folders modified in the last 1 month======
2014-05-15 20:51:04 ----D---- C:\Windows\Temp
2014-05-15 20:51:04 ----D---- C:\Windows\Prefetch
2014-05-15 20:50:54 ----RD---- C:\Program Files
2014-05-15 20:48:46 ----D---- C:\Windows\System32
2014-05-15 20:46:59 ----D---- C:\Program Files\PCData
2014-05-15 20:44:27 ----D---- C:\Windows\system32\drivers
2014-05-15 20:44:09 ----D---- C:\Windows\system32\Tasks
2014-05-15 20:43:54 ----D---- C:\Windows\winsxs
2014-05-15 20:43:54 ----D---- C:\Windows
2014-05-15 20:40:45 ----SHD---- C:\System Volume Information
2014-05-15 20:39:38 ----HD---- C:\ProgramData
2014-05-15 20:38:19 ----SHD---- C:\Windows\Installer
2014-05-15 20:36:09 ----D---- C:\Program Files\MediaWatchV1
2014-05-15 20:34:27 ----D---- C:\Program Files\Freecorder
2014-05-15 20:32:52 ----D---- C:\Users\Olina\AppData\Roaming\Seznam.cz
2014-05-15 20:32:33 ----SD---- C:\ProgramData\Microsoft
2014-05-15 20:32:33 ----D---- C:\Program Files\Microsoft
2014-05-15 20:25:01 ----D---- C:\Windows\system32\config
2014-05-15 10:54:24 ----A---- C:\Windows\NeroDigital.ini
2014-05-15 10:53:02 ----AD---- C:\ProgramData\TEMP
2014-05-15 08:43:24 ----D---- C:\Windows\inf
2014-05-15 08:43:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-14 08:27:24 ----D---- C:\Windows\rescache
2014-05-14 07:16:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-05-14 07:15:33 ----D---- C:\Windows\Microsoft.NET
2014-05-14 07:15:02 ----RSD---- C:\Windows\assembly
2014-05-14 06:38:07 ----A---- C:\extensions.ini
2014-05-14 06:33:47 ----D---- C:\Windows\system32\cs-CZ
2014-05-14 06:33:47 ----D---- C:\Windows\PolicyDefinitions
2014-05-13 20:41:15 ----D---- C:\Windows\Tasks
2014-05-13 20:41:15 ----D---- C:\Windows\system32\wfp
2014-05-13 20:41:15 ----D---- C:\Windows\system32\DriverStore
2014-05-13 20:41:14 ----D---- C:\Windows\system32\CodeIntegrity
2014-05-13 20:41:14 ----D---- C:\Windows\AppCompat
2014-05-13 20:41:08 ----D---- C:\ProgramData\Norton
2014-05-13 20:40:57 ----D---- C:\Windows\system32\wbem
2014-05-13 20:40:57 ----D---- C:\Windows\registration
2014-05-13 20:40:50 ----SD---- C:\Users\Olina\AppData\Roaming\Microsoft
2014-05-13 20:03:19 ----D---- C:\ProgramData\Microsoft Help
2014-05-13 20:02:58 ----D---- C:\Windows\system32\MRT
2014-05-13 19:59:52 ----A---- C:\Windows\system32\MRT.exe
2014-05-13 19:59:32 ----D---- C:\Program Files\Common Files
2014-05-13 19:57:32 ----D---- C:\Windows\system32\catroot
2014-05-13 19:54:03 ----D---- C:\Windows\system32\catroot2
2014-05-06 18:15:10 ----D---- C:\Windows\system32\en-US
2014-05-06 18:15:10 ----D---- C:\Program Files\Internet Explorer
2014-04-19 18:24:20 ----D---- C:\ProgramData\Oracle
2014-04-19 18:24:07 ----D---- C:\Program Files\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-05-15 180632]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-19 691696]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-05-15 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-05-15 777488]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-05-15 411680]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-05-15 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-05-15 67824]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-05-15 68312]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NVNET;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
S0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-05-15 49944]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ar39ujcw;ar39ujcw; C:\Windows\system32\drivers\ar39ujcw.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2011-05-13 39272]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 Allin1Convert_8hService;Allin1ConvertService; C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\8hbarsvc.exe [2014-01-23 88648]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-05-15 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2012-12-24 1868432]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2; C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [2011-06-21 196912]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-31 634656]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-19 1259296]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-12-12 793048]
R2 VideoDownloadConverter_4zService;VideoDownloadConverterService; C:\PROGRA~1\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe [2013-02-27 42504]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-02-21 553288]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-28 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2011-05-13 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-28 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-31 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 108032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-09-19 1343400]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Re: Zavirovaný počítač
Dobrý večer
Stáhněte Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
-Uložte program na plochu a spusťte . Pak se zobrazí se licenční podminky - potvrďte start libovolnou klávesou.
- vytvoří se záloha a proběhne skenování.
Po skončení skenování na Vás vyběhne log (bude uložen v c:\JRT jako JRT.txt) - zkopírujte jej sem
Stáhněte AdwCleaner http://www.bleepingcomputer.com/download/adwcleaner/
-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.
-Uložte program na plochu a spusťte . Pak se zobrazí se licenční podminky - potvrďte start libovolnou klávesou.
- vytvoří se záloha a proběhne skenování.
Po skončení skenování na Vás vyběhne log (bude uložen v c:\JRT jako JRT.txt) - zkopírujte jej sem
-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
JRT:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows 7 Ultimate x86
Ran by Olina on źt 15.05.2014 at 21:12:44,61
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escort.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{13119113-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{27F49273-DE3A-4111-90F9-6C474C37AEFB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{33119133-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{39D4F1A1-A94D-4B7D-BF1D-7446308800ED}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{443321F7-E46C-42F8-812B-F35E98CBB44F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5CDE4714-32DC-473C-8194-0645E62C2E96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7EB7381C-FB01-47FC-9C42-ED64122C1B92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F83D657-5993-4FFA-9AEE-DA0B20D828A7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A4C2FB10-84C3-44EB-9F9E-860FA1D9A797}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C430996F-4AA8-4AA8-81DE-F54432CD5786}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C8EF8F70-3807-424A-83F7-DA06FD4DACF9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE0F6787-9D1C-42B7-A0B9-EAC630F87902}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E4EF697F-434B-4DC7-A464-4412462206DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{EF3F28C8-0330-4D18-B901-D24CB83E5AA1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F2C368C5-9F44-4D43-89F3-A1CC87F1DA96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F99DDD9A-07D0-47AB-86F1-193533DD2C60}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{23119123-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{03119103-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{AD79BAD6-9504-4F09-ACEC-7B319584A4C1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\im
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\iminstaller
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yahoopartnertoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\pricegong
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\dt soft\daemon tools toolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\funwebproducts
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.feedmanager
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.feedmanager.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlmenu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlmenu.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlpanel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.multiplebutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radio
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radio.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radiosettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radiosettings.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.scriptbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.settingsplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.settingsplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bbylntlbr.bbylntlbrhlpr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bbylntlbr.bbylntlbrhlpr.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\conduit.engine
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.dynamicbarbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.dynamicbarbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.feedmanager
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.feedmanager.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlmenu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlmenu.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlpanel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.multiplebutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radio
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radio.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radiosettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radiosettings.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.scriptbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.settingsplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.settingsplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.skinlauncher
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.skinlauncher.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.urlalertbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.urlalertbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.xmlsessionplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.xmlsessionplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C5561B6-3DD2-46B5-83BE-EAE744366046}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88E44198-D164-4EC0-B2C0-F679D866C6DA}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F671C1B3-9776-426D-A350-55FB2D9B53F7}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylon_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylon_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylontoolbarsrv_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylontoolbarsrv_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall firefox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall internet explorer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\videodownloadconverter_4zbar uninstall
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{99c91fc5-db5b-4aa0-bb70-5d89c5a4df96}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT1060933
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2475029
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2697549
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{b6b9e4d6-9c66-46c4-8e60-508f3984929e}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A4C2FB10-84C3-44EB-9F9E-860FA1D9A797}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FBCBC43A-DCA9-4192-A4C8-B57FD0F77D4D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\pip"
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\launchapp
Successfully deleted: [File] C:\Windows\Tasks\amiupdxp.job
Successfully deleted: [File] "C:\Windows\system32\roboot.exe"
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\big fish games"
Successfully deleted: [Folder] "C:\ProgramData\trymedia"
Successfully deleted: [Folder] "C:\Users\Olina\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\Olina\AppData\Roaming\registry mechanic"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\allin1convert_8h"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\babylontoolbar"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\pricegong"
Failed to delete: [Folder] "C:\Users\Olina\appdata\locallow\videodownloadconverter_4z"
Failed to delete: [Folder] "C:\Program Files\allin1convert_8h"
Successfully deleted: [Folder] "C:\Program Files\babylon"
Successfully deleted: [Folder] "C:\Program Files\funwebproducts"
Successfully deleted: [Folder] "C:\Program Files\video download converter"
Successfully deleted: [Folder] "C:\Program Files\videodownloadconverter_4z"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uniblue"
Successfully deleted: [Folder] "C:\Windows\freecorder"
Successfully deleted: [Empty Folder] C:\Users\Olina\appdata\local\{428027BE-A3F6-4B4E-B63C-D0676149AD1B}
Successfully deleted: [Empty Folder] C:\Users\Olina\appdata\local\{EB86BFB3-C456-4327-BCC8-E25606AD4582}
Successfully deleted: [Folder] "C:\ProgramData\ask"
~~~ Chrome
Successfully deleted: [Folder] C:\Users\Olina\appdata\local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 15.05.2014 at 21:16:17,97
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
AdwCleaner:
# AdwCleaner v3.208 - Report created 15/05/2014 at 21:20:06
# Updated 11/05/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : Olina - OLINA-PC
# Running from : C:\Users\Olina\Desktop\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : Allin1Convert_8hService
[#] Service Deleted : VideoDownloadConverter_4zService
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files\Allin1Convert_8h
Folder Deleted : C:\Program Files\MediaViewV1
Folder Deleted : C:\Program Files\MediaWatchV1
Folder Deleted : C:\Program Files\Tbccint
Folder Deleted : C:\Users\Olina\AppData\Local\Allin1Convert_8h
Folder Deleted : C:\Users\Olina\AppData\Local\Conduit
Folder Deleted : C:\Users\Olina\AppData\Local\iac
Folder Deleted : C:\Users\Olina\AppData\Local\OpenCandy
Folder Deleted : C:\Users\Olina\AppData\Local\PackageAware
Folder Deleted : C:\Users\Olina\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Olina\AppData\Local\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Olina\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Olina\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Olina\AppData\LocalLow\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Public\Documents\AlawarWrapper
File Deleted : C:\Users\Public\Desktop\iLivid.lnk
File Deleted : C:\Users\Olina\AppData\Local\Temp\Uninstall.exe
***** [ Shortcuts ] *****
***** [ Registry ] *****
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F0762B9-44DD-4626-8E9C-F54CC977151B}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F0762B9-44DD-4626-8E9C-F54CC977151B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\conduit.com
Key Deleted : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector
Key Deleted : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncherSettings
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncherSettings.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin
Key Deleted : HKLM\SOFTWARE\14919ea49a8f3b4aa3cf1058d9a64cec
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2A1260C1-2964-453F-B0BA-FA429472EB5F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{363D5C92-10DC-4287-93E5-1832EECC48EC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B41BE90-F731-4137-AFF3-2CA951E7F0D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4128C64D-F0DD-4811-9405-D22294E8151F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66292684-B2C2-4C7C-B3D2-BF446E30744C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69407823-3494-4400-8D49-612549E8F4EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6BFF4BCB-7A73-45A7-AC4C-389A34E1D1EF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{84B7B98F-E018-4DBB-AB4C-4DDD3DFCB5FB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8FCA5302-6D6D-4645-BF99-D43CF76CE474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF5DB804-585B-472E-B415-BC63F8F01BF6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FF48DBA6-5DD8-4D10-9EB0-0FA968502E66}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1CCCE0D-AE21-42A2-BE58-8E6109410995}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{192F487E-E812-40C0-B0DE-CB4BFA20F37B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3EE17DD1-E28B-4AED-A3B2-9C29CB2C19D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{79332472-47F3-4E32-B07F-CF8DF4C58499}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{886F93AD-3CBB-4424-8442-A7340243540F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AA289DBC-59B6-40A5-AC7D-C90DF850289C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BC153A3C-0BB7-4EED-83AE-28E6E398F56E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CA723163-6FAD-43D4-8B93-0D8C52BD9974}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FB0E8A09-F08C-44CF-9E15-97ADAC016248}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{27F49273-DE3A-4111-90F9-6C474C37AEFB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7EB7381C-FB01-47FC-9C42-ED64122C1B92}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E4EF697F-434B-4DC7-A464-4412462206DB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F99DDD9A-07D0-47AB-86F1-193533DD2C60}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{48586425-6BB7-4F51-8DC6-38C88E3EBB58}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CD1A63BA-A08C-431B-9A34-F240AADC728D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{48586425-6BB7-4F51-8DC6-38C88E3EBB58}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CD1A63BA-A08C-431B-9A34-F240AADC728D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{93A3111F-4F74-4ED8-895E-D9708497629E}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
Key Deleted : HKCU\Software\Ask&Record
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\VideoDownloadConverter_4z
Key Deleted : HKCU\Software\AppDataLow\Software\BackgroundContainer
Key Deleted : HKCU\Software\AppDataLow\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Google Chrome v34.0.1847.137
[ File : C:\Users\Olina\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=100000027&locale=en_EU&apn_uid=017E0731-49C5-41CD-98E0-2BBA5F9BDE84&apn_ptnrs=U3&apn_sauid=9ED48786-2793-4633-8D5D-F5E16E6E3983&apn_dtid=OSJ000YYCZ&q={searchTerms}
Deleted [Search Provider] : hxxp://www.search.ask.com/web?p2=%5EBAY%5Epfm0 ... earchTerms}
Deleted [Homepage] : hxxp://www.search.ask.com/?p2=%5EBAY%5Epfm061% ... 10-31&psv=
*************************
AdwCleaner[R0].txt - [13397 octets] - [15/05/2014 21:18:55]
AdwCleaner[S0].txt - [13607 octets] - [15/05/2014 21:20:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13668 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows 7 Ultimate x86
Ran by Olina on źt 15.05.2014 at 21:12:44,61
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escort.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{13119113-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{27F49273-DE3A-4111-90F9-6C474C37AEFB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{33119133-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{39D4F1A1-A94D-4B7D-BF1D-7446308800ED}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{443321F7-E46C-42F8-812B-F35E98CBB44F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5CDE4714-32DC-473C-8194-0645E62C2E96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7EB7381C-FB01-47FC-9C42-ED64122C1B92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F83D657-5993-4FFA-9AEE-DA0B20D828A7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A4C2FB10-84C3-44EB-9F9E-860FA1D9A797}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C430996F-4AA8-4AA8-81DE-F54432CD5786}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C8EF8F70-3807-424A-83F7-DA06FD4DACF9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE0F6787-9D1C-42B7-A0B9-EAC630F87902}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E4EF697F-434B-4DC7-A464-4412462206DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{EF3F28C8-0330-4D18-B901-D24CB83E5AA1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F2C368C5-9F44-4D43-89F3-A1CC87F1DA96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F99DDD9A-07D0-47AB-86F1-193533DD2C60}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{23119123-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{03119103-0854-469D-807A-171568457991}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{AD79BAD6-9504-4F09-ACEC-7B319584A4C1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\im
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\iminstaller
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yahoopartnertoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\pricegong
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\dt soft\daemon tools toolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\funwebproducts
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.feedmanager
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.feedmanager.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlmenu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlmenu.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlpanel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.multiplebutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radio
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radio.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radiosettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radiosettings.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.scriptbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.settingsplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.settingsplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bbylntlbr.bbylntlbrhlpr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bbylntlbr.bbylntlbrhlpr.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\conduit.engine
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.dynamicbarbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.dynamicbarbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.feedmanager
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.feedmanager.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlmenu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlmenu.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlpanel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.multiplebutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radio
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radio.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radiosettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radiosettings.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.scriptbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.settingsplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.settingsplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.skinlauncher
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.skinlauncher.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.urlalertbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.urlalertbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.xmlsessionplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.xmlsessionplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C5561B6-3DD2-46B5-83BE-EAE744366046}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88E44198-D164-4EC0-B2C0-F679D866C6DA}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F671C1B3-9776-426D-A350-55FB2D9B53F7}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylon_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylon_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylontoolbarsrv_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\babylontoolbarsrv_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall firefox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall internet explorer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\videodownloadconverter_4zbar uninstall
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{99c91fc5-db5b-4aa0-bb70-5d89c5a4df96}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT1060933
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2475029
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2697549
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{b6b9e4d6-9c66-46c4-8e60-508f3984929e}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A4C2FB10-84C3-44EB-9F9E-860FA1D9A797}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FBCBC43A-DCA9-4192-A4C8-B57FD0F77D4D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\pip"
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\launchapp
Successfully deleted: [File] C:\Windows\Tasks\amiupdxp.job
Successfully deleted: [File] "C:\Windows\system32\roboot.exe"
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\big fish games"
Successfully deleted: [Folder] "C:\ProgramData\trymedia"
Successfully deleted: [Folder] "C:\Users\Olina\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\Olina\AppData\Roaming\registry mechanic"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\allin1convert_8h"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\babylontoolbar"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Users\Olina\appdata\locallow\pricegong"
Failed to delete: [Folder] "C:\Users\Olina\appdata\locallow\videodownloadconverter_4z"
Failed to delete: [Folder] "C:\Program Files\allin1convert_8h"
Successfully deleted: [Folder] "C:\Program Files\babylon"
Successfully deleted: [Folder] "C:\Program Files\funwebproducts"
Successfully deleted: [Folder] "C:\Program Files\video download converter"
Successfully deleted: [Folder] "C:\Program Files\videodownloadconverter_4z"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uniblue"
Successfully deleted: [Folder] "C:\Windows\freecorder"
Successfully deleted: [Empty Folder] C:\Users\Olina\appdata\local\{428027BE-A3F6-4B4E-B63C-D0676149AD1B}
Successfully deleted: [Empty Folder] C:\Users\Olina\appdata\local\{EB86BFB3-C456-4327-BCC8-E25606AD4582}
Successfully deleted: [Folder] "C:\ProgramData\ask"
~~~ Chrome
Successfully deleted: [Folder] C:\Users\Olina\appdata\local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 15.05.2014 at 21:16:17,97
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
AdwCleaner:
# AdwCleaner v3.208 - Report created 15/05/2014 at 21:20:06
# Updated 11/05/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : Olina - OLINA-PC
# Running from : C:\Users\Olina\Desktop\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : Allin1Convert_8hService
[#] Service Deleted : VideoDownloadConverter_4zService
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files\Allin1Convert_8h
Folder Deleted : C:\Program Files\MediaViewV1
Folder Deleted : C:\Program Files\MediaWatchV1
Folder Deleted : C:\Program Files\Tbccint
Folder Deleted : C:\Users\Olina\AppData\Local\Allin1Convert_8h
Folder Deleted : C:\Users\Olina\AppData\Local\Conduit
Folder Deleted : C:\Users\Olina\AppData\Local\iac
Folder Deleted : C:\Users\Olina\AppData\Local\OpenCandy
Folder Deleted : C:\Users\Olina\AppData\Local\PackageAware
Folder Deleted : C:\Users\Olina\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Olina\AppData\Local\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Olina\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Olina\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Olina\AppData\LocalLow\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Public\Documents\AlawarWrapper
File Deleted : C:\Users\Public\Desktop\iLivid.lnk
File Deleted : C:\Users\Olina\AppData\Local\Temp\Uninstall.exe
***** [ Shortcuts ] *****
***** [ Registry ] *****
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F0762B9-44DD-4626-8E9C-F54CC977151B}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F0762B9-44DD-4626-8E9C-F54CC977151B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\conduit.com
Key Deleted : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector
Key Deleted : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncherSettings
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncherSettings.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin
Key Deleted : HKLM\SOFTWARE\14919ea49a8f3b4aa3cf1058d9a64cec
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2A1260C1-2964-453F-B0BA-FA429472EB5F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{363D5C92-10DC-4287-93E5-1832EECC48EC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B41BE90-F731-4137-AFF3-2CA951E7F0D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4128C64D-F0DD-4811-9405-D22294E8151F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66292684-B2C2-4C7C-B3D2-BF446E30744C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69407823-3494-4400-8D49-612549E8F4EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6BFF4BCB-7A73-45A7-AC4C-389A34E1D1EF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{84B7B98F-E018-4DBB-AB4C-4DDD3DFCB5FB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8FCA5302-6D6D-4645-BF99-D43CF76CE474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF5DB804-585B-472E-B415-BC63F8F01BF6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FF48DBA6-5DD8-4D10-9EB0-0FA968502E66}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1CCCE0D-AE21-42A2-BE58-8E6109410995}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{192F487E-E812-40C0-B0DE-CB4BFA20F37B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3EE17DD1-E28B-4AED-A3B2-9C29CB2C19D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{79332472-47F3-4E32-B07F-CF8DF4C58499}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{886F93AD-3CBB-4424-8442-A7340243540F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AA289DBC-59B6-40A5-AC7D-C90DF850289C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BC153A3C-0BB7-4EED-83AE-28E6E398F56E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CA723163-6FAD-43D4-8B93-0D8C52BD9974}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FB0E8A09-F08C-44CF-9E15-97ADAC016248}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{27F49273-DE3A-4111-90F9-6C474C37AEFB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7EB7381C-FB01-47FC-9C42-ED64122C1B92}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E4EF697F-434B-4DC7-A464-4412462206DB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F99DDD9A-07D0-47AB-86F1-193533DD2C60}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{48586425-6BB7-4F51-8DC6-38C88E3EBB58}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CD1A63BA-A08C-431B-9A34-F240AADC728D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{48586425-6BB7-4F51-8DC6-38C88E3EBB58}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CD1A63BA-A08C-431B-9A34-F240AADC728D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{93A3111F-4F74-4ED8-895E-D9708497629E}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
Key Deleted : HKCU\Software\Ask&Record
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\VideoDownloadConverter_4z
Key Deleted : HKCU\Software\AppDataLow\Software\BackgroundContainer
Key Deleted : HKCU\Software\AppDataLow\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Google Chrome v34.0.1847.137
[ File : C:\Users\Olina\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=100000027&locale=en_EU&apn_uid=017E0731-49C5-41CD-98E0-2BBA5F9BDE84&apn_ptnrs=U3&apn_sauid=9ED48786-2793-4633-8D5D-F5E16E6E3983&apn_dtid=OSJ000YYCZ&q={searchTerms}
Deleted [Search Provider] : hxxp://www.search.ask.com/web?p2=%5EBAY%5Epfm0 ... earchTerms}
Deleted [Homepage] : hxxp://www.search.ask.com/?p2=%5EBAY%5Epfm061% ... 10-31&psv=
*************************
AdwCleaner[R0].txt - [13397 octets] - [15/05/2014 21:18:55]
AdwCleaner[S0].txt - [13607 octets] - [15/05/2014 21:20:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13668 octets] ##########
Re: Zavirovaný počítač
Pěkné
, jedeme dál
Stahněte MBAM http://www.viry.cz/forum/viewtopic.php?f=29&t=115222
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
Bohužel budu moct pokračovat zas až po víkendu...dřív se k tomu nedostanu 
Re: Zavirovaný počítač
Nevadí, pak se ozvěte 
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
Zdravím po prodlouženém víkendu
Udělal jsem sken MBAM, jestli to ještě po tak dlouhé době k něčemu je. Momentálně má uživatelka ještě problém s přihlašováním na email Seznam přes Internet Explorer, nejdříve to napíše, "Neexistující uživatel nebo chybné heslo" a po druhém pokusu to donekonečna přihlašuje (obrázek obálky). Přes Chrome to přihlašování funguje...
Zde je log MBAM:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 8.7.2014
Scan Time: 20:50:29
Logfile: logmbam.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.08.08
Rootkit Database: v2014.07.07.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Olina
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 300200
Time Elapsed: 11 min, 1 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 2
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe, 3976, , [a771128b2556e650ec8f491c44c0a060]
PUP.Optional.MindSpark, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATOR.EXE, 2788, , [44d49904a5d6ea4c43c110ef679c04fc]
Modules: 28
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\ASSISTMONITOR.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
Registry Keys: 102
PUP.Optional.AudioToAudioToolBar.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\VideoDownloadConverter_4zService, , [55c30f8e99e284b27c4ff93c2bd5da26],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{312f84fb-8970-4fd3-bddb-7012eac4afc9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{a86782d8-7b41-452f-a217-1854f72dba54}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{192f487e-e812-40c0-b0de-cb4bfa20f37b}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3BA6794F-1E38-4460-949A-0DE97D8EF5C2}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3CBA93EA-AEC3-4EC3-9EFD-D96A661B639D}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6605E3BD-7BC3-479C-BF0A-E5D5E954EA52}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{66D59105-FE06-43A4-B292-EB0097E9EB74}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{9103C314-C4E2-4463-8934-B19BCB46236D}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{94E98D20-156E-4C53-BD7F-972C96E680B2}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin.1, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A86782D8-7B41-452F-A217-1854F72DBA54}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A86782D8-7B41-452F-A217-1854F72DBA54}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VideoDownloadConverter_4zbar Uninstall Internet Explorer, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}\INPROCSERVER32, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{c547c6c2-561b-4169-a2a5-20ba771ca93b}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}\INPROCSERVER32, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\VideoDownloadConverter_4z, , [2deb524bc9b28bab62d23cd1867e847c],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MOZILLAPLUGINS\@VideoDownloadConverter_4z.com/Plugin, , [021646572e4dd660fe44b70f986ac937],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\VideoDownloadConverter_4z, , [30e8227b2a51053188ada76664a035cb],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, , [6dab910c02793006ac15e5db2cd630d0],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Allin1Convert_8h, , [7e9a9a03502b231324a6c6fa5ea41be5],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, , [4fc90c91a5d687afdde4c5fbdc26ce32],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{3719959c-1ccd-4fa7-8ebb-7d9ded86fccb}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{37923200-6887-4b44-95d4-cae8f83ecfee}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{35144E32-8E4C-4152-9B8C-3E2D4B46228E}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{8B8BB3A7-2ADE-4995-931D-60B430A9B44E}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{E14CDC24-4BE1-4B65-8452-4BFA0DCEF274}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{dd385519-22e7-4be2-8a8d-35c66df4858e}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{ca723163-6fad-43d4-8b93-0d8c52bd9974}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7FC87AC5-FA93-476E-A32C-A941229DED0B}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7FCD22A8-B70A-4AC7-AAF1-EBCCD2F6612D}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A266567F-8E5D-480C-BCE2-C360FA669FD5}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{69407823-3494-4400-8d49-612549e8f4ee}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{886f93ad-3cbb-4424-8442-a7340243540f}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{716E443D-7CAA-44F1-866B-F45D00E712CC}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{8fca5302-6d6d-4645-bf99-d43cf76ce474}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{aa289dbc-59b6-40a5-ac7d-c90df850289c}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{1AD2049E-E483-4425-8555-8E0775ACB631}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{ECC69F9E-5456-4EDF-AF66-1A9DED11F9EE}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.FeedManager.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.FeedManager, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{5354d921-3f52-47c5-938d-77a2fb6defe7}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{3ee17dd1-e28b-4aed-a3b2-9c29cb2c19d6}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{34AD1EA7-8B9E-4D8B-B3ED-365D12C8EE73}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLPanel.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLPanel, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLMenu.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLMenu, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{2a1260c1-2964-453f-b0ba-fa429472eb5f}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{2d3826a1-f3e8-45d6-94b5-c26d8ec0073b}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{47700C35-9E3E-4DAD-934C-0CE28A87237C}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5A96E574-F8A6-4F6A-B58D-79C14B698017}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{4128c64d-f0dd-4811-9405-d22294e8151f}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.MultipleButton.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.MultipleButton, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{3b41be90-f731-4137-aff3-2ca951e7f0d9}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.Radio.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.Radio, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{84b7b98f-e018-4dbb-ab4c-4ddd3dfcb5fb}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{79332472-47f3-4e32-b07f-cf8df4c58499}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5684EAE9-72EB-4CA6-83B8-82434B7E955C}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.RadioSettings.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.RadioSettings, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{363d5c92-10dc-4287-93e5-1832eecc48ec}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ScriptButton.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ScriptButton, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{1f6f39c1-00a8-4752-a94c-d0ea92d978b6}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{fe8dbb09-c3d3-4477-80cb-d38914b94bb8}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3E9469AF-E866-4476-B767-810630F1F6E7}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{46CE5380-6055-4C3A-A7E5-3A02A2335C61}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4F6ECF71-C575-4BD2-8EF7-548D0EF1AB1D}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{54D99BE4-2FD7-449E-9DB4-76532CEE0B16}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{3d429207-4689-492d-a0e5-cdc5dfbb5005}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3D429207-4689-492D-A0E5-CDC5DFBB5005}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{ff48dba6-5dd8-4d10-9eb0-0fa968502e66}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{ed345812-2722-4dca-9976-d01832db44ee}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{f1f328eb-f5a5-432b-a54c-05f3ef5b0bd8}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{CE4F67F6-4FD4-49DB-9D71-713CCD3D00CD}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ED345812-2722-4DCA-9976-D01832DB44EE}, , [52c6c3dad3a8b5813566376be81a9769],
Registry Values: 12
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter_4z Browser Plugin Loader, C:\PROGRA~1\VIDEOD~2\bar\1.bin\4zbrmon.exe, , [a771128b2556e650ec8f491c44c0a060]
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, %dXH·kQOA¤Ä?8Ä?A1>»X, , [35e3623bee8dc373efab3e13f70bff01]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [1305d4c92358191de3b88dc47a885aa6],
PUP.Optional.Mindspark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{93a3111f-4f74-4ed8-895e-d9708497629e}, , [c256a3fa9cdf3bfb66332b243ac8827e],
PUP.Optional.Mindspark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{93A3111F-4F74-4ED8-895E-D9708497629E}, , [c256a3fa9cdf3bfb66332b243ac8827e],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}, , [31e7801d5b20d95d5744262b9e646997],
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Allin1Convert Home Page Guard 32 bit, "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\AppIntegrator.exe", , [9682ff9e0d6e280e7490e11ed13224dc]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter EPM Support, "C:\PROGRA~1\VIDEOD~2\bar\1.bin\4zmedint.exe" T8EPMSUP.DLL,S, , [af69efaec0bb67cfbf5d19b51fe37f81]
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter Home Page Guard 32 bit, "C:\PROGRA~1\VIDEOD~2\bar\1.bin\AppIntegrator.exe", , [44d49904a5d6ea4c43c110ef679c04fc]
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter Search Scope Monitor, "C:\PROGRA~1\VIDEOD~2\bar\1.bin\4zsrchmn.exe" /m=2 /w /h, , [7e9a8b122f4c191d1400ba45e0237789]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|4zffxtbr@VideoDownloadConverter_4z.com, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin, , [8d8b910c52295adc5fbfbc123ec45fa1]
Registry Data: 0
(No malicious items detected)
Folders: 11
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\chrome, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\gen1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\History, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\IE9Mesg, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Message, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Settings, , [52c6c3dad3a8b5813566376be81a9769],
Files: 82
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.AudioToAudioToolBar.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe, , [55c30f8e99e284b27c4ff93c2bd5da26],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe, , [a771128b2556e650ec8f491c44c0a060],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.RichMediaView.A, C:\Users\Olina\AppData\Local\Temp\applinstall.exe, , [bf591c817ffc67cf1095dee615ef32ce],
PUP.Optional.Amonetize.A, C:\Users\Olina\AppData\Local\Temp\GotClipDownloader__6629_i400800304_il4753234.exe, , [f1271984f685e84ebea41425798754ac],
PUP.Optional.Amonetize.A, C:\Users\Olina\AppData\Local\Temp\GotClipDownloader__6629_i400801513_il4753234.exe, , [0315b6e76a111125ef7316233bc507f9],
PUP.Optional.MediaWatch.A, C:\Users\Olina\AppData\Local\Temp\set-app.exe, , [39df6835b1ca89ad866a1da5f60e2ad6],
PUP.Optional.MediaView.A, C:\Users\Olina\AppData\Local\Temp\setapp.exe, , [52c6d1ccf28939fd801cea8b2ad78977],
PUP.Optional.MediaBuzz.A, C:\Users\Olina\AppData\Local\Temp\appinstal1.exe, , [021696071e5d53e33dbc9b281be9c739],
PUP.Optional.Conduit, C:\Users\Olina\AppData\Local\Temp\tbMyA0.dll, , [4eca2b723a4130069dfa111e54acee12],
PUP.Optional.InstallCore.A, C:\Users\Olina\AppData\Local\Temp\ICReinstall_winzip18.exe, , [d1472b7280fb3cfa6633c7bdd33149b7],
PUP.Optional.Spigot.A, C:\Users\Olina\AppData\Local\Temp\nsd6B81.tmp-2\APN_ATU3_.exe, , [f226cdd03d3e6fc7520851daa35eb54b],
PUP.Optional.Spigot.A, C:\Users\Olina\AppData\Local\Temp\nsiBE22.tmp-2\APN_ATU3_.exe, , [8296ebb2ea91f442bd9d7eada160e917],
PUP.Optional.OpenCandy, C:\Users\Olina\Downloads\aTube_Catcher_Setup.exe, , [ca4e26779cdf63d3048f625a29db3ec2],
Rogue.Link, C:\Users\Public\Desktop\MP3 Downloader.lnk, , [9b7d1885b6c5ab8bf85ee52cce35966a],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zmedint.exe, , [af69efaec0bb67cfbf5d19b51fe37f81],
PUP.Optional.MindSpark, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATOR.EXE, , [44d49904a5d6ea4c43c110ef679c04fc],
PUP.Optional.MindSpark, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrchMn.exe, , [7e9a8b122f4c191d1400ba45e0237789],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhkstub.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbprtct.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon64.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdatact.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zfeedmg.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhighin.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\BOOTSTRAP.JS, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\CHROME.MANIFEST, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\CREXT.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\CrExtP4z.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\DPNMNGR.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\EXEMANAGER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\FF-NativeMessagingDispatcher.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\Hpg64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\INSTALL.RDF, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\installKeys.js, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\LOGO.BMP, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8EPMSUP.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8EXTEX.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8EXTPEX.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8HTML.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8RES.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8TICKER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\TPIMANAGERCONSOLE.EXE, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\UNIFIEDLOGGING.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\VERIFY.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhtmlmu.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhttpct.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zidle.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zmlbtn.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zPlugin.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zradio.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zregfft.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zreghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zregiet.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zscript.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zskin.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zskplay.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zsrchmr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4ztpinst.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\AppIntegratorStub64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\ASSISTMONITOR.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\ASSISTMONITOR64.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\chrome\4zffxtbr.jar, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ARBITER64.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\CONFIG.XML, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\gen1\COMMON.T8S, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\IE9Mesg\COMMON.T8S, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Message\COMMON.T8S, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Settings\s_pid.dat, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.ASK.A, C:\Users\Olina\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "startup_urls": [ "http://www.search.ask.com/?tpid=ATU4-V7 ... 06-15&psv=", "http://www.google.com/" ],), ,[2eeafe9f611ae254dcc29a2d18ecfa06]
Physical Sectors: 0
(No malicious items detected)
(end)
Zde je log MBAM:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 8.7.2014
Scan Time: 20:50:29
Logfile: logmbam.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.08.08
Rootkit Database: v2014.07.07.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Olina
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 300200
Time Elapsed: 11 min, 1 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 2
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe, 3976, , [a771128b2556e650ec8f491c44c0a060]
PUP.Optional.MindSpark, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATOR.EXE, 2788, , [44d49904a5d6ea4c43c110ef679c04fc]
Modules: 28
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\ASSISTMONITOR.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
Registry Keys: 102
PUP.Optional.AudioToAudioToolBar.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\VideoDownloadConverter_4zService, , [55c30f8e99e284b27c4ff93c2bd5da26],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{312f84fb-8970-4fd3-bddb-7012eac4afc9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{a86782d8-7b41-452f-a217-1854f72dba54}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{192f487e-e812-40c0-b0de-cb4bfa20f37b}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3BA6794F-1E38-4460-949A-0DE97D8EF5C2}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3CBA93EA-AEC3-4EC3-9EFD-D96A661B639D}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6605E3BD-7BC3-479C-BF0A-E5D5E954EA52}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{66D59105-FE06-43A4-B292-EB0097E9EB74}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{9103C314-C4E2-4463-8934-B19BCB46236D}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{94E98D20-156E-4C53-BD7F-972C96E680B2}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin.1, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A86782D8-7B41-452F-A217-1854F72DBA54}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A86782D8-7B41-452F-A217-1854F72DBA54}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VideoDownloadConverter_4zbar Uninstall Internet Explorer, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}\INPROCSERVER32, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{c547c6c2-561b-4169-a2a5-20ba771ca93b}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}\INPROCSERVER32, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\VideoDownloadConverter_4z, , [2deb524bc9b28bab62d23cd1867e847c],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MOZILLAPLUGINS\@VideoDownloadConverter_4z.com/Plugin, , [021646572e4dd660fe44b70f986ac937],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\VideoDownloadConverter_4z, , [30e8227b2a51053188ada76664a035cb],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, , [6dab910c02793006ac15e5db2cd630d0],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Allin1Convert_8h, , [7e9a9a03502b231324a6c6fa5ea41be5],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, , [4fc90c91a5d687afdde4c5fbdc26ce32],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{3719959c-1ccd-4fa7-8ebb-7d9ded86fccb}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{37923200-6887-4b44-95d4-cae8f83ecfee}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{35144E32-8E4C-4152-9B8C-3E2D4B46228E}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{8B8BB3A7-2ADE-4995-931D-60B430A9B44E}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{E14CDC24-4BE1-4B65-8452-4BFA0DCEF274}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{dd385519-22e7-4be2-8a8d-35c66df4858e}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{ca723163-6fad-43d4-8b93-0d8c52bd9974}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7FC87AC5-FA93-476E-A32C-A941229DED0B}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7FCD22A8-B70A-4AC7-AAF1-EBCCD2F6612D}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A266567F-8E5D-480C-BCE2-C360FA669FD5}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{69407823-3494-4400-8d49-612549e8f4ee}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{886f93ad-3cbb-4424-8442-a7340243540f}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{716E443D-7CAA-44F1-866B-F45D00E712CC}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{8fca5302-6d6d-4645-bf99-d43cf76ce474}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{aa289dbc-59b6-40a5-ac7d-c90df850289c}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{1AD2049E-E483-4425-8555-8E0775ACB631}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{ECC69F9E-5456-4EDF-AF66-1A9DED11F9EE}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.FeedManager.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.FeedManager, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{5354d921-3f52-47c5-938d-77a2fb6defe7}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{3ee17dd1-e28b-4aed-a3b2-9c29cb2c19d6}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{34AD1EA7-8B9E-4D8B-B3ED-365D12C8EE73}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLPanel.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLPanel, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLMenu.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLMenu, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{2a1260c1-2964-453f-b0ba-fa429472eb5f}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{2d3826a1-f3e8-45d6-94b5-c26d8ec0073b}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{47700C35-9E3E-4DAD-934C-0CE28A87237C}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5A96E574-F8A6-4F6A-B58D-79C14B698017}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{4128c64d-f0dd-4811-9405-d22294e8151f}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.MultipleButton.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.MultipleButton, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{3b41be90-f731-4137-aff3-2ca951e7f0d9}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.Radio.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.Radio, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{84b7b98f-e018-4dbb-ab4c-4ddd3dfcb5fb}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{79332472-47f3-4e32-b07f-cf8df4c58499}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5684EAE9-72EB-4CA6-83B8-82434B7E955C}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.RadioSettings.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.RadioSettings, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{363d5c92-10dc-4287-93e5-1832eecc48ec}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ScriptButton.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ScriptButton, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{1f6f39c1-00a8-4752-a94c-d0ea92d978b6}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{fe8dbb09-c3d3-4477-80cb-d38914b94bb8}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3E9469AF-E866-4476-B767-810630F1F6E7}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{46CE5380-6055-4C3A-A7E5-3A02A2335C61}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4F6ECF71-C575-4BD2-8EF7-548D0EF1AB1D}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{54D99BE4-2FD7-449E-9DB4-76532CEE0B16}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{3d429207-4689-492d-a0e5-cdc5dfbb5005}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3D429207-4689-492D-A0E5-CDC5DFBB5005}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{ff48dba6-5dd8-4d10-9eb0-0fa968502e66}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\CLSID\{ed345812-2722-4dca-9976-d01832db44ee}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{f1f328eb-f5a5-432b-a54c-05f3ef5b0bd8}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{CE4F67F6-4FD4-49DB-9D71-713CCD3D00CD}, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller.1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ED345812-2722-4DCA-9976-D01832DB44EE}, , [52c6c3dad3a8b5813566376be81a9769],
Registry Values: 12
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter_4z Browser Plugin Loader, C:\PROGRA~1\VIDEOD~2\bar\1.bin\4zbrmon.exe, , [a771128b2556e650ec8f491c44c0a060]
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, %dXH·kQOA¤Ä?8Ä?A1>»X, , [35e3623bee8dc373efab3e13f70bff01]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, , [1305d4c92358191de3b88dc47a885aa6],
PUP.Optional.Mindspark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{93a3111f-4f74-4ed8-895e-d9708497629e}, , [c256a3fa9cdf3bfb66332b243ac8827e],
PUP.Optional.Mindspark.A, HKU\S-1-5-21-1503038219-2209986198-3904582108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{93A3111F-4F74-4ED8-895E-D9708497629E}, , [c256a3fa9cdf3bfb66332b243ac8827e],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}, , [31e7801d5b20d95d5744262b9e646997],
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Allin1Convert Home Page Guard 32 bit, "C:\PROGRA~1\Allin1Convert_8h\bar\1.bin\AppIntegrator.exe", , [9682ff9e0d6e280e7490e11ed13224dc]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter EPM Support, "C:\PROGRA~1\VIDEOD~2\bar\1.bin\4zmedint.exe" T8EPMSUP.DLL,S, , [af69efaec0bb67cfbf5d19b51fe37f81]
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter Home Page Guard 32 bit, "C:\PROGRA~1\VIDEOD~2\bar\1.bin\AppIntegrator.exe", , [44d49904a5d6ea4c43c110ef679c04fc]
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter Search Scope Monitor, "C:\PROGRA~1\VIDEOD~2\bar\1.bin\4zsrchmn.exe" /m=2 /w /h, , [7e9a8b122f4c191d1400ba45e0237789]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|4zffxtbr@VideoDownloadConverter_4z.com, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin, , [8d8b910c52295adc5fbfbc123ec45fa1]
Registry Data: 0
(No malicious items detected)
Folders: 11
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\chrome, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\gen1, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\History, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\IE9Mesg, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Message, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Settings, , [52c6c3dad3a8b5813566376be81a9769],
Files: 82
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, , [c8500d90ccaf0d29b3c93233ff05c838],
PUP.Optional.AudioToAudioToolBar.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe, , [55c30f8e99e284b27c4ff93c2bd5da26],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe, , [a771128b2556e650ec8f491c44c0a060],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll, , [35e3623bee8dc373efab3e13f70bff01],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, , [ce4a7726453682b4bce0321f778b51af],
PUP.Optional.RichMediaView.A, C:\Users\Olina\AppData\Local\Temp\applinstall.exe, , [bf591c817ffc67cf1095dee615ef32ce],
PUP.Optional.Amonetize.A, C:\Users\Olina\AppData\Local\Temp\GotClipDownloader__6629_i400800304_il4753234.exe, , [f1271984f685e84ebea41425798754ac],
PUP.Optional.Amonetize.A, C:\Users\Olina\AppData\Local\Temp\GotClipDownloader__6629_i400801513_il4753234.exe, , [0315b6e76a111125ef7316233bc507f9],
PUP.Optional.MediaWatch.A, C:\Users\Olina\AppData\Local\Temp\set-app.exe, , [39df6835b1ca89ad866a1da5f60e2ad6],
PUP.Optional.MediaView.A, C:\Users\Olina\AppData\Local\Temp\setapp.exe, , [52c6d1ccf28939fd801cea8b2ad78977],
PUP.Optional.MediaBuzz.A, C:\Users\Olina\AppData\Local\Temp\appinstal1.exe, , [021696071e5d53e33dbc9b281be9c739],
PUP.Optional.Conduit, C:\Users\Olina\AppData\Local\Temp\tbMyA0.dll, , [4eca2b723a4130069dfa111e54acee12],
PUP.Optional.InstallCore.A, C:\Users\Olina\AppData\Local\Temp\ICReinstall_winzip18.exe, , [d1472b7280fb3cfa6633c7bdd33149b7],
PUP.Optional.Spigot.A, C:\Users\Olina\AppData\Local\Temp\nsd6B81.tmp-2\APN_ATU3_.exe, , [f226cdd03d3e6fc7520851daa35eb54b],
PUP.Optional.Spigot.A, C:\Users\Olina\AppData\Local\Temp\nsiBE22.tmp-2\APN_ATU3_.exe, , [8296ebb2ea91f442bd9d7eada160e917],
PUP.Optional.OpenCandy, C:\Users\Olina\Downloads\aTube_Catcher_Setup.exe, , [ca4e26779cdf63d3048f625a29db3ec2],
Rogue.Link, C:\Users\Public\Desktop\MP3 Downloader.lnk, , [9b7d1885b6c5ab8bf85ee52cce35966a],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zmedint.exe, , [af69efaec0bb67cfbf5d19b51fe37f81],
PUP.Optional.MindSpark, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATOR.EXE, , [44d49904a5d6ea4c43c110ef679c04fc],
PUP.Optional.MindSpark, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrchMn.exe, , [7e9a8b122f4c191d1400ba45e0237789],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhkstub.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zauxstb64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbprtct.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon64.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdatact.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zdlghk64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zfeedmg.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhighin.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\BOOTSTRAP.JS, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\CHROME.MANIFEST, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\CREXT.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\CrExtP4z.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\DPNMNGR.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\EXEMANAGER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\FF-NativeMessagingDispatcher.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\Hpg64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\INSTALL.RDF, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\installKeys.js, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\LOGO.BMP, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8EPMSUP.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8EXTEX.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8EXTPEX.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8HTML.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8RES.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\T8TICKER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\TPIMANAGERCONSOLE.EXE, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\UNIFIEDLOGGING.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\VERIFY.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhtmlmu.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zhttpct.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zidle.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zmlbtn.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zPlugin.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zradio.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zregfft.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zreghk.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zregiet.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zscript.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zskin.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zskplay.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zsrchmr.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4ztpinst.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\APPINTEGRATORSTUB.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\AppIntegratorStub64.dll, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\ASSISTMONITOR.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\ASSISTMONITOR64.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\chrome\4zffxtbr.jar, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ARBITER64.DLL, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\assists\ie_default_search_provider\CONFIG.XML, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\gen1\COMMON.T8S, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\IE9Mesg\COMMON.T8S, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Message\COMMON.T8S, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.MindSpark.A, C:\Program Files\VideoDownloadConverter_4z\bar\Settings\s_pid.dat, , [52c6c3dad3a8b5813566376be81a9769],
PUP.Optional.ASK.A, C:\Users\Olina\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "startup_urls": [ "http://www.search.ask.com/?tpid=ATU4-V7 ... 06-15&psv=", "http://www.google.com/" ],), ,[2eeafe9f611ae254dcc29a2d18ecfa06]
Physical Sectors: 0
(No malicious items detected)
(end)
Re: Zavirovaný počítač
Vše smažte
Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
MBAM smazáno (musel jsem dělat scan znova, ale objevilo to to samý)
Combofix log:
ComboFix 14-07-08.04 - Olina 10.07.2014 17:02:40.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.1791.1035 [GMT 2:00]
Spuštěný z: c:\users\Olina\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files\MediaBuzzV1
c:\program files\RichMediaViewV1
c:\programdata\6C749B2FD2.sys
c:\users\Olina\AppData\Local\assembly\tmp
c:\users\Olina\AppData\Local\Temp\7zS1DA5\HPSLPSVC32.DLL
c:\windows\system32\is-5PO6U.tmp
c:\windows\system32\is-VD584.tmp
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_HPSLPSVC
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-06-10 do 2014-07-10 )))))))))))))))))))))))))))))))
.
.
2014-07-09 05:05 . 2014-06-18 01:52 868864 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tipskins.dll
2014-07-09 05:05 . 2014-06-18 01:52 399360 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tabskb.dll
2014-07-09 05:05 . 2014-06-18 01:52 348672 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tiptsf.dll
2014-07-09 05:05 . 2014-06-18 00:52 2350080 ----a-w- c:\windows\system32\win32k.sys
2014-07-09 05:05 . 2014-06-18 01:52 104448 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\TipBand.dll
2014-07-09 05:05 . 2014-06-18 01:51 181760 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\TabTip.exe
2014-07-09 05:05 . 2014-06-18 01:51 646144 ----a-w- c:\windows\system32\osk.exe
2014-07-09 05:05 . 2014-06-18 01:50 544768 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\TipRes.dll
2014-07-08 18:48 . 2014-07-10 14:23 110296 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-07-08 18:48 . 2014-07-08 18:48 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2014-07-08 18:48 . 2014-07-08 18:48 -------- d-----w- c:\programdata\Malwarebytes
2014-07-08 18:48 . 2014-05-12 05:26 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-07-08 18:48 . 2014-05-12 05:25 74456 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-07-08 18:48 . 2014-05-12 05:25 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-07-07 14:36 . 2014-07-07 14:36 -------- d-----w- c:\users\Olina\AppData\Local\IAC
2014-07-07 14:36 . 2014-07-07 14:36 -------- d-----w- c:\users\Olina\AppData\Local\VideoDownloadConverter_4z
2014-06-15 15:36 . 2014-06-15 15:36 -------- d-----w- c:\program files\Common Files\Java
2014-06-11 20:49 . 2014-06-11 20:49 18636480 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE14\MSO.DLL
2014-06-11 10:12 . 2014-03-26 14:27 1389056 ----a-w- c:\windows\system32\msxml6.dll
2014-06-11 10:12 . 2014-03-26 14:27 1237504 ----a-w- c:\windows\system32\msxml3.dll
2014-06-11 10:12 . 2014-03-26 14:25 2048 ----a-w- c:\windows\system32\msxml6r.dll
2014-06-11 10:12 . 2014-03-26 14:25 2048 ----a-w- c:\windows\system32\msxml3r.dll
2014-06-11 10:12 . 2014-04-05 02:25 1294272 ----a-w- c:\windows\system32\drivers\tcpip.sys
2014-06-11 10:12 . 2014-04-05 02:24 187840 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 10:12 . 2014-04-25 02:06 626688 ----a-w- c:\windows\system32\usp10.dll
2014-06-11 10:12 . 2014-05-08 09:06 919040 ----a-w- c:\windows\system32\rdpcorets.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-07-09 05:15 . 2012-04-07 06:53 699056 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-07-09 05:15 . 2011-07-18 05:36 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-05-29 12:11 . 2014-05-29 12:11 79 ----a-w- c:\windows\system32\ssinstall-uninstall.bat
2014-05-29 12:11 . 2014-05-29 12:11 2324216 ----a-w- c:\windows\system32\ssins.exe
2014-05-15 18:44 . 2014-05-15 18:43 68312 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-05-15 18:44 . 2014-05-15 18:43 777488 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-05-15 18:44 . 2014-05-15 18:43 411680 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-05-15 18:43 . 2014-05-15 18:43 776976 ----a-w- c:\windows\system32\drivers\aswsnx.sys.1400179467395
2014-05-15 18:43 . 2014-05-15 18:43 411552 ----a-w- c:\windows\system32\drivers\aswsp.sys.1400179467395
2014-05-15 18:43 . 2014-05-15 18:43 180632 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-05-15 18:43 . 2014-05-15 18:43 67824 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-05-15 18:43 . 2014-05-15 18:43 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-05-15 18:43 . 2014-05-15 18:43 24184 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-05-15 18:43 . 2014-05-15 18:43 81768 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-05-15 18:43 . 2014-05-15 18:43 271264 ----a-w- c:\windows\system32\aswBoot.exe
2014-05-15 18:43 . 2014-05-15 18:43 43152 ----a-w- c:\windows\avastSS.scr
2014-04-29 11:20 . 2014-05-17 10:01 17584 ----a-w- c:\windows\system32\roboot.exe
2014-04-12 02:15 . 2014-05-13 17:55 136640 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2014-04-12 02:15 . 2014-05-13 17:55 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2014-04-12 02:12 . 2014-05-13 17:55 100352 ----a-w- c:\windows\system32\sspicli.dll
2014-04-12 02:12 . 2014-05-13 17:55 15872 ----a-w- c:\windows\system32\sspisrv.dll
2014-04-12 02:12 . 2014-05-13 17:55 22016 ----a-w- c:\windows\system32\secur32.dll
2014-04-12 02:11 . 2014-05-13 17:55 22528 ----a-w- c:\windows\system32\lsass.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-05-15 18:43 260976 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Seznam Postak"="c:\program files\Seznam.cz\bin\postak.exe" [2012-01-10 491040]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-06-24 1840424]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2012-08-27 39408]
"cz.seznam.software.autoupdate"="c:\users\Olina\AppData\Roaming\Seznam.cz\szninstall.exe" [2013-05-16 1062472]
"cz.seznam.software.szndesktop"="c:\users\Olina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2013-04-12 92664]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2012-06-26 1516632]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"wcmdmgr"="c:\windows\wt\updater\wcmdmgrl.exe" [2001-01-25 20480]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2011-10-06 59240]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-02-12 43848]
"NBAgent"="c:\program files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe" [2010-03-14 1086760]
"SSDMonitor"="c:\program files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [2011-12-12 103896]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"seznam-listicka-distribuce"="c:\program files\Seznam.cz\distribution\szninstall.exe" [2012-09-13 1009288]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-25 2516296]
"CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]
"NSU_agent"="c:\program files\Nokia\Nokia Software Updater\nsu3ui_agent.exe" [2012-02-28 190768]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2014-01-17 421888]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-06 3890208]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2014-05-26 152392]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2014-05-07 256896]
.
c:\users\Olina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Canon IJ Status Monitor Canon MG5100 series Printer.lnk - c:\windows\system32\rundll32.exe c:\users\Olina\cnmss Canon MG5100 series Printer (Local).dll,SMStarterEntryPoint USB003;Canon MG5100 series Printer;cnmss Canon MG5100 series Printer (Local).dll;Canon IJ Status Monitor Canon MG5100 series Printer.lnk [2009-7-14 44544]
Verbatim GREEN BUTTON.lnk - c:\program files\Verbatim GREEN BUTTON\GREEN BUTTON.exe /a [2012-1-12 442640]
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE /tsr [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2014-06-18 108032]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-19 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-19 691696]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2014-05-15 777488]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2014-05-15 411680]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [2014-05-15 24184]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2014-05-15 67824]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2014-05-15 68312]
S2 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2;c:\program files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [2011-06-21 196912]
S2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-12-12 793048]
S2 ssinstall;SInstalátor;c:\windows\System32\ssins.exe [2014-05-29 2324216]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
HPService REG_MULTI_SZ HPSLPSVC
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-06-12 15:31 1091912 ----a-w- c:\program files\Google\Chrome\Application\35.0.1916.153\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-07-10 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-07 05:15]
.
2014-07-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-28 16:37]
.
2014-07-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-28 16:37]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Copy to &Lightning Note - c:\program files\Corel\WordPerfect Lightning\Programs\WPLightningCopyToNote.hta
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Open with WordPerfect - c:\program files\Corel\WordPerfect Office X5\Programs\WPLauncher.hta
TCP: Interfaces\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
URLSearchHooks-{7a5f72d2-9bbf-443f-9d35-26fc7e858e77} - (no file)
WebBrowser-{7A5F72D2-9BBF-443F-9D35-26FC7E858E77} - (no file)
WebBrowser-{4154552D-5341-5400-76A7-7A786E7484D7} - (no file)
WebBrowser-{41545534-2D56-3743-00A7-7A786E7484D7} - (no file)
HKCU-Run-MobileDocuments - c:\program files\Common Files\Apple\Internet Services\ubd.exe
HKCU-Run-Google+ Auto Backup - c:\users\Olina\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
HKLM-Run-Freecorder FLV Service - c:\program files\Freecorder\FLVSrvc.exe
HKLM-Run-Allin1Convert EPM Support - c:\progra~1\Allin1Convert_8h\bar\1.bin\8hmedint.exe
AddRemove-Freecorder4.1 - c:\windows\Freecorder\uninstall.exe
AddRemove-VDC_is1 - c:\program files\Video Download Converter\unins000.exe
AddRemove-{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} - c:\programdata\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}\bm_installer.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_14_0_0_145_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_14_0_0_145_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(676)
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\conhost.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\wt\updater\wcmdmgr.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\rundll32.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
c:\program files\Microsoft Office\Office12\ONENOTEM.EXE
c:\users\Olina\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\Common Files\Nero\Lib\NMIndexingService.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files\iPod\bin\iPodService.exe
c:\windows\System32\WUDFHost.exe
c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\system32\DllHost.exe
.
**************************************************************************
.
Celkový čas: 2014-07-10 17:18:20 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-07-10 15:18
.
Před spuštěním: Volných bajtů: 255 184 584 704
Po spuštění: Volných bajtů: 255 813 537 792
.
- - End Of File - - C0ADEE8877B69A0AAA965E132C49840F
A36C5E4F47E84449FF07ED3517B43A31
Combofix log:
ComboFix 14-07-08.04 - Olina 10.07.2014 17:02:40.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.1791.1035 [GMT 2:00]
Spuštěný z: c:\users\Olina\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files\MediaBuzzV1
c:\program files\RichMediaViewV1
c:\programdata\6C749B2FD2.sys
c:\users\Olina\AppData\Local\assembly\tmp
c:\users\Olina\AppData\Local\Temp\7zS1DA5\HPSLPSVC32.DLL
c:\windows\system32\is-5PO6U.tmp
c:\windows\system32\is-VD584.tmp
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_HPSLPSVC
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-06-10 do 2014-07-10 )))))))))))))))))))))))))))))))
.
.
2014-07-09 05:05 . 2014-06-18 01:52 868864 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tipskins.dll
2014-07-09 05:05 . 2014-06-18 01:52 399360 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tabskb.dll
2014-07-09 05:05 . 2014-06-18 01:52 348672 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tiptsf.dll
2014-07-09 05:05 . 2014-06-18 00:52 2350080 ----a-w- c:\windows\system32\win32k.sys
2014-07-09 05:05 . 2014-06-18 01:52 104448 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\TipBand.dll
2014-07-09 05:05 . 2014-06-18 01:51 181760 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\TabTip.exe
2014-07-09 05:05 . 2014-06-18 01:51 646144 ----a-w- c:\windows\system32\osk.exe
2014-07-09 05:05 . 2014-06-18 01:50 544768 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\TipRes.dll
2014-07-08 18:48 . 2014-07-10 14:23 110296 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-07-08 18:48 . 2014-07-08 18:48 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2014-07-08 18:48 . 2014-07-08 18:48 -------- d-----w- c:\programdata\Malwarebytes
2014-07-08 18:48 . 2014-05-12 05:26 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-07-08 18:48 . 2014-05-12 05:25 74456 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-07-08 18:48 . 2014-05-12 05:25 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-07-07 14:36 . 2014-07-07 14:36 -------- d-----w- c:\users\Olina\AppData\Local\IAC
2014-07-07 14:36 . 2014-07-07 14:36 -------- d-----w- c:\users\Olina\AppData\Local\VideoDownloadConverter_4z
2014-06-15 15:36 . 2014-06-15 15:36 -------- d-----w- c:\program files\Common Files\Java
2014-06-11 20:49 . 2014-06-11 20:49 18636480 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE14\MSO.DLL
2014-06-11 10:12 . 2014-03-26 14:27 1389056 ----a-w- c:\windows\system32\msxml6.dll
2014-06-11 10:12 . 2014-03-26 14:27 1237504 ----a-w- c:\windows\system32\msxml3.dll
2014-06-11 10:12 . 2014-03-26 14:25 2048 ----a-w- c:\windows\system32\msxml6r.dll
2014-06-11 10:12 . 2014-03-26 14:25 2048 ----a-w- c:\windows\system32\msxml3r.dll
2014-06-11 10:12 . 2014-04-05 02:25 1294272 ----a-w- c:\windows\system32\drivers\tcpip.sys
2014-06-11 10:12 . 2014-04-05 02:24 187840 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 10:12 . 2014-04-25 02:06 626688 ----a-w- c:\windows\system32\usp10.dll
2014-06-11 10:12 . 2014-05-08 09:06 919040 ----a-w- c:\windows\system32\rdpcorets.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-07-09 05:15 . 2012-04-07 06:53 699056 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-07-09 05:15 . 2011-07-18 05:36 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-05-29 12:11 . 2014-05-29 12:11 79 ----a-w- c:\windows\system32\ssinstall-uninstall.bat
2014-05-29 12:11 . 2014-05-29 12:11 2324216 ----a-w- c:\windows\system32\ssins.exe
2014-05-15 18:44 . 2014-05-15 18:43 68312 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-05-15 18:44 . 2014-05-15 18:43 777488 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-05-15 18:44 . 2014-05-15 18:43 411680 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-05-15 18:43 . 2014-05-15 18:43 776976 ----a-w- c:\windows\system32\drivers\aswsnx.sys.1400179467395
2014-05-15 18:43 . 2014-05-15 18:43 411552 ----a-w- c:\windows\system32\drivers\aswsp.sys.1400179467395
2014-05-15 18:43 . 2014-05-15 18:43 180632 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-05-15 18:43 . 2014-05-15 18:43 67824 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-05-15 18:43 . 2014-05-15 18:43 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-05-15 18:43 . 2014-05-15 18:43 24184 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-05-15 18:43 . 2014-05-15 18:43 81768 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-05-15 18:43 . 2014-05-15 18:43 271264 ----a-w- c:\windows\system32\aswBoot.exe
2014-05-15 18:43 . 2014-05-15 18:43 43152 ----a-w- c:\windows\avastSS.scr
2014-04-29 11:20 . 2014-05-17 10:01 17584 ----a-w- c:\windows\system32\roboot.exe
2014-04-12 02:15 . 2014-05-13 17:55 136640 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2014-04-12 02:15 . 2014-05-13 17:55 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2014-04-12 02:12 . 2014-05-13 17:55 100352 ----a-w- c:\windows\system32\sspicli.dll
2014-04-12 02:12 . 2014-05-13 17:55 15872 ----a-w- c:\windows\system32\sspisrv.dll
2014-04-12 02:12 . 2014-05-13 17:55 22016 ----a-w- c:\windows\system32\secur32.dll
2014-04-12 02:11 . 2014-05-13 17:55 22528 ----a-w- c:\windows\system32\lsass.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-05-15 18:43 260976 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Seznam Postak"="c:\program files\Seznam.cz\bin\postak.exe" [2012-01-10 491040]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-06-24 1840424]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2012-08-27 39408]
"cz.seznam.software.autoupdate"="c:\users\Olina\AppData\Roaming\Seznam.cz\szninstall.exe" [2013-05-16 1062472]
"cz.seznam.software.szndesktop"="c:\users\Olina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2013-04-12 92664]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2012-06-26 1516632]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"wcmdmgr"="c:\windows\wt\updater\wcmdmgrl.exe" [2001-01-25 20480]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2011-10-06 59240]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-02-12 43848]
"NBAgent"="c:\program files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe" [2010-03-14 1086760]
"SSDMonitor"="c:\program files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [2011-12-12 103896]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"seznam-listicka-distribuce"="c:\program files\Seznam.cz\distribution\szninstall.exe" [2012-09-13 1009288]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-25 2516296]
"CanonSolutionMenuEx"="c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]
"NSU_agent"="c:\program files\Nokia\Nokia Software Updater\nsu3ui_agent.exe" [2012-02-28 190768]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2014-01-17 421888]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-06 3890208]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2014-05-26 152392]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2014-05-07 256896]
.
c:\users\Olina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Canon IJ Status Monitor Canon MG5100 series Printer.lnk - c:\windows\system32\rundll32.exe c:\users\Olina\cnmss Canon MG5100 series Printer (Local).dll,SMStarterEntryPoint USB003;Canon MG5100 series Printer;cnmss Canon MG5100 series Printer (Local).dll;Canon IJ Status Monitor Canon MG5100 series Printer.lnk [2009-7-14 44544]
Verbatim GREEN BUTTON.lnk - c:\program files\Verbatim GREEN BUTTON\GREEN BUTTON.exe /a [2012-1-12 442640]
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE /tsr [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2014-06-18 108032]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-19 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-19 691696]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2014-05-15 777488]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2014-05-15 411680]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [2014-05-15 24184]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2014-05-15 67824]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2014-05-15 68312]
S2 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2;c:\program files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [2011-06-21 196912]
S2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-12-12 793048]
S2 ssinstall;SInstalátor;c:\windows\System32\ssins.exe [2014-05-29 2324216]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
HPService REG_MULTI_SZ HPSLPSVC
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-06-12 15:31 1091912 ----a-w- c:\program files\Google\Chrome\Application\35.0.1916.153\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-07-10 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-07 05:15]
.
2014-07-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-28 16:37]
.
2014-07-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-28 16:37]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Copy to &Lightning Note - c:\program files\Corel\WordPerfect Lightning\Programs\WPLightningCopyToNote.hta
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Open with WordPerfect - c:\program files\Corel\WordPerfect Office X5\Programs\WPLauncher.hta
TCP: Interfaces\{04CF6973-9595-4074-AEB5-475D3D633C6D}: NameServer = 82.100.26.35,82.100.26.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
URLSearchHooks-{7a5f72d2-9bbf-443f-9d35-26fc7e858e77} - (no file)
WebBrowser-{7A5F72D2-9BBF-443F-9D35-26FC7E858E77} - (no file)
WebBrowser-{4154552D-5341-5400-76A7-7A786E7484D7} - (no file)
WebBrowser-{41545534-2D56-3743-00A7-7A786E7484D7} - (no file)
HKCU-Run-MobileDocuments - c:\program files\Common Files\Apple\Internet Services\ubd.exe
HKCU-Run-Google+ Auto Backup - c:\users\Olina\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
HKLM-Run-Freecorder FLV Service - c:\program files\Freecorder\FLVSrvc.exe
HKLM-Run-Allin1Convert EPM Support - c:\progra~1\Allin1Convert_8h\bar\1.bin\8hmedint.exe
AddRemove-Freecorder4.1 - c:\windows\Freecorder\uninstall.exe
AddRemove-VDC_is1 - c:\program files\Video Download Converter\unins000.exe
AddRemove-{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} - c:\programdata\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}\bm_installer.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_14_0_0_145_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_14_0_0_145_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(676)
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\conhost.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\wt\updater\wcmdmgr.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\rundll32.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\Verbatim GREEN BUTTON\GREEN BUTTON.exe
c:\program files\Microsoft Office\Office12\ONENOTEM.EXE
c:\users\Olina\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\Common Files\Nero\Lib\NMIndexingService.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files\iPod\bin\iPodService.exe
c:\windows\System32\WUDFHost.exe
c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\system32\DllHost.exe
.
**************************************************************************
.
Celkový čas: 2014-07-10 17:18:20 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-07-10 15:18
.
Před spuštěním: Volných bajtů: 255 184 584 704
Po spuštění: Volných bajtů: 255 813 537 792
.
- - End Of File - - C0ADEE8877B69A0AAA965E132C49840F
A36C5E4F47E84449FF07ED3517B43A31
Re: Zavirovaný počítač
Otestujte na www.virustotal.com
c:\windows\system32\osk.exe
c:\windows\system32\osk.exe
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
Tak je tu další problém...po projetí scanem Combofix šel normálně internet....ještě jsem zaktualizoval antivir (možná jsem to neměl dělat) a druhý den po nastartování PC nešel net, uživatelka ho zkoušela opravit (co jsem pochopil po telefonu) a ukazovalo jí to nějakou chybu (dnes se tam zajedu podívat). Zkoušela i vypnutí a zapnutí routeru atd. I zkusila obnovu bodu systému a také to nepomohlo... 
Re: Zavirovaný počítač
Vyzkoušejte, zda jde v nouzovém režimu. V kolik tam budete, potřebuji vědět co to hlásí za chybu.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
Tak se tam stavím v 18 hodin. Vyzjistím tu chybu a napíšu (pokud to rovnou nepůjde rozjet nějakou banalitou).
-
Jandaskunk
- Návštěvník

- Příspěvky: 76
- Registrován: 16 Črc 2007 17:49
Re: Zavirovaný počítač
Tak jsem to nakonec nějak rozjel, chyběla napsaná Výchozí brána, ale i po napsání adresy to nefungovalo (ukazovalo to dvě připojení). Vrátil jsem zpátky obnovení, co provedla uživatelka, po napsání adresy se to rozjelo.
Osk.exe jsem otestoval a nenašlo to žádný virus.
Osk.exe jsem otestoval a nenašlo to žádný virus.
Re: Zavirovaný počítač
Teď to s pc vypadá jak? Poprosím o aktuální log z Frstu.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Přispějete na provoz fóra?