Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Cistka PC

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Cistka PC

#1 Příspěvek od Albrecht »

Zdravim, prosim o procisteni pocitace prytelkyne asi to bude masakr dekuji :)

---------------------------------------------------------------------------------------------------------------

Logfile of random's system information tool 1.08 (written by random/random)
Run by hp at 2014-09-21 13:41:23
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 742 GB (79%) free of 942 GB
Total RAM: 6127 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:41:48, on 21.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe
C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
C:\Program Files (x86)\Connectify\Connectify.exe
C:\Program Files (x86)\Connectify\DispatchUI.exe
C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Smart PC Cleaner\SPCSmartScan.exe
C:\Users\hp\AppData\Local\iLivid\iLivid.exe
C:\Program Files (x86)\Smart PC Cleaner\SPCReminder.exe
C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\hp\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\hp\AppData\Roaming\SkypEmoticons\SE.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\VTech\Community\System\PCTray.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\hp.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8555
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: YTNavAssistPlugin Class - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: script helper for ie - {00cbb66b-1d3b-46d3-9577-323a336acb50} - (no file)
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - (no file)
O2 - BHO: CrossriderApp0045360 - {11111111-1111-1111-1111-110411531160} - (no file)
O2 - BHO: outobox - {30f06672-0e95-41a9-80cb-dee386af99ad} - C:\Program Files (x86)\outobox\outoboxbho.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Update Timer - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll (file missing)
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: (no name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - (no file)
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SSDMonitor] C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [Gridspot] C:\Program Files (x86)\Gridspot\Gridspot.exe
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [MyPublicWiFi] C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [CommunityTray] "C:\Program Files (x86)\VTech\Community\System\Startup.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe
O4 - HKCU\..\Run: [Smart PC Cleaner] C:\Program Files (x86)\Smart PC Cleaner\SPCLauncher.exe
O4 - HKCU\..\Run: [iLivid] "C:\Users\hp\AppData\Local\iLivid\iLivid.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\hp\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\hp\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [Google Update] "C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SE] "C:\Users\hp\AppData\Roaming\SkypEmoticons\SE.exe" /minimized
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3652145099-1749333591-366478180-501\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Guest\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q (User 'Guest')
O4 - Startup: Facebook Messenger.lnk = C:\Users\hp\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - Startup: MyPC Backup.lnk = C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Site Finder - {CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O18 - Protocol: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (file missing)
O18 - Protocol: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Application Driver Auto Removal Service (01) (appdrvrem01) - Unknown owner - C:\Windows\System32\appdrvrem01.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files (x86)\MyPC Backup\BackupStack.exe
O23 - Service: Blue Coat K9 Web Protection (bckwfs) - Blue Coat Systems, Inc. - C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RoxioNow Service - Roxio - C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 19990 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe"
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
"C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files (x86)\Connectify\Connectify.exe" autorun
"C:\Program Files (x86)\Connectify\DispatchUI.exe" autorun
"C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe" /c /a /s UserSession2
"C:\Users\Guest\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
szndesktop.exe default start
"C:\Users\Guest\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
\??\C:\Windows\system32\conhost.exe "1159288501-1346613361-973200886-15487310071950789925-9950564121403843498-1227802037
"C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe"
"C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe"
"C:\Program Files (x86)\Connectify\ConnectifyService.exe"
WLIDSvcM.exe 3580
"ConnectifyD.exe"
\??\C:\Windows\system32\conhost.exe "1862595744-705014910-1309584101471759439-54380701945967241289144740-72496185
"C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\PowerISO\PWRISOVM.EXE"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe"
"C:\Program Files (x86)\Gridspot\Gridspot.exe"
C:\Windows\System32\alg.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\VTech\Community\System\PCTray.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-367e147f-876b-4f79-aebd-4b486a9c9ce5 -SystemEventPortName:HostProcess-4e32c841-514c-4ed8-a678-0b2d7ab32f67 -IoCancelEventPortName:HostProcess-2ca3ef62-0f38-4612-a10b-b1769c664f5c -NonStateChangingEventPortName:HostProcess-5a213542-d5d9-4d08-a520-3378a5daa43e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c1bcb1b9-6cc8-4a1f-9e8f-66ef348afc63 -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\MyPC Backup\BackupStack.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -scheduled -critical
"C:\Program Files (x86)\Windows Media Player\setup_wm.exe" /RunOnce:"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /prefetch:1
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
taskeng.exe {BED9F8B2-3806-44EB-9167-036EABDA6232}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe" /c /a /s UserSession
"c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe"
"c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe"
"C:\Program Files (x86)\Connectify\Connectify.exe" autorun
"C:\Program Files (x86)\Connectify\DispatchUI.exe" autorun
"C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
"C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
"C:\Program Files (x86)\Smart PC Cleaner\SPCSmartScan.exe"
"C:\Users\hp\AppData\Local\iLivid\iLivid.exe" -autorun
"C:\Program Files (x86)\Smart PC Cleaner\SPCReminder.exe"
"C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe" /c
szndesktop.exe default start
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\hp\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "-1563529011-1750767741471074578-1342293126-359993080-189880299911816295241263930543
"C:\Users\hp\AppData\Roaming\SkypEmoticons\SE.exe" /minimized
"C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe"
"C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe"
"C:\Program Files (x86)\PowerISO\PWRISOVM.EXE"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe"
"C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe" "C:\Program Files (x86)\Yahoo!\Messenger\resources\en-US\" -ymsgr
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\VTech\Community\System\PCTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -scheduled -critical
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1976.0.1630741994\1759344908" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17 --gpu-vendor-id=0x1002 --gpu-device-id=0x71c2 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.56.1.16 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-1-Percent/group_62/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="1976.4.974724071\1760711194" /prefetch:673131151
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Users\hp\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\Dealply.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job
C:\Windows\tasks\PC SpeedUp Service Deactivator.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411531160}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-04-22 347424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll [2011-06-09 1747272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-22 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-04-15 6305912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-04-22 49440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00cbb66b-1d3b-46d3-9577-323a336acb50}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll [2014-02-11 1565464]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411531160}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30f06672-0e95-41a9-80cb-dee386af99ad}]
outobox - C:\Program Files (x86)\outobox\outoboxbho.dll [2013-12-07 249624]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll [2013-02-02 512408]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\IPS\IPSBHO.DLL [2012-06-21 210400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-18 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll [2011-06-09 1598792]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-22 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531}]
Chatvibes Browser Helper Verifier - C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-04-15 4529272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll [2013-02-02 512408]
{D4027C7F-154A-4066-A1AD-4243D8127440}
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn2\yt.dll [2014-02-11 1565464]
{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-04-25 168216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-04-25 391960]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-04-25 418584]
"hpsysdrv"=c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [2008-11-20 62768]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Connectify Hotspot"=C:\Program Files (x86)\Connectify\Connectify.exe [2013-12-23 3755296]
"Connectify Dispatch"=C:\Program Files (x86)\Connectify\DispatchUI.exe [2013-12-23 1685280]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11 138096]
"msnmsgr"=C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [2010-11-10 4240760]
"PCSpeedUp"=C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe [2012-12-14 256448]
"Smart PC Cleaner"=C:\Program Files (x86)\Smart PC Cleaner\SPCLauncher.exe [2013-11-08 134456]
"iLivid"=C:\Users\hp\AppData\Local\iLivid\iLivid.exe [2013-09-09 6827008]
"cz.seznam.software.autoupdate"=C:\Users\hp\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\hp\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Messenger (Yahoo!)"=C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe [2012-05-25 6595928]
"Google Update"=C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe [2014-03-30 116648]
"SE"=C:\Users\hp\AppData\Roaming\SkypEmoticons\SE.exe [2014-05-28 5679008]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-08-27 22027880]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 1155928]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-05-06 658424]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-05-30 59280]
"PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2010-04-12 180224]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2012-06-07 421776]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SSDMonitor"=C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2011-12-12 103896]
"Gridspot"=C:\Program Files (x86)\Gridspot\Gridspot.exe [2012-03-20 525168]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"ApnUpdater"=C:\Program Files (x86)\Ask.com\Updater\Updater.exe [2012-06-06 1564872]
""= []
"MyPublicWiFi"=C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe [2011-12-22 2002944]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"CommunityTray"=C:\Program Files (x86)\VTech\Community\System\Startup.exe [2008-03-15 11776]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-22 4086432]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe

C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Facebook Messenger.lnk - C:\Users\hp\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
MyPC Backup.lnk - C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-01-27 385024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-09-21 13:41:23 ----D---- C:\rsit
2014-09-21 13:41:23 ----D---- C:\Program Files\trend micro
2014-09-20 12:47:28 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-10 07:47:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-09-10 07:47:07 ----A---- C:\Windows\system32\ieui.dll
2014-09-10 07:47:06 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-09-10 07:47:06 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-09-10 07:47:06 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-09-10 07:47:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-09-10 07:47:06 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-09-10 07:47:06 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\vbscript.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\jscript9diag.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\ieUnatt.exe
2014-09-10 07:47:06 ----A---- C:\Windows\system32\iernonce.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\dxtrans.dll
2014-09-10 07:47:06 ----A---- C:\Windows\system32\dxtmsft.dll
2014-09-10 07:47:05 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-09-10 07:47:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-09-10 07:47:05 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-09-10 07:47:05 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-09-10 07:47:05 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-09-10 07:47:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\msrating.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\mshtmled.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\msfeeds.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\jsproxy.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\iesetup.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\iedkcs32.dll
2014-09-10 07:47:05 ----A---- C:\Windows\system32\ie4uinit.exe
2014-09-10 07:47:04 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-09-10 07:47:04 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-10 07:47:04 ----A---- C:\Windows\system32\mshtml.dll
2014-09-10 07:47:03 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-09-10 07:47:03 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-09-10 07:47:03 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-09-10 07:47:03 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-10 07:47:03 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-09-10 07:47:03 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-09-10 07:47:03 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-09-10 07:47:03 ----A---- C:\Windows\system32\ieapfltr.dll
2014-09-10 07:47:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-09-10 07:47:02 ----A---- C:\Windows\system32\iertutil.dll
2014-09-10 07:47:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-09-10 07:47:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-09-10 07:47:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-09-10 07:47:01 ----A---- C:\Windows\system32\wininet.dll
2014-09-10 07:47:01 ----A---- C:\Windows\system32\jscript9.dll
2014-09-10 07:47:00 ----A---- C:\Windows\system32\urlmon.dll
2014-09-10 07:46:59 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-09-10 07:46:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-09-10 07:46:59 ----A---- C:\Windows\system32\ieframe.dll
2014-09-10 07:39:48 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-09-10 07:39:48 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-09-10 06:56:41 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-09-10 06:56:41 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-09-10 06:56:23 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-09-10 06:56:23 ----A---- C:\Windows\system32\d3d10warp.dll
2014-09-10 06:56:13 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-09-10 06:56:13 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-09-10 06:56:13 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-09-10 06:56:13 ----A---- C:\Windows\system32\lsasrv.dll
2014-09-10 06:56:13 ----A---- C:\Windows\system32\kerberos.dll
2014-09-10 06:56:04 ----A---- C:\Windows\system32\aepdu.dll
2014-09-10 06:56:04 ----A---- C:\Windows\system32\aeinv.dll
2014-08-28 08:11:47 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 08:11:47 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 08:11:47 ----A---- C:\Windows\system32\gdi32.dll
2014-08-22 20:06:06 ----A---- C:\Windows\system32\drivers\aswNdisFlt.sys

======List of files/folders modified in the last 1 months======

2014-09-21 13:41:43 ----D---- C:\Windows\Temp
2014-09-21 13:41:23 ----D---- C:\Program Files
2014-09-21 13:38:24 ----D---- C:\Program Files (x86)\BrowserCompanion
2014-09-21 13:38:22 ----D---- C:\Program Files (x86)\SiteFinder
2014-09-21 13:38:20 ----D---- C:\Program Files\McAfee Security Scan
2014-09-21 13:34:29 ----HD---- C:\Windows\system32\GroupPolicyUsers
2014-09-21 13:32:44 ----D---- C:\Users\hp\AppData\Roaming\Seznam.cz
2014-09-21 13:28:45 ----D---- C:\Program Files (x86)\Zrychleni Pocitace
2014-09-21 13:28:35 ----D---- C:\Users\hp\AppData\Roaming\Skype
2014-09-21 13:28:33 ----SHD---- C:\Windows\Installer
2014-09-21 13:28:33 ----D---- C:\ProgramData\Skype
2014-09-21 13:28:28 ----RD---- C:\Program Files (x86)\Skype
2014-09-21 13:28:28 ----D---- C:\Program Files (x86)\Common Files
2014-09-21 13:28:00 ----D---- C:\Windows\Prefetch
2014-09-21 13:27:53 ----D---- C:\Windows\system32\Tasks
2014-09-21 10:56:01 ----AD---- C:\ProgramData\Temp
2014-09-21 07:40:50 ----D---- C:\Windows\system32\config
2014-09-21 07:17:16 ----A---- C:\Windows\SYSWOW64\log.txt
2014-09-21 07:15:22 ----D---- C:\ProgramData\PDFC
2014-09-21 07:13:57 ----D---- C:\ProgramData\truesuite
2014-09-21 07:13:32 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-20 21:46:38 ----D---- C:\Program Files (x86)\Steam
2014-09-20 13:54:46 ----RD---- C:\Program Files (x86)
2014-09-19 22:06:21 ----D---- C:\Windows\System32
2014-09-19 22:06:21 ----D---- C:\Windows\inf
2014-09-19 22:06:21 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-19 13:51:21 ----D---- C:\Program Files (x86)\MyPC Backup
2014-09-18 17:14:45 ----D---- C:\Windows\SYSWOW64\Adobe
2014-09-18 16:57:29 ----D---- C:\Windows\system32\NDF
2014-09-16 18:19:33 ----SHD---- C:\System Volume Information
2014-09-15 16:14:41 ----D---- C:\Windows\system32\catroot2
2014-09-10 18:13:29 ----D---- C:\Windows\rescache
2014-09-10 17:55:06 ----D---- C:\Windows\Microsoft.NET
2014-09-10 15:59:11 ----RSD---- C:\Windows\assembly
2014-09-10 15:43:15 ----D---- C:\Windows\SysWOW64
2014-09-10 15:43:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-09-10 14:05:12 ----D---- C:\Windows\winsxs
2014-09-10 14:02:16 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-10 14:02:16 ----D---- C:\Windows\system32\en-US
2014-09-10 14:02:16 ----D---- C:\Program Files\Internet Explorer
2014-09-10 14:02:14 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-10 07:49:41 ----D---- C:\ProgramData\Microsoft Help
2014-09-10 07:47:17 ----D---- C:\Windows\system32\catroot
2014-09-10 07:46:16 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-09-10 07:45:28 ----D---- C:\Windows\system32\MRT
2014-09-10 07:40:20 ----A---- C:\Windows\system32\MRT.exe
2014-09-10 07:39:43 ----SD---- C:\Windows\system32\CompatTel
2014-09-03 12:32:12 ----RD---- C:\Users
2014-08-29 22:42:38 ----D---- C:\Windows\Minidump
2014-08-25 06:53:42 ----N---- C:\Windows\system32\MpSigStub.exe
2014-08-22 20:06:51 ----D---- C:\Windows\system32\drivers
2014-08-22 20:06:47 ----D---- C:\Windows\system32\DriverStore
2014-08-22 20:06:18 ----D---- C:\Windows
2014-08-22 20:06:15 ----A---- C:\Windows\system32\aswBoot.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;Avast! Firewall Driver; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [2014-08-22 448400]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-22 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-22 224896]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\drivers\iaStor.sys [2011-04-26 557848]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-06-10 560184]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1309010.00E\SYMDS64.SYS [2011-05-16 451192]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1309010.00E\SYMEFA64.SYS [2012-05-22 1129120]
R1 appdrv01;Application Driver (01); C:\Windows\System32\Drivers\appdrv01.sys [2012-06-10 2687592]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2014-08-22 28184]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-22 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-08-22 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-22 426848]
R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\BASHDefs\20120402.001\BHDrvx64.sys [2012-04-03 1160824]
R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys [2012-06-07 167072]
R1 cnnctfy3;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy3.sys [2013-12-25 35352]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2012-04-14 482936]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\IPSDefs\20120413.001\IDSvia64.sys [2012-04-13 488568]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 91568]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS [2012-07-06 37536]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS [2012-04-18 190072]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS [2012-04-18 405624]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-22 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-22 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-22 92008]
R2 bckd;bckd; C:\Windows\system32\drivers\bckd.sys [2014-01-24 126168]
R2 GridspotVMDriver;GridspotVMDriver; \??\C:\Program Files (x86)\Gridspot\VMRuntime\VBoxDrv.sys [2011-11-04 224048]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-21 146432]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 34152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-05-25 2881256]
R3 LVUVC64;QuickCam Communicate Deluxe(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2009-10-07 6379288]
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECIx64.sys [2010-10-19 56344]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver; C:\Windows\system32\DRIVERS\netr28x.sys [2011-04-22 1360960]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2012-04-14 175736]
S3 Bridge;@%SystemRoot%\system32\bridgeres.dll,-3; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 dc3d;MS Hardware Device Detection Driver (USB); C:\Windows\system32\DRIVERS\dc3d.sys [2013-03-25 76464]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-01-27 12273408]
S3 Impcd;Impcd; C:\Windows\system32\drivers\Impcd.sys [2010-02-27 158976]
S3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20120414.016\ENG64.SYS [2012-04-15 117880]
S3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20120414.016\EX64.SYS [2012-04-15 2048632]
S3 NuidFltr;NUID filter driver; C:\Windows\system32\DRIVERS\NuidFltr.sys [2013-05-13 29312]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pmxdrv;pmxdrv; \??\C:\Windows\system32\drivers\pmxdrv.sys [2011-08-25 31152]
S3 Point64;Microsoft Mouse and Keyboard Center Filter Driver; C:\Windows\system32\DRIVERS\point64.sys [2013-05-13 50864]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-04-22 471144]
S3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS [2012-07-06 737952]
S3 taphss6;Anchorfree HSS VPN Adapter; C:\Windows\system32\DRIVERS\taphss6.sys [2013-06-21 42184]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-02-15 52736]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2008-05-06 14464]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-05-24 55184]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-22 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-08-22 106488]
R2 BackupStack;Computer Backup (MyPC Backup); C:\Program Files (x86)\MyPC Backup\BackupStack.exe [2014-09-18 36936]
R2 bckwfs;Blue Coat K9 Web Protection; C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe [2014-01-24 2647256]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2013-12-23 487936]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-06-09 85560]
R2 HPClientSvc;HP Client Services; C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-29 94264]
R2 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2011-02-24 212944]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-02-01 326168]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe [2012-06-16 138272]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2804568]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2011-12-22 578264]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-12-12 793048]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-05-06 1128952]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-01-12 75136]
R2 RoxioNow Service;RoxioNow Service; C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [2010-11-26 399344]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-05-30 3048136]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-02-17 4915040]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-06-07 936848]
S2 appdrvrem01;Application Driver Auto Removal Service (01); C:\Windows\System32\appdrvrem01.exe [2012-06-10 538000]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 FPLService;TrueSuiteService; C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [2011-06-09 264008]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-04-28 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-10 267440]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2013-11-16 227936]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-04-28 116648]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-10-30 194032]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-03-29 799800]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-20 114288]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-08-14 833728]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-04-14 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Re: Cistka PC

#3 Příspěvek od Albrecht »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.9 (09.20.2014:1)
OS: Windows 7 Home Premium x64
Ran by hp on ne 21.09.2014 at 15:18:06,25
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] backupstack
Successfully deleted: [Service] backupstack



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\apnupdater
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\pcspeedup
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\smart pc cleaner
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Page
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\yt.ytnavassistplugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\yt.ytnavassistplugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escort.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\genericasktoolbar.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\tdataprotocol.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\updatebho.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\wit4ie.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\anchorfree
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\blabbers
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\browsercompanion
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\dealply
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\ilivid
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installedbrowserextensions
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\outobox
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\dealply
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\freeze.com
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\outobox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\driverscanner
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\features\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\products\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\protocols\handler\base64
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\protocols\handler\chrome
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\protocols\handler\prox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\speedupmypc
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\tdataprotocol.ctdata
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\tdataprotocol.ctdata.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updatebho.timerbho
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updatebho.timerbho.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wit4ie.witbho
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wit4ie.witbho.2
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0045360.BHO
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0045360.BHO.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0045360.Sandbox
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0045360.Sandbox.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220422532260}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550455535560}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660466536660}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440444534460}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220422532260}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550455535560}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660466536660}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440444534460}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0045360.BHO
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0045360.BHO.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0045360.Sandbox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0045360.Sandbox.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550455535560}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660466536660}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440444534460}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550455535560}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660466536660}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440444534460}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411531160}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5D234AC1-A975-47DA-B4C2-91CB323AF3A9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5F744618-9107-4298-B619-5D4923892A5D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{AF88ABC5-80C7-4531-98CB-FBBD9F087256}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{5F744618-9107-4298-B619-5D4923892A5D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00CBB66B-1D3B-46D3-9577-323A336ACB50}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F06672-0E95-41A9-80CB-DEE386AF99AD}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30f06672-0e95-41a9-80cb-dee386af99ad}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{30f06672-0e95-41a9-80cb-dee386af99ad}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\apn"
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_current_user\software\askpartnernetwork"
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"
Successfully deleted: [Registry Key] "hkey_current_user\software\pip"
Successfully deleted: [Registry Key] "hkey_local_machine\software\apn"
Successfully deleted: [Registry Key] "hkey_local_machine\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\{9b0cb95c-933a-4b8c-b6d4-edcd19a43874}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\typelib\{2996f0e7-292b-4cae-893f-47b8b1c05b56}"



~~~ Files

Successfully deleted: [File] "C:\Windows\Tasks\pc speedup service deactivator.job"
Successfully deleted: [File] C:\Windows\Tasks\Dealply.job
Successfully deleted: [File] "C:\Users\hp\AppData\Roaming\microsoft\windows\start menu\programs\ilivid.lnk"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\dealply"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\newnext.me"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\similarsites"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\smart pc cleaner"
Successfully deleted: [Folder] "C:\Users\hp\appdata\local\apn"
Successfully deleted: [Folder] "C:\Users\hp\appdata\local\genienext"
Successfully deleted: [Folder] "C:\Users\hp\appdata\local\ilivid"
Successfully deleted: [Folder] "C:\Users\hp\appdata\local\mobogenie"
Successfully deleted: [Folder] "C:\Users\hp\appdata\local\visi_coupon"
Successfully deleted: [Folder] "C:\Users\hp\appdata\locallow\applow"
Successfully deleted: [Folder] "C:\Program Files (x86)\applow"
Successfully deleted: [Folder] "C:\Program Files (x86)\browsercompanion"
Successfully deleted: [Folder] "C:\Program Files (x86)\dealply"
Successfully deleted: [Folder] "C:\Program Files (x86)\mobogenie"
Successfully deleted: [Folder] "C:\Program Files (x86)\mypc backup"
Successfully deleted: [Folder] "C:\Program Files (x86)\outobox"
Successfully deleted: [Folder] "C:\Program Files (x86)\sitefinder"
Successfully deleted: [Folder] "C:\Program Files (x86)\smart pc cleaner"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dealply"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\microsoft\windows\start menu\programs\mobogenie"
Successfully deleted: [Folder] "C:\Users\hp\AppData\Roaming\microsoft\windows\start menu\programs\mypc backup"
Successfully deleted: [Folder] "C:\Users\hp\documents\pcspeedup"
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{002E7F12-1F3F-4AB6-B40E-53EAD9B18B55}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0131D5E6-4692-44CA-A822-488B38D8263D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{01F7EF52-4D02-4335-B1E6-305A654F5FB7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{025C05E0-C612-4ED0-ABB2-B068176A21D7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{030AFB8F-7806-4B24-BBB8-79B7B99BFFD8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{03E7A505-1FF9-433E-AF4F-E029C72115FE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{05027A75-649B-421D-93A2-276EB9A4476E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0539D966-6841-4420-A997-F8E34FF24029}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{055B8EAB-64DB-4709-947B-E65408FFCADF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0571B89B-19B5-4A3B-A130-F5729D7F2A92}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{069E5313-9D5D-4775-93C1-D6EEB8C0729D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0760AE14-0825-4DDF-ACB3-FDF85DC63E7C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{07A53C05-8EA9-4440-AE5C-1FF6E8D95AED}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{085A0480-88C8-4385-A374-B291113385AF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{09C75BDB-5ADE-4D24-B118-0D80F3084119}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0A7FD46E-DABD-479A-A4DD-31A47DB8391A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0B0975D2-3FBC-4E4D-BFAF-900C2D297E46}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0C188B51-0766-4FD7-AC81-B47426DF7CC5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0C288C47-50CC-4CCE-A26E-D95178B6D761}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0C50262B-3E74-452C-88F0-D3FAB4C5C184}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0C51A0FD-F2AA-4C9C-BF28-9F893010CBE5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0D580718-642E-4373-8F76-0EB2AF7DA819}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0E6CABA0-87EC-4416-8D9B-94E4090B99C5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0E77FFBE-55F6-48CE-8D81-6B21CD6D46BB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{0F10DAC9-695B-4468-85AC-8833F051B7F5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{109B6B3C-B144-4945-812E-B2E89442C06A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{110039AB-A6C4-40F4-AFA3-CF75277B72CC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1159C0F2-1316-429A-B349-F56D176CC7B6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1289098E-3AC1-402A-B93E-950556874FC7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{13DC5DD6-89B5-4444-B571-823F81CB5D49}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{14E427CA-D6B9-4972-BD42-F14DA4C18254}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{153437AB-B4AB-48E1-A077-96E9879FA275}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{162070A2-2210-4204-B590-A45F91720E7E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{167F4F64-2CFB-407E-8A4E-C7410485E4DD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{16F1C03A-8419-4C3A-A9B3-BA4284BBB804}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1712A9FD-E397-4DFA-A2A3-92096C026CA8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{174E0F19-A579-4535-A3C9-C2F7B7E8BFF7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{183791F6-BE95-4B55-B9F5-379C1945F388}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1886AD53-CAF5-4646-A5A4-00699348B3F2}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{188C1525-FBC9-4274-9F12-5612F4FB3DF6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{18D27374-2945-4AFF-8E78-D901CAB0ABBD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1907494D-239E-4200-A3AD-B1E0466C2DE0}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{196C63A3-43D3-4207-B188-4943EBEB5E7C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{19A93A22-1128-4240-BBB9-0FF605C277A6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1A200505-1A2A-4BD9-81F2-6FE3013498AB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1AB3802C-2B44-4018-BFAB-3B1363EFA740}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1AF802DC-85B6-4FEF-80EF-23731A7E47E7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1B4233FA-E3A7-4440-B49C-4FA4B05D3B33}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1B56AF66-A2A6-4318-8F03-71ACF3A607D5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1C565415-FA0F-4F55-A1FC-97886096907C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1CE0F136-92E0-468B-9779-53D7CCFDDE6E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1CFD0B6D-F9DA-4CBC-B2C6-127D30C5D535}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1DC9956C-52EC-4CF2-BBD6-70509C536338}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1E22D8F4-596C-419A-A538-3E57B6C11B9F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1E3E7265-50D9-4097-8C7B-CA7459D3087C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1F5DBDDD-5746-43AA-BA13-56AC9A2587C0}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{1FC775A3-A455-46D3-97BC-F0B73BA55646}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{212CD02F-A71F-4315-AC93-7A587938C052}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2157072A-C5D8-40D7-9AED-BF10E2620B5A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2276C42A-29E8-4B5A-9E2A-6DA04351361C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2282B9E8-586C-426B-A7B8-EE603AB61AC0}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{239A2013-CBFB-4CF8-9189-118F649697BD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{23E0C26D-9C57-41FB-91DB-B365FAE134BF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{24037098-A585-46DC-8C54-514591A645D6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{252A4342-0591-4821-96AF-C820E9D60E66}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{25AF19E6-CA5B-4C8E-88C8-75E4DCED9D6D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{266FEFD0-6E29-4CD5-B207-45D9FDD86E72}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{268AC4D7-43E0-4ADC-80C4-0B2966E6407F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{27086F6C-A4CB-4AC5-AF6B-165B092AD039}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{278E333D-542C-4EFC-B00D-CEDC154673EA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{27B6DB7D-92D2-480D-9C34-8E1FC5BD3E50}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{285364DB-0ACD-4D80-9633-2F7AD95491C4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{287D827A-F0C8-47A5-8BF8-01ACECC48F1E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{28B24FDA-8375-4492-A51D-FD8187BEA056}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{28C6ECBF-D5A1-44F3-BBB0-8199C754FAB7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{28CDCEEF-6C55-4CBB-B599-A3B0666DC103}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{29151C16-5166-45B2-BDF0-29671C6C5C2C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{297177AF-4CBF-4FDF-8D4B-8700F1C08D43}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{29BEA051-89E2-4309-BC9F-A9CA53183635}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{29DA4E52-7D32-43A0-8B54-81DCA95301EF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2AA89529-25C0-48CF-9488-27851593B14B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2AFFBFEF-FBF9-49CA-AFBA-4FDA0AC8717F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2B539B8F-2DB2-4BE3-9045-D58CBBD11B14}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2B81762A-65CE-49D0-9FA1-1402C18B3E9A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2BB9960C-6FA5-42AA-B7BA-C8A5AC9A2E7D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2BD8C841-C7EC-4DEC-B931-A2ABEF3ECA59}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2C144A67-1039-4AE9-85F5-412819A9D966}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2C1B0D46-A4F2-4336-8465-E0957AED6523}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2CBB1625-6932-4820-9EE8-C0303DE1AA0C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2E8CC63F-14AC-4850-91F8-867E0366D567}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2EB9D8D8-5588-48C0-B9D9-68DA1F933398}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2FD72F9C-1748-4E6A-AB35-0A649D89D6AD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{2FEC89AB-DA50-474E-9886-3879AB94FCCA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{300DD0EF-30E8-4020-B72E-7CFD46775ED9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{30608B85-A1ED-4351-8B25-038F3F93326A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{30770C0D-229B-4238-8A4A-D0685A00CCAA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{30E2F11F-027E-462F-8AC5-8DAFAD0C818C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{30F22161-4888-4D4A-902D-EDEBCB9C6BD6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{312E220B-31F1-402E-8774-B48039D7B220}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{317B1190-2B4D-4477-AEE7-644A4AF0BC99}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{31E14ECF-42A8-416E-9F11-3516417E7473}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{32E19AAB-1164-47D4-96FB-F41D832EA4A1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{33073C45-69C0-4571-B0C6-29A8213D5D60}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3496A6E1-10C4-4519-A9D8-783D50747293}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{34A67CCF-EDCF-4FC6-B9B8-0E620756DB0D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{35CB5BE6-6198-465B-8E20-5BBAB4F69959}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3621CD85-6AA9-4EA7-AFF4-CE9B38E94A73}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{364B07BA-DE03-40D8-BC93-A86252BC46B9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{36A36575-E187-4AF1-ADD3-408099FD0E10}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{36D7D0C9-0E6B-409F-9D32-1397A8D29DA1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{36FB46EF-139A-4441-B8B3-C664A5405922}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{370D3252-671E-45E8-B084-B10A0B86DF9F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{37ECE052-B205-4106-9CFE-DCF29FD1A4EA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{380E5D5E-38AF-4F0D-8280-E86E72F63033}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{383E08E3-D6EF-4A4F-B3C7-0D60D058DFFB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{384B0C70-237A-493A-A0B0-2C6EDF1CED92}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{38537810-DDE0-4852-85F6-2DABCF113A6A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3906759D-5A66-4EA8-9058-893DA5ADEE26}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3913F288-1F31-4A89-A661-FBF730C925BD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{39388874-6951-4DDA-81B4-76E1715B07D6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{39B30B31-B277-4281-BC8C-8729AC9A6DFC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3A9F73B9-2BC3-4E36-B37A-BF986E019AC7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3AE57669-F17B-47BB-AD3F-7D7D83729D12}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3B3A6077-C89D-4719-ACA2-CFA2A4607186}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3D5F95AB-B827-4581-9968-66AC89F70FA6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3D836843-11A5-4023-BEA1-88A836F2AF9D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3D97DEE9-EECC-4C37-A072-41153057F931}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3DDA55D5-79B7-46C6-84B7-5FCBBA29ADF7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3E0102B6-D075-4B61-AF9A-ED2CCFC3E160}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3E87A3CC-FF3D-48DC-BF28-E5D87740A105}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3EA0AA50-000C-4AD4-B680-02D94D17E6DC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{3EB86932-CD9F-42D3-890F-8CB2FE059465}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{404E07FD-30A9-4D70-B677-CEA12CF1DB78}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4091943E-0764-464D-8378-23A5F0B56625}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{40DC377A-1C3D-4480-B677-7A114905824E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{420E8530-96B1-49F9-BE9F-CB5FC539551F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4265773D-E88D-4498-A53E-E79B447FD747}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4314BFF1-5A09-46B8-A2BB-D6C3FF2DD531}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{442C4B42-B05D-4B27-9727-23C3ACEC5FCF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4486FA41-6DE9-47F5-85DD-CC2668AE6AA8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{44957FA6-A15D-4D1A-94E9-EC95851197A8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{44E046E2-EB9A-4625-9A7C-46AE9E998555}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{45F22D64-98C2-4469-A1DA-9BCF8584B460}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{46167784-1BA4-43E6-8E5A-345C540782FB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{474BF983-4C03-4B87-9526-C6DA6CAD2E4C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{47551EA2-E0FA-45A3-BFC5-2553C7FDEA03}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4807D7D9-6231-4103-8DE8-5BF522068401}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4917045B-A8AD-4492-A374-5B9161004938}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{494886A6-2EAA-4EE3-98E8-E9AA50A047CB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{49731033-735C-4D4B-9BE9-AB4376B77911}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{49883D46-C548-43FE-95E8-59E48746775A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4A5F554C-D29F-4494-B3CE-42A80A7FBE22}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4AE55DBC-DE28-4325-8F69-4B0FF3A4B2FE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4B112795-EB58-4315-8215-A97006D0D7CF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4B861BA5-99AF-401B-B7F3-A1C252BC4B25}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4D29976F-4F35-4583-9569-46D7B8812F06}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4DA156B0-6303-4E68-87D7-D1F2CF46ADA3}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4DCFD073-8592-4A7D-BB63-64FE22FF887F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{4E32FC90-5C65-4624-8255-D6D1C2D54675}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{505E248F-8376-48AB-9A43-9924C4D3E460}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{50C06A6C-4B3E-46C0-84B7-5635895C3F5D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{52190F37-AC58-43B8-8A2E-667F245C1F13}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{52B01977-55EE-4D21-B77C-3687DF16C3F9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{530E683B-5204-442F-B9EA-C8BA30B29038}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{536768D2-898D-4835-9B4C-AB639C605403}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{539A578A-A5E9-4AD9-84E4-0294BC4FB516}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{54635FB4-4C74-44A8-89D9-331748A3BF3A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5522C30B-5B2C-478C-8B3E-642AD1D0121E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{55CD389B-0276-4638-9D4F-94841B3E2CCF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{563FA09D-12C1-4278-A131-F0EA3A89E196}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{56AA2950-47C0-488F-971A-F3F4A3111D68}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{585162F7-A196-412A-8B8A-132766518982}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{598387B5-039E-4563-8562-E2D626ABD1D3}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{599EE093-AC96-4CF9-A7AA-2C55D7F29B24}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{599F8AEA-4B03-4540-8C4E-B123674A72EE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5A4DC87E-BBA9-46EB-822C-BCE3E4BB8D0C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5A542AF2-C585-4ACA-8BFE-539AF615FCCA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5A8490B9-6AFE-4748-A45B-B48019BFBD4A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5ACF3903-6CC4-4070-837D-4ADC3C767D0F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5B749665-FF1E-41C1-A2D3-2AD32111A09A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5C40D6CE-79A2-40E0-89B8-796C92A3ECC7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5C43D367-F478-4DBD-B4A9-16ACA686C3F4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5C580B8F-67A8-4374-B6B6-01F492AB8A9B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5C696434-0FBB-4188-A3F1-BD241AA65315}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5CFC00D2-7F13-42D3-A08E-2F1ACA07A1E7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5E3F2A27-4B29-41C9-BEA6-41C38508F5BE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5F7AD484-B6CF-43B6-B3A3-4EDEE9CC59D4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{5FDE49D1-96AA-4096-BF16-7C9EB6A88A97}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{60266A33-A7BF-460A-AE17-A6D8B1725955}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{604A2AA5-1DEA-4BBC-846B-F8539FF110E1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6059FCBB-E6E8-41C7-93D5-7A0FB15A82A2}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6096D003-6E1C-4D8B-AC39-6DE802496570}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{60A73866-F327-4BED-ADDC-6A9EF69524A5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{614FABDD-4B4B-4E7A-9DFD-E4EACCD57A92}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6187AAA4-ACC9-40E4-AF7E-FD530A75675C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{61ACECFB-0AA6-47E8-A7E4-A52D4F8FAF99}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{61BF9580-4A39-48ED-B308-8C455FB7F36F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{62305E67-2F64-49A4-9F51-CE3A42A69B64}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{623771F6-634E-4FD0-BC09-CCEBC27B88DE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{627978B7-1F7F-4100-B875-BE41D41ECA30}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{62B385BD-F1CE-4C82-BC34-79F6B8E0588D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{62C44641-B421-4ECE-A33F-F27692CD1F50}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{62CEA7BE-8D1F-428D-854A-8F60D3FA05A5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{63D1B85D-255A-4DE9-9998-64D3791538E5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{63F06754-99BC-4872-9E41-FC1E8E81E03E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{64A49F3F-17FF-4A2A-A96A-03988D48EB8F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{64CF290D-66CB-4BEE-A755-0DCBAB278275}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{659DEF4C-D64F-4CA2-A83B-14B61768F7A1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{65A72D02-7710-4732-AE78-D7FE305E3163}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6642B701-D064-4956-AAC8-7881EA961A85}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{67E8B6F9-9954-45F7-A195-D0EAACEA66EF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{687F9902-D957-4B10-8036-3212C86502BD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{69B2EF9A-A9B0-475B-98E3-EC3E03FB3C78}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6A1B97C5-A41D-4F83-AA26-2198D1B3173C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6AF71078-0D98-4750-9076-FD4B2C69AB30}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6B95A683-D899-41F2-927C-7BF2894336CC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6BA0F25F-783B-4637-8F4A-CFA98945AB5A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6BD94959-940B-4FCB-A0FD-F4A5ACFB1B01}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6CA726C7-BDDA-42E9-B521-6A4B505D169B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6EB5522F-58C7-4FF6-881C-35752E905083}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6EB99955-0213-4459-BD29-01C65C10C928}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6F86519C-B642-4D09-B8B6-5D6414F3DE81}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6FA4D1BB-F242-4D4F-9220-81BA1C7E005C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{6FE6751A-8F4C-4D20-9660-66B01F84CFAE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7002863E-89DD-4140-846C-D7203230A752}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{71550049-D330-474F-B705-2811F503F729}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{71876CCB-F39F-4B31-8E86-ED95318DCA81}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{72CD86CE-1FB6-4FE6-8347-2285D5FCBE8C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7305D838-B976-455F-89B7-202A14DA0C1D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7518FF08-88AA-4E54-B20B-7504A9B5DAB5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7524D2C1-1F01-49BA-AA58-439889D3895C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{75C45B25-D100-4F29-B97C-07F86FA18B80}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{75FFD7AB-2F5D-4647-BD3C-466C29AB0A40}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{770B08FD-9BD1-4AB7-B66F-8FDAC4C000E7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7828D516-C7BC-413B-8EAA-EDB29C158C0C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7842AF49-5263-41AB-AE5E-14B28A9F40B9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{784612AE-2ED3-449D-B2B6-67A0C472968C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{78603C1D-0B06-4067-A723-ECEF065D7DEF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7A738A41-1553-441D-83D8-48C778783EEF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7B6ACD08-B0B1-41D0-B472-4281809031FD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7BB6DFAC-C8D9-4F2D-937B-5354E155EEBF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7E746853-F8EE-41D0-9657-B2D219CE2809}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{7FDB5130-7B5B-4078-83BE-BABCDDF40403}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{81144B7A-0176-4A7D-8220-763AC2177C3B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8122A374-B47F-4B65-A002-857131F4307C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8146DED1-501F-4FF2-84C1-26CC6D548D66}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{81D2FA36-DD69-49B6-8505-173DB40E3A7C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{82575647-4DAE-414E-9AAF-B77F857AC80D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{82CCE77A-5933-4F10-88C0-005C0BD6865F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8364280D-95FB-4396-859B-2D404D839EF0}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{85234278-6611-487C-BD13-AC6D3C1ED2FA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{86BC432A-E1C9-4F36-9CCF-35288921C215}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{876E7F97-BBEB-4DBC-96AA-C659E609625B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{878588AF-46D6-4EF8-8A7E-39570BDDA40D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{879A3A43-18A2-4E06-ABEC-CAB768588304}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{87A33EFD-13EB-4031-95DD-A59ACF2EAD3C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8848D166-D6A8-453B-A819-18C6DB0541CC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8983705A-3B07-475F-AC1B-C482E5989D2C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{89B21355-52DA-4047-9853-4A65ED1F0B41}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8AA32199-7AFF-40A3-99AF-2EBA5E8F6EB0}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8ADB5637-26AC-45F0-88C8-1B92B316FD65}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8B868F90-904A-4617-A045-5EB07A5E2368}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8BB68A1E-F078-4B0A-8382-CA3489D666C5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8BE8B816-C816-492F-93FE-2D3068359C71}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8C31598A-0D27-4DC3-95CC-418892CB5870}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8D2E81B9-ABF8-416C-916C-169182BECA39}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8E0EF2C0-DE73-467F-8AF4-3498EDDCDF7D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8EAEE2DB-AE36-46FF-B3AF-AEB3AA5BEF1C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8EE549CC-0A7A-4E2E-AA53-1E73592E64D7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8EF691E0-1F0C-4B73-AD45-853E483D8EFD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8F1DCFAA-E43C-4696-B773-B628FE784DED}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8FB11149-B95B-4515-BFA5-7ACD9D3439F6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{8FEB2822-B5AD-4BC3-83BD-76D355A56FFB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9002A663-6A6C-4476-A0E8-21C53CD6A306}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{901CB48D-FA33-4010-AA45-BE7B2867254A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{90888A56-3039-4E11-9595-1DDF513319F4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{90D57F33-4400-4E5B-A7C0-10ED3301D265}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{912F95C4-71FA-4CD2-BF65-36130AC1F3D2}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{91456CEA-5E57-4AD3-AF01-D3E97D1A122C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{91824681-4984-46E2-800B-1126A2D06933}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9216F365-F1D1-4205-8CBE-D84938F25BD9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{934219E9-6D17-4CF5-BF32-CB7135A88664}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9385F626-148B-4183-A614-C418403BB538}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{93FCE621-D68E-4143-AB88-993A4CC4ADF6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{94657213-F4EB-48FD-9F59-DD2FD5751300}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{947050C3-AE5A-4555-BF40-631F4CD6FCE5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{94DF9C1A-6293-4099-AF20-03CF3869C415}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{953F1E50-2136-42AD-9E97-70400CB38EA8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{956454E7-B1D8-43F3-9B2F-4ED1D3F2CD75}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{95B5F7B5-891A-48DB-A894-C47CC14805F0}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{95FECEF1-DEDB-4028-B458-33ED083E079B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{96E19EB4-2092-49F3-B4D8-E199567FEBF3}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{971E31C7-F52B-4F09-9484-7C00CFA804BC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9778AC00-3390-4225-866C-B487F228E4C1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{98AE3167-05DC-40E8-B84C-9140500D02EF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9974B3BD-BDC6-4DBC-9A6A-2C5B57272B70}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{997B84ED-B990-465A-B15A-41ADD0550BF5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{99DDB053-BA1A-469E-ADE1-70C554E8FCD5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{99FE83DC-3399-460C-98E7-B61254283299}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9A9FC853-64EE-4AAE-AC65-EA977B0FD748}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9B7A031C-AFB3-48D0-B850-980AB45001D6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9BF0E871-9DBE-4B99-89BC-12B4BF88D552}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9CD973DB-D196-4AC8-B7D5-18978FED88DB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9D074F94-E34B-4E54-B919-F9CB74DEFD95}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9D32F762-1647-4BDA-9FCD-F53CFB03137A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9E58DBEF-8528-43AE-A8D2-FBC7389A5254}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9E61A265-27C3-4EAE-9CEE-5C57529BA0DF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9EA11E0F-F556-47D7-A830-8ADBD44313B7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9EC4215B-06B5-42C5-91A4-744ADDBC3DD8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{9FF69101-6661-4312-9095-42423EEE0D37}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A00C391F-3AB8-415E-A013-E4CCF858EEBB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A0FDB4D6-A5D8-4C2E-96FD-94534818F703}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A1A18724-2005-49F7-8AAE-775C811290E5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A1E2C4E1-3C12-40AA-8742-209987451588}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A1F06E76-7840-4A4E-9D96-AD6BFF12B3BF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A260C4C7-97E8-442B-A310-DDD43A21DE1E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A2D18D24-0811-4EA8-99EA-336066B1A124}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A303AF58-7EBC-44EA-9F75-9F9EE2C0FDA4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A375D6A0-1AF0-4918-BEE7-06839C8A5B9F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A3F03F13-3A8C-4ED5-935C-4627786C47F9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A42F55EC-FC40-4FFF-BD5C-EFDC12F75B5F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A4CD5456-55C6-45E2-99A5-A8C62CDBBDE6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A4D389E3-909F-4D26-BDC9-A6722D763807}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A5621BEA-AE26-495B-A949-0D1899698D9C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A56C2CFC-7FF4-4180-9B70-A65D2ABD4BEB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A6225513-CD5C-4972-874C-01895575B94E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A90B8AAD-AEC2-4A34-8DEC-254BEFACD865}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{A9460043-91C0-4CF4-B8FD-A14D855BD235}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AA44159D-9837-4718-97B6-94A99CA9713D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AA587444-9D7A-4B26-B846-FBF69D914854}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AA86A814-81C7-4062-ABCE-278A1A63D498}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AA8CC55F-E478-4316-8120-28E8F7DE577E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AB4F4D9F-5912-41A8-9CAA-73B25AF44BBC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AC87F2DA-5B32-468F-A796-13165CFD3472}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{ACD586DF-3DD5-495C-AB53-5A67814D27A4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{ACF68EBA-91F3-4F85-94C4-C6E262859AA9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{ADFA065E-62D2-434B-9521-F2B1B034ED6F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AE4BADEC-CBD1-47CA-ADB6-D334C1A1A121}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AF2D1609-F2DD-41DD-9060-6EFB228DA9C6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{AFA6433B-1809-4A1A-93CA-8B074196AD2E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B0B558A6-D5DB-4599-8912-F68E76C0BADB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B2771874-E599-40E6-8A35-73F55AF5FEB2}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B4913B7E-7C20-4E30-B538-EE8C30067210}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B5B90697-8084-40D8-B12B-FC5F79E9190F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B6AC21BB-C38D-4A4E-8AF0-D4BA5956AA22}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B6E8D30A-4A6D-4AE9-B697-DADFDEE0B3E7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B6F07801-5303-4AE7-85D5-3E20D49FAEC8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B703422D-322C-4B28-AEB1-CD8C6EAA7BAB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B704C725-3A5F-40C2-BDC1-D6A7074D76AB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B720415A-30D1-464B-8122-B16A374D2F7B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B720870A-037B-46CA-99A3-DAEC0A0260A5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B8002230-7E40-46F9-B9F7-D201B42919A2}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{B80C5CBA-79B4-4E92-9570-2043959F5777}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{BAA5B97D-985F-4C42-B32C-A3D08DFD6841}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{BAD59283-B0AA-418A-AAB7-898F65ED8738}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{BBB1CC9E-A3C8-47D6-A9F8-D9489283450B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{BC2E5ACC-7AF5-4C46-8B5D-ECC153ACF4E4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{BC58EF13-2519-4044-A871-C332CE88E2C5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{BEFAFA09-1756-4C01-AF11-7229133F963B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C2DD0665-745D-46B5-81C3-D3C46F137A19}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C4292136-F7F9-4C1B-AA56-11FA17EFE379}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C48257E9-EEE6-42A5-AE11-C0A2F360EF13}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C53A33F8-781A-471B-9110-AA91B7C79C69}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C779EFBA-78D3-433E-AE30-C46EC407FE51}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C9193E72-7A62-4B92-917C-DC2AC4884A44}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C9212200-F900-4CEB-AE1F-B59BE79F1C3B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{C97B0029-4EA4-4153-ACF4-48FA8C6BEE82}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CA5FDF39-7356-48FD-92D5-48F26C278B0C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CB155084-3AFB-4620-B876-B1FCE6B2D52F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CB62ABD4-1217-4598-A5B6-BFE071B2FB9E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CB930B3C-C49C-4BB5-BEA4-FD9A9EB5CB28}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CB9A7FA9-81D8-4EDD-AD4E-8EC59303A7F1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CBA15073-BC21-4E8B-8419-2C95CE4111A7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CC174472-2FD4-4B89-B180-63FB83F149BB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CC63A1F9-01A1-4BCF-BF64-75B25CF54364}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CE039047-4CBF-45DC-876D-AB09AF0B4279}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CF16AC7B-8DBE-44C9-95E6-DF55E305494C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{CF470100-B1A8-4518-A40E-30CB24A4F131}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D0074E71-D0BF-4E8B-ABD1-146302EBC679}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D04FAB8A-B6B5-424A-B395-86AA58BDEF01}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D12957DA-5E76-4A36-BA6D-F4922D953937}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D134B8B8-08E5-415C-997A-85B583E232F1}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D2248560-9E96-4167-A246-1CA4A4422389}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D2851B99-7199-4D5A-8427-3082C45B8925}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D426FB84-94B6-4A54-9DE1-062272BFBC0A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D44EDA69-8990-4998-B29A-723AF0754003}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D4F9830D-4816-4206-ABF9-0D17A5F12666}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D4FEF6D8-5943-483B-877C-3E451D2BF861}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D52F9348-D1FB-4FA8-8B06-A8B1B510D8DB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D59491EE-3283-401F-ACA9-16DBCBAF2D9D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D59C476D-7375-4090-8D8C-F0A472D8654B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D6960746-BBA9-4BFB-B92D-FE6B24F06F3D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D69E7F7B-575C-4B73-BA87-542FA866E20C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D742C96A-3E21-449D-8F21-7D848FF749DD}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D76780F5-EEBC-4E65-BAC3-117D340DD749}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D8727604-A451-408A-9728-63E956313B6A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D8D9EA99-BAE5-45D4-9048-2975170CB9D7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{D9D9709C-01CF-4B52-86B0-16A6C7CC676A}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DA3BBB1D-33F5-4180-8ADF-0BB8B00E30C8}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DA8640A6-551C-4FB3-AE22-B990AA27EA68}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DC0F2DCA-44CF-40AF-9D11-E56B33E19665}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DD2A9BB4-5C25-428A-8579-EECFFE12394C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DD7C7C51-A9D3-4ECE-9AE2-D63542415B7C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DE0D7936-8E4E-4510-90C2-63BF50238BA9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{DEB9E1EA-E6CB-4E21-81DD-581EF5358218}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E04671E4-8F84-4B90-ACE7-4BD04EA27794}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E0690422-C441-481B-935C-BF66E1CCAC13}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E0910062-8F03-49AD-A4F7-97D17FB525FB}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E13A1F5F-BEBA-4907-8444-11E85598A694}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E2252DD6-E054-475F-8F46-45BBBCDD41F4}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E28339A0-C68D-4AB5-9A11-5DB9BDA61520}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E33A4439-5118-47C6-B381-EAB32B8EA791}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E4627703-7466-43D3-9DD0-B9D7C86BCC70}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E56C26FA-0CE8-4FD1-B5AB-D4B2D08DE0C9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E577E188-E10B-4DE4-A051-71B0E5FE2B24}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E63936D5-7379-4FA7-AECA-2261ED316FEF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E66E558F-BCCD-4A4E-9D47-522F90199140}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E693B61D-F591-481C-86AD-BDD424F41027}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E71D8C2E-E42D-4CB1-9903-7BB6AFC20A09}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E7ECFB5F-656E-42CB-AB31-BC019C1537C9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E86E69DA-A818-4DA4-8E19-7DD3D7DF4BCE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E898A7CE-B9F1-4CD2-92A0-63EC00678111}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{E9CBB7EC-F18D-4786-999A-C60A7B5769FE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EA90DC4D-3208-4880-821D-1CFEE165026F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EBE3BF25-9CD4-4C74-A154-DB7126875657}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EDBE2067-9DFA-463A-A625-BE4635316610}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EE00AA6A-2D12-441B-ADA6-7612DBD1BF9B}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EE230271-E5A7-4612-9D33-CE7C1B75C6BC}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EE386292-FAE3-49EC-A4EF-6E147E22D9F6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EE3916D3-9D3C-41AA-A356-47A1865D6B80}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EE490B52-BFD5-467E-8C9D-392236A21911}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EEB8F223-E85B-4B77-AD66-5273D5178E21}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EEE074D9-7439-401B-84C6-CAF74AD24025}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{EF480E75-7024-4ACF-A280-E5A8C2440B7C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F06F938C-D85F-47DD-BC98-7F8272080B5D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F17FD518-3545-448D-9888-B87B2BE550ED}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F40AE339-F1EC-47DF-BBA8-C34713F7C25C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F458F39F-DBC8-49CF-99EE-7B331DBD0BC5}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F4F23A5B-A20E-4621-A411-D5B49D4881EA}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F54D2529-51B4-42B2-9E84-6F4253D17C72}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F56ADA65-3D04-4F04-AD2B-08F8D667ED7E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F6494E53-BCDD-45FD-9ABD-0BA2FCF96A98}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F6907B3B-1135-4EFE-B603-E8D1606D0B76}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F742DC5E-7D61-44E3-8774-D4E105DA96F7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F88C4EED-EBD5-4AE3-865A-AFD620DCEFA6}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F8BFA798-F616-441E-A880-1F47D9E2C609}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F957B6F8-1F24-4412-A344-FBFC4593F36D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{F9FBE47D-FC27-455A-BA24-37C0183A6F1C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FAFCEAF3-E1F9-40F9-B45B-1C75CF8FBA42}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FBC937C0-3032-4799-B791-CEC8A15CD087}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FBF89079-48EA-4CAD-A146-2918CF2E57DF}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FC0D7D0D-E02B-47C7-A003-DC2EB21FC501}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FC4512B7-3D36-496D-A6DA-6620A5146CE9}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FC462FF7-66D9-4A2C-A373-A2031C6FBA3C}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FD073A26-5ABD-4AFC-BA0B-777504A47161}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FD3821BB-3229-45F5-AEB4-9C7162F5A26D}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FD56E200-1731-4517-B323-D7F77B76A43F}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FE2AB924-B427-4E59-80DC-6282A9D740BE}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FEACAE09-1695-4C1D-A3F2-A3E230DB224E}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FEE3DBD3-9F4C-4B0D-88E1-C5EF767E49D7}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FF7BF928-A252-4445-ACE1-2EC27A211401}
Successfully deleted: [Empty Folder] C:\Users\hp\appdata\local\{FFEBAA12-7D4C-4BEC-9A1F-E431AEE3B0F7}
Successfully deleted: [Folder] "C:\ProgramData\ask"
Successfully deleted: [Folder] "C:\ProgramData\AskPartnerNetwork"
Successfully deleted: [Folder] "C:\Users\hp\appdata\locallow\asktoolbar"
Successfully deleted: [Folder] "C:\Program Files (x86)\ask.com"
Successfully deleted: [Folder] "C:\Program Files (x86)\askpartnernetwork"
Successfully deleted: [Folder] "C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}"



~~~ FireFox

Successfully deleted: [File] C:\user.js
Successfully deleted: [File] C:\Users\hp\AppData\Roaming\mozilla\firefox\profiles\lv5jc6py.default-1379005186192\user.js
Successfully deleted: [File] C:\Users\hp\AppData\Roaming\mozilla\firefox\profiles\lv5jc6py.default-1379005186192\invalidprefs.js
Successfully deleted: [File] C:\Users\hp\AppData\Roaming\mozilla\firefox\profiles\lv5jc6py.default-1379005186192\extensions\firefox@outobox.net.xpi
Successfully deleted: [File] C:\Users\hp\AppData\Roaming\mozilla\firefox\profiles\lv5jc6py.default-1379005186192\searchplugins\ask-web-search.xml
Successfully deleted the following from C:\Users\hp\AppData\Roaming\mozilla\firefox\profiles\lv5jc6py.default-1379005186192\prefs.js

user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A
user_pref("extensions.crossrider.bic", "1433a4030fbf154329fd2b420d661215");
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://search.yahoo.com/search?fr=mkg030&p=");
user_pref("extensions.toolbar.mindspark._4zMembers_.BUTTON_STRUCTURE", "[{\"b\":221584481,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":221584482,\"c\":\"mindspark.enterse
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.homepage.prev", "google.com");
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.homepage.savedPrev", "true");
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.homepage.tb", "hxxp://home.tb.ask.com/index.jhtml?ptb=D320CDA2-AF6A-4813-8408-1B30441B2A77&n=780bfd7c&p2=^H
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.page.savedPrev", 1);
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.page.tb", 1);
user_pref("extensions.toolbar.mindspark._4zMembers_.firstKnownVersion", "6.33.3.58478");
user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=D320CDA2-AF6A-4813-8408-1B30441B2A77&n=780bfd7c&p2=^HJ^xdm073^YYA^cz&si=
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", false);
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.user.defined", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installKeysSource", "LocalStorage");
user_pref("extensions.toolbar.mindspark._4zMembers_.installType", "XPI");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2014051708");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm073^YYA^cz");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "pconvFF");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.pixelUrl", "hxxp://videodownloadconverter.dl.tb.ask.com/install_pixels.jhtml?partner=^HJ^xdm073^YYA^cz&coId=4f
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "D320CDA2-AF6A-4813-8408-1B30441B2A77");
user_pref("extensions.toolbar.mindspark._4zMembers_.isCompliantUninstallImplementation", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1408730146448");
user_pref("extensions.toolbar.mindspark._4zMembers_.lastKnownVersion", "6.66.4.33738");
user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.partnerPixelFired", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.successUrl", "hxxp://pconverter.com/thankyou.php");
user_pref("extensions.toolbar.mindspark._4zMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
user_pref("extensions.toolbar.mindspark.hp.enabled", false);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");
user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
user_pref("keyword.URL", "hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=D320CDA2-AF6A-4813-8408-1B30441B2A77&n=780bfd7c&ind=2014051708&p2=^HJ^xdm073^YYA^cz&si=pconvF
Emptied folder: C:\Users\hp\AppData\Roaming\mozilla\firefox\profiles\lv5jc6py.default-1379005186192\minidumps [95 files]



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]
Successfully deleted: [Folder] C:\Users\hp\appdata\local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Successfully deleted: [Folder] C:\Users\hp\appdata\local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 21.09.2014 at 15:32:46,11
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#4 Příspěvek od vyosek »

Pokracujte AdwCleanerem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Re: Cistka PC

#5 Příspěvek od Albrecht »

# AdwCleaner v3.310 - Report created 21/09/2014 at 15:36:48
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : hp - HP-HP
# Running from : C:\Users\hp\Desktop\adwcleaner_3.310.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\AVG SafeGuard toolbar
Folder Deleted : C:\ProgramData\QuickSet
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\smart pc cleaner
Folder Deleted : C:\Program Files (x86)\SiteLookup
Folder Deleted : C:\Windows\SysWOW64\hotspot shield
Folder Deleted : C:\Users\Guest\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Guest\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Guest\AppData\Local\Temp\mt_ffx
Folder Deleted : C:\Users\Guest\AppData\Local\Temp\CT2504091
Folder Deleted : C:\Users\Guest\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Guest\AppData\LocalLow\bbrs_002.tb
Folder Deleted : C:\Users\Guest\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\Guest\AppData\Roaming\buenosearch LTD
Folder Deleted : C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
Folder Deleted : C:\Users\hp\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp
Folder Deleted : C:\Users\hp\AppData\Local\Temp\apn
Folder Deleted : C:\Users\hp\AppData\Roaming\SkypEmoticons
Folder Deleted : C:\Users\hp\Documents\Mobogenie
Folder Deleted : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\CT2504091
Folder Deleted : C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\VideoDownloadConverter_4z
Folder Deleted : C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Folder Deleted : C:\Program Files (x86)\Mozilla Firefox\Extensions\afurladvisor@anchorfree.com
Folder Deleted : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\Extensions\ffxtlbr@buenosearch.com
Folder Deleted : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\Extensions\c1dfde74-f2be-4d24-9833-8adc6cf3e059@53734d20-186a-4050-aeb4-42d8dba902f7.com
Folder Deleted : C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\Extensions\c1dfde74-f2be-4d24-9833-8adc6cf3e059@53734d20-186a-4050-aeb4-42d8dba902f7.com
Folder Deleted : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\Extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\clbfjfbnelcflpgpklppgplejolacbej
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjpdnoojnohifgekbkmnfbiobhcbedka
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
File Deleted : C:\Users\Guest\daemonprocess.txt
File Deleted : C:\Users\Guest\Desktop\TornTV.lnk
File Deleted : C:\Users\hp\daemonprocess.txt
File Deleted : C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iLivid.lnk
File Deleted : C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
File Deleted : C:\Users\hp\Desktop\iLivid.lnk
File Deleted : C:\Users\hp\Desktop\Mobogenie.lnk
File Deleted : C:\Users\hp\Desktop\MyPC Backup.lnk
File Deleted : C:\Users\hp\Desktop\Smart PC Cleaner.lnk
File Deleted : C:\Users\hp\Desktop\Sync Folder.lnk
File Deleted : C:\Program Files (x86)\Mozilla Firefox\Components\AskHPRFF.js
File Deleted : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\searchplugins\buenosearch.xml
File Deleted : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\user.js
File Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.buenosearch.com_0.localstorage
File Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.buenosearch.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : DealPlyUpdate
Task Deleted : LaunchSignup

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Classes\iLivid.torrent
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [se]
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{20EDC024-43C5-423E-B7F5-FD93523E0D9F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{373ED12D-B306-43AC-9485-A7C5133DC34C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{963B125B-8B21-49A2-A3A8-E37092276531}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{817923CB-4744-4216-B250-CF7EDA8F1767}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9F0C17EB-EF2C-4278-9136-2D547656BC03}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B1290521-AB01-40EB-B993-AD122BEFC9E2}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{1EB0A0B0-CABB-495C-A85A-7C8F891799C7}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{830B56CB-FD22-44AA-9887-7898F4F4158D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8830DDF0-3042-404D-A62C-384A85E34833}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{955B782E-CDC8-4CEE-B6F6-AD7D541A8D8A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F06672-0E95-41A9-80CB-DEE386AF99AD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{963B125B-8B21-49A2-A3A8-E37092276531}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F06672-0E95-41A9-80CB-DEE386AF99AD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A244612-A1F7-11E0-95C0-E71F4824019B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{817923CB-4744-4216-B250-CF7EDA8F1767}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9F0C17EB-EF2C-4278-9136-2D547656BC03}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B1290521-AB01-40EB-B993-AD122BEFC9E2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : HKCU\Software\bbrs_002.tb
Key Deleted : HKCU\Software\Blabbers
Key Deleted : HKCU\Software\Smart PC Cleaner
Key Deleted : HKLM\SOFTWARE\PIP
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Smart PC Cleaner_is1
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\outobox
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCSU-SL_is1
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Mozilla Firefox v32.0.2 (x86 en-US)

[ File : C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\prefs.js ]

Line Deleted : user_pref("CT2504091.FF19Solved", "true");
Line Deleted : user_pref("CT2504091.UserID", "UN41038150721480816");
Line Deleted : user_pref("CT2504091.dum", "2");
Line Deleted : user_pref("CT2504091.fullUserID", "UN41038150721480816.IN.20140518105027");
Line Deleted : user_pref("CT2504091.installDate", "18/05/2014 10:50:30");
Line Deleted : user_pref("CT2504091.installSessionId", "{4BB2FC3E-79C3-40EC-9CEE-BC33FF683F9C}");
Line Deleted : user_pref("CT2504091.installSp", "FALSE");
Line Deleted : user_pref("CT2504091.installerVersion", "1.11.0.9");
Line Deleted : user_pref("CT2504091.searchRevert", "false");
Line Deleted : user_pref("CT2504091.searchUninstallUserMode", "1");
Line Deleted : user_pref("CT2504091.searchUserMode", "1");
Line Deleted : user_pref("CT2504091.toolbarInstallDate", "18-05-2014 10:50:27");
Line Deleted : user_pref("CT2504091.versionFromInstaller", "10.30.1.2");
Line Deleted : user_pref("CT2504091.xpeMode", "1");
Line Deleted : user_pref("browser.newtab.url", "hxxp://www.buenosearch.com/?babsrc=NT_ss&mntrI ... 3&tsp=5251");
Line Deleted : user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Line Deleted : user_pref("extensions.buenosearch.admin", false);
Line Deleted : user_pref("extensions.buenosearch.aflt", "babsst");
Line Deleted : user_pref("extensions.buenosearch.appId", "{37EB75F2-7392-4DBE-B5AD-147EC6D7BF5F}");
Line Deleted : user_pref("extensions.buenosearch.autoRvrt", "false");
Line Deleted : user_pref("extensions.buenosearch.dfltLng", "en");
Line Deleted : user_pref("extensions.buenosearch.excTlbr", false);
Line Deleted : user_pref("extensions.buenosearch.ffxUnstlRst", true);
Line Deleted : user_pref("extensions.buenosearch.id", "3e7b568f000000000000d0df9a7fdc65");
Line Deleted : user_pref("extensions.buenosearch.instlDay", "16208");
Line Deleted : user_pref("extensions.buenosearch.instlRef", "sst");
Line Deleted : user_pref("extensions.buenosearch.newTab", false);
Line Deleted : user_pref("extensions.buenosearch.prdct", "buenosearch");
Line Deleted : user_pref("extensions.buenosearch.prtnrId", "buenosearch");
Line Deleted : user_pref("extensions.buenosearch.rvrt", "false");
Line Deleted : user_pref("extensions.buenosearch.smplGrp", "none");
Line Deleted : user_pref("extensions.buenosearch.tb_url", "hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 3&tsp=5251");
Line Deleted : user_pref("extensions.buenosearch.tlbrId", "base");
Line Deleted : user_pref("extensions.buenosearch.tlbrSrchUrl", "hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 3&tsp=5251");
Line Deleted : user_pref("extensions.buenosearch.vrsn", "1.8.28.7");
Line Deleted : user_pref("extensions.buenosearch.vrsnTs", "1.8.28.710:53:39");
Line Deleted : user_pref("extensions.buenosearch.vrsni", "1.8.28.7");
Line Deleted : user_pref("extensions.crossrider.bic", "144c9c1f42b79ad241307573954d5dbe");
Line Deleted : user_pref("smartbar.machineId", "");

[ File : C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\prefs.js ]

Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.BUTTON_STRUCTURE", "[{\"b\":221584481,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":221584482,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]

-\\ Google Chrome v37.0.2062.120

[ File : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 3&tsp=5251
Deleted [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 3&tsp=5251

[ File : C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.babylon.com/?q={searchTerms}&tt=010412_crm&babsrc=SP_crm

*************************

AdwCleaner[R0].txt - [18846 octets] - [21/09/2014 15:35:03]
AdwCleaner[S0].txt - [18148 octets] - [21/09/2014 15:36:48]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [18209 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#6 Příspěvek od vyosek »

:arrow: Zatim to tedy pekne cistime :James008: Jdeme dale :)

:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Re: Cistka PC

#7 Příspěvek od Albrecht »

Zoek.exe v5.0.0.0 Updated 20-September-2014
Tool run by hp on ne 21.09.2014 at 15:48:27,46.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\hp\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

21.9.2014 15:51:15 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Internet Explorer\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4} deleted successfully
HKEY_USERS\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411531160} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Explorer Bars\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\YahooAUService deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\YahooAUService deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\prefs.js:

Added to C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\prefs.js:
user_pref("browser.startup.homepage", "google.cz");
user_pref("browser.search.defaulturl", "http://search.yahoo.com/search?fr=mkg030&p=");
user_pref("browser.search.useDBForOrder", "false");

Added to C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default

user.js not found
---- Lines search.com modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"{BBDA0591-3099-440a-AA10-41764D9DB4DB}\":{\"descriptor\":\"C:\\\\
---- Lines ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360 removed from prefs.js ----
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a405
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a405
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.active", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.addressbar", "NA");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.addressbarenhanced", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncdb.was_copied", "true");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncdb_dbWasSet", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncdb_dbWasSet_FF25_FIX", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncinternaldb.was_copied", "true");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncinternaldb_dbWasSet", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncinternaldb_dbWasSet_FF25_FIX", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.backgroundver", 1);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.certdomaininstaller", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallationTime.value", "%221388251712%2
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallerParams.expiration", "Fri Feb 01
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallerParams.value", "%7B%22source_id%
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.description", "Get free coupons as you surf the
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.domain", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.enablesearch", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.homepage", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.changeprevious", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.iframe", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.InstallationThankYouPage", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.InstallationTime", 1388251712);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParams.expiration", "Fri Feb
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParams.value", "%7B%22source
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_last_executable_r
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_last_executable_r
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_appVer.value", "25");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_nextCheck.expiration", "Sun
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_remote_resources.expiration
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.lastDailyReport", "1411276595981");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.lastUpdate", "1411276595945");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.manifesturl", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.name", "AppLow");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.newtab", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.opensearch", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.pluginsurl", "http://js.geninfocloud.com/plugin/
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.pluginsversion", 16);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.publisher", "savingcollector");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.searchstatus", 0);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.setnewtab", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.thankyou", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.updateinterval", 360);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.ver", 25);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.apps", "45360");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.bic", "144c9c1f42b79ad241307573954d5dbe");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.cid", 45360);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.FilesValidatorDueTime", "1402932457923");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.firstrun", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.hadappinstalled", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.installationdate", 1394954335);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.modetype", "production");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.reportInstall", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.statsDailyCounter", 204);
---- FireFox user.js and prefs.js backups ----

prefs_21.09.2014_1604_.backup

ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192

user.js not found
---- Lines ffxtbr modified from prefs.js ----

user_pref("extensions.enabledAddons", "%7Bea614400-e918-4741-9a97-7a972ff7c30b%7D:3.0.8,c1dfde74-f2be-4d24-9833-8adc6cf3e059%4053734d20-186a-4050-aeb4
user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"{BBDA0591-3099-440a-AA10-41764D9DB4DB}\":{\"descriptor\":\"C:\\\\
---- Lines ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360 removed from prefs.js ----
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a405
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a405
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.active", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.addressbar", "NA");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.addressbarenhanced", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncdb.was_copied", "true");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncdb_dbWasSet", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncdb_dbWasSet_FF25_FIX", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncinternaldb.was_copied", "true");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncinternaldb_dbWasSet", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.asyncinternaldb_dbWasSet_FF25_FIX", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.backgroundver", 1);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.certdomaininstaller", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallationTime.value", "%221388251712%2
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallerParams.expiration", "Fri Feb 01
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.cookie.InstallerParams.value", "%7B%22source_id%
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.description", "Get free coupons as you surf the
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.domain", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.enablesearch", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.homepage", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.changeprevious", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.iframe", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.InstallationThankYouPage", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.InstallationTime", 1388251712);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParams.expiration", "Fri Feb
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParams.value", "%7B%22source
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_last_executable_r
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_last_executable_r
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_appVer.value", "25");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_nextCheck.expiration", "Sat
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_remote_resources.expiration
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.lastDailyReport", "1408730147602");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.lastUpdate", "1408730147188");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.manifesturl", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.name", "AppLow");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.newtab", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.opensearch", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.pluginsurl", "http://js.geninfocloud.com/plugin/
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.pluginsversion", 16);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.publisher", "savingcollector");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.searchstatus", 0);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.setnewtab", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.thankyou", "");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.updateinterval", 360);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.45360.ver", 25);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.apps", "45360");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.bic", "1433a4030fbf154329fd2b420d661215");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.cid", 45360);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.FilesValidatorDueTime", "1403172220747");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.firstrun", false);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.hadappinstalled", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.installationdate", 1388251722);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.modetype", "production");
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.reportInstall", true);
user_pref("extensions.ac1dfde74f2be4d2498338adc6cf3e05953734d20186a4050aeb442d8dba902f7com45360.statsDailyCounter", 198);
---- FireFox user.js and prefs.js backups ----

prefs_21.09.2014_1604_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~3\Yahoo! Companion deleted
C:\Users\hp\.android deleted
C:\PROGRA~2\GUM2593.tmp deleted
C:\PROGRA~2\Mozilla Firefox\defaults\preferences\pref.js deleted
C:\install.exe deleted
C:\Users\hp\AppData\Roaming\Yahoo! deleted
C:\PROGRA~3\Yahoo! deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\hp\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bigfoot Competition - Polish Classics deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk deleted
C:\Users\hp\Downloads\iLividSetup-r484-n-bf.exe deleted
C:\Users\hp\Downloads\bsplayer266.1075.exe deleted
C:\Users\hp\Downloads\bsplayer_installer.exe deleted
C:\Users\hp\Downloads\SoftonicDownloader_for_plants-vs-zombies.exe deleted
C:\Users\hp\Downloads\HSS-3.09-install-hss-512-conduit.exe deleted
C:\Users\hp\AppData\LocalLow\YahooCouponAddOn deleted
C:\Users\hp\AppData\LocalLow\Yahoo! deleted
C:\Users\hp\AppData\LocalLow\Yahoo! Companion deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\Yahoo! Companion deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\hp\Downloads\SkypEmoticons.exe deleted
"C:\PROGRA~3\4897f95f490b0cb5\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}" deleted
"C:\PROGRA~3\4897f95f490b0cb5" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [22.08.2014 20:06]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{e4f94d1e-2f53-401e-8885-681602c0ddd8}"="C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi" [04.04.2014 12:36]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\wubuji3g.default
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

AppDir: C:\Program Files (x86)\Mozilla Firefox
- TrueSuite Website Logon - %AppDir%\extensions\websitelogon@truesuite.com
- Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
- Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192
3CD19649B2C3023D65E67C056457A2BC - C:\Users\hp\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
FB5621842FDABF9F8359775573498FBC - C:\Users\hp\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll - Google Update
5CB01CF141E021DAAE96991A5BA57944 - C:\Users\hp\AppData\Roaming\Mozilla\plugins\npo1d.dll - Google Talk Plugin Video Renderer
DD31F0C436E4F5E6FA9783FF8A80ADC1 - C:\Users\hp\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll - Google Talk Plugin
C195AC4544729A69CFF30BB62F473054 - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1212152.dll - Shockwave for Director / Shockwave for Director
95812430959AE88CDD0301AB3A71913B - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash
F6D12679B9112358AC705A1308156F59 - C:\Users\hp\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[22.08.2014 20:06]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[15.04.2013 15:29]

Google Voice Search Hotword (Beta) - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
Seznam Lištička - Email - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
RadioRage - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpnknncniillgijdlegfdffoheonaddd
avast Online Security - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Website Logon - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpgfhihjicjofdejkbjgnjlaglaciobe
Undeaddies - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kelpionihcglhjecfkpllhkjidamjcni
Seznam Lištička - Rychlá volba - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
Google Voice Search Hotword (Beta) - hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
Skype Click to Call - hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Ask Toolbar - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaojdbdbhbbkpenbmlejjngphokgnp
Browser Companion Helper - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\clbfjfbnelcflpgpklppgplejolacbej
DealPly - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
AppLow - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjfaiddfmhjabcagledbpoppaapacnp
Website Logon - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpgfhihjicjofdejkbjgnjlaglaciobe
Skype for Chromium - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Norton Identity Protection - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
Chrome In-App Payments service - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== Chromium Fix ======================

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaojdbdbhbbkpenbmlejjngphokgnp deleted successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aaaaojdbdbhbbkpenbmlejjngphokgnp_0.localstorage deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje deleted successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gaiilaahiahdejapggenmdmafpmbipje_0.localstorage deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpnknncniillgijdlegfdffoheonaddd deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dpnknncniillgijdlegfdffoheonaddd_0.localstorage deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dpnknncniillgijdlegfdffoheonaddd_0.localstorage-journal deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kelpionihcglhjecfkpllhkjidamjcni deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kelpionihcglhjecfkpllhkjidamjcni_0.localstorage deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kelpionihcglhjecfkpllhkjidamjcni_0.localstorage-journal deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjfaiddfmhjabcagledbpoppaapacnp deleted successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hmjfaiddfmhjabcagledbpoppaapacnp_0.localstorage deleted successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_hmjfaiddfmhjabcagledbpoppaapacnp_0 deleted successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\hmjfaiddfmhjabcagledbpoppaapacnp deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://www.google.com"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Default_Page_URL"="http://www.google.com"
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Default_Page_URL"="http://www.google.com"
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{3F278E8A-B758-4500-9313-D8816127BE5C} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{4078FCEF-4277-4536-9AF4-E43B8C9CD31F} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13415"
{469F2D02-4102-462B-BC70-05874251F5C6} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13415"
{8B271665-4F14-423A-9407-4EB479FFE068} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13415"
{A746493B-761D-48B1-A411-3EA766F01B98} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13415"
{AD1D4CB3-4B37-41B1-A3FE-EC2443002EE1} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{E7F7AF4D-EF6E-4026-BE17-436B91CD2DB3} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415"
{F3395D6F-8E8F-485A-A71D-5A84B9819E1B} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13415"

==== Reset Google Chrome ======================

C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyServer"="http=127.0.0.1:8555"
"ProxyOverride"="127.0.0.1;localhost;10.*;192.168.*;127.0.0.1:895;127.0.0.1:896"
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\d129cd39-2a6f-4f83-bfd6-1ab771d006d4 deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Blue Coat K9 Web Protection deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\hp\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\hp\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AF9ALL78 will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\hp\AppData\Local\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\Cache emptied successfully
C:\Users\TEMP.hp-HP.007\AppData\Local\Mozilla\Firefox\Profiles\g92ftti0.default\Cache emptied successfully
C:\Users\TEMP.hp-HP.010\AppData\Local\Mozilla\Firefox\Profiles\syr1au6w.default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Mozilla\Firefox\Profiles\tq71eini.default\Cache will be emptied at reboot

==== Empty Chrome Cache ======================

C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=594 folders=227 44035760 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Guest\AppData\Local\Temp will be emptied at reboot
C:\Users\hp\AppData\Local\Temp will be emptied at reboot
C:\Windows\SysNative\config\systemprofile\AppData\Local\Temp emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\hp\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\hp\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AF9ALL78" not found
"C:\Users\Guest\AppData\Local\Temp\96BAFA07-BAB0-7891-9F9A-259B87A28399" not found

==== EOF on ne 21.09.2014 at 16:31:00,01 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#8 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Re: Cistka PC

#9 Příspěvek od Albrecht »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-09-2014 01
Ran by hp (administrator) on HP-HP on 22-09-2014 19:58:20
Running from C:\Users\hp\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Blue Coat Systems, Inc.) C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccsvchst.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Pandora.TV) C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
(Connectify) C:\Program Files (x86)\Connectify\Connectify.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
(Connectify) C:\Program Files (x86)\Connectify\DispatchUI.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccsvchst.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Users\hp\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\hp\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe
(PowerISO Computing, Inc.) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Gridspot) C:\Program Files (x86)\Gridspot\Gridspot.exe
(Connectify) C:\Program Files (x86)\Connectify\ConnectifyGopher.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(VTech) C:\Program Files (x86)\VTech\Community\System\PCTray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccsvchst.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Connectify) C:\Program Files (x86)\Connectify\Connectify.exe
(Connectify) C:\Program Files (x86)\Connectify\DispatchUI.exe
() C:\Users\Sabina\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Sabina\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(PowerISO Computing, Inc.) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(VTech) C:\Program Files (x86)\VTech\Community\System\PCTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe
(HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\hp\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [3755296 2013-12-23] (Connectify)
HKLM\...\Run: [Connectify Dispatch] => C:\Program Files (x86)\Connectify\DispatchUI.exe [1685280 2013-12-23] (Connectify)
HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-05-06] (PDF Complete Inc)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-05-30] (Apple Inc.)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [180224 2010-04-12] (PowerISO Computing, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776 2012-06-07] (Apple Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SSDMonitor] => C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe [103896 2011-12-12] (PC Tools)
HKLM-x32\...\Run: [Gridspot] => C:\Program Files (x86)\Gridspot\Gridspot.exe [525168 2012-03-20] (Gridspot)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [MyPublicWiFi] => C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe [2002944 2011-12-22] ()
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [CommunityTray] => C:\Program Files (x86)\VTech\Community\System\Startup.exe [11776 2008-03-15] (VTech)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-08-22] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\Policies\system: [LogonHoursAction] 2
HKU\.DEFAULT\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Facebook Update] => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4240760 2010-11-10] (Microsoft Corporation)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\hp\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\hp\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Messenger (Yahoo!)] => "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Google Update] => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-03-30] (Google Inc.)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22027880 2014-08-27] (Skype Technologies S.A.)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: J - J:\autorun.exe
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: {09b6883f-8a55-11e1-aad7-386077315cd2} - J:\autorun.exe
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: {7aad374a-d8b4-11e0-883b-806e6f6e6963} - E:\SETUP.EXE
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Sabina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Sabina\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
ShortcutTarget: Facebook Messenger.lnk -> C:\Users\hp\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (No File)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\hp\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1439\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1438\User: Group Policy restriction detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
URLSearchHook: HKLM-x32 - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
URLSearchHook: HKLM-x32 - (No Name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
SearchScopes: HKLM - {5F744618-9107-4298-B619-5D4923892A5D} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {3F278E8A-B758-4500-9313-D8816127BE5C} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {4078FCEF-4277-4536-9AF4-E43B8C9CD31F} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {469F2D02-4102-462B-BC70-05874251F5C6} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {8B271665-4F14-423A-9407-4EB479FFE068} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {A746493B-761D-48B1-A411-3EA766F01B98} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {AD1D4CB3-4B37-41B1-A3FE-EC2443002EE1} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {E7F7AF4D-EF6E-4026-BE17-436B91CD2DB3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKCU - {F3395D6F-8E8F-485A-A71D-5A84B9819E1B} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll (Symantec Corporation)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192
FF NewTab: hxxp://www.google.com/
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll ()
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\hp\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin -> C:\Users\hp\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin -> C:\Users\hp\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\hp\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\hp\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\hp\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\hp\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\hp\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\searchplugins\badoo.xml
FF SearchPlugin: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\searchplugins\firmycz.xml
FF SearchPlugin: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\searchplugins\mapycz.xml
FF SearchPlugin: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\searchplugins\seznam.xml
FF SearchPlugin: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\searchplugins\zbocz.xml
FF Extension: Seznam lištička - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\lv5jc6py.default-1379005186192\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2014-06-08]
FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com [2014-09-21]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-20]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-20]
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\IPSFFPlgn
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\IPSFFPlgn [2012-02-15]
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\coFFPlgn [2014-09-22]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-05-19]
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR Profile: C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-21]
CHR Extension: (Google Docs) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-21]
CHR Extension: (Google Drive) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-21]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-31]
CHR Extension: (YouTube) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-21]
CHR Extension: (Google Search) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-21]
CHR Extension: (Google Sheets) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-21]
CHR Extension: (Skype Click to Call) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-05-16]
CHR Extension: (Google Wallet) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-28]
CHR Extension: (Gmail) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-04-15]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 appdrvrem01; C:\Windows\System32\appdrvrem01.exe [538000 2012-06-10] (Protection Technology)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-22] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [106488 2014-08-22] (AVAST Software)
R2 bckwfs; C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe [2647256 2014-01-24] (Blue Coat Systems, Inc.)
R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-12-23] (Connectify) [File not signed]
S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227936 2013-11-16] (WildTangent)
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe [138272 2012-06-16] (Symantec Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation)
R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [578264 2011-12-22] (Pandora.TV)
R2 PCToolsSSDMonitorSvc; C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [793048 2011-12-12] (PC Tools)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-05-06] (PDF Complete Inc)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-01-12] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 appdrv01; C:\Windows\System32\Drivers\appdrv01.sys [2687592 2012-06-10] (Protection Technology)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-22] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-08-22] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-22] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [448400 2014-08-22] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-22] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-22] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [426848 2014-08-22] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-22] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-22] ()
R2 bckd; C:\Windows\System32\drivers\bckd.sys [126168 2014-01-24] (Blue Coat Systems, Inc.)
R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\BASHDefs\20120402.001\BHDrvx64.sys [1160824 2012-04-03] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys [167072 2012-06-07] (Symantec Corporation)
R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2013-12-25] (Connectify)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [482936 2012-04-14] (Symantec Corporation)
R2 GridspotVMDriver; C:\Program Files (x86)\Gridspot\VMRuntime\VBoxDrv.sys [224048 2011-11-04] (Oracle Corporation)
R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\IPSDefs\20120413.001\IDSvia64.sys [488568 2012-04-13] (Symantec Corporation)
S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20120414.016\ENG64.SYS [117880 2012-04-15] (Symantec Corporation)
S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20120414.016\EX64.SYS [2048632 2012-04-15] (Symantec Corporation)
S3 pmxdrv; C:\Windows\system32\drivers\pmxdrv.sys [31152 2011-08-25] ()
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [560184 2012-06-10] (Duplex Secure Ltd.)
S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS [737952 2012-07-06] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS [37536 2012-07-06] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NISx64\1309010.00E\SYMDS64.SYS [451192 2011-05-16] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1309010.00E\SYMEFA64.SYS [1129120 2012-05-22] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [175736 2012-04-14] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS [190072 2012-04-18] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS [405624 2012-04-18] (Symantec Corporation)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.)
S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 19:58 - 2014-09-22 19:58 - 00032598 _____ () C:\Users\hp\Desktop\FRST.txt
2014-09-22 19:58 - 2014-09-22 19:58 - 00000000 ____D () C:\FRST
2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 303697.crdownload
2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\FRSTLauncher.exe
2014-09-22 19:56 - 2014-09-22 19:56 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 672546.crdownload
2014-09-22 19:53 - 2014-09-22 19:54 - 02105856 _____ (Farbar) C:\Users\hp\Desktop\FRST64.exe
2014-09-22 19:03 - 2014-09-22 19:03 - 00000000 ____D () C:\Users\hp\AppData\Local\{5177ACF1-1C75-462E-BEBA-E52EC8841D87}
2014-09-22 18:22 - 2014-09-22 18:22 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Gridspot
2014-09-21 19:40 - 2014-09-21 19:40 - 00000000 ____D () C:\Users\Sandra\AppData\Local\Skype
2014-09-21 19:39 - 2014-09-21 20:20 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Skype
2014-09-21 19:39 - 2014-09-21 19:39 - 00110080 _____ () C:\Users\Sandra\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Symantec
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Seznam.cz
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\AVAST Software
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Apple Computer
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Local\PDFC
2014-09-21 19:38 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Adobe
2014-09-21 19:38 - 2014-09-21 19:38 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{E5128A28-09FA-4B04-B4DE-030771CB111E}
2014-09-21 19:38 - 2014-09-21 19:38 - 00001375 _____ () C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-21 19:38 - 2014-09-21 19:38 - 00001234 __RSH () C:\Users\Sandra\ntuser.pol
2014-09-21 19:38 - 2014-09-21 19:38 - 00000020 ___SH () C:\Users\Sandra\ntuser.ini
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 __SHD () C:\Users\Sabina\AppData\Local\EmieUserList
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 __SHD () C:\Users\Sabina\AppData\Local\EmieSiteList
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 ____D () C:\Users\Sandra\AppData\Local\Google
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 ____D () C:\Users\Sandra
2014-09-21 19:38 - 2013-10-11 16:16 - 00000000 ____D () C:\Users\Sandra\AppData\Local\Adobe
2014-09-21 19:38 - 2012-07-21 03:01 - 00000000 ____D () C:\Users\Sandra\AppData\Local\Microsoft Help
2014-09-21 19:38 - 2011-08-25 18:18 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Macromedia
2014-09-21 19:38 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-21 19:38 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-21 17:55 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Skype
2014-09-21 17:55 - 2014-09-21 17:55 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Skype
2014-09-21 17:45 - 2014-09-22 19:13 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Seznam.cz
2014-09-21 17:45 - 2014-09-22 18:28 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F8DFF3C6-CD79-4584-AC22-822C0B72B262}
2014-09-21 17:45 - 2014-09-21 17:45 - 00110080 _____ () C:\Users\Sabina\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-21 17:45 - 2014-09-21 17:45 - 00001375 _____ () C:\Users\Sabina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\AVAST Software
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Apple Computer
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Adobe
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Local\PDFC
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Google
2014-09-21 17:44 - 2014-09-22 19:08 - 00001234 __RSH () C:\Users\Sabina\ntuser.pol
2014-09-21 17:44 - 2014-09-22 19:08 - 00000000 ____D () C:\Users\Sabina
2014-09-21 17:44 - 2014-09-21 17:44 - 00000020 ___SH () C:\Users\Sabina\ntuser.ini
2014-09-21 17:44 - 2014-09-21 17:44 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Symantec
2014-09-21 17:44 - 2013-10-11 16:16 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Adobe
2014-09-21 17:44 - 2012-07-21 03:01 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Microsoft Help
2014-09-21 17:44 - 2011-08-25 18:18 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Macromedia
2014-09-21 17:44 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Sabina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-21 17:44 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Sabina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-21 16:11 - 2014-09-21 16:11 - 00000108 _____ () C:\folders.txt
2014-09-21 16:11 - 2014-09-21 15:48 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-21 15:50 - 2014-09-21 16:31 - 00045582 _____ () C:\zoek-results.log
2014-09-21 15:48 - 2014-09-21 16:29 - 00000000 ____D () C:\zoek_backup
2014-09-21 15:45 - 2014-09-21 15:46 - 01290752 _____ () C:\Users\hp\Desktop\zoek.exe
2014-09-21 15:36 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-21 15:35 - 2014-09-21 15:37 - 00000000 ____D () C:\AdwCleaner
2014-09-21 15:33 - 2014-09-21 15:33 - 01373475 _____ () C:\Users\hp\Desktop\adwcleaner_3.310.exe
2014-09-21 15:32 - 2014-09-21 15:32 - 00072925 _____ () C:\Users\hp\Desktop\JRT.txt
2014-09-21 15:18 - 2014-09-21 15:18 - 00000000 ____D () C:\Windows\ERUNT
2014-09-21 15:17 - 2014-09-21 15:17 - 01027006 _____ (Thisisu) C:\Users\hp\Desktop\JRT.exe
2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\rsit
2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\Program Files\trend micro
2014-09-21 13:39 - 2014-09-21 13:40 - 00832273 _____ () C:\Users\hp\Desktop\RSITx64.exe
2014-09-21 13:28 - 2014-09-21 19:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-20 12:47 - 2014-09-20 12:47 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-15 20:36 - 2014-09-15 20:36 - 00003088 _____ () C:\Windows\System32\Tasks\{8F6D6BB8-1D1A-42DE-B366-A74756929314}
2014-09-15 19:07 - 2014-09-15 19:09 - 00000000 ____D () C:\Users\Guest\AppData\Local\Ubisoft Game Launcher
2014-09-15 19:07 - 2014-09-15 19:07 - 00001203 _____ () C:\Users\Guest\Desktop\Uplay.lnk
2014-09-15 19:07 - 2014-09-15 19:07 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2014-09-15 19:06 - 2014-09-15 19:06 - 78471096 _____ (Ubisoft) C:\Users\Guest\Downloads\UplayInstaller.exe
2014-09-13 23:17 - 2014-09-13 23:17 - 09611504 _____ (Viacom) C:\Users\Guest\Downloads\InstallMonkeyQuest(2).exe
2014-09-13 15:19 - 2014-09-13 15:19 - 65812970 _____ () C:\Users\Guest\Downloads\slender_0.9.7 (1).zip
2014-09-13 10:08 - 2014-09-13 10:09 - 65812970 _____ () C:\Users\Guest\Downloads\slender_0.9.7.zip
2014-09-10 07:47 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-10 07:47 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-10 07:47 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-10 07:47 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-10 07:47 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-10 07:47 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-10 07:47 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-10 07:47 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-10 07:47 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-10 07:47 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-10 07:47 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-10 07:47 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-10 07:47 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-10 07:47 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-10 07:47 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-10 07:47 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-10 07:47 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-10 07:47 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-10 07:47 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-10 07:47 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-10 07:47 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-10 07:47 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-10 07:47 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-10 07:47 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-10 07:47 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-10 07:47 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-10 07:47 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-10 07:47 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-10 07:47 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-10 07:47 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-10 07:47 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-10 07:47 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-10 07:47 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-10 07:47 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-10 07:47 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-10 07:47 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-10 07:47 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-10 07:47 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-10 07:47 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-10 07:47 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-10 07:47 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-10 07:47 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-10 07:47 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-10 07:47 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-10 07:47 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-10 07:47 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-10 07:47 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-10 07:47 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-10 07:47 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-10 07:47 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-10 07:47 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-10 07:47 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-10 07:47 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-10 07:46 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-10 07:46 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-10 07:46 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-10 07:39 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-10 07:39 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 06:56 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 06:56 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-10 06:56 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 06:56 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 06:56 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 06:56 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 06:56 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 06:56 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 06:56 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-10 06:56 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 06:56 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-08-29 07:11 - 2014-08-30 08:30 - 00000000 ____D () C:\Users\TEMP.hp-HP.011\AppData\Roaming\Mozilla
2014-08-29 07:09 - 2014-09-05 07:02 - 00000000 ____D () C:\Users\TEMP.hp-HP.011
2014-08-29 07:09 - 2014-08-29 07:09 - 00000000 ____D () C:\Users\TEMP.hp-HP.011\AppData\Local\Google
2014-08-28 10:50 - 2014-08-28 10:50 - 00000000 ____D () C:\Users\Guest\AppData\Local\Apple Computer
2014-08-28 08:11 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 08:11 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 08:11 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-24 21:20 - 2014-08-24 21:20 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Riot Games
2014-08-24 21:19 - 2014-08-24 21:20 - 32229024 _____ (Riot Games) C:\Users\Guest\Downloads\LeagueofLegends_NA_Installer_05_07_13.exe
2014-08-24 19:38 - 2014-08-24 19:38 - 00102398 _____ () C:\Users\Guest\Downloads\各路萌宠自拍照走俏网络掀新潮_图片_环球网.htm
2014-08-24 19:38 - 2014-08-24 19:38 - 00000000 ____D () C:\Users\Guest\Downloads\各路萌宠自拍照走俏网络掀新潮_图片_环球网_files
2014-08-23 17:14 - 2014-08-24 08:53 - 00000000 ____D () C:\Users\TEMP.hp-HP.010\AppData\Local\Mozilla
2014-08-23 09:02 - 2014-09-05 07:02 - 00000000 ____D () C:\Users\TEMP.hp-HP.010

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 19:58 - 2014-09-22 19:58 - 00032598 _____ () C:\Users\hp\Desktop\FRST.txt
2014-09-22 19:58 - 2014-09-22 19:58 - 00000000 ____D () C:\FRST
2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 303697.crdownload
2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\FRSTLauncher.exe
2014-09-22 19:56 - 2014-09-22 19:56 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 672546.crdownload
2014-09-22 19:54 - 2014-09-22 19:53 - 02105856 _____ (Farbar) C:\Users\hp\Desktop\FRST64.exe
2014-09-22 19:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-22 19:46 - 2012-06-04 16:38 - 00000970 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job
2014-09-22 19:46 - 2012-04-28 06:06 - 00000944 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-22 19:43 - 2012-04-14 04:05 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-22 19:38 - 2012-07-11 09:29 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-22 19:13 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Seznam.cz
2014-09-22 19:10 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-22 19:10 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-22 19:08 - 2014-09-21 17:44 - 00001234 __RSH () C:\Users\Sabina\ntuser.pol
2014-09-22 19:08 - 2014-09-21 17:44 - 00000000 ____D () C:\Users\Sabina
2014-09-22 19:08 - 2014-03-31 08:40 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job
2014-09-22 19:08 - 2012-04-28 06:06 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-22 19:07 - 2014-01-11 13:54 - 00000000 ____D () C:\Users\hp\AppData\Roaming\Seznam.cz
2014-09-22 19:07 - 2012-04-14 03:51 - 00000632 __RSH () C:\Users\hp\ntuser.pol
2014-09-22 19:07 - 2012-02-15 20:53 - 00000000 ____D () C:\Users\hp
2014-09-22 19:06 - 2012-02-15 20:58 - 00003902 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5476B59C-F8DD-4429-96C2-6BFF815825C1}
2014-09-22 19:06 - 2012-02-15 20:51 - 01460075 _____ () C:\Windows\WindowsUpdate.log
2014-09-22 19:03 - 2014-09-22 19:03 - 00000000 ____D () C:\Users\hp\AppData\Local\{5177ACF1-1C75-462E-BEBA-E52EC8841D87}
2014-09-22 19:03 - 2013-11-01 21:07 - 00000434 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-09-22 19:03 - 2011-08-25 18:19 - 00000000 ____D () C:\ProgramData\PDFC
2014-09-22 19:02 - 2012-10-09 12:05 - 00000000 ____D () C:\Users\hp\Tracing
2014-09-22 19:02 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-22 19:01 - 2014-06-10 22:08 - 00014230 _____ () C:\Windows\setupact.log
2014-09-22 19:01 - 2012-04-14 12:00 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2014-09-22 18:28 - 2014-09-21 17:45 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F8DFF3C6-CD79-4584-AC22-822C0B72B262}
2014-09-22 18:22 - 2014-09-22 18:22 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Gridspot
2014-09-22 13:29 - 2011-08-25 18:23 - 00000000 ____D () C:\ProgramData\truesuite
2014-09-21 20:56 - 2011-08-25 18:12 - 00000000 ____D () C:\ProgramData\Temp
2014-09-21 20:43 - 2012-04-14 05:05 - 00000000 ____D () C:\Users\hp\AppData\Roaming\Skype
2014-09-21 20:20 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Skype
2014-09-21 20:15 - 2012-04-16 19:51 - 00001002 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003UA.job
2014-09-21 19:40 - 2014-09-21 19:40 - 00000000 ____D () C:\Users\Sandra\AppData\Local\Skype
2014-09-21 19:39 - 2014-09-21 19:39 - 00110080 _____ () C:\Users\Sandra\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Symantec
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Seznam.cz
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\AVAST Software
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Apple Computer
2014-09-21 19:39 - 2014-09-21 19:39 - 00000000 ____D () C:\Users\Sandra\AppData\Local\PDFC
2014-09-21 19:39 - 2014-09-21 19:38 - 00000000 ____D () C:\Users\Sandra\AppData\Roaming\Adobe
2014-09-21 19:39 - 2014-09-21 17:55 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Skype
2014-09-21 19:39 - 2014-09-21 13:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-21 19:39 - 2014-08-16 07:30 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-09-21 19:39 - 2012-04-14 05:04 - 00000000 ____D () C:\ProgramData\Skype
2014-09-21 19:38 - 2014-09-21 19:38 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{E5128A28-09FA-4B04-B4DE-030771CB111E}
2014-09-21 19:38 - 2014-09-21 19:38 - 00001375 _____ () C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-21 19:38 - 2014-09-21 19:38 - 00001234 __RSH () C:\Users\Sandra\ntuser.pol
2014-09-21 19:38 - 2014-09-21 19:38 - 00000020 ___SH () C:\Users\Sandra\ntuser.ini
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 __SHD () C:\Users\Sabina\AppData\Local\EmieUserList
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 __SHD () C:\Users\Sabina\AppData\Local\EmieSiteList
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 ____D () C:\Users\Sandra\AppData\Local\Google
2014-09-21 19:38 - 2014-09-21 19:38 - 00000000 ____D () C:\Users\Sandra
2014-09-21 17:55 - 2014-09-21 17:55 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Skype
2014-09-21 17:55 - 2012-04-14 05:04 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-21 17:45 - 2014-09-21 17:45 - 00110080 _____ () C:\Users\Sabina\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-21 17:45 - 2014-09-21 17:45 - 00001375 _____ () C:\Users\Sabina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\AVAST Software
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Apple Computer
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Adobe
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Local\PDFC
2014-09-21 17:45 - 2014-09-21 17:45 - 00000000 ____D () C:\Users\Sabina\AppData\Local\Google
2014-09-21 17:44 - 2014-09-21 17:44 - 00000020 ___SH () C:\Users\Sabina\ntuser.ini
2014-09-21 17:44 - 2014-09-21 17:44 - 00000000 ____D () C:\Users\Sabina\AppData\Roaming\Symantec
2014-09-21 16:31 - 2014-09-21 15:50 - 00045582 _____ () C:\zoek-results.log
2014-09-21 16:29 - 2014-09-21 15:48 - 00000000 ____D () C:\zoek_backup
2014-09-21 16:29 - 2014-08-03 10:00 - 00250522 _____ () C:\Windows\PFRO.log
2014-09-21 16:11 - 2014-09-21 16:11 - 00000108 _____ () C:\folders.txt
2014-09-21 16:05 - 2012-04-14 04:03 - 00000000 ____D () C:\Program Files (x86)\Yahoo!
2014-09-21 15:48 - 2014-09-21 16:11 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-21 15:46 - 2014-09-21 15:45 - 01290752 _____ () C:\Users\hp\Desktop\zoek.exe
2014-09-21 15:37 - 2014-09-21 15:35 - 00000000 ____D () C:\AdwCleaner
2014-09-21 15:37 - 2014-07-05 19:58 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\uTorrent
2014-09-21 15:36 - 2014-03-14 22:27 - 00000000 ____D () C:\Users\Guest
2014-09-21 15:33 - 2014-09-21 15:33 - 01373475 _____ () C:\Users\hp\Desktop\adwcleaner_3.310.exe
2014-09-21 15:32 - 2014-09-21 15:32 - 00072925 _____ () C:\Users\hp\Desktop\JRT.txt
2014-09-21 15:18 - 2014-09-21 15:18 - 00000000 ____D () C:\Windows\ERUNT
2014-09-21 15:17 - 2014-09-21 15:17 - 01027006 _____ (Thisisu) C:\Users\hp\Desktop\JRT.exe
2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\rsit
2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\Program Files\trend micro
2014-09-21 13:40 - 2014-09-21 13:39 - 00832273 _____ () C:\Users\hp\Desktop\RSITx64.exe
2014-09-21 13:38 - 2012-04-28 06:06 - 00002330 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-21 13:28 - 2014-03-15 08:07 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Skype
2014-09-21 13:28 - 2013-01-04 17:39 - 00000000 ____D () C:\Program Files (x86)\Zrychleni Pocitace
2014-09-21 12:08 - 2014-03-31 08:40 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job
2014-09-21 12:08 - 2014-03-16 10:59 - 00000000 ____D () C:\Users\Guest\AppData\Local\CrashDumps
2014-09-21 08:15 - 2012-04-16 19:51 - 00000980 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003Core.job
2014-09-21 07:19 - 2014-03-15 07:29 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Seznam.cz
2014-09-21 07:13 - 2013-04-06 16:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-20 22:46 - 2012-06-04 16:38 - 00000948 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job
2014-09-20 21:46 - 2013-11-16 20:17 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-09-20 12:47 - 2014-09-20 12:47 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-20 10:08 - 2014-03-15 08:07 - 00000000 ____D () C:\Users\Guest\AppData\Local\Skype
2014-09-19 22:06 - 2009-07-14 07:13 - 00786622 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-18 18:03 - 2012-04-14 09:28 - 00000000 ____D () C:\Users\hp\AppData\Local\CrashDumps
2014-09-18 17:26 - 2012-04-14 02:37 - 00000166 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-09-18 17:14 - 2012-10-17 19:34 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-09-15 20:36 - 2014-09-15 20:36 - 00003088 _____ () C:\Windows\System32\Tasks\{8F6D6BB8-1D1A-42DE-B366-A74756929314}
2014-09-15 19:09 - 2014-09-15 19:07 - 00000000 ____D () C:\Users\Guest\AppData\Local\Ubisoft Game Launcher
2014-09-15 19:07 - 2014-09-15 19:07 - 00001203 _____ () C:\Users\Guest\Desktop\Uplay.lnk
2014-09-15 19:07 - 2014-09-15 19:07 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2014-09-15 19:06 - 2014-09-15 19:06 - 78471096 _____ (Ubisoft) C:\Users\Guest\Downloads\UplayInstaller.exe
2014-09-13 23:17 - 2014-09-13 23:17 - 09611504 _____ (Viacom) C:\Users\Guest\Downloads\InstallMonkeyQuest(2).exe
2014-09-13 23:17 - 2014-04-04 19:08 - 00001084 _____ () C:\Users\Guest\Desktop\Play Monkey Quest.lnk
2014-09-13 15:19 - 2014-09-13 15:19 - 65812970 _____ () C:\Users\Guest\Downloads\slender_0.9.7 (1).zip
2014-09-13 10:09 - 2014-09-13 10:08 - 65812970 _____ () C:\Users\Guest\Downloads\slender_0.9.7.zip
2014-09-10 18:13 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-10 15:43 - 2012-04-14 04:05 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-10 15:43 - 2012-04-14 04:05 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-10 15:43 - 2011-08-25 18:17 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-10 07:49 - 2012-07-20 12:20 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-10 07:46 - 2011-02-11 19:15 - 00770488 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-10 07:45 - 2013-08-15 00:54 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-10 07:40 - 2012-05-19 21:20 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-10 07:39 - 2014-05-18 06:30 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-07 08:56 - 2014-03-15 08:13 - 00000409 _____ () C:\Users\Guest\Downloads\url.htm
2014-09-05 07:02 - 2014-08-29 07:09 - 00000000 ____D () C:\Users\TEMP.hp-HP.011
2014-09-05 07:02 - 2014-08-23 09:02 - 00000000 ____D () C:\Users\TEMP.hp-HP.010
2014-09-05 07:02 - 2014-08-17 08:25 - 00000000 ____D () C:\Users\TEMP.hp-HP.009
2014-09-05 07:02 - 2014-08-16 07:27 - 00000000 ____D () C:\Users\TEMP.hp-HP.008
2014-09-05 07:02 - 2014-08-12 07:27 - 00000000 ____D () C:\Users\TEMP.hp-HP.007
2014-09-05 07:02 - 2014-08-10 08:19 - 00000000 ____D () C:\Users\TEMP.hp-HP.006
2014-09-05 04:10 - 2014-09-10 06:56 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-05 04:05 - 2014-09-10 06:56 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-30 08:30 - 2014-08-29 07:11 - 00000000 ____D () C:\Users\TEMP.hp-HP.011\AppData\Roaming\Mozilla
2014-08-29 22:42 - 2012-12-18 01:19 - 00000000 ____D () C:\Windows\Minidump
2014-08-29 22:41 - 2011-09-06 20:17 - 00292210 ____N () C:\Windows\Minidump\082914-65972-01.dmp
2014-08-29 07:09 - 2014-08-29 07:09 - 00000000 ____D () C:\Users\TEMP.hp-HP.011\AppData\Local\Google
2014-08-29 07:07 - 2009-07-14 06:45 - 04970952 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-28 10:50 - 2014-08-28 10:50 - 00000000 ____D () C:\Users\Guest\AppData\Local\Apple Computer
2014-08-28 10:50 - 2014-03-14 22:28 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Apple Computer
2014-08-25 06:53 - 2010-11-21 05:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-08-24 21:20 - 2014-08-24 21:20 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Riot Games
2014-08-24 21:20 - 2014-08-24 21:19 - 32229024 _____ (Riot Games) C:\Users\Guest\Downloads\LeagueofLegends_NA_Installer_05_07_13.exe
2014-08-24 19:38 - 2014-08-24 19:38 - 00102398 _____ () C:\Users\Guest\Downloads\各路萌宠自拍照走俏网络掀新潮_图片_环球网.htm
2014-08-24 19:38 - 2014-08-24 19:38 - 00000000 ____D () C:\Users\Guest\Downloads\各路萌宠自拍照走俏网络掀新潮_图片_环球网_files
2014-08-24 08:53 - 2014-08-23 17:14 - 00000000 ____D () C:\Users\TEMP.hp-HP.010\AppData\Local\Mozilla
2014-08-23 04:07 - 2014-08-28 08:11 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-28 08:11 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-28 08:11 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003Core.job => C:\Users\Sandy&Sabi\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003UA.job => C:\Users\Sandy&Sabi\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\Temp:07F6D9E4
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1

==================== Security Center ==================

AV: Norton Internet Security (Disabled - Out of date) {63DF5164-9100-186D-2187-8DC619EFD8BF}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
AS: Norton Internet Security (Disabled - Out of date) {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Internet Security (Disabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\hp\Desktop" je 3653 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================
Přílohy
Addition.rar
(12.51 KiB) Staženo 84 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#10 Příspěvek od vyosek »

:arrow: Mate tam dva antiviry - Avast a Norton - jeden z nich musi pryc

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
    HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation)
    HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [180224 2010-04-12] (PowerISO Computing, Inc.)
    HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776 2012-06-07] (Apple Inc.)
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Facebook Update] => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4240760 2010-11-10] (Microsoft Corporation)
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\hp\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\hp\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Messenger (Yahoo!)] => "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Google Update] => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-03-30] (Google Inc.)
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22027880 2014-08-27] (Skype Technologies S.A.)
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Policies\system: [LogonHoursAction] 2
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: J - J:\autorun.exe
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: {09b6883f-8a55-11e1-aad7-386077315cd2} - J:\autorun.exe
    HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: {7aad374a-d8b4-11e0-883b-806e6f6e6963} - E:\SETUP.EXE
    HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Sabina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
    HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Sabina\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
    Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
    GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1439\User: Group Policy restriction detected <======= ATTENTION
    GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1438\User: Group Policy restriction detected <======= ATTENTION
    
    URLSearchHook: HKLM-x32 - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
    URLSearchHook: HKLM-x32 - (No Name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
    SearchScopes: HKLM - {5F744618-9107-4298-B619-5D4923892A5D} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
    Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
    
    FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-20]
    FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-20]
    FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
    FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
    
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-04-15]
    
    S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X]
    
    2014-09-22 19:58 - 2014-09-22 19:58 - 00032598 _____ () C:\Users\hp\Desktop\FRST.txt
    2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 303697.crdownload
    2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\FRSTLauncher.exe
    2014-09-22 19:56 - 2014-09-22 19:56 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 672546.crdownload
    2014-09-21 16:11 - 2014-09-21 16:11 - 00000108 _____ () C:\folders.txt
    2014-09-21 16:11 - 2014-09-21 15:48 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-09-21 15:50 - 2014-09-21 16:31 - 00045582 _____ () C:\zoek-results.log
    2014-09-21 15:48 - 2014-09-21 16:29 - 00000000 ____D () C:\zoek_backup
    2014-09-21 15:45 - 2014-09-21 15:46 - 01290752 _____ () C:\Users\hp\Desktop\zoek.exe
    2014-09-21 15:36 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
    2014-09-21 15:35 - 2014-09-21 15:37 - 00000000 ____D () C:\AdwCleaner
    2014-09-21 15:33 - 2014-09-21 15:33 - 01373475 _____ () C:\Users\hp\Desktop\adwcleaner_3.310.exe
    2014-09-21 15:32 - 2014-09-21 15:32 - 00072925 _____ () C:\Users\hp\Desktop\JRT.txt
    2014-09-21 15:18 - 2014-09-21 15:18 - 00000000 ____D () C:\Windows\ERUNT
    2014-09-21 15:17 - 2014-09-21 15:17 - 01027006 _____ (Thisisu) C:\Users\hp\Desktop\JRT.exe
    2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\rsit
    2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\Program Files\trend micro
    2014-09-21 13:39 - 2014-09-21 13:40 - 00832273 _____ () C:\Users\hp\Desktop\RSITx64.exe
    
    ask: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003Core.job => C:\Users\Sandy&Sabi\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003UA.job => C:\Users\Sandy&Sabi\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe
    
    AlternateDataStreams: C:\ProgramData\Temp:07F6D9E4
    AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Re: Cistka PC

#11 Příspěvek od Albrecht »

Odstranil sem Nortona
------------------------------------------

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 21-09-2014 01
Ran by hp at 2014-09-22 20:30:11 Run:1
Running from C:\Users\hp\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [180224 2010-04-12] (PowerISO Computing, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776 2012-06-07] (Apple Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Facebook Update] => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4240760 2010-11-10] (Microsoft Corporation)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\hp\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\hp\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Messenger (Yahoo!)] => "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Google Update] => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-03-30] (Google Inc.)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22027880 2014-08-27] (Skype Technologies S.A.)
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: J - J:\autorun.exe
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: {09b6883f-8a55-11e1-aad7-386077315cd2} - J:\autorun.exe
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\...\MountPoints2: {7aad374a-d8b4-11e0-883b-806e6f6e6963} - E:\SETUP.EXE
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Sabina\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Sabina\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1439\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1438\User: Group Policy restriction detected <======= ATTENTION

URLSearchHook: HKLM-x32 - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
URLSearchHook: HKLM-x32 - (No Name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
SearchScopes: HKLM - {5F744618-9107-4298-B619-5D4923892A5D} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-20]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-20]
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-04-15]

S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X]

2014-09-22 19:58 - 2014-09-22 19:58 - 00032598 _____ () C:\Users\hp\Desktop\FRST.txt
2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 303697.crdownload
2014-09-22 19:57 - 2014-09-22 19:57 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\FRSTLauncher.exe
2014-09-22 19:56 - 2014-09-22 19:56 - 00112640 _____ (forum.viry.cz) C:\Users\hp\Desktop\Unconfirmed 672546.crdownload
2014-09-21 16:11 - 2014-09-21 16:11 - 00000108 _____ () C:\folders.txt
2014-09-21 16:11 - 2014-09-21 15:48 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-21 15:50 - 2014-09-21 16:31 - 00045582 _____ () C:\zoek-results.log
2014-09-21 15:48 - 2014-09-21 16:29 - 00000000 ____D () C:\zoek_backup
2014-09-21 15:45 - 2014-09-21 15:46 - 01290752 _____ () C:\Users\hp\Desktop\zoek.exe
2014-09-21 15:36 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-21 15:35 - 2014-09-21 15:37 - 00000000 ____D () C:\AdwCleaner
2014-09-21 15:33 - 2014-09-21 15:33 - 01373475 _____ () C:\Users\hp\Desktop\adwcleaner_3.310.exe
2014-09-21 15:32 - 2014-09-21 15:32 - 00072925 _____ () C:\Users\hp\Desktop\JRT.txt
2014-09-21 15:18 - 2014-09-21 15:18 - 00000000 ____D () C:\Windows\ERUNT
2014-09-21 15:17 - 2014-09-21 15:17 - 01027006 _____ (Thisisu) C:\Users\hp\Desktop\JRT.exe
2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\rsit
2014-09-21 13:41 - 2014-09-21 13:41 - 00000000 ____D () C:\Program Files\trend micro
2014-09-21 13:39 - 2014-09-21 13:40 - 00832273 _____ () C:\Users\hp\Desktop\RSITx64.exe

ask: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003Core.job => C:\Users\Sandy&Sabi\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003UA.job => C:\Users\Sandy&Sabi\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe

AlternateDataStreams: C:\ProgramData\Temp:07F6D9E4
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => Value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => Value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Norton Online Backup => Value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\PWRISOVM.EXE => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5ServiceManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Messenger (Yahoo!) => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\LogonHoursAction => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DontDisplayLogonHoursWarnings => value deleted successfully.
"HKU\S-1-5-21-3652145099-1749333591-366478180-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-3652145099-1749333591-366478180-1000" => Key not found.
"HKU\S-1-5-21-3652145099-1749333591-366478180-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{09b6883f-8a55-11e1-aad7-386077315cd2}" => Key deleted successfully.
"HKCR\CLSID\{09b6883f-8a55-11e1-aad7-386077315cd2}" => Key not found.
"HKU\S-1-5-21-3652145099-1749333591-366478180-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7aad374a-d8b4-11e0-883b-806e6f6e6963}" => Key deleted successfully.
"HKCR\CLSID\{7aad374a-d8b4-11e0-883b-806e6f6e6963}" => Key not found.
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-3652145099-1749333591-366478180-1438\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk => Moved successfully.
C:\Windows\system32\GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1439\User => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
C:\Windows\system32\GroupPolicyUsers\S-1-5-21-3652145099-1749333591-366478180-1438\User => Moved successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5F744618-9107-4298-B619-5D4923892A5D}" => Key deleted successfully.
"HKCR\CLSID\{5F744618-9107-4298-B619-5D4923892A5D}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully.
"HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" => Key not found.
C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} => Moved successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} => Moved successfully.
HKCU\Software\Mozilla\Firefox\Extensions\\{e4f94d1e-2f53-401e-8885-681602c0ddd8} => value deleted successfully.
C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx => Moved successfully.
X6va011 => Service deleted successfully.
C:\Users\hp\Desktop\FRST.txt => Moved successfully.
"C:\Users\hp\Desktop\Unconfirmed 303697.crdownload" => File/Directory not found.
C:\Users\hp\Desktop\FRSTLauncher.exe => Moved successfully.
"C:\Users\hp\Desktop\Unconfirmed 672546.crdownload" => File/Directory not found.
C:\folders.txt => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\hp\Desktop\zoek.exe => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\hp\Desktop\adwcleaner_3.310.exe => Moved successfully.
C:\Users\hp\Desktop\JRT.txt => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\hp\Desktop\JRT.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\hp\Desktop\RSITx64.exe => Moved successfully.
ask: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe => Error: No automatic fix found for this entry.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1003UA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3652145099-1749333591-366478180-1000UA.job => Moved successfully.
C:\ProgramData\Temp => ":07F6D9E4" ADS removed successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 581.2 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#12 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Albrecht
Návštěvník
Návštěvník
Příspěvky: 152
Registrován: 30 led 2009 13:30
Bydliště: Plzeň

Re: Cistka PC

#13 Příspěvek od Albrecht »

OK dekuji za opet skvelou praci ;)

:closed:

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Cistka PC

#14 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno