Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím Vyoska o kontrolu zaneřáděného počítače

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Prosím Vyoska o kontrolu zaneřáděného počítače

#1 Příspěvek od Stene »

Ahoj. Dostal se mi do ruky noťas a potřeboval bych ho dát do použitelného stavu.. Přikládám FRST log

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-08-2014 01
Ran by Ráďa (administrator) on RADEK-HP on 21-08-2014 18:03:59
Running from C:\Users\Ráďa\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
() C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
( ) C:\Windows\System32\lxebcoms.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
( ) C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(QIP.ru) C:\Program Files (x86)\QipGuard\QipGuard.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
() C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe
() C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPConnectionManager.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Gemius) C:\Program Files\NetSoftware\NetSoftware.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Opera Software) C:\Program Files (x86)\Opera\launcher.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSDKHelperx64.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
() C:\Program Files (x86)\Opera\23.0.1522.75\opera_autoupdate.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
(forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2919992 2011-01-27] (Hewlett-Packard Company)
HKLM\...\Run: [MfeEpePcMonitor] => C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [200704 2011-02-09] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2012-02-02] (Adobe Systems Incorporated)
HKLM\...\Run: [lxebmon.exe] => C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe [770728 2011-01-23] ()
HKLM\...\Run: [EzPrint] => C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe [148280 2011-01-23] ()
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-06-01] (IDT, Inc.)
HKLM\...\Run: [BtTray] => C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [764544 2012-09-14] (Qualcomm Atheros)
HKLM\...\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [127616 2012-09-14] (Qualcomm Atheros Commnucations)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-12-20] (Synaptics Incorporated)
HKLM-x32\...\Run: [File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [12274688 2011-02-07] (Hewlett-Packard)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-26] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [DTRun] => c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [517456 2010-11-24] (ArcSoft Inc.)
HKLM-x32\...\Run: [HPConnectionManager] => c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [94264 2011-04-05] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPQuickWebProxy] => c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [76344 2011-02-11] (Hewlett-Packard Company)
HKLM-x32\...\Run: [NetSoftware] => C:\Program Files\NetSoftware\Starter.exe [218112 2014-06-12] (Gemius)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [402432 2010-07-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [ApnUpdater] => C:\Program Files (x86)\Ask.com\Updater\Updater.exe [395144 2011-05-17] (Ask)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1679360 2012-02-28] (Wondershare)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [333728 2012-06-20] (Hewlett-Packard Company)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [295512 2013-10-09] (RealNetworks, Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-10-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [935288 2009-09-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-06] (AVAST Software)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-08-05] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3077528 2011-09-27] ()
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [OfficeSyncProcess] => C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation)
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27648 2014-06-16] ()
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [833024 2014-06-16] (ZONER software)
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe
Lsa: [Notification Packages] EpePcNp64 DPPassFilter scecli
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=111253 ... df9a449e24
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTer ... df9a449e24
SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTer ... df9a449e24
SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - {399a1442-7377-49e7-8d77-6dc9ed5968c1} URL = http://www.zbozi.cz/?q={searchTerms}&so ... earch_6826
SearchScopes: HKCU - {5cf5d387-d87c-4408-9a6b-301b0713d62a} URL = http://www.mapy.cz/?query={searchTerms} ... earch_6826
SearchScopes: HKCU - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL = http://search.qip.ru/search?query={searchTerms}&from=IE
SearchScopes: HKCU - {eb97f7df-1773-4916-aae6-5af74da8c69d} URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKCU - {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://search.seznam.cz/?q={searchTerms ... earch_6826
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: MG Suggestor -> {429D37EE-1709-412e-A210-A81A65D56C88} -> C:\Program Files (x86)\MG Suggestor\MGSuggestor.dll (MGSHAREWARE)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: QIPBHO Class -> {95289393-33EA-4F8D-B952-483415B9C955} -> C:\Users\Ráďa\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Internet Panel -> {CE7C3CF0-4B15-11D1-ABED-709549C10000} -> C:\Program Files\NetSoftware\IEHelper.dll (Gemius)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: MyPlayCity Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()
Toolbar: HKLM-x32 - MyPlayCity Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=10.21.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Extension: wxDfast - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\info@wxdownloadmanager.com [2012-03-19]
FF Extension: MyPlayCity Toolbar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\toolbar@ask.com [2012-05-21]
FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2011-05-10]
FF HKLM-x32\...\Firefox\Extensions: [info@wxdownloadmanager.com] - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\info@wxdownloadmanager.com
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-10-09]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-03-18]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

Chrome:
=======
CHR Extension: (YouTube) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (RealDownloader) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2012-12-26]
CHR Extension: (MG Suggestor) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbgicmkghadchlbopdpmahffhbppddhp [2012-09-28]
CHR Extension: (gemiusAudience Internet survey plug-in) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl [2014-05-01]
CHR Extension: (Google Wallet) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR Extension: (Gmail) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM-x32\...\Chrome\Extension: [ekdjfcdinekpfcedakhpngcnaamhiihn] - C:\ProgramData\wxDfast\ekdjfcdinekpfcedakhpngcnaamhiihn.crx [2011-12-21]
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-06]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]
CHR HKLM-x32\...\Chrome\Extension: [jbgicmkghadchlbopdpmahffhbppddhp] - C:\Program Files (x86)\MG Suggestor\MGSuggestor.crx [2012-06-15]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [216192 2012-09-14] (Qualcomm Atheros Commnucations)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-06] (AVAST Software)
R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () [File not signed]
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [481104 2011-02-12] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [464480 2011-02-04] (Hewlett-Packard Company)
S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent)
R3 HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [36864 2011-01-12] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company)
R2 HPFSService; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [320000 2011-02-07] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
S2 lxebCATSCustConnectService; C:\windows\system32\spool\DRIVERS\x64\3\\lxebserv.exe [45736 2010-04-14] (Lexmark International, Inc.)
R2 lxeb_device; C:\windows\system32\lxebcoms.exe [1052328 2010-04-14] ( )
R2 lxeb_device; C:\windows\SysWOW64\lxebcoms.exe [598696 2010-04-14] ( )
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1318912 2011-02-09] () [File not signed]
R2 mitsijm2013; C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe [339776 2012-01-30] ( )
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [75064 2012-05-14] ()
R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2013-06-01] (IDT, Inc.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-03-07] (Xobni Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-09-14] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-06] ()
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-06] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-06] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-06] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-06] ()
R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-09-14] (Qualcomm Atheros)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [63336 2011-02-07] (Hewlett-Packard Company)
R2 Dokan; C:\windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [168008 2011-02-09] (McAfee, Inc.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1826048 2010-12-21] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-05-01] (Duplex Secure Ltd.)
U3 albf152a; C:\Windows\System32\Drivers\albf152a.sys [0 ] (Intel Corporation)
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-21 18:03 - 2014-08-21 18:05 - 00035629 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:03 - 2014-08-21 18:04 - 00000000 ____D () C:\FRST
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 17:59 - 2014-08-21 18:00 - 00000000 ____D () C:\ráďa
2014-08-16 10:25 - 2014-08-21 17:58 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-14 03:04 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-08-14 03:04 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-08-14 03:04 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-08-14 03:04 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-08-14 03:03 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-08-14 03:03 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-08-13 15:57 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-08-13 15:57 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-08-13 15:56 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-13 15:56 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-08-13 15:56 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-08-13 15:56 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-08-13 15:56 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-08-13 15:56 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-08-13 15:56 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-08-13 15:56 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-08-13 15:56 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-08-13 15:56 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-08-13 15:56 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-08-13 15:56 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-08-13 15:56 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-08-13 15:56 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-08-13 15:56 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-08-13 15:56 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-08-13 15:56 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-08-13 15:56 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-08-13 15:56 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-08-13 15:56 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-08-13 15:56 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-08-13 15:56 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-08-13 15:56 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-08-13 15:56 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-08-13 15:56 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-08-13 15:56 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-08-13 15:56 - 2014-06-12 09:52 - 00986560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-08-13 15:56 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-08-13 15:56 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-08-13 15:55 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-08-13 15:55 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-08-13 15:55 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-08-13 15:55 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-08-13 15:55 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-08-13 15:55 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-08-13 15:55 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-08-13 15:55 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-08-13 15:55 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-08-13 15:55 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-08-13 15:55 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-08-13 15:55 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-08-13 15:55 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-08-13 15:55 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-08-13 15:55 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-08-13 15:55 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-08-13 15:55 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-08-13 15:55 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-08-13 15:54 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-13 15:54 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-13 15:33 - 2014-08-21 17:58 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-06 15:12 - 2014-08-06 15:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-01 16:09 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-08-01 16:09 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-08-01 16:09 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-08-01 16:09 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-08-01 16:08 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-08-01 16:08 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-08-01 16:08 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-21 18:05 - 2014-08-21 18:03 - 00035629 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:05 - 2011-09-27 11:03 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\PMB Files
2014-08-21 18:05 - 2011-07-19 15:55 - 01530301 _____ () C:\windows\WindowsUpdate.log
2014-08-21 18:04 - 2014-08-21 18:03 - 00000000 ____D () C:\FRST
2014-08-21 18:03 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-21 18:03 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 18:01 - 2011-11-19 23:47 - 00000000 ____D () C:\ProgramData\NetSoftware
2014-08-21 18:00 - 2014-08-21 17:59 - 00000000 ____D () C:\ráďa
2014-08-21 17:58 - 2014-08-16 10:25 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-21 17:58 - 2014-08-13 15:33 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-21 17:57 - 2011-11-19 23:47 - 00000000 ____D () C:\Program Files\NetSoftware
2014-08-21 17:57 - 2011-10-09 21:39 - 00035108 _____ () C:\ProgramData\lxebscan.log
2014-08-21 17:57 - 2011-08-13 13:47 - 00000944 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-21 17:57 - 2009-07-14 06:45 - 05168648 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-21 17:56 - 2011-05-10 22:06 - 00000000 ____D () C:\ProgramData\HPQLOG
2014-08-21 17:53 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-08-21 17:53 - 2009-07-14 06:51 - 00110839 _____ () C:\windows\setupact.log
2014-08-19 17:38 - 2011-09-02 10:53 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\uTorrent
2014-08-19 17:33 - 2012-09-16 21:08 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\vlc
2014-08-19 17:24 - 2011-08-13 13:47 - 00000948 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-19 17:14 - 2012-04-04 07:25 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-08-19 02:27 - 2013-06-28 09:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-18 15:56 - 2014-03-18 16:49 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update
2014-08-16 16:52 - 2014-04-29 10:23 - 00107028 _____ () C:\Users\Ráďa\Documents\Agamky.xlsx
2014-08-16 07:04 - 2011-08-10 19:18 - 00000000 ____D () C:\Users\Ráďa\Documents\Bluetooth Folder
2014-08-15 15:56 - 2011-11-01 23:24 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-15 15:56 - 2011-08-13 09:25 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-08-14 04:55 - 2011-08-11 02:56 - 00000000 ____D () C:\windows\rescache
2014-08-14 03:58 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-08-14 03:38 - 2012-03-13 20:34 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-14 03:27 - 2013-07-15 08:29 - 00000000 ____D () C:\windows\system32\MRT
2014-08-14 03:17 - 2011-08-15 14:55 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-14 03:02 - 2014-05-07 03:01 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-08-13 21:08 - 2011-08-13 19:28 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\CrashDumps
2014-08-13 15:27 - 2011-07-19 16:25 - 05451774 _____ () C:\windows\PFRO.log
2014-08-12 17:49 - 2014-06-08 11:11 - 00003828 _____ () C:\windows\System32\Tasks\Opera scheduled Autoupdate 1402218407
2014-08-12 17:49 - 2011-08-10 19:51 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-08-10 15:25 - 2011-05-10 22:12 - 00669116 _____ () C:\windows\system32\perfh005.dat
2014-08-10 15:25 - 2011-05-10 22:12 - 00141744 _____ () C:\windows\system32\perfc005.dat
2014-08-10 15:25 - 2009-07-14 07:13 - 01584554 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-07 04:06 - 2014-08-13 15:54 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-07 04:01 - 2014-08-13 15:54 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-06 17:47 - 2011-12-06 17:53 - 00000000 ____D () C:\Users\Ráďa\Documents\Games
2014-08-06 15:12 - 2014-03-18 16:48 - 00427360 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2014-08-06 15:11 - 2014-08-06 15:12 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-06 15:11 - 2014-03-18 16:48 - 01041168 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00224896 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00093568 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00079184 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-08-06 15:11 - 2011-12-09 22:04 - 00307344 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-08-05 09:20 - 2013-06-04 08:25 - 00270496 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-08-04 17:06 - 2013-06-03 06:32 - 00025764 _____ () C:\ProgramData\lxeb.log
2014-08-02 23:40 - 2012-10-22 19:41 - 00003218 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRADEK-HP$
2014-08-02 23:40 - 2012-10-22 19:41 - 00000342 _____ () C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job
2014-08-02 13:35 - 2012-12-07 00:11 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\BSplayer
2014-08-02 10:33 - 2012-08-10 18:28 - 00000000 ____D () C:\Users\Ráďa\Documents\Recepty
2014-08-01 01:41 - 2014-08-13 15:56 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-01 01:16 - 2014-08-13 15:56 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 16:52 - 2014-08-13 15:55 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-07-25 16:02 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-07-25 16:01 - 2014-08-13 15:56 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-07-25 15:51 - 2014-08-13 15:56 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-07-25 15:30 - 2014-08-13 15:56 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-07-25 15:28 - 2014-08-13 15:56 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-07-25 15:28 - 2014-08-13 15:55 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-07-25 15:25 - 2014-08-13 15:56 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-07-25 15:25 - 2014-08-13 15:55 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-07-25 15:11 - 2014-08-13 15:55 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-07-25 15:10 - 2014-08-13 15:56 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-07-25 15:04 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-07-25 15:03 - 2014-08-13 15:55 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-07-25 15:00 - 2014-08-13 15:56 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-07-25 15:00 - 2014-08-13 15:55 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-07-25 14:59 - 2014-08-13 15:55 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-07-25 14:47 - 2014-08-13 15:55 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-07-25 14:40 - 2014-08-13 15:56 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-07-25 14:33 - 2014-08-13 15:56 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-07-25 14:30 - 2014-08-13 15:55 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-07-25 14:28 - 2014-08-13 15:56 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-07-25 14:28 - 2014-08-13 15:55 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-07-25 14:21 - 2014-08-13 15:56 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-07-25 14:19 - 2014-08-13 15:55 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-07-25 14:18 - 2014-08-13 15:56 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-07-25 14:17 - 2014-08-13 15:56 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-07-25 14:17 - 2014-08-13 15:55 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-07-25 14:12 - 2014-08-13 15:56 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-07-25 14:10 - 2014-08-13 15:56 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-07-25 14:10 - 2014-08-13 15:55 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-07-25 14:08 - 2014-08-13 15:56 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-07-25 14:06 - 2014-08-13 15:56 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-07-25 13:52 - 2014-08-13 15:56 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-07-25 13:47 - 2014-08-13 15:56 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-07-25 13:43 - 2014-08-13 15:56 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-25 13:42 - 2014-08-13 15:56 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-07-25 13:39 - 2014-08-13 15:56 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-07-25 13:39 - 2014-08-13 15:55 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-07-25 13:36 - 2014-08-13 15:55 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-07-25 13:34 - 2014-08-13 15:56 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-07-25 13:29 - 2014-08-13 15:56 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-07-25 13:23 - 2014-08-13 15:55 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-07-25 13:13 - 2014-08-13 15:56 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-07-25 13:07 - 2014-08-13 15:56 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-07-25 13:07 - 2014-08-13 15:56 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-07-25 13:03 - 2014-08-13 15:56 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-07-25 12:52 - 2014-08-13 15:55 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-07-25 12:26 - 2014-08-13 15:56 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-07-25 12:17 - 2014-08-13 15:55 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-07-25 12:09 - 2014-08-13 15:55 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-07-25 12:05 - 2014-08-13 15:55 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-07-25 12:00 - 2014-08-13 15:56 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-07-25 03:05 - 2012-05-17 08:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

Files to move or delete:
====================
C:\ProgramData\bndilc7tfr.fvv
C:\ProgramData\brbngbzj.odd


Some content of TEMP:
====================
C:\Users\Ráďa\AppData\Local\Temp\AcDeltree.exe
C:\Users\Ráďa\AppData\Local\Temp\AtpTimerInfo.dll
C:\Users\Ráďa\AppData\Local\Temp\CmdLineExt03.dll
C:\Users\Ráďa\AppData\Local\Temp\contentDATs.exe
C:\Users\Ráďa\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\Ráďa\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Ráďa\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Ráďa\AppData\Local\Temp\DTLite4454-0315.exe
C:\Users\Ráďa\AppData\Local\Temp\DTLite4461-0328.exe
C:\Users\Ráďa\AppData\Local\Temp\DTLite4471-0333.exe
C:\Users\Ráďa\AppData\Local\Temp\DTLite4491-0356.exe
C:\Users\Ráďa\AppData\Local\Temp\Extract.exe
C:\Users\Ráďa\AppData\Local\Temp\free-pdf-to-word_full893.exe
C:\Users\Ráďa\AppData\Local\Temp\gert0.exe
C:\Users\Ráďa\AppData\Local\Temp\HPHelpUpdater.exe
C:\Users\Ráďa\AppData\Local\Temp\htmlayout.dll
C:\Users\Ráďa\AppData\Local\Temp\kingdoms-setup-update-116.exe
C:\Users\Ráďa\AppData\Local\Temp\lowproc.exe
C:\Users\Ráďa\AppData\Local\Temp\pdfiutil.exe
C:\Users\Ráďa\AppData\Local\Temp\ptu95F_tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\ptuCA3D_tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\ResetDevice.exe
C:\Users\Ráďa\AppData\Local\Temp\Resource.exe
C:\Users\Ráďa\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Ráďa\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Ráďa\AppData\Local\Temp\SIntf16.dll
C:\Users\Ráďa\AppData\Local\Temp\SIntf32.dll
C:\Users\Ráďa\AppData\Local\Temp\SIntfNT.dll
C:\Users\Ráďa\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Ráďa\AppData\Local\Temp\SP53546.exe
C:\Users\Ráďa\AppData\Local\Temp\sp54373.exe
C:\Users\Ráďa\AppData\Local\Temp\sp54620.exe
C:\Users\Ráďa\AppData\Local\Temp\SP56488.exe
C:\Users\Ráďa\AppData\Local\Temp\SP56729.exe
C:\Users\Ráďa\AppData\Local\Temp\SP57879.exe
C:\Users\Ráďa\AppData\Local\Temp\sp58915.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59118.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59151.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59196.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59202.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59291.exe
C:\Users\Ráďa\AppData\Local\Temp\SP59529.exe
C:\Users\Ráďa\AppData\Local\Temp\SP60095.exe
C:\Users\Ráďa\AppData\Local\Temp\SP60686.exe
C:\Users\Ráďa\AppData\Local\Temp\SP60769.exe
C:\Users\Ráďa\AppData\Local\Temp\SP61104.exe
C:\Users\Ráďa\AppData\Local\Temp\SP61411.exe
C:\Users\Ráďa\AppData\Local\Temp\SP63779.exe
C:\Users\Ráďa\AppData\Local\Temp\sp64126.exe
C:\Users\Ráďa\AppData\Local\Temp\sszvmf97.dll
C:\Users\Ráďa\AppData\Local\Temp\stubhelper.dll
C:\Users\Ráďa\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Ráďa\AppData\Local\Temp\uninstall.exe
C:\Users\Ráďa\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Ráďa\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\Ráďa\AppData\Local\Temp\utt1DA5.tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\uttA4F3.tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\uttB1D6.tmp.exe
C:\Users\Ráďa\AppData\Local\Temp\v-bm0uqa.dll
C:\Users\Ráďa\AppData\Local\Temp\yvwl3flp.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáïa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\R��a\Desktop" je 2 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe
"C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
DisableUnicastResponsesToMulticastBroadcast REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#2 Příspěvek od vyosek »

Ahoj :)

Zacnem klasicky JunkwareRemovalTool a AdwCleaner - oba logy sem dej
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#3 Příspěvek od Stene »

Děkuju za rychlou reakci : )

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by R Ôa on źt 21.08.2014 at 19:26:35,68
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Bar
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\genericasktoolbar.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\smbarbroker.exe
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bhoclass.bho.bhoclass.bho
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\bhoclass.bho.bhoclass.bho.1.0
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\features\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\products\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\smbarbroker.smbardealer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\smbarbroker.smbardealer.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\toolband.toolbandobj
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\toolband.toolbandobj.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86d4b82a-abed-442a-be86-96357b70f4fe}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskHomePageReset_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskHomePageReset_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskHomePageReset_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskHomePageReset_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{95289393-33EA-4F8D-B952-483415B9C955}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn"
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\askbardis"
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_current_user\software\ask.com"
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\apn"
Successfully deleted: [Registry Key] "hkey_local_machine\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\{9b0cb95c-933a-4b8c-b6d4-edcd19a43874}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\typelib\{2996f0e7-292b-4cae-893f-47b8b1c05b56}"



~~~ Files

Successfully deleted: [File] "C:\Users\R Ôa\AppData\Roaming\microsoft\internet explorer\qipsearchbar.dll"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\premium"
Successfully deleted: [Folder] "C:\Users\R Ôa\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\R Ôa\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\R Ôa\appdata\locallow\wxdfast"
Successfully deleted: [Folder] "C:\Program Files (x86)\winzip registry optimizer"
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{004E7352-D037-40E0-8611-520AFBFF9D21}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{01905767-EB54-4B2F-BC7B-4C2D4C820619}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{02E65D54-680A-4C9F-9509-B75B763BE116}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{02FDD0E6-6E92-467A-A7EE-24F42B85FC53}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{043C2AF3-199E-4867-9834-7FE094AC7E5D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{04D37C4C-3D0E-489D-AC6B-B1DC84FCB4C0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{05877469-9F27-4B4C-BD76-74086083FE96}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{05BBD8B2-E36C-4444-A18A-2EC5548FA311}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{06DA3E33-8497-478E-8C4A-E16F77148644}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{070DBFE8-7AFA-4681-A173-695E7E902B5F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0A650FE5-FE8A-49ED-93AB-D227D418535B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0C6795F8-F000-4D78-BF04-2D0D355C3A7E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0CA32002-6DB8-4482-9E33-DC929568AD9F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{0DE0A713-7470-4C2E-97AF-E004675763F4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{10779064-31F6-4E4B-A511-86A6BA6A1CEC}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{120ECF71-0A15-40FB-AE17-1889602182CE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{12691206-7A87-4D28-8924-75EDAA6AD33E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{12A2947E-C6AC-436D-9B38-CA59AF592E18}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{12E84028-934B-4DE8-82B5-7CD3BB186D41}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1347311A-8486-4E84-8FA0-0379C0FFEBE5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1519254D-F097-4682-8E17-CB6F844FAA96}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{152CE631-3C40-46B9-BC03-4C4178A164D6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{153B8982-CD17-4C08-975D-C6DA625DFC18}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{15C70BA2-A100-45E9-AE36-E41F1541C3E6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{174CD44D-22C6-4DEE-ADB9-36AF8532FE24}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1760B613-4DBB-4B65-AC0C-0E992A88FD8D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{18E7A39D-6CD2-4394-A273-E14468F38543}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{196581EF-47E6-43AE-A6E4-8CD1F1C74B5A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1AC205C2-106F-405A-8FD6-400D34A83BAB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1B0163B2-032A-4572-92F3-1D7DB8C053DE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1B2B3945-7F55-4195-A614-51EA0B361F60}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1B340BCA-4D8C-4417-A86E-342D10FFC255}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1C1A9D2D-0BE5-4985-9AB9-EE6A0447FAAD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1CFFF784-D2D8-46C7-8779-4133542B7865}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1D2AB821-4B4E-4A01-9532-78D92EE4992B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1D3D5FD0-BB12-485D-B537-629D0AA49DBB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1E2791DB-D7F7-44CE-8C3B-861C4268FB05}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{1E49E14D-FDEF-4A4F-981A-7C2EFBF9DD0E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{21854F3A-C29D-4A09-BE9F-A70C8BBEBE5E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{226D502D-9BF9-44D5-A917-003CCF3EF98A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{22926B72-C1C3-498A-AAA5-A6B33956D4BE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{22CE9BAC-E1E6-4915-812F-1C0202394CC3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{23BFC75B-C975-476B-B934-EEE776988CDB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{24452581-4933-420D-A5AE-C1BB62E7C145}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2668E200-114D-4352-9F47-9E9D9760350B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{27723DB2-F06C-426C-9BF6-6BDD9C600230}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{28923D5B-D18D-4856-8759-74DE999679B6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{28B2D870-5CC4-47A0-8D66-8DCDAFB131AE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{292CF21F-20AF-4690-A9EB-F4C331E3F091}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{29D4B8A9-FB29-4007-9EF3-FAACB5732A99}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2AA93413-6674-4CA3-A8A1-D1F8472F034F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2B09269D-E7A0-45D2-AB18-9863CA9B0D26}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2BB1EE33-F9FF-47A3-80B0-413BA86E5416}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2C3E3D5F-45AA-478B-8707-31E59E91FD0C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2DB1745A-C71D-4046-9AE1-30E6C7C369AC}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2DE229F8-C55D-40C4-BB9D-BD1E982DC604}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{2E3DC0B1-74EE-4E78-9674-61805D6B6CDD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{31B7E8A8-E17F-453E-953D-24DC1B47531C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{33CA6F74-CD06-4DE7-99EA-351F54C2812D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{342A74CC-1165-4B42-A3FC-F452C7D17742}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{345CF641-82AE-4B0E-A1FC-60FFC629C7AF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3487391F-8E80-4649-B5B9-0CC4A14782F9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{34947A7C-6170-426C-9DB2-B18E587F3A0B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{34BBE9E4-14AE-4482-B01A-3789FA735139}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{34FFDE5A-6DB6-4BAC-9BFE-58FBE5CC3A30}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{36B37C3B-A51D-4F4C-BA2F-7C282BCD794C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{37057B56-0326-4356-81B5-6354A92ECA89}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{375EA8ED-E276-4464-AF6A-73EB33C89A7F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{37C48794-BE58-4767-ACD3-2AD51D792D24}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{38F401CA-2D8E-4A4B-AF29-FE40B977E79C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3958016C-9959-4790-9530-4F275CBCF59F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{39D755B9-A7AB-401B-9485-6B531DB7D56D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{39DC9435-FA1C-4D26-820B-2D8AAD459744}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3A2AD2EE-6BC7-417F-8FCE-9C4C698490A5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3AAE103B-E533-47A5-9CAE-8EC59F421F7B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3C5B4F3E-2FC7-4C3A-9365-7025D611C2FD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3C90E526-97B9-4BAB-B905-CCFE31F7E835}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{3D18F87A-EF2C-4AF4-9511-EB6BAB82BC03}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{40AE1418-65D1-44AF-962E-51C499DD6626}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{40B3EA69-4E63-4235-B351-131E752A3E80}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{41827C7D-814C-4A98-AAB9-EA5C9F49991E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{42F360D8-533C-4959-8EDD-F2E2CD215141}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{462D1FD5-EE6B-4932-A5B4-912A84768456}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{476FE816-8B05-4B4D-91F0-A97FEBDA66FA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{481A3063-416D-443A-80C9-21C15316ABBD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{48E1DFA9-F24B-4D45-B3CF-F0F83BA12133}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4ACE77BA-4C43-4479-9491-414DDF83E6B4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4B36DE47-9B8C-40EA-B01F-26073CB32237}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4B85DBA2-7EFF-45A9-A613-615238A4AABA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4DDF866F-C320-4F9D-A388-C32212B8B78C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4F6DCDF4-E04E-49A4-BE7E-CDAE48D22B46}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{4FC59CE4-CDEE-48B7-8ACE-C49F45BB3459}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{51784EA5-9BF3-47DC-8F02-48D8536792AF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{519D39CF-35ED-49AF-BD57-B6685ABC1E3F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5454059C-D5BB-4FBB-813F-60233E22D66D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{54ACE04B-64F0-4A86-A88D-88D1560F2928}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{54EF4B5E-F0DE-4598-B7D1-FFC86DF6BD25}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{55943211-C444-4874-AD0E-0969F10FAD5E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5620C270-26CD-4123-B14C-3354B6927072}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{572FE449-91BD-4EE9-BE25-ABE12C94AE95}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{586AEA5D-600D-49AD-9097-4A1B7A9BD81B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5DFD4889-D399-4310-9717-F38205E42D67}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5E2C274B-CB7D-4218-8296-E3ECD5DF9B53}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5E8A1563-E77E-45DA-BECF-EF47E19B9870}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5E942BE3-D52A-4745-9895-5F74D300C29C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{5FF9D3CA-65A9-4457-BD3A-46D94F6F43C6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{629BFC2A-9014-41DE-9060-4F5E53D54A11}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{62BA530C-371C-40BB-A2DD-68DD7299D777}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{635AA194-8F5A-4C0F-B46D-788EB4DD6EB9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{64643D51-81DD-420A-A3FD-FEA3AD0EEECB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{64929542-C2F0-4231-BF23-ECA27E4A718E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{65A58ED7-036E-4345-8EDC-2F6185C7E32D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{663BB552-30D5-417F-9B87-FD9D61E04A4F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{66C9A513-81B5-493B-A62F-15D3F5A1BB47}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{66FAA417-41E1-4E37-B88F-36DE7939EA87}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{68C79BFB-F0D1-4AD0-B4EC-D27C8F99EEDD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{68E6E20F-99A8-4F3C-BA35-83FF40DFFD56}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6C7A3368-F645-49E8-B01D-3CE5208EFAB1}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6CEB3959-0D75-4C3C-9C6C-714F619E3D39}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6E01A149-9969-45A8-8584-948CA64DDAF1}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6E8CCF63-DD69-42EA-867F-3A66634C1EC9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6EA9E1D5-7720-40A4-935A-2A3B7A5BA68E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6EB93AD3-5755-42A2-AA9A-F15CD0EEC28D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{6F64EBCB-E6CE-46B6-9F6B-C3DF7CAB0525}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7200153E-5D29-4A83-ACE8-B95D082D7F27}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{72DC2CF7-E03F-4277-9759-5312F1C72317}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7584150B-94E3-44FC-9146-1733DA7116AA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{75949199-C60F-4222-9882-5C6598295160}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7625032E-645E-4B62-968D-D2EBFAD68DC3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{762EDC56-E009-45E3-B764-0959C6D8E8C1}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{76D42535-CC22-474F-BF4B-62CAB2B62113}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{78582F38-E707-466B-8711-374AC585C088}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{78B162A8-9F68-467F-B12B-DCFA436013DF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7A11AF7B-C38C-40C7-AB51-6730B725C812}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7A85613D-302D-46F0-8255-8D4A99A4C023}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7AEE7D02-BD16-40D4-B118-E85762F780CF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7C6A9BCA-7886-49C6-B49F-12259DA655A5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7C9C8B80-68B7-467D-AC62-34A15302737A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{7FFB40F4-3BFE-4639-8041-A9FABF954402}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{80873995-23BF-48ED-A7C5-B36F6B9979F5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{80DF7F01-ABF7-4436-9551-080DDD3678A3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{80FDE60A-0A5C-4927-8552-D853A608AC32}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{81616E45-EED5-4240-9D63-B1509B35020D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{81B22E5D-45C4-41A9-AA19-05630A7EAE7C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8249C1CE-4621-4620-B396-7710D53934E9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{828E4AF8-3452-44C3-95F8-A11DCB6C8C64}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8424D74F-FC22-4517-A750-B153A018A46D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{844C0F3D-2496-4671-B851-88C3C0CD6D0A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{856D00AA-E513-42A9-9FA6-3F04FA52E39A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{86A3B800-6C54-4C2E-B8C9-47B81A71FF5A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{87E28C08-9CCA-4587-AFBE-1BAF5CEBD52D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{894EF752-684E-42B9-B667-6955AEE7B365}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{895D78CF-AB3F-4012-90DB-08522A6B9F83}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8DAB9721-34A6-4118-B039-8A278C574EBB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8E9076D8-59E1-4106-B42E-7858D5A2FBC0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8E9F1971-6447-45F8-B7C9-8B4AEFC4054C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8F0F448A-78B3-455F-944D-7AF34508EBF6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{8FA68D62-C93B-496F-BC55-935F1CC40964}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{900A60AA-7CBC-43CE-9EE6-E7DF72A022D9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{90CD36AB-C926-4586-899B-ACD139D0CC46}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{91E327D3-684C-42D7-8614-8CA848B6E13C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{93AD4494-2B16-48D3-A747-BDEFB88D823F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{93D02201-9BCC-4097-9AC3-29784FFD7279}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{96E22F44-3D65-40AC-A465-A746AD9C91D8}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{98A43FB2-4E78-414A-B677-230E99869A25}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9C0BE8BF-B55D-499C-B34D-0C2D2B6EA087}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9DDF731A-8F46-43DA-BD48-72A88132A493}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9E08C9B5-030D-4F3C-ADA0-910152C9237C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{9FBD5AB1-7BFA-4A5A-87FD-21765FC78AA0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A1EE5B23-8E4F-4F06-A34A-72A2530A6786}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A2507701-F1D8-4B58-9EA2-E782622B3494}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A360FE35-35B6-4A59-8034-30A5AC4EB490}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A3F4417B-B207-4D3B-A902-C12E729A32D8}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A575C389-1BB7-4D51-B60A-C169CB75D359}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A581D73E-2943-4A34-B705-8D8EEF48A02E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A5C54398-1707-4A05-85FC-F9479A909C49}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A5FC5609-0279-4ECD-B177-C9AEEC224F72}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A609285D-7877-4C90-95C1-4ECA7BD1BE88}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A7480169-D931-4BA8-8472-85BE9EBFBC8D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A75FB5D0-351B-4EE1-BBF0-1D8F10253576}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{A82D176D-FDAA-4738-83F2-FDB64307EA02}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{AAC1491E-49B9-432B-8F18-1078F6A8890F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{AC51ABEF-7DB3-4431-ADE7-20AE7946E4C7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{AD0BC991-710F-417D-A790-225B0655F70E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B0C899CA-4F62-49A2-96BF-B9A7F7C66B75}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B2108311-8560-4933-99D0-3B3D3435C6CF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B4167693-C9D2-4B7A-AF27-E4898352A284}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B4657BE5-96D4-437E-94AE-566F8791CD40}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B4CDEAA8-9035-4BA8-9259-9E3DE826C260}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B75C5995-01ED-4828-9040-BFC3DE6ADD9C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B941AB50-AD84-4EA1-AD37-D4CCDE0B74F7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B9D4737C-617B-458C-95D9-C234ADBDD689}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{B9F04E3E-3E61-44DA-9362-179F1BF253BD}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BAC1093D-1CC7-4D48-AF8B-6FC06EAFAEE2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BAFE8C0F-1665-4CD4-A552-6794C2656693}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BB73700C-7AC1-43B7-AAD2-FA3603CDD454}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BBE6600E-C1A2-4443-B36A-BF1112826119}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BC0A0A9A-EB05-4042-ACBD-DCB247DDCF44}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BC4B44D6-F73D-4ACA-8B81-BCF6E8CD0278}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BDFA5853-A8DA-444B-AFC5-EA5A0986F30A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BEEC478A-965E-49FE-81D2-4AD4054819EB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BF175816-9BBE-4397-BA02-7D3DE812325F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BF18EA4E-C854-42D9-B429-21FE20E011A9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{BFBF1F03-B8AC-48E7-96C1-E5771B7595C5}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C12A2AA4-03D6-4E30-95A0-D938B000A978}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C183F1CD-9082-4796-BD0B-794AED8B8E2C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C294CCEA-E3B2-406B-9859-CD18E98B7C94}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C34CCA21-E62F-4580-9915-2B04E3D1D0C4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C4F6D7C4-EBD9-49DC-ABAC-420E09A5F0E3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C621A87B-8CF4-4608-801A-7523A10C6E97}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C77D62B3-D15C-4A05-926D-E160AB74A48A}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C82CE1EB-759E-4F1C-B786-88AB49A54212}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C925DE79-F3B4-4B82-9733-5B74B5686B9B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{C927F7AB-7D1C-4420-B6BE-A7FB0EE6E288}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CAA32F3B-D19A-4C16-BA02-52A4C2206856}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CB2FBA1C-E0AE-4894-9C60-AB72A63FD56F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CB9663F0-A0C3-4982-9066-7BD5AA57A151}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CCE34FAB-A182-4A97-BFF7-8B86A41EAB54}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CE359166-55BF-41FC-960B-00C924D7B404}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CE60CE9B-1566-4D9C-9FA3-CA8A3E6BC9F0}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CF6DD706-AEB6-443D-96EB-85E2C0A0EA81}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{CFED6BAF-1A65-45F5-A050-B346175DDBE7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D0187276-B4C1-4071-8C19-CAAE9F39A83B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D02995E0-30B3-47EC-857E-D2F206184E63}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D0F10CF0-FAE2-4D6A-8DAB-3E98623C2839}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D1224F44-7273-4F22-82FF-D58D8C3C6F55}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D2FEEDE5-D509-45F2-A636-D15A6C50B90B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D307052A-712F-43FB-A53A-C9D0F2BC3F85}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D89269F9-5F2A-4227-B24A-31368491A659}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{D9344C36-A5AA-4E6D-A099-B51A34EF3270}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DB096321-603C-4C60-9CF6-269022D6BAC8}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DB6670B4-E223-420A-B07D-2086EFCC2A8F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DC5BB4DF-4429-4DCC-8BC5-76A4AC50EE51}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DC7EF927-0D3F-42B7-8592-FC18FC0959C2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DD652517-8BE4-4CF8-A124-904C194332F9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DDFC7F5A-7A67-48C9-9A18-2C5B6CA9BD78}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{DFB4EA1E-2032-4974-8B6D-1E85459D0183}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E0121BEE-6860-4D9F-B18B-66F0C6BE66CA}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E04FD043-5C8A-4B4A-8AE5-FA6DD53EA460}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E2700580-14E8-4CF8-A075-B29309EC9855}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E39CA3F8-5FFC-406C-8429-60AB41A851D6}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E3D979E8-72DD-40EE-85A1-A3173E15BE22}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E4186744-2B37-4EEC-B638-3FA1083B144C}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E467E48C-8911-4DE3-B556-2B43B84A0F70}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E501A0DD-E8B5-4658-9038-405283CD901B}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E6C92975-F41B-4FD9-BFAD-2C8FC2D3B197}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E76F7F37-E804-426F-BD1A-EE8388D968F2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E7A05EB9-117E-4518-8343-2818552964E2}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E90FFE8B-1C1E-4090-A7BA-552CE2A42266}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{E9DB16FA-E7B1-43C4-B421-27F78E3AF0AE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{EB34502A-2321-4F14-AD3C-FF37E3911AF3}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{ECA461E8-31BE-488E-A300-2C99537B2957}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{ED8D481F-6EE7-4EC2-81BF-F71191C21A88}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{EE21B631-2038-4E69-A3F8-7FC50EC39D7D}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F0018271-A265-4C91-927F-81FFFAD799A9}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F019832B-162C-4E02-884C-2BC4E78A91D4}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F33DDD82-3723-4DBC-9228-621E14B0A121}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F47E11F7-5362-4B29-A488-3E0465B89658}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F75273EC-D64F-4FA2-814C-AC84A64509FB}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F82779CD-9A30-4790-AA77-6D7B3B455405}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F8421081-0893-41F1-9582-A9193ED67F58}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F93E0E6D-5EA6-4C64-8596-0141A600FEEF}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{F970498B-904E-44AF-8F50-03D6CBCDB7DE}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FA5DDAB6-2EAC-4638-8011-55340C280149}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FC17ED82-C20F-4948-A528-BFF658FBE6B7}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FC44FEE0-E2C3-483E-A458-694FDD49A350}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FCBF50FB-A4DE-4DCC-8CBC-8F842528B34E}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FCE57203-2542-4492-A957-BD34521A6253}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FE8B7A07-5CB2-4316-AD7F-77B20A053A3F}
Successfully deleted: [Empty Folder] C:\Users\R Ôa\appdata\local\{FF29EDC0-796C-47C1-B6DA-28450613EB66}
Successfully deleted: [Folder] "C:\Program Files (x86)\ask.com"
Successfully deleted: [Folder] "C:\windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 21.08.2014 at 19:39:33,17
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#4 Příspěvek od Stene »

# AdwCleaner v3.308 - Report created 21/08/2014 at 19:42:06
# Updated 20/08/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Ráďa - RADEK-HP
# Running from : C:\Users\Ráďa\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\wxDfast
Folder Deleted : C:\Users\RA429E~1\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Ráďa\AppData\Local\Babylon
Folder Deleted : C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\toolbar@ask.com
Folder Deleted : C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\info@wxdownloadmanager.com
File Deleted : C:\windows\System32\roboot64.exe
File Deleted : C:\Users\RA429E~1\AppData\Local\Temp\END
File Deleted : C:\Users\RA429E~1\AppData\Local\Temp\Uninstall.exe
File Deleted : C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage
File Deleted : C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : Scheduled Update for Ask Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [info@wxdownloadmanager.com]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ekdjfcdinekpfcedakhpngcnaamhiihn
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3A188115-B81B-48F2-A958-F974C8F3F309}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{43769158-3B03-4932-8D8A-8F0F344BF024}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{78CE34FD-F6D4-4866-B79C-A37268D06A04}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80904944-C726-4C7D-A452-3FFF2A882095}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D9B1B31-D034-4738-8F6E-40F0AFCC742C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2CF0D01-7657-48AA-98C9-AE5E64757FCC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{78CE34FD-F6D4-4866-B79C-A37268D06A04}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{80904944-C726-4C7D-A452-3FFF2A882095}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]

-\\ Mozilla Firefox v

[ File : C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js ]


-\\ Google Chrome v36.0.1985.143

[ File : C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.babylon.com/?q={searchTerms}&affID=111253&babsrc=SP_ss&mntrId=42ac8711000000000000f2df9a449e24

*************************

AdwCleaner[R0].txt - [7870 octets] - [21/08/2014 19:40:55]
AdwCleaner[S0].txt - [7752 octets] - [21/08/2014 19:42:06]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7812 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#5 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#6 Příspěvek od Stene »

Zoek.exe v5.0.0.0 Updated 21-08-2014
Tool run by R Ôa on p  22.08.2014 at 12:59:22,75.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\RA429E~1\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.8.2014 13:01:18 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js:

Added to C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default

user.js not found
---- Lines suggestor removed from prefs.js ----
user_pref("extensions.MGSuggestor.aid", "10018");
user_pref("extensions.MGSuggestor.uid", "f486150b76432edf1cd6660773c41a40");
---- FireFox user.js and prefs.js backups ----

prefs_22.08.2014_1312_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\MG Suggestor deleted
C:\PROGRA~2\Wondershare deleted
C:\PROGRA~2\COMMON~1\Wondershare deleted
C:\install.exe deleted
C:\PROGRA~3\UpdaterLog.txt deleted
C:\PROGRA~3\bndilc7tfr.fvv deleted
C:\PROGRA~3\brbngbzj.odd deleted
C:\PROGRA~3\SPL5953.tmp deleted
C:\PROGRA~3\SPL59C2.tmp deleted
C:\PROGRA~3\SPL6315.tmp deleted
C:\PROGRA~3\SPL768B.tmp deleted
C:\PROGRA~3\SPLCC62.tmp deleted
C:\PROGRA~3\SPLD8E0.tmp deleted
C:\PROGRA~3\SPLE696.tmp deleted
C:\PROGRA~3\InstallMate deleted
C:\Users\RA429E~1\AppData\Local\Wondershare deleted
C:\Users\RA429E~1\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare deleted
C:\Users\RA429E~1\Searches deleted
C:\windows\SysNative\tasks\RunAsStdUser Task deleted
C:\windows\SysNative\config\systemprofile\Searches deleted
"C:\Users\RA429E~1\AppData\Local\PMB Filer?pa" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"="C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext" [09.10.2013 16:46]

==== Firefox Extensions ======================

ProfilePath: C:\Users\RA429E~1\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
- Yandex.Bar - %ProfilePath%\extensions\yasearch@yandex.ru
- MG Suggestor - %ProfilePath%\extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi

==== Firefox Plugins ======================


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
godimpbmfohihoaikgfknnnmlncabkkp - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx[29.06.2014 15:54]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[06.08.2014 15:10]
idhngdhcfkoamngbedgpaokgjbnpdiji - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx[14.08.2013 15:24]
jbgicmkghadchlbopdpmahffhbppddhp - C:\Program Files (x86)\MG Suggestor\MGSuggestor.crx[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
kegdldmohomdaelnepdpbkdhfemobdgl - No path found[]

RealDownloader - RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji
MG Suggestor - RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbgicmkghadchlbopdpmahffhbppddhp
gemiusAudience Internet survey plug-in - RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl

==== Chrome Fix ======================

C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.royal-search.com_0.localstorage deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.royal-search.com_0.localstorage-journal deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbgicmkghadchlbopdpmahffhbppddhp deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbgicmkghadchlbopdpmahffhbppddhp_0.localstorage deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbgicmkghadchlbopdpmahffhbppddhp_0.localstorage-journal deleted successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
"Use Search Asst"="no"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{031230F8-EA50-42A9-983C-D22ABC2EED3B} VideoSlurp Url="http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{399a1442-7377-49e7-8d77-6dc9ed5968c1} Zbozi Url="http://www.zbozi.cz/?q={searchTerms}&so ... earch_6826"
{5cf5d387-d87c-4408-9a6b-301b0713d62a} Mapy Url="http://www.mapy.cz/?query={searchTerms} ... earch_6826"
{8172f457-818d-46db-941f-2bbe53e156af} Bing Url="http://www.bing.com/search?q={searchTer ... -SearchBox"
{eb97f7df-1773-4916-aae6-5af74da8c69d} Firmy Url="http://www.firmy.cz/phr/{searchTerms}"

==== Reset Google Chrome ======================

C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully
HKEY_USERS\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{429D37EE-1709-412e-A210-A81A65D56C88} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FF08CD3B-2FA5-7978-895B-BDB3DD2CEE29} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jbgicmkghadchlbopdpmahffhbppddhp deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wondershare Helper Compact.exe deleted successfully

==== Empty IE Cache ======================

C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\RA429E~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\RA429E~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\RA429E~1\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\RA429E~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache is not empty, a reboot is needed

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=683 folders=89 102739967 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\RA429E~1\AppData\Local\Temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\windows\Temp successfully emptied
C:\Users\RA429E~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\RA429E~1\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\RKXXE4DS\fanda.nova.cz" not found
"C:\Users\RA429E~1\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\RKXXE4DS\gc001.geewa.com" not found

==== EOF on p  22.08.2014 at 13:24:26,16 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#7 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#8 Příspěvek od Stene »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-08-2014 01
Ran by Ráďa (administrator) on RADEK-HP on 24-08-2014 09:18:01
Running from C:\Users\Ráďa\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
( ) C:\Windows\System32\lxebcoms.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
( ) C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(QIP.ru) C:\Program Files (x86)\QipGuard\QipGuard.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [127616 2012-09-14] (Qualcomm Atheros Commnucations)
HKLM\...\Run: [BtTray] => C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [764544 2012-09-14] (Qualcomm Atheros)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPQuickWebProxy] => c:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [76344 2011-02-11] (Hewlett-Packard Company)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-06] (AVAST Software)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-08-05] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe
Lsa: [Notification Packages] EpePcNp64 DPPassFilter scecli
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... earchTerms}
SearchScopes: HKCU - {399a1442-7377-49e7-8d77-6dc9ed5968c1} URL = http://www.zbozi.cz/?q={searchTerms}&so ... earch_6826
SearchScopes: HKCU - {5cf5d387-d87c-4408-9a6b-301b0713d62a} URL = http://www.mapy.cz/?query={searchTerms} ... earch_6826
SearchScopes: HKCU - {eb97f7df-1773-4916-aae6-5af74da8c69d} URL = http://www.firmy.cz/phr/{searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Internet Panel -> {CE7C3CF0-4B15-11D1-ABED-709549C10000} -> C:\Program Files\NetSoftware\IEHelper.dll (Gemius)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)

FireFox:
========
FF ProfilePath: C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=10.21.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll ()
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2011-05-10]
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-10-09]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-03-18]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

Chrome:
=======
CHR Extension: (YouTube) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-21]
CHR Extension: (Google Search) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-21]
CHR Extension: (RealDownloader) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2012-12-26]
CHR Extension: (Google Wallet) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR Extension: (Gmail) - C:\Users\Ráďa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-21]
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-06]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [216192 2012-09-14] (Qualcomm Atheros Commnucations)
S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-06] (AVAST Software)
R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () [File not signed]
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [481104 2011-02-12] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [464480 2011-02-04] (Hewlett-Packard Company)
S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent)
R3 HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [36864 2011-01-12] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
S2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company)
R2 HPFSService; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [320000 2011-02-07] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
S2 lxebCATSCustConnectService; C:\windows\system32\spool\DRIVERS\x64\3\\lxebserv.exe [45736 2010-04-14] (Lexmark International, Inc.)
R2 lxeb_device; C:\windows\system32\lxebcoms.exe [1052328 2010-04-14] ( )
R2 lxeb_device; C:\windows\SysWOW64\lxebcoms.exe [598696 2010-04-14] ( )
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1318912 2011-02-09] () [File not signed]
R2 mitsijm2013; C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe [339776 2012-01-30] ( )
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [75064 2012-05-14] ()
R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2013-06-01] (IDT, Inc.) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-03-07] (Xobni Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-09-14] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-06] ()
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-06] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-06] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-06] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-06] ()
R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-09-14] (Qualcomm Atheros)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [63336 2011-02-07] (Hewlett-Packard Company)
R2 Dokan; C:\windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [168008 2011-02-09] (McAfee, Inc.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1826048 2010-12-21] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-05-01] (Duplex Secure Ltd.)
U3 admlfiqv; C:\Windows\System32\Drivers\admlfiqv.sys [0 ] (Advanced Micro Devices)
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-22 13:24 - 2014-08-22 13:43 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:24 - 2014-08-22 13:43 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:17 - 2014-08-22 12:59 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-08-22 13:01 - 2014-08-22 13:24 - 00013941 _____ () C:\zoek-results.log
2014-08-22 12:54 - 2014-08-22 13:13 - 00000000 ____D () C:\zoek_backup
2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
2014-08-21 19:54 - 2014-08-21 19:54 - 00003180 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRáďa
2014-08-21 19:53 - 2014-08-22 12:46 - 00000328 _____ () C:\windows\Tasks\HPCeeScheduleForRáďa.job
2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
2014-08-21 19:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\AdwCleaner
2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
2014-08-21 19:20 - 2014-08-21 19:21 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
2014-08-21 18:03 - 2014-08-24 09:19 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:03 - 2014-08-24 09:18 - 00000000 ____D () C:\FRST
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 17:59 - 2014-08-21 18:00 - 00000000 ____D () C:\ráďa
2014-08-14 03:04 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-08-14 03:04 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-08-14 03:04 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-08-14 03:04 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-08-14 03:04 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-08-14 03:03 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-08-14 03:03 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-08-13 15:57 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-08-13 15:57 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-08-13 15:56 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-13 15:56 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-08-13 15:56 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-08-13 15:56 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-08-13 15:56 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-08-13 15:56 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-08-13 15:56 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-08-13 15:56 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-08-13 15:56 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-08-13 15:56 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-08-13 15:56 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-08-13 15:56 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-08-13 15:56 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-08-13 15:56 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-08-13 15:56 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-08-13 15:56 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-08-13 15:56 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-08-13 15:56 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-08-13 15:56 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-08-13 15:56 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-08-13 15:56 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-13 15:56 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-08-13 15:56 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-08-13 15:56 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-08-13 15:56 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-08-13 15:56 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-08-13 15:56 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-08-13 15:56 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-08-13 15:56 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-08-13 15:56 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-08-13 15:56 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-08-13 15:56 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-08-13 15:56 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-08-13 15:56 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-08-13 15:56 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-08-13 15:56 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-08-13 15:56 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-08-13 15:56 - 2014-06-12 09:52 - 00986560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-08-13 15:56 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-08-13 15:56 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-08-13 15:56 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-08-13 15:56 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-08-13 15:55 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-08-13 15:55 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-08-13 15:55 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-08-13 15:55 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-08-13 15:55 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-08-13 15:55 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-08-13 15:55 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-08-13 15:55 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-08-13 15:55 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-08-13 15:55 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-08-13 15:55 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-08-13 15:55 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-08-13 15:55 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-08-13 15:55 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-08-13 15:55 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-08-13 15:55 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-08-13 15:55 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-08-13 15:55 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-08-13 15:55 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-08-13 15:55 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-08-13 15:54 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-13 15:54 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-06 15:12 - 2014-08-06 15:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-01 16:09 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-08-01 16:09 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-08-01 16:09 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-08-01 16:09 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-08-01 16:08 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-08-01 16:08 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-08-01 16:08 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-08-01 16:08 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-08-01 16:08 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-24 09:19 - 2014-08-21 18:03 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-24 09:18 - 2014-08-21 18:03 - 00000000 ____D () C:\FRST
2014-08-24 09:17 - 2011-08-13 13:47 - 00000944 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-24 09:16 - 2011-05-10 22:06 - 00000000 ____D () C:\ProgramData\HPQLOG
2014-08-24 09:14 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-08-24 09:14 - 2009-07-14 06:51 - 00111119 _____ () C:\windows\setupact.log
2014-08-24 09:14 - 2009-07-14 06:45 - 05168648 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-22 13:51 - 2011-07-19 15:55 - 01561049 _____ () C:\windows\WindowsUpdate.log
2014-08-22 13:50 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-22 13:50 - 2009-07-14 06:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-22 13:43 - 2014-08-22 13:24 - 00003338 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:43 - 2014-08-22 13:24 - 00003202 _____ () C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2933880989-4036846406-3193184886-1001
2014-08-22 13:24 - 2014-08-22 13:01 - 00013941 _____ () C:\zoek-results.log
2014-08-22 13:24 - 2014-03-18 16:49 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update
2014-08-22 13:24 - 2011-08-13 13:47 - 00000948 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-22 13:18 - 2011-07-19 16:25 - 05452658 _____ () C:\windows\PFRO.log
2014-08-22 13:14 - 2012-04-04 07:25 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-08-22 13:13 - 2014-08-22 12:54 - 00000000 ____D () C:\zoek_backup
2014-08-22 13:12 - 2011-08-10 19:03 - 00000000 ____D () C:\Users\Ráďa
2014-08-22 12:59 - 2014-08-22 13:17 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
2014-08-22 12:46 - 2014-08-21 19:53 - 00000328 _____ () C:\windows\Tasks\HPCeeScheduleForRáďa.job
2014-08-21 19:54 - 2014-08-21 19:54 - 00003180 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRáďa
2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
2014-08-21 19:42 - 2014-08-21 19:40 - 00000000 ____D () C:\AdwCleaner
2014-08-21 19:41 - 2011-09-27 11:03 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\PMB Files
2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
2014-08-21 19:21 - 2014-08-21 19:20 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
2014-08-21 19:13 - 2011-11-19 23:47 - 00000000 ____D () C:\ProgramData\NetSoftware
2014-08-21 18:07 - 2014-06-08 11:11 - 00003828 _____ () C:\windows\System32\Tasks\Opera scheduled Autoupdate 1402218407
2014-08-21 18:07 - 2011-08-10 19:51 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-08-21 18:02 - 2014-08-21 18:02 - 02101760 _____ (Farbar) C:\Users\Ráďa\Desktop\FRST64.exe
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
2014-08-21 18:00 - 2014-08-21 17:59 - 00000000 ____D () C:\ráďa
2014-08-21 17:57 - 2011-11-19 23:47 - 00000000 ____D () C:\Program Files\NetSoftware
2014-08-21 17:57 - 2011-10-09 21:39 - 00035108 _____ () C:\ProgramData\lxebscan.log
2014-08-19 17:38 - 2011-09-02 10:53 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\uTorrent
2014-08-19 17:33 - 2012-09-16 21:08 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\vlc
2014-08-19 02:27 - 2013-06-28 09:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-16 16:52 - 2014-04-29 10:23 - 00107028 _____ () C:\Users\Ráďa\Documents\Agamky.xlsx
2014-08-16 07:04 - 2011-08-10 19:18 - 00000000 ____D () C:\Users\Ráďa\Documents\Bluetooth Folder
2014-08-15 15:56 - 2011-11-01 23:24 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-15 15:56 - 2011-08-13 09:25 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-08-14 04:55 - 2011-08-11 02:56 - 00000000 ____D () C:\windows\rescache
2014-08-14 03:58 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-08-14 03:38 - 2012-03-13 20:34 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-14 03:27 - 2013-07-15 08:29 - 00000000 ____D () C:\windows\system32\MRT
2014-08-14 03:17 - 2011-08-15 14:55 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-14 03:02 - 2014-05-07 03:01 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-08-13 21:08 - 2011-08-13 19:28 - 00000000 ____D () C:\Users\Ráďa\AppData\Local\CrashDumps
2014-08-10 15:25 - 2011-05-10 22:12 - 00669116 _____ () C:\windows\system32\perfh005.dat
2014-08-10 15:25 - 2011-05-10 22:12 - 00141744 _____ () C:\windows\system32\perfc005.dat
2014-08-10 15:25 - 2009-07-14 07:13 - 01584554 _____ () C:\windows\system32\PerfStringBackup.INI
2014-08-07 04:06 - 2014-08-13 15:54 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-07 04:01 - 2014-08-13 15:54 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-06 17:47 - 2011-12-06 17:53 - 00000000 ____D () C:\Users\Ráďa\Documents\Games
2014-08-06 15:12 - 2014-03-18 16:48 - 00427360 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2014-08-06 15:11 - 2014-08-06 15:12 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-06 15:11 - 2014-08-06 15:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-06 15:11 - 2014-03-18 16:48 - 01041168 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00224896 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00093568 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00079184 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-08-06 15:11 - 2014-03-18 16:48 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-08-06 15:11 - 2011-12-09 22:04 - 00307344 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-08-05 09:20 - 2013-06-04 08:25 - 00270496 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-08-04 17:06 - 2013-06-03 06:32 - 00025764 _____ () C:\ProgramData\lxeb.log
2014-08-02 23:40 - 2012-10-22 19:41 - 00003218 _____ () C:\windows\System32\Tasks\HPCeeScheduleForRADEK-HP$
2014-08-02 23:40 - 2012-10-22 19:41 - 00000342 _____ () C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job
2014-08-02 13:35 - 2012-12-07 00:11 - 00000000 ____D () C:\Users\Ráďa\AppData\Roaming\BSplayer
2014-08-02 10:33 - 2012-08-10 18:28 - 00000000 ____D () C:\Users\Ráďa\Documents\Recepty
2014-08-01 01:41 - 2014-08-13 15:56 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-01 01:16 - 2014-08-13 15:56 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-31 16:35 - 2012-05-17 08:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 16:52 - 2014-08-13 15:55 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-07-25 16:02 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-07-25 16:01 - 2014-08-13 15:56 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-07-25 15:51 - 2014-08-13 15:56 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-07-25 15:30 - 2014-08-13 15:56 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-07-25 15:28 - 2014-08-13 15:56 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-07-25 15:28 - 2014-08-13 15:55 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-07-25 15:25 - 2014-08-13 15:56 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-07-25 15:25 - 2014-08-13 15:55 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-07-25 15:11 - 2014-08-13 15:55 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-07-25 15:10 - 2014-08-13 15:56 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-07-25 15:04 - 2014-08-13 15:56 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-07-25 15:03 - 2014-08-13 15:55 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-07-25 15:00 - 2014-08-13 15:56 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-07-25 15:00 - 2014-08-13 15:55 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-07-25 14:59 - 2014-08-13 15:55 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-07-25 14:47 - 2014-08-13 15:55 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-07-25 14:40 - 2014-08-13 15:56 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-07-25 14:34 - 2014-08-13 15:56 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-07-25 14:33 - 2014-08-13 15:56 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-07-25 14:30 - 2014-08-13 15:55 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-07-25 14:28 - 2014-08-13 15:56 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-07-25 14:28 - 2014-08-13 15:55 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-07-25 14:21 - 2014-08-13 15:56 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-07-25 14:19 - 2014-08-13 15:55 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-07-25 14:18 - 2014-08-13 15:56 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-07-25 14:17 - 2014-08-13 15:56 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-07-25 14:17 - 2014-08-13 15:55 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-07-25 14:12 - 2014-08-13 15:56 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-07-25 14:10 - 2014-08-13 15:56 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-07-25 14:10 - 2014-08-13 15:55 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-07-25 14:08 - 2014-08-13 15:56 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-07-25 14:06 - 2014-08-13 15:56 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-07-25 13:52 - 2014-08-13 15:56 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-07-25 13:47 - 2014-08-13 15:56 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-07-25 13:43 - 2014-08-13 15:56 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-25 13:42 - 2014-08-13 15:56 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-07-25 13:39 - 2014-08-13 15:56 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-07-25 13:39 - 2014-08-13 15:55 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-07-25 13:36 - 2014-08-13 15:55 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-07-25 13:34 - 2014-08-13 15:56 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-07-25 13:29 - 2014-08-13 15:56 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-07-25 13:23 - 2014-08-13 15:55 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-07-25 13:13 - 2014-08-13 15:56 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-07-25 13:07 - 2014-08-13 15:56 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-07-25 13:07 - 2014-08-13 15:56 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-07-25 13:03 - 2014-08-13 15:56 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-07-25 12:52 - 2014-08-13 15:55 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-07-25 12:26 - 2014-08-13 15:56 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-07-25 12:17 - 2014-08-13 15:55 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-07-25 12:09 - 2014-08-13 15:55 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-07-25 12:05 - 2014-08-13 15:55 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-07-25 12:00 - 2014-08-13 15:56 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-07-25 03:05 - 2012-05-17 08:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================


Available physical RAM: 1979.38 MB
Total physical RAM: 4030.36 MB
Percentage of memory in use: 50%

==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáïa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\R��a\Desktop" je 7 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager
"C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync
"C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EzPrint
"C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\File Sanitizer
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPConnectionManager
c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe /hidden [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxebmon.exe
"C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MfeEpePcMonitor
"C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware
"C:\Program Files\NetSoftware\Starter.exe" /path="C:\Program Files\NetSoftware" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QLBController
C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh
%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp
C:\Program Files\IDT\WDM\sttray64.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe
"C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe" [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
DisableUnicastResponsesToMulticastBroadcast REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#9 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM-x32\...\Run: [] => [X]
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
    HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
    URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
    SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
    SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
    Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
    Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()
    
    FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
    FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]
    
    CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
    
    R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
    C:\Program Files (x86)\QipGuard
    
    2014-08-22 13:17 - 2014-08-22 12:59 - 00024064 _____ () C:\windows\zoek-delete.exe
    2014-08-22 13:01 - 2014-08-22 13:24 - 00013941 _____ () C:\zoek-results.log
    2014-08-22 12:54 - 2014-08-22 13:13 - 00000000 ____D () C:\zoek_backup
    2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
    2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
    2014-08-21 19:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
    2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\AdwCleaner
    2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
    2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
    2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
    2014-08-21 19:20 - 2014-08-21 19:21 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
    2014-08-21 18:03 - 2014-08-24 09:19 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
    2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe
    
    Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    Task: C:\windows\Tasks\HPCeeScheduleForRáïa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16" /f
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#10 Příspěvek od Stene »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-08-2014 01
Ran by Ráďa at 2014-08-24 15:43:09 Run:1
Running from C:\Users\Ráďa\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\Policies\Explorer: []
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {6b8b0af6-5440-11bd-a0d6-d0df9a450db4} - I:\Startme.exe
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\...\MountPoints2: {aa266c74-4cbd-11e1-ae89-2c41380c3433} - D:\AutoRun.exe

HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
URLSearchHook: HKCU - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
SearchScopes: HKLM-x32 - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
SearchScopes: HKCU - {031230F8-EA50-42A9-983C-D22ABC2EED3B} URL = http://www.qemit.com/toolbar/hub.php?a= ... er=1.01&q={searchTerms}
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - videoslurp.com Toolbar - {031230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files (x86)\VideoSlurp\toolband.dll ()

FF Extension: Yandex.Bar - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru [2011-12-04]
FF Extension: MG Suggestor - C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi [2012-06-15]

CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]

R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [187776 2011-04-01] (QIP.ru) [File not signed]
C:\Program Files (x86)\QipGuard

2014-08-22 13:17 - 2014-08-22 12:59 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-08-22 13:01 - 2014-08-22 13:24 - 00013941 _____ () C:\zoek-results.log
2014-08-22 12:54 - 2014-08-22 13:13 - 00000000 ____D () C:\zoek_backup
2014-08-22 12:54 - 2014-08-22 12:54 - 01288704 _____ () C:\Users\Ráďa\Desktop\zoek.exe
2014-08-21 19:50 - 2014-08-21 19:50 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner (1).exe
2014-08-21 19:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\AdwCleaner
2014-08-21 19:39 - 2014-08-21 19:39 - 00036947 _____ () C:\Users\Ráďa\Desktop\JRT.txt
2014-08-21 19:26 - 2014-08-21 19:26 - 00000000 ____D () C:\windows\ERUNT
2014-08-21 19:21 - 2014-08-21 19:21 - 01364531 _____ () C:\Users\Ráďa\Desktop\AdwCleaner.exe
2014-08-21 19:20 - 2014-08-21 19:21 - 01016261 _____ (Thisisu) C:\Users\Ráďa\Desktop\JRT.exe
2014-08-21 18:03 - 2014-08-24 09:19 - 00025292 _____ () C:\Users\Ráďa\Desktop\FRST.txt
2014-08-21 18:02 - 2014-08-21 18:02 - 00112640 _____ (forum.viry.cz) C:\Users\Ráďa\Desktop\FRSTLauncher.exe

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáia.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForRáďa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16" /f

Hosts:
Reboot:
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value deleted successfully.
"HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6b8b0af6-5440-11bd-a0d6-d0df9a450db4}" => Key deleted successfully.
"HKCR\CLSID\{6b8b0af6-5440-11bd-a0d6-d0df9a450db4}" => Key not found.
"HKU\S-1-5-21-2933880989-4036846406-3193184886-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{aa266c74-4cbd-11e1-ae89-2c41380c3433}" => Key deleted successfully.
"HKCR\CLSID\{aa266c74-4cbd-11e1-ae89-2c41380c3433}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key deleted successfully.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key deleted successfully.
"HKCR\CLSID\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{031230F8-EA50-42A9-983C-D22ABC2EED3B} => value deleted successfully.
"HKCR\Wow6432Node\CLSID\{031230F8-EA50-42A9-983C-D22ABC2EED3B}" => Key not found.
C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\yasearch@yandex.ru => Moved successfully.
C:\Users\Ráďa\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\Extensions\{098DEFE4-7FE4-4a8b-BEF8-6D4ECBC66606}.xpi => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\godimpbmfohihoaikgfknnnmlncabkkp" => Key deleted successfully.
C:\windows\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx => Moved successfully.
QipGuard => Service stopped successfully.
QipGuard => Service deleted successfully.
C:\Program Files (x86)\QipGuard => Moved successfully.
C:\windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Ráďa\Desktop\zoek.exe => Moved successfully.
C:\Users\Ráďa\Desktop\AdwCleaner (1).exe => Moved successfully.
C:\windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Ráďa\Desktop\JRT.txt => Moved successfully.
C:\windows\ERUNT => Moved successfully.
C:\Users\Ráďa\Desktop\AdwCleaner.exe => Moved successfully.
C:\Users\Ráďa\Desktop\JRT.exe => Moved successfully.
"C:\Users\Ráďa\Desktop\FRST.txt" => File/Directory not found.
C:\Users\Ráďa\Desktop\FRSTLauncher.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForRADEK-HP$.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForRáia.job not found.
C:\windows\Tasks\HPCeeScheduleForRáďa.job => Moved successfully.

========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NetSoftware" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#11 Příspěvek od vyosek »

Jak se chova ntb??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#12 Příspěvek od Stene »

Načítání plochy po startu je pořád pomalejší, ale s tím už asi nehneme..

Jinak to vypadá dobře :-)

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#13 Příspěvek od Stene »

Ještě tedy poprosím o kontrolu stavu disku..


----------------------------------------------------------------------------
CrystalDiskInfo 6.1.14 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium SP1 [6.1 Build 7601] (x64)
Date : 2014/08/24 15:57:35

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- Hitachi HTS547564A9E384
- hp DVDRAM GT31L
+ A4JG07BR IDE Controller [SCSI]
- HYVG FSD6J45EV SCSI CdRom Device

-- Disk List ---------------------------------------------------------------
(1) Hitachi HTS547564A9E384 : 640,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) Hitachi HTS547564A9E384
----------------------------------------------------------------------------
Model : Hitachi HTS547564A9E384
Firmware : JEDOA50A
Serial Number : J21A0053GV5X5N
Disk Size : 640,1 GB (8,4/137,4/640,1/640,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1250263728
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : ---- | SATA/300
Power On Hours : 10373 hod.
Power On Count : 3033 krát
Temperature : 36 C (96 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 4080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 176 100 _33 001100000001 Čas na roztočení ploten
04 _99 _99 __0 000000000BEF Počet spuštění/zastavení
05 100 100 __5 000000020018 Počet přemapovaných sektorů
07 100 _98 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _77 _77 __0 000000002885 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 __0 000000000BD9 Počet cyklů zapnutí zařízení
B7 100 100 __0 000000000000 Specifický pro výrobce
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 100 __0 003900360000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000170000 Časový limit příkazu
BE _64 _57 _45 000014240024 Teplota toku vzduchu
BF _80 _80 __0 000000001460 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 0000003D003D Počet vypnutí disku
C1 100 100 __0 000000001C69 Počet cyklů načítání/vymazání
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 100 100 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 4A32 3141 3030 3533 4756 3558 354E
020: 0003 4000 0004 4A45 444F 4135 3041 4869 7461 6368
030: 6920 4854 5335 3437 3536 3441 3945 3338 3420 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0D06 0000 004C 004C
080: 01FC 0028 706B 7C09 6123 7069 BC09 6123 203F 004B
090: 004C 4080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 82B0 4A85 0000 0000 0000 0000 6003 826C 5000 CCA6
110: 43CB E7D4 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 000B
130: 0018 0000 2182 1CF1 3A10 0000 4000 0400 0108 0000
140: 0000 0A03 0A04 0A03 0C03 0000 0000 0000 0000 0000
150: 0000 0000 4448 4435 0000 2904 0000 5DAD 2518 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 54A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 64 64 00 00 00 00 00 00 00 02 25
010: 00 64 64 00 00 00 00 00 00 00 03 23 00 B0 64 01
020: 00 00 00 11 00 00 04 32 00 63 63 EF 0B 00 00 00
030: 00 00 05 33 00 64 64 18 00 02 00 00 00 00 07 2F
040: 00 64 62 00 00 00 00 00 00 00 08 25 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 4D 4D 85 28 00 00 00
060: 00 00 0A 33 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 63 63 D9 0B 00 00 00 00 00 B7 32 00 64 64 00
080: 00 00 00 00 00 00 B8 33 00 64 64 00 00 00 00 00
090: 00 00 BB 32 00 64 64 00 00 36 00 39 00 00 BC 32
0A0: 00 64 64 00 00 17 00 00 00 00 BE 22 00 40 39 24
0B0: 00 24 14 00 00 00 BF 32 00 50 50 60 14 00 00 00
0C0: 00 00 C0 32 00 64 64 3D 00 3D 00 00 00 00 C1 32
0D0: 00 64 64 69 1C 00 00 00 00 00 C4 32 00 64 64 00
0E0: 00 00 00 00 00 00 C5 32 00 64 64 00 00 00 00 00
0F0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 36
100: 00 64 64 00 00 00 00 00 00 00 DF 2A 00 64 64 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 2D 00 01 51
170: 03 00 01 00 02 98 00 00 00 00 00 00 00 00 00 00
180: 00 00 BA 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 22

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 B7 00 00 00 00 00
080: 00 00 00 00 00 00 B8 61 00 00 00 00 00 00 00 00
090: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BC 00
0A0: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
0B0: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
0C0: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C1 00
0D0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0E0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0F0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
100: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 19

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#14 Příspěvek od vyosek »

Ten na tom neni nejlepe :?:
05 100 100 __5 000000020018 Počet přemapovaných sektorů
BB 100 100 __0 003900360000 Ohlášeno neopravitelných chyb
BF _80 _80 __0 000000001460 Počet udalostí zaznamenaných otřesovým senzorem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Stene
Návštěvník
Návštěvník
Příspěvky: 236
Registrován: 03 pro 2013 19:42

Re: Prosím Vyoska o kontrolu zaneřáděného počítače

#15 Příspěvek od Stene »

Tušil jsem to..

můžeme ještě dočistit?

Zamčeno