Prosím Vyoska o kontrolu zaneřáděného počítače

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zpráva
Autor
Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Prosím Vyoska o kontrolu zaneřáděného počítače

#1 Příspěvek od Stene »

Ahoj. Dostal se mi do ruky noťas a potřeboval bych ho dát do použitelného stavu.. Přikládám FRST log

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-08-2014 01
Ran by Ráďa (administrator) on RADEK-HP on 21-08-2014 18:03:59
Running from C:\Users\Ráďa\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
() C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
( ) C:\Windows\System32\lxebcoms.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
( ) C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(QIP.ru) C:\Program Files (x86)\QipGuard\QipGuard.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
() C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe
() C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPConnectionManager.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Gemius) C:\Program Files\NetSoftware\NetSoftware.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Opera Software) C:\Program Files (x86)\Opera\launcher.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSDKHelperx64.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
() C:\Program Files (x86)\Opera\23.0.1522.75\opera_autoupdate.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
(forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2919992 2011-01-27] (Hewlett-Packard Company)
HKLM\...\Run: [MfeEpePcMonitor] => C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [200704 2011-02-09] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2012-02-02] (Adobe Systems Incorporated)
HKLM\...\Run: [lxebmon.exe] => C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe [770728 2011-01-23] ()
HKLM\...\Run: [EzPrint] => C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe [148280 2011-01-23] ()
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-06-01] (IDT, Inc.)
HKLM\...\Run: [BtTray] => C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [764544 2012-09-14] (Qualcomm Atheros)
HKLM\...\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [127616 2012-09-14] (Qualcomm Atheros Commnucations)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-12-20] (Synaptics Incorporated)
HKLM-x32\...\Run: [File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [12274688 2011-02-07] (Hewlett-Packard)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-26] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [DTRun] => c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [517456 2010-11-24] (ArcSoft Inc.)
HKLM-x32\...\Run: [HPConnectionManager] => c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [94264 2011-04-05] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPQuickWebProxy] => c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [76344 2011-02-11] (Hewlett-Packard Company)
HKLM-x32\...\Run: [NetSoftware] => C:\Program Files\NetSoftware\Starter.exe [218112 2014-06-12] (Gemius)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [402432 2010-07-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [ApnUpdater] => C:\Program Files (x86)\Ask.com\Updater\Updater.exe [395144 2011-05-17] (Ask)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1679360 2012-02-28] (Wondershare)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [333728 2012-06-20] (Hewlett-Packard Company)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [295512 2013-10-09] (RealNetworks, Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-10-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [935288 2009-09-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-06] (AVAST Software)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-08-05] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3077528 2011-09-27] ()
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [OfficeSyncProcess] => C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation)
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27648 2014-06-16] ()
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [833024 2014-06-16] (ZONER software)
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe
Lsa: [Notification Packages] EpePcNp64 DPPassFilter scecli
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=111253 ... df9a449e24
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTer ... df9a449e24
SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTer ... df9a449e24
SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - {399a1442-7377-49e7-8d77-6dc9ed5968c1} URL = http://www.zbozi.cz/?q={searchTerms}&so ... earch_6826
SearchScopes: HKCU - {5cf5d387-d87c-4408-9a6b-301b0713d62a} URL = http://www.mapy.cz/?query={searchTerms} ... earch_6826
SearchScopes: HKCU - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL = http://search.qip.ru/search?query={searchTerms}&from=IE
SearchScopes: HKCU - {eb97f7df-1773-4916-aae6-5af74da8c69d} URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKCU - {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://search.seznam.cz/?q={searchTerms ... earch_6826
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: MG Suggestor -> {429D37EE-1709-412e-A210-A81A65D56C88} -> C:\Program Files (x86)\MG Suggestor\MGSuggestor.dll (MGSHAREWARE)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: QIPBHO Class -> {95289393-33EA-4F8D-B952-483415B9C955} -> C:\Users\Ráďa\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Internet Panel -> {CE7C3CF0-4B15-11D1-ABED-709549C10000} -> C:\Program Files\NetSoftware\IEHelper.dll (Gemius)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: MyPlayCity Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()
Toolbar: HKLM-x32 - MyPlayCity Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=10.21.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Extension: wxDfast - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\info@wxdownloadmanager.com [2012-03-19]
FF Extension: MyPlayCity Toolbar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\toolbar@ask.com [2012-05-21]
FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2011-05-10]
FF HKLM-x32\...\Firefox\Extensions: [info@wxdownloadmanager.com] - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\info@wxdownloadmanager.com
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-10-09]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-03-18]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

Chrome:
=======
CHR Extension: (YouTube) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (RealDownloader) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2012-12-26]
CHR Extension: (MG Suggestor) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbgicmkghadchlbopdpmahffhbppddhp [2012-09-28]
CHR Extension: (gemiusAudience Internet survey plug-in) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl [2014-05-01]
CHR Extension: (Google Wallet) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR Extension: (Gmail) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM-x32\...\Chrome\Extension: [ekdjfcdinekpfcedakhpngcnaamhiihn] - C:\ProgramData\wxDfast\ekdjfcdinekpfcedakhpngcnaamhiihn.crx [2011-12-21]
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-06]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]
CHR HKLM-x32\...\Chrome\Extension: [jbgicmkghadchlbopdpmahffhbppddhp] - C:\Program Files (x86)\MG Suggestor\MGSuggestor.crx [2012-06-15]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [216192 2012-09-14] (Qualcomm Atheros Commnucations)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-06] (AVAST Software)
R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () [File not signed]
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [481104 2011-02-12] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [464480 2011-02-04] (Hewlett-Packard Company)
S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent)
R3 HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [36864 2011-01-12] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company)
R2 HPFSService; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [320000 2011-02-07] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
S2 lxebCATSCustConnectService; C:\windows\system32\spool\DRIVERS\x64\3\\lxebserv.exe [45736 2010-04-14] (Lexmark International, Inc.)
R2 lxeb_device; C:\windows\system32\lxebcoms.exe [1052328 2010-04-14] ( )
R2 lxeb_device; C:\windows\SysWOW64\lxebcoms.exe [598696 2010-04-14] ( )
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1318912 2011-02-09] () [File not signed]
R2 mitsijm2013; C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe [339776 2012-01-30] ( )
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [75064 2012-05-14] ()
R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2013-06-01] (IDT, Inc.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-03-07] (Xobni Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-09-14] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-06] ()
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-06] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-06] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-06] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-06] ()
R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-09-14] (Qualcomm Atheros)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [63336 2011-02-07] (Hewlett-Packard Company)
R2 Dokan; C:\windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [168008 2011-02-09] (McAfee, Inc.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1826048 2010-12-21] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-05-01] (Duplex Secure Ltd.)
U3 albf152a; C:\Windows\System32\Drivers\albf152a.sys [0 ] (Intel Corporation)
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-21 18:03 - 2014-08-21 18:05 - 00035629 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:03 - 2014-08-21 18:04 - 00000000 ____D () C:\FRST
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 17:59 - 2014-08-21 18:00 - 00000000 ____D () C:\ráďa
2014-08-16 10:25 - 2014-08-21 17:58 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-14 03:04 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-08-14 03:04 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-08-14 03:04 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-08-14 03:04 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-08-14 03:03 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-08-14 03:03 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-08-13 15:57 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-08-13 15:57 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-08-13 15:56 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-13 15:56 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-08-13 15:56 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-08-13 15:56 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-08-13 15:56 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-08-13 15:56 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-08-13 15:56 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-08-13 15:56 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-08-13 15:56 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-08-13 15:56 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-08-13 15:56 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-08-13 15:56 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-08-13 15:56 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-08-13 15:56 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-08-13 15:56 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-08-13 15:56 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-08-13 15:56 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-08-13 15:56 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-08-13 15:56 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-08-13 15:56 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-08-13 15:56 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-08-13 15:56 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-08-13 15:56 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-08-13 15:56 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-08-13 15:56 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-08-13 15:56 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-08-13 15:56 - 2014-06-12 09:52 - 00986560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-08-13 15:56 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-08-13 15:56 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-08-13 15:55 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-08-13 15:55 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-08-13 15:55 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-08-13 15:55 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-08-13 15:55 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-08-13 15:55 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-08-13 15:55 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-08-13 15:55 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-08-13 15:55 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-08-13 15:55 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-08-13 15:55 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-08-13 15:55 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-08-13 15:55 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-08-13 15:55 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-08-13 15:55 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-08-13 15:55 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-08-13 15:55 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-08-13 15:55 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-08-13 15:54 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-13 15:54 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-13 15:33 - 2014-08-21 17:58 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-06 15:12 - 2014-08-06 15:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-01 16:09 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-08-01 16:09 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-08-01 16:09 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-08-01 16:09 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-08-01 16:08 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-08-01 16:08 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-08-01 16:08 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-21 18:05 - 2014-08-21 18:03 - 00035629 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:05 - 2011-09-27 11:03 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\PMB Files
2014-08-21 18:05 - 2011-07-19 15:55 - 01530301 _____ () C:\windows\WindowsUpdate.log
2014-08-21 18:04 - 2014-08-21 18:03 - 00000000 ____D () C:\FRST
2014-08-21 18:03 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-21 18:03 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 18:01 - 2011-11-19 23:47 - 00000000 ____D () C:\ProgramData\NetSoftware
2014-08-21 18:00 - 2014-08-21 17:59 - 00000000 ____D () C:\ráďa
2014-08-21 17:58 - 2014-08-16 10:25 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-21 17:58 - 2014-08-13 15:33 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-21 17:57 - 2011-11-19 23:47 - 00000000 ____D () C:\Program Files\NetSoftware
2014-08-21 17:57 - 2011-10-09 21:39 - 00035108 _____ () C:\ProgramData\lxebscan.log
2014-08-21 17:57 - 2011-08-13 13:47 - 00000944 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-21 17:57 - 2009-07-14 06:45 - 05168648 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-21 17:56 - 2011-05-10 22:06 - 00000000 ____D () C:\ProgramData\HPQLOG
2014-08-21 17:53 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-08-21 17:53 - 2009-07-14 06:51 - 00110839 _____ () C:\windows\setupact.log
2014-08-19 17:38 - 2011-09-02 10:53 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\uTorrent
2014-08-19 17:33 - 2012-09-16 21:08 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\vlc
2014-08-19 17:24 - 2011-08-13 13:47 - 00000948 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-19 17:14 - 2012-04-04 07:25 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-08-19 02:27 - 2013-06-28 09:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-18 15:56 - 2014-03-18 16:49 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update
2014-08-16 16:52 - 2014-04-29 10:23 - 00107028 _____ () C:\Users\Ráďa\Documents\Agamky.xlsx
2014-08-16 07:04 - 2011-08-10 19:18 - 00000000 ____D () C:\Users\Ráďa\Documents\Bluetooth Folder
2014-08-15 15:56 - 2011-11-01 23:24 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-15 15:56 - 2011-08-13 09:25 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-08-14 04:55 - 2011-08-11 02:56 - 00000000 ____D () C:\windows\rescache
2014-08-14 03:58 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-08-14 03:38 - 2012-03-13 20:34 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-14 03:27 - 2013-07-15 08:29 - 00000000 ____D () C:\windows\system32\MRT
2014-08-14 03:17 - 2011-08-15 14:55 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-14 03:02 - 2014-05-07 03:01 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-08-13 21:08 - 2011-08-13 19:28 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\CrashDumps
2014-08-13 15:27 - 2011-07-19 16:25 - 05451774 _____ () C:\windows\PFRO.log
2014-08-12 17:49 - 2014-06-08 11:11 - 00003828 _____ () C:\windows\System32\Tasks\Opera scheduled Autoupdate 1402218407
2014-08-12 17:49 - 2011-08-10 19:51 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-08-10 15:25 - 2011-05-10 22:12 - 00669116 _____ () C:\windows\system32\perfh005.dat
2014-08-10 15:25 - 2011-05-10 22:12 - 00141744 _____ () C:\windows\system32\perfc005.dat
2014-08-10 15:25 - 2009-07-14 07:13 - 01584554 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-07 04:06 - 2014-08-13 15:54 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-07 04:01 - 2014-08-13 15:54 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-06 17:47 - 2011-12-06 17:53 - 00000000 ____D () C:\Users\Ráďa\Documents\Games
2014-08-06 15:12 - 2014-03-18 16:48 - 00427360 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2014-08-06 15:11 - 2014-08-06 15:12 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-06 15:11 - 2014-03-18 16:48 - 01041168 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00224896 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00093568 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00079184 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-08-06 15:11 - 2011-12-09 22:04 - 00307344 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-08-05 09:20 - 2013-06-04 08:25 - 00270496 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-08-04 17:06 - 2013-06-03 06:32 - 00025764 _____ () C:\ProgramData\lxeb.log
2014-08-02 23:40 - 2012-10-22 19:41 - 00003218 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRADEK-HP$
2014-08-02 23:40 - 2012-10-22 19:41 - 00000342 _____ () C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job
2014-08-02 13:35 - 2012-12-07 00:11 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\BSplayer
2014-08-02 10:33 - 2012-08-10 18:28 - 00000000 ____D () C:\Users\Ráďa\Documents\Recepty
2014-08-01 01:41 - 2014-08-13 15:56 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-01 01:16 - 2014-08-13 15:56 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 16:52 - 2014-08-13 15:55 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-07-25 16:02 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-07-25 16:01 - 2014-08-13 15:56 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-07-25 15:51 - 2014-08-13 15:56 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-07-25 15:30 - 2014-08-13 15:56 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-07-25 15:28 - 2014-08-13 15:56 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-07-25 15:28 - 2014-08-13 15:55 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-07-25 15:25 - 2014-08-13 15:56 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-07-25 15:25 - 2014-08-13 15:55 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-07-25 15:11 - 2014-08-13 15:55 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-07-25 15:10 - 2014-08-13 15:56 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-07-25 15:04 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-07-25 15:03 - 2014-08-13 15:55 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-07-25 15:00 - 2014-08-13 15:56 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-07-25 15:00 - 2014-08-13 15:55 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-07-25 14:59 - 2014-08-13 15:55 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-07-25 14:47 - 2014-08-13 15:55 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-07-25 14:40 - 2014-08-13 15:56 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-07-25 14:33 - 2014-08-13 15:56 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-07-25 14:30 - 2014-08-13 15:55 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-07-25 14:28 - 2014-08-13 15:56 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-07-25 14:28 - 2014-08-13 15:55 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-07-25 14:21 - 2014-08-13 15:56 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-07-25 14:19 - 2014-08-13 15:55 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-07-25 14:18 - 2014-08-13 15:56 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-07-25 14:17 - 2014-08-13 15:56 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-07-25 14:17 - 2014-08-13 15:55 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-07-25 14:12 - 2014-08-13 15:56 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-07-25 14:10 - 2014-08-13 15:56 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-07-25 14:10 - 2014-08-13 15:55 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-07-25 14:08 - 2014-08-13 15:56 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-07-25 14:06 - 2014-08-13 15:56 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-07-25 13:52 - 2014-08-13 15:56 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-07-25 13:47 - 2014-08-13 15:56 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-07-25 13:43 - 2014-08-13 15:56 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-25 13:42 - 2014-08-13 15:56 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-07-25 13:39 - 2014-08-13 15:56 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-07-25 13:39 - 2014-08-13 15:55 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-07-25 13:36 - 2014-08-13 15:55 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-07-25 13:34 - 2014-08-13 15:56 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-07-25 13:29 - 2014-08-13 15:56 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-07-25 13:23 - 2014-08-13 15:55 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-07-25 13:13 - 2014-08-13 15:56 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-07-25 13:07 - 2014-08-13 15:56 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-07-25 13:07 - 2014-08-13 15:56 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-07-25 13:03 - 2014-08-13 15:56 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-07-25 12:52 - 2014-08-13 15:55 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-07-25 12:26 - 2014-08-13 15:56 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-07-25 12:17 - 2014-08-13 15:55 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-07-25 12:09 - 2014-08-13 15:55 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-07-25 12:05 - 2014-08-13 15:55 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-07-25 12:00 - 2014-08-13 15:56 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-07-25 03:05 - 2012-05-17 08:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

Files to move or delete:
====================
C:\ProgramData\bndilc7tfr.fvv
C:\ProgramData\brbngbzj.odd


Some content of TEMP:
====================
C:\Users\Ráďa\AppData\Local\Temp\AcDeltree.exe
C:\Users\Ráďa\AppData\Local\Temp\AtpTimerInfo.dll
C:\Users\Ráďa\AppData\Local\Temp\CmdLineExt03.dll
C:\Users\Ráďa\AppData\Local\Temp\contentDATs.exe
C:\Users\Ráďa\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\Ráďa\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Ráďa\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Ráďa\AppData\Local\Temp\DTLite4454-0315.exe
C:\Users\Ráďa\AppData\Local\Temp\DTLite4461-0328.exe
C:\Users\Ráďa\AppData\Local\Temp\DTLite4471-0333.exe
C:\Users\Ráďa\AppData\Local\Temp\DTLite4491-0356.exe
C:\Users\Ráďa\AppData\Local\Temp\Extract.exe
C:\Users\Ráďa\AppData\Local\Temp\free-pdf-to-word_full893.exe
C:\Users\Ráďa\AppData\Local\Temp\gert0.exe
C:\Users\Ráďa\AppData\Local\Temp\HPHelpUpdater.exe
C:\Users\Ráďa\AppData\Local\Temp\htmlayout.dll
C:\Users\Ráďa\AppData\Local\Temp\kingdoms-setup-update-116.exe
C:\Users\Ráďa\AppData\Local\Temp\lowproc.exe
C:\Users\Ráďa\AppData\Local\Temp\pdfiutil.exe
C:\Users\Ráďa\AppData\Local\Temp\ptu95F_tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\ptuCA3D_tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\ResetDevice.exe
C:\Users\Ráďa\AppData\Local\Temp\Resource.exe
C:\Users\Ráďa\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Ráďa\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Ráďa\AppData\Local\Temp\SIntf16.dll
C:\Users\Ráďa\AppData\Local\Temp\SIntf32.dll
C:\Users\Ráďa\AppData\Local\Temp\SIntfNT.dll
C:\Users\Ráďa\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ráďa\AppData\Local\Temp\SP53546.exe
C:\Users\Ráďa\AppData\Local\Temp\sp54373.exe
C:\Users\Ráďa\AppData\Local\Temp\sp54620.exe
C:\Users\Ráďa\AppData\Local\Temp\SP56488.exe
C:\Users\Ráďa\AppData\Local\Temp\SP56729.exe
C:\Users\Ráďa\AppData\Local\Temp\SP57879.exe
C:\Users\Ráďa\AppData\Local\Temp\sp58915.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59118.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59151.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59196.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59202.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59291.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59529.exe
C:\Users\Ráďa\AppData\Local\Temp\SP60095.exe
C:\Users\Ráďa\AppData\Local\Temp\SP60686.exe
C:\Users\Ráďa\AppData\Local\Temp\SP60769.exe
C:\Users\Ráďa\AppData\Local\Temp\SP61104.exe
C:\Users\Ráďa\AppData\Local\Temp\SP61411.exe
C:\Users\Ráďa\AppData\Local\Temp\SP63779.exe
C:\Users\Ráďa\AppData\Local\Temp\sp64126.exe
C:\Users\Ráďa\AppData\Local\Temp\sszvmf97.dll
C:\Users\Ráďa\AppData\Local\Temp\stubhelper.dll
C:\Users\Ráďa\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Ráďa\AppData\Local\Temp\uninstall.exe
C:\Users\Ráďa\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Ráďa\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\Ráďa\AppData\Local\Temp\utt1DA5.tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\uttA4F3.tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\uttB1D6.tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\v-bm0uqa.dll
C:\Users\Ráďa\AppData\Local\Temp\yvwl3flp.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáïa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\R��a\Desktop" je 2 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe
"C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
DisableUnicastResponsesToMulticastBroadcast REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#2 Příspěvek od vyosek »

Ahoj :)

Zacnem klasicky JunkwareRemovalTool a AdwCleaner - oba logy sem dej
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#3 Příspěvek od Stene »

Děkuju za rychlou reakci : )

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by R Ôa on źt 21.08.2014 at 19:26:35,68
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Bar
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\genericasktoolbar.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\smbarbroker.exe
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bhoclass.bho.bhoclass.bho
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bhoclass.bho.bhoclass.bho.1.0
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\features\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\products\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\smbarbroker.smbardealer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\smbarbroker.smbardealer.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\toolband.toolbandobj
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\toolband.toolbandobj.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86d4b82a-abed-442a-be86-96357b70f4fe}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskHomePageReset_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskHomePageReset_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskHomePageReset_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskHomePageReset_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{95289393-33EA-4F8D-B952-483415B9C955}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn"
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\askbardis"
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_current_user\software\ask.com"
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\apn"
Successfully deleted: [Registry Key] "hkey_local_machine\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\{9b0cb95c-933a-4b8c-b6d4-edcd19a43874}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\typelib\{2996f0e7-292b-4cae-893f-47b8b1c05b56}"



~~~ Files

Successfully deleted: [File] "C:\Users\R Ôa\AppData\Roaming\microsoft\internet explorer\qipsearchbar.dll"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\premium"
Successfully deleted: [Folder] "C:\Users\R Ôa\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\R Ôa\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\R Ôa\appdata\locallow\wxdfast"
Successfully deleted: [Folder] "C:\Program Files (x86)\winzip registry optimizer"
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{004E7352-D037-40E0-8611-520AFBFF9D21}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{01905767-EB54-4B2F-BC7B-4C2D4C820619}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{02E65D54-680A-4C9F-9509-B75B763BE116}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{02FDD0E6-6E92-467A-A7EE-24F42B85FC53}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{043C2AF3-199E-4867-9834-7FE094AC7E5D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{04D37C4C-3D0E-489D-AC6B-B1DC84FCB4C0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{05877469-9F27-4B4C-BD76-74086083FE96}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{05BBD8B2-E36C-4444-A18A-2EC5548FA311}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{06DA3E33-8497-478E-8C4A-E16F77148644}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{070DBFE8-7AFA-4681-A173-695E7E902B5F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0A650FE5-FE8A-49ED-93AB-D227D418535B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0C6795F8-F000-4D78-BF04-2D0D355C3A7E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0CA32002-6DB8-4482-9E33-DC929568AD9F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0DE0A713-7470-4C2E-97AF-E004675763F4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{10779064-31F6-4E4B-A511-86A6BA6A1CEC}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{120ECF71-0A15-40FB-AE17-1889602182CE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{12691206-7A87-4D28-8924-75EDAA6AD33E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{12A2947E-C6AC-436D-9B38-CA59AF592E18}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{12E84028-934B-4DE8-82B5-7CD3BB186D41}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1347311A-8486-4E84-8FA0-0379C0FFEBE5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1519254D-F097-4682-8E17-CB6F844FAA96}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{152CE631-3C40-46B9-BC03-4C4178A164D6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{153B8982-CD17-4C08-975D-C6DA625DFC18}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{15C70BA2-A100-45E9-AE36-E41F1541C3E6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{174CD44D-22C6-4DEE-ADB9-36AF8532FE24}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1760B613-4DBB-4B65-AC0C-0E992A88FD8D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{18E7A39D-6CD2-4394-A273-E14468F38543}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{196581EF-47E6-43AE-A6E4-8CD1F1C74B5A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1AC205C2-106F-405A-8FD6-400D34A83BAB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1B0163B2-032A-4572-92F3-1D7DB8C053DE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1B2B3945-7F55-4195-A614-51EA0B361F60}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1B340BCA-4D8C-4417-A86E-342D10FFC255}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1C1A9D2D-0BE5-4985-9AB9-EE6A0447FAAD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1CFFF784-D2D8-46C7-8779-4133542B7865}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1D2AB821-4B4E-4A01-9532-78D92EE4992B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1D3D5FD0-BB12-485D-B537-629D0AA49DBB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1E2791DB-D7F7-44CE-8C3B-861C4268FB05}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1E49E14D-FDEF-4A4F-981A-7C2EFBF9DD0E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{21854F3A-C29D-4A09-BE9F-A70C8BBEBE5E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{226D502D-9BF9-44D5-A917-003CCF3EF98A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{22926B72-C1C3-498A-AAA5-A6B33956D4BE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{22CE9BAC-E1E6-4915-812F-1C0202394CC3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{23BFC75B-C975-476B-B934-EEE776988CDB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{24452581-4933-420D-A5AE-C1BB62E7C145}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2668E200-114D-4352-9F47-9E9D9760350B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{27723DB2-F06C-426C-9BF6-6BDD9C600230}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{28923D5B-D18D-4856-8759-74DE999679B6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{28B2D870-5CC4-47A0-8D66-8DCDAFB131AE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{292CF21F-20AF-4690-A9EB-F4C331E3F091}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{29D4B8A9-FB29-4007-9EF3-FAACB5732A99}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2AA93413-6674-4CA3-A8A1-D1F8472F034F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2B09269D-E7A0-45D2-AB18-9863CA9B0D26}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2BB1EE33-F9FF-47A3-80B0-413BA86E5416}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2C3E3D5F-45AA-478B-8707-31E59E91FD0C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2DB1745A-C71D-4046-9AE1-30E6C7C369AC}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2DE229F8-C55D-40C4-BB9D-BD1E982DC604}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2E3DC0B1-74EE-4E78-9674-61805D6B6CDD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{31B7E8A8-E17F-453E-953D-24DC1B47531C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{33CA6F74-CD06-4DE7-99EA-351F54C2812D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{342A74CC-1165-4B42-A3FC-F452C7D17742}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{345CF641-82AE-4B0E-A1FC-60FFC629C7AF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3487391F-8E80-4649-B5B9-0CC4A14782F9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{34947A7C-6170-426C-9DB2-B18E587F3A0B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{34BBE9E4-14AE-4482-B01A-3789FA735139}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{34FFDE5A-6DB6-4BAC-9BFE-58FBE5CC3A30}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{36B37C3B-A51D-4F4C-BA2F-7C282BCD794C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{37057B56-0326-4356-81B5-6354A92ECA89}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{375EA8ED-E276-4464-AF6A-73EB33C89A7F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{37C48794-BE58-4767-ACD3-2AD51D792D24}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{38F401CA-2D8E-4A4B-AF29-FE40B977E79C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3958016C-9959-4790-9530-4F275CBCF59F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{39D755B9-A7AB-401B-9485-6B531DB7D56D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{39DC9435-FA1C-4D26-820B-2D8AAD459744}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3A2AD2EE-6BC7-417F-8FCE-9C4C698490A5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3AAE103B-E533-47A5-9CAE-8EC59F421F7B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3C5B4F3E-2FC7-4C3A-9365-7025D611C2FD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3C90E526-97B9-4BAB-B905-CCFE31F7E835}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3D18F87A-EF2C-4AF4-9511-EB6BAB82BC03}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{40AE1418-65D1-44AF-962E-51C499DD6626}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{40B3EA69-4E63-4235-B351-131E752A3E80}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{41827C7D-814C-4A98-AAB9-EA5C9F49991E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{42F360D8-533C-4959-8EDD-F2E2CD215141}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{462D1FD5-EE6B-4932-A5B4-912A84768456}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{476FE816-8B05-4B4D-91F0-A97FEBDA66FA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{481A3063-416D-443A-80C9-21C15316ABBD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{48E1DFA9-F24B-4D45-B3CF-F0F83BA12133}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4ACE77BA-4C43-4479-9491-414DDF83E6B4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4B36DE47-9B8C-40EA-B01F-26073CB32237}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4B85DBA2-7EFF-45A9-A613-615238A4AABA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4DDF866F-C320-4F9D-A388-C32212B8B78C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4F6DCDF4-E04E-49A4-BE7E-CDAE48D22B46}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4FC59CE4-CDEE-48B7-8ACE-C49F45BB3459}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{51784EA5-9BF3-47DC-8F02-48D8536792AF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{519D39CF-35ED-49AF-BD57-B6685ABC1E3F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5454059C-D5BB-4FBB-813F-60233E22D66D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{54ACE04B-64F0-4A86-A88D-88D1560F2928}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{54EF4B5E-F0DE-4598-B7D1-FFC86DF6BD25}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{55943211-C444-4874-AD0E-0969F10FAD5E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5620C270-26CD-4123-B14C-3354B6927072}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{572FE449-91BD-4EE9-BE25-ABE12C94AE95}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{586AEA5D-600D-49AD-9097-4A1B7A9BD81B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5DFD4889-D399-4310-9717-F38205E42D67}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5E2C274B-CB7D-4218-8296-E3ECD5DF9B53}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5E8A1563-E77E-45DA-BECF-EF47E19B9870}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5E942BE3-D52A-4745-9895-5F74D300C29C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5FF9D3CA-65A9-4457-BD3A-46D94F6F43C6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{629BFC2A-9014-41DE-9060-4F5E53D54A11}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{62BA530C-371C-40BB-A2DD-68DD7299D777}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{635AA194-8F5A-4C0F-B46D-788EB4DD6EB9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{64643D51-81DD-420A-A3FD-FEA3AD0EEECB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{64929542-C2F0-4231-BF23-ECA27E4A718E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{65A58ED7-036E-4345-8EDC-2F6185C7E32D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{663BB552-30D5-417F-9B87-FD9D61E04A4F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{66C9A513-81B5-493B-A62F-15D3F5A1BB47}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{66FAA417-41E1-4E37-B88F-36DE7939EA87}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{68C79BFB-F0D1-4AD0-B4EC-D27C8F99EEDD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{68E6E20F-99A8-4F3C-BA35-83FF40DFFD56}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6C7A3368-F645-49E8-B01D-3CE5208EFAB1}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6CEB3959-0D75-4C3C-9C6C-714F619E3D39}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6E01A149-9969-45A8-8584-948CA64DDAF1}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6E8CCF63-DD69-42EA-867F-3A66634C1EC9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6EA9E1D5-7720-40A4-935A-2A3B7A5BA68E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6EB93AD3-5755-42A2-AA9A-F15CD0EEC28D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6F64EBCB-E6CE-46B6-9F6B-C3DF7CAB0525}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7200153E-5D29-4A83-ACE8-B95D082D7F27}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{72DC2CF7-E03F-4277-9759-5312F1C72317}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7584150B-94E3-44FC-9146-1733DA7116AA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{75949199-C60F-4222-9882-5C6598295160}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7625032E-645E-4B62-968D-D2EBFAD68DC3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{762EDC56-E009-45E3-B764-0959C6D8E8C1}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{76D42535-CC22-474F-BF4B-62CAB2B62113}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{78582F38-E707-466B-8711-374AC585C088}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{78B162A8-9F68-467F-B12B-DCFA436013DF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7A11AF7B-C38C-40C7-AB51-6730B725C812}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7A85613D-302D-46F0-8255-8D4A99A4C023}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7AEE7D02-BD16-40D4-B118-E85762F780CF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7C6A9BCA-7886-49C6-B49F-12259DA655A5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7C9C8B80-68B7-467D-AC62-34A15302737A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7FFB40F4-3BFE-4639-8041-A9FABF954402}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{80873995-23BF-48ED-A7C5-B36F6B9979F5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{80DF7F01-ABF7-4436-9551-080DDD3678A3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{80FDE60A-0A5C-4927-8552-D853A608AC32}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{81616E45-EED5-4240-9D63-B1509B35020D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{81B22E5D-45C4-41A9-AA19-05630A7EAE7C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8249C1CE-4621-4620-B396-7710D53934E9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{828E4AF8-3452-44C3-95F8-A11DCB6C8C64}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8424D74F-FC22-4517-A750-B153A018A46D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{844C0F3D-2496-4671-B851-88C3C0CD6D0A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{856D00AA-E513-42A9-9FA6-3F04FA52E39A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{86A3B800-6C54-4C2E-B8C9-47B81A71FF5A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{87E28C08-9CCA-4587-AFBE-1BAF5CEBD52D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{894EF752-684E-42B9-B667-6955AEE7B365}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{895D78CF-AB3F-4012-90DB-08522A6B9F83}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8DAB9721-34A6-4118-B039-8A278C574EBB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8E9076D8-59E1-4106-B42E-7858D5A2FBC0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8E9F1971-6447-45F8-B7C9-8B4AEFC4054C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8F0F448A-78B3-455F-944D-7AF34508EBF6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8FA68D62-C93B-496F-BC55-935F1CC40964}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{900A60AA-7CBC-43CE-9EE6-E7DF72A022D9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{90CD36AB-C926-4586-899B-ACD139D0CC46}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{91E327D3-684C-42D7-8614-8CA848B6E13C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{93AD4494-2B16-48D3-A747-BDEFB88D823F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{93D02201-9BCC-4097-9AC3-29784FFD7279}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{96E22F44-3D65-40AC-A465-A746AD9C91D8}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{98A43FB2-4E78-414A-B677-230E99869A25}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9C0BE8BF-B55D-499C-B34D-0C2D2B6EA087}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9DDF731A-8F46-43DA-BD48-72A88132A493}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9E08C9B5-030D-4F3C-ADA0-910152C9237C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9FBD5AB1-7BFA-4A5A-87FD-21765FC78AA0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A1EE5B23-8E4F-4F06-A34A-72A2530A6786}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A2507701-F1D8-4B58-9EA2-E782622B3494}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A360FE35-35B6-4A59-8034-30A5AC4EB490}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A3F4417B-B207-4D3B-A902-C12E729A32D8}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A575C389-1BB7-4D51-B60A-C169CB75D359}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A581D73E-2943-4A34-B705-8D8EEF48A02E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A5C54398-1707-4A05-85FC-F9479A909C49}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A5FC5609-0279-4ECD-B177-C9AEEC224F72}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A609285D-7877-4C90-95C1-4ECA7BD1BE88}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A7480169-D931-4BA8-8472-85BE9EBFBC8D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A75FB5D0-351B-4EE1-BBF0-1D8F10253576}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A82D176D-FDAA-4738-83F2-FDB64307EA02}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{AAC1491E-49B9-432B-8F18-1078F6A8890F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{AC51ABEF-7DB3-4431-ADE7-20AE7946E4C7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{AD0BC991-710F-417D-A790-225B0655F70E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B0C899CA-4F62-49A2-96BF-B9A7F7C66B75}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B2108311-8560-4933-99D0-3B3D3435C6CF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B4167693-C9D2-4B7A-AF27-E4898352A284}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B4657BE5-96D4-437E-94AE-566F8791CD40}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B4CDEAA8-9035-4BA8-9259-9E3DE826C260}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B75C5995-01ED-4828-9040-BFC3DE6ADD9C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B941AB50-AD84-4EA1-AD37-D4CCDE0B74F7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B9D4737C-617B-458C-95D9-C234ADBDD689}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B9F04E3E-3E61-44DA-9362-179F1BF253BD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BAC1093D-1CC7-4D48-AF8B-6FC06EAFAEE2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BAFE8C0F-1665-4CD4-A552-6794C2656693}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BB73700C-7AC1-43B7-AAD2-FA3603CDD454}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BBE6600E-C1A2-4443-B36A-BF1112826119}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BC0A0A9A-EB05-4042-ACBD-DCB247DDCF44}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BC4B44D6-F73D-4ACA-8B81-BCF6E8CD0278}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BDFA5853-A8DA-444B-AFC5-EA5A0986F30A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BEEC478A-965E-49FE-81D2-4AD4054819EB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BF175816-9BBE-4397-BA02-7D3DE812325F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BF18EA4E-C854-42D9-B429-21FE20E011A9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BFBF1F03-B8AC-48E7-96C1-E5771B7595C5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C12A2AA4-03D6-4E30-95A0-D938B000A978}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C183F1CD-9082-4796-BD0B-794AED8B8E2C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C294CCEA-E3B2-406B-9859-CD18E98B7C94}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C34CCA21-E62F-4580-9915-2B04E3D1D0C4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C4F6D7C4-EBD9-49DC-ABAC-420E09A5F0E3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C621A87B-8CF4-4608-801A-7523A10C6E97}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C77D62B3-D15C-4A05-926D-E160AB74A48A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C82CE1EB-759E-4F1C-B786-88AB49A54212}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C925DE79-F3B4-4B82-9733-5B74B5686B9B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C927F7AB-7D1C-4420-B6BE-A7FB0EE6E288}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CAA32F3B-D19A-4C16-BA02-52A4C2206856}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CB2FBA1C-E0AE-4894-9C60-AB72A63FD56F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CB9663F0-A0C3-4982-9066-7BD5AA57A151}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CCE34FAB-A182-4A97-BFF7-8B86A41EAB54}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CE359166-55BF-41FC-960B-00C924D7B404}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CE60CE9B-1566-4D9C-9FA3-CA8A3E6BC9F0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CF6DD706-AEB6-443D-96EB-85E2C0A0EA81}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CFED6BAF-1A65-45F5-A050-B346175DDBE7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D0187276-B4C1-4071-8C19-CAAE9F39A83B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D02995E0-30B3-47EC-857E-D2F206184E63}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D0F10CF0-FAE2-4D6A-8DAB-3E98623C2839}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D1224F44-7273-4F22-82FF-D58D8C3C6F55}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D2FEEDE5-D509-45F2-A636-D15A6C50B90B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D307052A-712F-43FB-A53A-C9D0F2BC3F85}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D89269F9-5F2A-4227-B24A-31368491A659}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D9344C36-A5AA-4E6D-A099-B51A34EF3270}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DB096321-603C-4C60-9CF6-269022D6BAC8}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DB6670B4-E223-420A-B07D-2086EFCC2A8F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DC5BB4DF-4429-4DCC-8BC5-76A4AC50EE51}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DC7EF927-0D3F-42B7-8592-FC18FC0959C2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DD652517-8BE4-4CF8-A124-904C194332F9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DDFC7F5A-7A67-48C9-9A18-2C5B6CA9BD78}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DFB4EA1E-2032-4974-8B6D-1E85459D0183}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E0121BEE-6860-4D9F-B18B-66F0C6BE66CA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E04FD043-5C8A-4B4A-8AE5-FA6DD53EA460}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E2700580-14E8-4CF8-A075-B29309EC9855}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E39CA3F8-5FFC-406C-8429-60AB41A851D6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E3D979E8-72DD-40EE-85A1-A3173E15BE22}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E4186744-2B37-4EEC-B638-3FA1083B144C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E467E48C-8911-4DE3-B556-2B43B84A0F70}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E501A0DD-E8B5-4658-9038-405283CD901B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E6C92975-F41B-4FD9-BFAD-2C8FC2D3B197}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E76F7F37-E804-426F-BD1A-EE8388D968F2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E7A05EB9-117E-4518-8343-2818552964E2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E90FFE8B-1C1E-4090-A7BA-552CE2A42266}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E9DB16FA-E7B1-43C4-B421-27F78E3AF0AE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{EB34502A-2321-4F14-AD3C-FF37E3911AF3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{ECA461E8-31BE-488E-A300-2C99537B2957}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{ED8D481F-6EE7-4EC2-81BF-F71191C21A88}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{EE21B631-2038-4E69-A3F8-7FC50EC39D7D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F0018271-A265-4C91-927F-81FFFAD799A9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F019832B-162C-4E02-884C-2BC4E78A91D4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F33DDD82-3723-4DBC-9228-621E14B0A121}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F47E11F7-5362-4B29-A488-3E0465B89658}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F75273EC-D64F-4FA2-814C-AC84A64509FB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F82779CD-9A30-4790-AA77-6D7B3B455405}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F8421081-0893-41F1-9582-A9193ED67F58}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F93E0E6D-5EA6-4C64-8596-0141A600FEEF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F970498B-904E-44AF-8F50-03D6CBCDB7DE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FA5DDAB6-2EAC-4638-8011-55340C280149}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FC17ED82-C20F-4948-A528-BFF658FBE6B7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FC44FEE0-E2C3-483E-A458-694FDD49A350}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FCBF50FB-A4DE-4DCC-8CBC-8F842528B34E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FCE57203-2542-4492-A957-BD34521A6253}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FE8B7A07-5CB2-4316-AD7F-77B20A053A3F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FF29EDC0-796C-47C1-B6DA-28450613EB66}
Successfully deleted: [Folder] "C:\Program Files (x86)\ask.com"
Successfully deleted: [Folder] "C:\windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 21.08.2014 at 19:39:33,17
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#4 Příspěvek od Stene »

# AdwCleaner v3.308 - Report created 21/08/2014 at 19:42:06
# Updated 20/08/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Ráďa - RADEK-HP
# Running from : C:\Users\Ráďa\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\wxDfast
Folder Deleted : C:\Users\RA429E~1\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Ráďa\AppData\Local\Babylon
Folder Deleted : C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\toolbar@ask.com
Folder Deleted : C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\info@wxdownloadmanager.com
File Deleted : C:\windows\System32\roboot64.exe
File Deleted : C:\Users\RA429E~1\AppData\Local\Temp\END
File Deleted : C:\Users\RA429E~1\AppData\Local\Temp\Uninstall.exe
File Deleted : C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage
File Deleted : C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : Scheduled Update for Ask Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [info@wxdownloadmanager.com]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ekdjfcdinekpfcedakhpngcnaamhiihn
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3A188115-B81B-48F2-A958-F974C8F3F309}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{43769158-3B03-4932-8D8A-8F0F344BF024}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{78CE34FD-F6D4-4866-B79C-A37268D06A04}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80904944-C726-4C7D-A452-3FFF2A882095}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D9B1B31-D034-4738-8F6E-40F0AFCC742C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2CF0D01-7657-48AA-98C9-AE5E64757FCC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{78CE34FD-F6D4-4866-B79C-A37268D06A04}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{80904944-C726-4C7D-A452-3FFF2A882095}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]

-\\ Mozilla Firefox v

[ File : C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js ]


-\\ Google Chrome v36.0.1985.143

[ File : C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.babylon.com/?q={searchTerms}&affID=111253&babsrc=SP_ss&mntrId=42ac8711000000000000f2df9a449e24

*************************

AdwCleaner[R0].txt - [7870 octets] - [21/08/2014 19:40:55]
AdwCleaner[S0].txt - [7752 octets] - [21/08/2014 19:42:06]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7812 octets] ##########

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#5 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#6 Příspěvek od Stene »

Zoek.exe v5.0.0.0 Updated 21-08-2014
Tool run by R Ôa on p  22.08.2014 at 12:59:22,75.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\RA429E~1\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.8.2014 13:01:18 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js:

Added to C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default

user.js not found
---- Lines suggestor removed from prefs.js ----
user_pref("extensions.MGSuggestor.aid", "10018");
user_pref("extensions.MGSuggestor.uid", "f486150b76432edf1cd6660773c41a40");
---- FireFox user.js and prefs.js backups ----

prefs_22.08.2014_1312_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\MG Suggestor deleted
C:\PROGRA~2\Wondershare deleted
C:\PROGRA~2\COMMON~1\Wondershare deleted
C:\install.exe deleted
C:\PROGRA~3\UpdaterLog.txt deleted
C:\PROGRA~3\bndilc7tfr.fvv deleted
C:\PROGRA~3\brbngbzj.odd deleted
C:\PROGRA~3\SPL5953.tmp deleted
C:\PROGRA~3\SPL59C2.tmp deleted
C:\PROGRA~3\SPL6315.tmp deleted
C:\PROGRA~3\SPL768B.tmp deleted
C:\PROGRA~3\SPLCC62.tmp deleted
C:\PROGRA~3\SPLD8E0.tmp deleted
C:\PROGRA~3\SPLE696.tmp deleted
C:\PROGRA~3\InstallMate deleted
C:\Users\RA429E~1\AppData\Local\Wondershare deleted
C:\Users\RA429E~1\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare deleted
C:\Users\RA429E~1\Searches deleted
C:\windows\SysNative\tasks\RunAsStdUser Task deleted
C:\windows\SysNative\config\systemprofile\Searches deleted
"C:\Users\RA429E~1\AppData\Local\PMB Filer?pa" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"="C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext" [09.10.2013 16:46]

==== Firefox Extensions ======================

ProfilePath: C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
- Yandex.Bar - %ProfilePath%\extensions\yasearch@yandex.ru
- MG Suggestor - %ProfilePath%\extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi

==== Firefox Plugins ======================


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
godimpbmfohihoaikgfknnnmlncabkkp - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx[29.06.2014 15:54]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[06.08.2014 15:10]
idhngdhcfkoamngbedgpaokgjbnpdiji - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx[14.08.2013 15:24]
jbgicmkghadchlbopdpmahffhbppddhp - C:\Program Files (x86)\MG Suggestor\MGSuggestor.crx[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
kegdldmohomdaelnepdpbkdhfemobdgl - No path found[]

RealDownloader - RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji
MG Suggestor - RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbgicmkghadchlbopdpmahffhbppddhp
gemiusAudience Internet survey plug-in - RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl

==== Chrome Fix ======================

C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.royal-search.com_0.localstorage deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.royal-search.com_0.localstorage-journal deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbgicmkghadchlbopdpmahffhbppddhp deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbgicmkghadchlbopdpmahffhbppddhp_0.localstorage deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbgicmkghadchlbopdpmahffhbppddhp_0.localstorage-journal deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
"Use Search Asst"="no"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{031230F8-EA50-42A9-983C-D22ABC2EED3B} VideoSlurp Url="http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{399a1442-7377-49e7-8d77-6dc9ed5968c1} Zbozi Url="http://www.zbozi.cz/?q={searchTerms}&so ... earch_6826"
{5cf5d387-d87c-4408-9a6b-301b0713d62a} Mapy Url="http://www.mapy.cz/?query={searchTerms} ... earch_6826"
{8172f457-818d-46db-941f-2bbe53e156af} Bing Url="http://www.bing.com/search?q={searchTer ... -SearchBox"
{eb97f7df-1773-4916-aae6-5af74da8c69d} Firmy Url="http://www.firmy.cz/phr/{searchTerms}"

==== Reset Google Chrome ======================

C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully
HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FF08CD3B-2FA5-7978-895B-BDB3DD2CEE29} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jbgicmkghadchlbopdpmahffhbppddhp deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wondershare Helper Compact.exe deleted successfully

==== Empty IE Cache ======================

C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\RA429E~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\RA429E~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\RA429E~1\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache is not empty, a reboot is needed

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=683 folders=89 102739967 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\RA429E~1\AppData\Local\Temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\windows\Temp successfully emptied
C:\Users\RA429E~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\RA429E~1\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\RKXXE4DS\fanda.nova.cz" not found
"C:\Users\RA429E~1\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\RKXXE4DS\gc001.geewa.com" not found

==== EOF on p  22.08.2014 at 13:24:26,16 ======================

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#7 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#8 Příspěvek od Stene »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-08-2014 01
Ran by Ráďa (administrator) on RADEK-HP on 24-08-2014 09:18:01
Running from C:\Users\Ráďa\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
( ) C:\Windows\System32\lxebcoms.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
( ) C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(QIP.ru) C:\Program Files (x86)\QipGuard\QipGuard.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [127616 2012-09-14] (Qualcomm Atheros Commnucations)
HKLM\...\Run: [BtTray] => C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [764544 2012-09-14] (Qualcomm Atheros)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPQuickWebProxy] => c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [76344 2011-02-11] (Hewlett-Packard Company)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-06] (AVAST Software)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-08-05] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe
Lsa: [Notification Packages] EpePcNp64 DPPassFilter scecli
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKCU - {399a1442-7377-49e7-8d77-6dc9ed5968c1} URL = http://www.zbozi.cz/?q={searchTerms}&so ... earch_6826
SearchScopes: HKCU - {5cf5d387-d87c-4408-9a6b-301b0713d62a} URL = http://www.mapy.cz/?query={searchTerms} ... earch_6826
SearchScopes: HKCU - {eb97f7df-1773-4916-aae6-5af74da8c69d} URL = http://www.firmy.cz/phr/{searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Internet Panel -> {CE7C3CF0-4B15-11D1-ABED-709549C10000} -> C:\Program Files\NetSoftware\IEHelper.dll (Gemius)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=10.21.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2011-05-10]
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-10-09]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-03-18]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

Chrome:
=======
CHR Extension: (YouTube) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (RealDownloader) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2012-12-26]
CHR Extension: (Google Wallet) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR Extension: (Gmail) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-06]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [216192 2012-09-14] (Qualcomm Atheros Commnucations)
S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-06] (AVAST Software)
R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () [File not signed]
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [481104 2011-02-12] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [464480 2011-02-04] (Hewlett-Packard Company)
S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent)
R3 HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [36864 2011-01-12] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
S2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company)
R2 HPFSService; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [320000 2011-02-07] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
S2 lxebCATSCustConnectService; C:\windows\system32\spool\DRIVERS\x64\3\\lxebserv.exe [45736 2010-04-14] (Lexmark International, Inc.)
R2 lxeb_device; C:\windows\system32\lxebcoms.exe [1052328 2010-04-14] ( )
R2 lxeb_device; C:\windows\SysWOW64\lxebcoms.exe [598696 2010-04-14] ( )
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1318912 2011-02-09] () [File not signed]
R2 mitsijm2013; C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe [339776 2012-01-30] ( )
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [75064 2012-05-14] ()
R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2013-06-01] (IDT, Inc.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-03-07] (Xobni Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-09-14] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-06] ()
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-06] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-06] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-06] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-06] ()
R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-09-14] (Qualcomm Atheros)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [63336 2011-02-07] (Hewlett-Packard Company)
R2 Dokan; C:\windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [168008 2011-02-09] (McAfee, Inc.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1826048 2010-12-21] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-05-01] (Duplex Secure Ltd.)
U3 admlfiqv; C:\Windows\System32\Drivers\admlfiqv.sys [0 ] (Advanced Micro Devices)
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-22 13:24 - 2014-08-22 13:43 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:24 - 2014-08-22 13:43 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:17 - 2014-08-22 12:59 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-08-22 13:01 - 2014-08-22 13:24 - 00013941 _____ () C:\zoek-results.log
2014-08-22 12:54 - 2014-08-22 13:13 - 00000000 ____D () C:\zoek_backup
2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
2014-08-21 19:54 - 2014-08-21 19:54 - 00003180 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRáďa
2014-08-21 19:53 - 2014-08-22 12:46 - 00000328 _____ () C:\windows\Tasks\HPCeeScheduleForRáďa.job
2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
2014-08-21 19:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\AdwCleaner
2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
2014-08-21 19:20 - 2014-08-21 19:21 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
2014-08-21 18:03 - 2014-08-24 09:19 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:03 - 2014-08-24 09:18 - 00000000 ____D () C:\FRST
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 17:59 - 2014-08-21 18:00 - 00000000 ____D () C:\ráďa
2014-08-14 03:04 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-08-14 03:04 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-08-14 03:04 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-08-14 03:04 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-08-14 03:03 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-08-14 03:03 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-08-13 15:57 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-08-13 15:57 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-08-13 15:56 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-13 15:56 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-08-13 15:56 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-08-13 15:56 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-08-13 15:56 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-08-13 15:56 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-08-13 15:56 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-08-13 15:56 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-08-13 15:56 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-08-13 15:56 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-08-13 15:56 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-08-13 15:56 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-08-13 15:56 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-08-13 15:56 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-08-13 15:56 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-08-13 15:56 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-08-13 15:56 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-08-13 15:56 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-08-13 15:56 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-08-13 15:56 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-08-13 15:56 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-08-13 15:56 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-08-13 15:56 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-08-13 15:56 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-08-13 15:56 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-08-13 15:56 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-08-13 15:56 - 2014-06-12 09:52 - 00986560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-08-13 15:56 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-08-13 15:56 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-08-13 15:55 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-08-13 15:55 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-08-13 15:55 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-08-13 15:55 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-08-13 15:55 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-08-13 15:55 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-08-13 15:55 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-08-13 15:55 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-08-13 15:55 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-08-13 15:55 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-08-13 15:55 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-08-13 15:55 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-08-13 15:55 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-08-13 15:55 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-08-13 15:55 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-08-13 15:55 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-08-13 15:55 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-08-13 15:55 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-08-13 15:54 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-13 15:54 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-06 15:12 - 2014-08-06 15:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-01 16:09 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-08-01 16:09 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-08-01 16:09 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-08-01 16:09 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-08-01 16:08 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-08-01 16:08 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-08-01 16:08 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-24 09:19 - 2014-08-21 18:03 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-24 09:18 - 2014-08-21 18:03 - 00000000 ____D () C:\FRST
2014-08-24 09:17 - 2011-08-13 13:47 - 00000944 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-24 09:16 - 2011-05-10 22:06 - 00000000 ____D () C:\ProgramData\HPQLOG
2014-08-24 09:14 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-08-24 09:14 - 2009-07-14 06:51 - 00111119 _____ () C:\windows\setupact.log
2014-08-24 09:14 - 2009-07-14 06:45 - 05168648 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-22 13:51 - 2011-07-19 15:55 - 01561049 _____ () C:\windows\WindowsUpdate.log
2014-08-22 13:50 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-22 13:50 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-22 13:43 - 2014-08-22 13:24 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:43 - 2014-08-22 13:24 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:24 - 2014-08-22 13:01 - 00013941 _____ () C:\zoek-results.log
2014-08-22 13:24 - 2014-03-18 16:49 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update
2014-08-22 13:24 - 2011-08-13 13:47 - 00000948 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-22 13:18 - 2011-07-19 16:25 - 05452658 _____ () C:\windows\PFRO.log
2014-08-22 13:14 - 2012-04-04 07:25 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-08-22 13:13 - 2014-08-22 12:54 - 00000000 ____D () C:\zoek_backup
2014-08-22 13:12 - 2011-08-10 19:03 - 00000000 ____D () C:\Users\Ráďa
2014-08-22 12:59 - 2014-08-22 13:17 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
2014-08-22 12:46 - 2014-08-21 19:53 - 00000328 _____ () C:\windows\Tasks\HPCeeScheduleForRáďa.job
2014-08-21 19:54 - 2014-08-21 19:54 - 00003180 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRáďa
2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
2014-08-21 19:42 - 2014-08-21 19:40 - 00000000 ____D () C:\AdwCleaner
2014-08-21 19:41 - 2011-09-27 11:03 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\PMB Files
2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
2014-08-21 19:21 - 2014-08-21 19:20 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
2014-08-21 19:13 - 2011-11-19 23:47 - 00000000 ____D () C:\ProgramData\NetSoftware
2014-08-21 18:07 - 2014-06-08 11:11 - 00003828 _____ () C:\windows\System32\Tasks\Opera scheduled Autoupdate 1402218407
2014-08-21 18:07 - 2011-08-10 19:51 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 18:00 - 2014-08-21 17:59 - 00000000 ____D () C:\ráďa
2014-08-21 17:57 - 2011-11-19 23:47 - 00000000 ____D () C:\Program Files\NetSoftware
2014-08-21 17:57 - 2011-10-09 21:39 - 00035108 _____ () C:\ProgramData\lxebscan.log
2014-08-19 17:38 - 2011-09-02 10:53 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\uTorrent
2014-08-19 17:33 - 2012-09-16 21:08 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\vlc
2014-08-19 02:27 - 2013-06-28 09:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-16 16:52 - 2014-04-29 10:23 - 00107028 _____ () C:\Users\Ráďa\Documents\Agamky.xlsx
2014-08-16 07:04 - 2011-08-10 19:18 - 00000000 ____D () C:\Users\Ráďa\Documents\Bluetooth Folder
2014-08-15 15:56 - 2011-11-01 23:24 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-15 15:56 - 2011-08-13 09:25 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-08-14 04:55 - 2011-08-11 02:56 - 00000000 ____D () C:\windows\rescache
2014-08-14 03:58 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-08-14 03:38 - 2012-03-13 20:34 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-14 03:27 - 2013-07-15 08:29 - 00000000 ____D () C:\windows\system32\MRT
2014-08-14 03:17 - 2011-08-15 14:55 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-14 03:02 - 2014-05-07 03:01 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-08-13 21:08 - 2011-08-13 19:28 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\CrashDumps
2014-08-10 15:25 - 2011-05-10 22:12 - 00669116 _____ () C:\windows\system32\perfh005.dat
2014-08-10 15:25 - 2011-05-10 22:12 - 00141744 _____ () C:\windows\system32\perfc005.dat
2014-08-10 15:25 - 2009-07-14 07:13 - 01584554 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-07 04:06 - 2014-08-13 15:54 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-07 04:01 - 2014-08-13 15:54 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-06 17:47 - 2011-12-06 17:53 - 00000000 ____D () C:\Users\Ráďa\Documents\Games
2014-08-06 15:12 - 2014-03-18 16:48 - 00427360 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2014-08-06 15:11 - 2014-08-06 15:12 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-06 15:11 - 2014-03-18 16:48 - 01041168 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00224896 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00093568 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00079184 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-08-06 15:11 - 2011-12-09 22:04 - 00307344 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-08-05 09:20 - 2013-06-04 08:25 - 00270496 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-08-04 17:06 - 2013-06-03 06:32 - 00025764 _____ () C:\ProgramData\lxeb.log
2014-08-02 23:40 - 2012-10-22 19:41 - 00003218 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRADEK-HP$
2014-08-02 23:40 - 2012-10-22 19:41 - 00000342 _____ () C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job
2014-08-02 13:35 - 2012-12-07 00:11 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\BSplayer
2014-08-02 10:33 - 2012-08-10 18:28 - 00000000 ____D () C:\Users\Ráďa\Documents\Recepty
2014-08-01 01:41 - 2014-08-13 15:56 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-01 01:16 - 2014-08-13 15:56 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 16:52 - 2014-08-13 15:55 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-07-25 16:02 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-07-25 16:01 - 2014-08-13 15:56 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-07-25 15:51 - 2014-08-13 15:56 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-07-25 15:30 - 2014-08-13 15:56 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-07-25 15:28 - 2014-08-13 15:56 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-07-25 15:28 - 2014-08-13 15:55 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-07-25 15:25 - 2014-08-13 15:56 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-07-25 15:25 - 2014-08-13 15:55 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-07-25 15:11 - 2014-08-13 15:55 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-07-25 15:10 - 2014-08-13 15:56 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-07-25 15:04 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-07-25 15:03 - 2014-08-13 15:55 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-07-25 15:00 - 2014-08-13 15:56 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-07-25 15:00 - 2014-08-13 15:55 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-07-25 14:59 - 2014-08-13 15:55 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-07-25 14:47 - 2014-08-13 15:55 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-07-25 14:40 - 2014-08-13 15:56 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-07-25 14:33 - 2014-08-13 15:56 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-07-25 14:30 - 2014-08-13 15:55 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-07-25 14:28 - 2014-08-13 15:56 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-07-25 14:28 - 2014-08-13 15:55 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-07-25 14:21 - 2014-08-13 15:56 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-07-25 14:19 - 2014-08-13 15:55 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-07-25 14:18 - 2014-08-13 15:56 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-07-25 14:17 - 2014-08-13 15:56 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-07-25 14:17 - 2014-08-13 15:55 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-07-25 14:12 - 2014-08-13 15:56 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-07-25 14:10 - 2014-08-13 15:56 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-07-25 14:10 - 2014-08-13 15:55 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-07-25 14:08 - 2014-08-13 15:56 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-07-25 14:06 - 2014-08-13 15:56 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-07-25 13:52 - 2014-08-13 15:56 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-07-25 13:47 - 2014-08-13 15:56 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-07-25 13:43 - 2014-08-13 15:56 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-25 13:42 - 2014-08-13 15:56 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-07-25 13:39 - 2014-08-13 15:56 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-07-25 13:39 - 2014-08-13 15:55 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-07-25 13:36 - 2014-08-13 15:55 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-07-25 13:34 - 2014-08-13 15:56 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-07-25 13:29 - 2014-08-13 15:56 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-07-25 13:23 - 2014-08-13 15:55 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-07-25 13:13 - 2014-08-13 15:56 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-07-25 13:07 - 2014-08-13 15:56 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-07-25 13:07 - 2014-08-13 15:56 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-07-25 13:03 - 2014-08-13 15:56 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-07-25 12:52 - 2014-08-13 15:55 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-07-25 12:26 - 2014-08-13 15:56 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-07-25 12:17 - 2014-08-13 15:55 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-07-25 12:09 - 2014-08-13 15:55 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-07-25 12:05 - 2014-08-13 15:55 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-07-25 12:00 - 2014-08-13 15:56 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-07-25 03:05 - 2012-05-17 08:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================


Available physical RAM: 1979.38 MB
Total physical RAM: 4030.36 MB
Percentage of memory in use: 50%

==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáïa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\R��a\Desktop" je 7 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager
"C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync
"C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EzPrint
"C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\File Sanitizer
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPConnectionManager
c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe /hidden [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxebmon.exe
"C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MfeEpePcMonitor
"C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware
"C:\Program Files\NetSoftware\Starter.exe" /path="C:\Program Files\NetSoftware" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QLBController
C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh
%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp
C:\Program Files\IDT\WDM\sttray64.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe
"C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe" [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
DisableUnicastResponsesToMulticastBroadcast REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#9 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM-x32\...\Run: [] => [X]
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
    URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
    SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
    SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
    Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
    Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()
    
    FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
    FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]
    
    CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
    
    R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
    C:\Program Files (x86)\QipGuard
    
    2014-08-22 13:17 - 2014-08-22 12:59 - 00024064 _____ () C:\windows\zoek-delete.exe
    2014-08-22 13:01 - 2014-08-22 13:24 - 00013941 _____ () C:\zoek-results.log
    2014-08-22 12:54 - 2014-08-22 13:13 - 00000000 ____D () C:\zoek_backup
    2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
    2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
    2014-08-21 19:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
    2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\AdwCleaner
    2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
    2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
    2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
    2014-08-21 19:20 - 2014-08-21 19:21 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
    2014-08-21 18:03 - 2014-08-24 09:19 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
    2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
    
    Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    Task: C:\windows\Tasks\HPCeeScheduleForRáïa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16" /f
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#10 Příspěvek od Stene »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-08-2014 01
Ran by Ráďa at 2014-08-24 15:43:09 Run:1
Running from C:\Users\Ráďa\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe

HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()

FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]

CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]

R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
C:\Program Files (x86)\QipGuard

2014-08-22 13:17 - 2014-08-22 12:59 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-08-22 13:01 - 2014-08-22 13:24 - 00013941 _____ () C:\zoek-results.log
2014-08-22 12:54 - 2014-08-22 13:13 - 00000000 ____D () C:\zoek_backup
2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
2014-08-21 19:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\AdwCleaner
2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
2014-08-21 19:20 - 2014-08-21 19:21 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
2014-08-21 18:03 - 2014-08-24 09:19 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáia.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16" /f

Hosts:
Reboot:
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value deleted successfully.
"HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6b8b0af6-5440-11bd-a0d6-d0df9a450db4}" => Key deleted successfully.
"HKCR\CLSID\{6b8b0af6-5440-11bd-a0d6-d0df9a450db4}" => Key not found.
"HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{aa266c74-4cbd-11e1-ae89-2c41380c3433}" => Key deleted successfully.
"HKCR\CLSID\{aa266c74-4cbd-11e1-ae89-2c41380c3433}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key deleted successfully.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key deleted successfully.
"HKCR\CLSID\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{031230F8-EA50-42A9-983C-D22ABC2EED3B} => value deleted successfully.
"HKCR\Wow6432Node\CLSID\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key not found.
C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru => Moved successfully.
C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\godimpbmfohihoaikgfknnnmlncabkkp" => Key deleted successfully.
C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx => Moved successfully.
QipGuard => Service stopped successfully.
QipGuard => Service deleted successfully.
C:\Program Files (x86)\QipGuard => Moved successfully.
C:\windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Ráďa\Desktop\zoek.exe => Moved successfully.
C:\Users\Ráďa\Desktop\AdwCleaner (1).exe => Moved successfully.
C:\windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Ráďa\Desktop\JRT.txt => Moved successfully.
C:\windows\ERUNT => Moved successfully.
C:\Users\Ráďa\Desktop\AdwCleaner.exe => Moved successfully.
C:\Users\Ráďa\Desktop\JRT.exe => Moved successfully.
"C:\Users\Ráďa\Desktop\FRST.txt" => File/Directory not found.
C:\Users\Ráďa\Desktop\FRSTLauncher.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForRáia.job not found.
C:\windows\Tasks\HPCeeScheduleForRáďa.job => Moved successfully.

========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot.

==== End of Fixlog ====

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#11 Příspěvek od vyosek »

Jak se chova ntb??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#12 Příspěvek od Stene »

Načítání plochy po startu je pořád pomalejší, ale s tím už asi nehneme..

Jinak to vypadá dobře :-)

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#13 Příspěvek od Stene »

Ještě tedy poprosím o kontrolu stavu disku..


----------------------------------------------------------------------------
CrystalDiskInfo 6.1.14 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium SP1 [6.1 Build 7601] (x64)
Date : 2014/08/24 15:57:35

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- Hitachi HTS547564A9E384
- hp DVDRAM GT31L
+ A4JG07BR IDE Controller [SCSI]
- HYVG FSD6J45EV SCSI CdRom Device

-- Disk List ---------------------------------------------------------------
(1) Hitachi HTS547564A9E384 : 640,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) Hitachi HTS547564A9E384
----------------------------------------------------------------------------
Model : Hitachi HTS547564A9E384
Firmware : JEDOA50A
Serial Number : J21A0053GV5X5N
Disk Size : 640,1 GB (8,4/137,4/640,1/640,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1250263728
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : ---- | SATA/300
Power On Hours : 10373 hod.
Power On Count : 3033 krát
Temperature : 36 C (96 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 4080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 176 100 _33 001100000001 Čas na roztočení ploten
04 _99 _99 __0 000000000BEF Počet spuštění/zastavení
05 100 100 __5 000000020018 Počet přemapovaných sektorů
07 100 _98 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _77 _77 __0 000000002885 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 __0 000000000BD9 Počet cyklů zapnutí zařízení
B7 100 100 __0 000000000000 Specifický pro výrobce
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 100 __0 003900360000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000170000 Časový limit příkazu
BE _64 _57 _45 000014240024 Teplota toku vzduchu
BF _80 _80 __0 000000001460 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 0000003D003D Počet vypnutí disku
C1 100 100 __0 000000001C69 Počet cyklů načítání/vymazání
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 100 100 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 4A32 3141 3030 3533 4756 3558 354E
020: 0003 4000 0004 4A45 444F 4135 3041 4869 7461 6368
030: 6920 4854 5335 3437 3536 3441 3945 3338 3420 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0D06 0000 004C 004C
080: 01FC 0028 706B 7C09 6123 7069 BC09 6123 203F 004B
090: 004C 4080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 82B0 4A85 0000 0000 0000 0000 6003 826C 5000 CCA6
110: 43CB E7D4 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 000B
130: 0018 0000 2182 1CF1 3A10 0000 4000 0400 0108 0000
140: 0000 0A03 0A04 0A03 0C03 0000 0000 0000 0000 0000
150: 0000 0000 4448 4435 0000 2904 0000 5DAD 2518 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 54A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 64 64 00 00 00 00 00 00 00 02 25
010: 00 64 64 00 00 00 00 00 00 00 03 23 00 B0 64 01
020: 00 00 00 11 00 00 04 32 00 63 63 EF 0B 00 00 00
030: 00 00 05 33 00 64 64 18 00 02 00 00 00 00 07 2F
040: 00 64 62 00 00 00 00 00 00 00 08 25 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 4D 4D 85 28 00 00 00
060: 00 00 0A 33 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 63 63 D9 0B 00 00 00 00 00 B7 32 00 64 64 00
080: 00 00 00 00 00 00 B8 33 00 64 64 00 00 00 00 00
090: 00 00 BB 32 00 64 64 00 00 36 00 39 00 00 BC 32
0A0: 00 64 64 00 00 17 00 00 00 00 BE 22 00 40 39 24
0B0: 00 24 14 00 00 00 BF 32 00 50 50 60 14 00 00 00
0C0: 00 00 C0 32 00 64 64 3D 00 3D 00 00 00 00 C1 32
0D0: 00 64 64 69 1C 00 00 00 00 00 C4 32 00 64 64 00
0E0: 00 00 00 00 00 00 C5 32 00 64 64 00 00 00 00 00
0F0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 36
100: 00 64 64 00 00 00 00 00 00 00 DF 2A 00 64 64 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 2D 00 01 51
170: 03 00 01 00 02 98 00 00 00 00 00 00 00 00 00 00
180: 00 00 BA 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 22

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 B7 00 00 00 00 00
080: 00 00 00 00 00 00 B8 61 00 00 00 00 00 00 00 00
090: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BC 00
0A0: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
0B0: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
0C0: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C1 00
0D0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0E0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0F0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
100: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 19

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#14 Příspěvek od vyosek »

Ten na tom neni nejlepe :?:
05 100 100 __5 000000020018 Počet přemapovaných sektorů
BB 100 100 __0 003900360000 Ohlášeno neopravitelných chyb
BF _80 _80 __0 000000001460 Počet udalostí zaznamenaných otřesovým senzorem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 Pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#15 Příspěvek od Stene »

Tušil jsem to..

můžeme ještě dočistit?

Zamčeno