Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

pomaly internet okna se mi sami oteviraji

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

pomaly internet okna se mi sami oteviraji

#1 Příspěvek od Abbe »

prosim o pomoc uz nvm co s tim porad se to zasekava oteviraji se okna preskakuje me to kdyz chci kliknout na odkaz abych klikl na reklamu atd. Doufam ze poslu spravny lig z rsit.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jakub at 2014-09-24 13:32:11
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 4 GB (1%) free of 305 GB
Total RAM: 3001 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:32:18, on 24.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
C:\Program Files\trend micro\Jakub.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://sqczlin.cz/o
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: CrossriderApp0059568 - {11111111-1111-1111-1111-110511951168} - C:\Program Files (x86)\HD-V1.8\HD-V1.8-bho.dll (file missing)
O3 - Toolbar: SiteFinder - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll (file missing)
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Quick-Launch Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files (x86)\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launch Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files (x86)\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Site Finder - {CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: c:\progra~2\movies~1\datamngr\mgrldr.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - Unknown owner - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - Unknown owner - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\Windows\system32\HPSIsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: EgisTec Service (IGBASVC) - Egis Technology Inc. - C:\Program Files (x86)\Acer Bio Protection\BASVC.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\Windows\SysWOW64\nethtsrv.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protect Monitor (ProtectMonitor) - Unknown owner - C:\Program Files\PCDApp\StartHelp.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\Windows\SysWOW64\netupdsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9337 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Acer Bio Protection\CompPtcVUI.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"taskhost.exe"
taskeng.exe {8343AB1D-6CDA-416B-BF9E-49162F5D5A21}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
C:\Windows\system32\HPSIsvc.exe
"C:\Program Files (x86)\Acer Bio Protection\BASVC.exe"
"C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
C:\Windows\SysWOW64\netupdsrv.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"

"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3220.112dd790.547052132 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 3220 "\\.\pipe\gecko-crash-server-pipe.3220" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe" --proxy-stub-channel=Flash1544.6EDB8BD8.4588 --host-broker-channel=Flash1544.6EDB8BD8.11170 --host-pid=1544 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe" --channel=2348.0046F714.223950553 --proxy-stub-channel=Flash1544.6EDB8BD8.4588 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll" --host-npapi-version=27 --type=renderer
"C:\Users\Jakub\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-1.job - C:\Program Files (x86)\HD-V1.8\HD-V1.8-codedownloader.exe /UhDrlG /gjWvTITqL=task /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /qCHxovSgb=1.34.6.10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /wvFkWe=http://js.democlientnet.com /CjQVh=ff /kftdvfCHI='HD-V1.8' /jZIHa=http://js.clientdemocloud.com /AZptvQBh /tjDinAv='{"asw":[67108872, 5, 0]}' /bbHKcWc='http://update.democlientnet.com/ie_code ... pdate.json' /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-10.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-10.exe /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /dsHOwFaOL='HD-V1.8' /akkGk=1000 /xvrPint=93-0,102-0,104-0,178-288,179-288,180-288,223-288 /VFGQskT=http://logs.democlientnet.com /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-11.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-11.exe 001715 23371C0280574D30A9607A6DFAF80BF1IE 59568 1404211088 93-0,102-0,104-0,178-288,179-288,180-288,223-288
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-2.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-2.exe /CqKHedRW /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /BYdOfmzOk=11111111-1111-1111-1111-110511951168 /CjQVh=ff /ZojoP /AZptvQBh /bbHKcWc='http://update.democlientnet.com/ie_enab ... pdate.json' /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-3.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-3.exe /oiPMR=Fdzeru8B6UTGbAfExr6RI8fEricdQ/T8RzA6U0k/p4u4u0+ZnFHN/jEwgefjGNmV9U2pirHZscq98VbVqb6/kMASUi4YV/E9A4ogoMMmURkv84J9mTGXR7mcI3t43gPF6kYEYJbVeqWM6XrzeePhscIwLK44m+rR5vl918ILGUdTf1ZgQUCSfC5jEjjBZQSnUG90dzdG08z2AO732aCpjWhKtzqeGurXLjDGl8ZQevhPD2UxqELg8O9MUGoex5PruGqMc01xnMPPwWT6ZplWp9vXN/0tWvFp0jEgurmgSYXpLszSKYuw/gfKZ/y3V7luNa9c6qyZ3FvS+qiBmi6VfGbHZkQEYTaQEzH2bfgLDUJMwojUkfBs+2Cswx2VxLCgTUNxMz+zbVT7CGy3h4hyaxQi+NgV1SyefujG50mhyE1PAIU/5aAj5sO8f8FfyVHZatOEHpSRQdvDD71gJN0UvbhHP3B3BzIk8RWj25GJgkCEprXbzv44T+hH8UJrtVfqGpZ3+tvzdOW5NUrNRhbikAKdW8F0wc9A0gg5toCZjNE7xgMUV92KpqDttrPafFJJ6OuMfSSkjRXwnnMI5i5iKJk1oe/xCjYCfc+yhdS8MwxxqQZ8bJS0N3xSYrIuYh2+OoVD/bLemRI8kcfWIyFb8YbtuMu34DvFKItF2XZ3a00QbbqakywkqPhfXcdH3lQdNB73I55GyIf1gut1EYMDzH7h4JrCuHuBYKrKMmRWl28RGis5u+q6IF9pwFGyUN3oQUWeybHw0wGUti85Kk8DPhOd5Bupxe3Swh/f2eaYLEIRXPjyU97ob2ICH0ImZnwVbfCOMacGTa35mqch1305sXUmor8Z9dmzVqkCKrbeNko/ToVu2yfdanBjQWPljBayvnivx1l6q7wsrHK1Ojf5vyhZyX5IPaQgyYCcmEazTdZxymAcZjnllbCrTun2ClzVeOxB8gqE0nKlb3gIl9GmWQ7wcLxNM9fxfno5vYq6TJpERq+VNsZxaYBOFkW+3dFfMzAiGYP1NjkWPK4fA0O9IOC//xpeQrzpiEfPDS8OmfWIRz7O89zZOCtqTKVy5gL2Bwx8XYpJKbrffPAb5703tAD5lseye+GZSnlvi5WSomdh61Asnh82wYOX3ismxvIfURbkgOLWxaWJg4mkv+5wkJ+KKMHdUiouPEYhVRUxj+Ch/3d3N5KWj+mHeCBAjD/w4Jmj32eQU7IqBF0i2u7VhJyxmYftO7ueO8zZAE6Gm6tX6fqR2Rzv9SyyaFDM7wJgscHXdoJXMBnKf5p/Ed+iROGBl3Dt2pB2fzCtpl7PLOD040Ef+Z/xqoJGuPR1ZkwQeQrnWy+4OURjdoyYsIp8jA==
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-4.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-4.exe /afqlWsxT /tmYzF='HD-V1.8' /bNoksL='C:\Program Files (x86)\HD-V1.8\59568.xpi' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /qCHxovSgb=1.34.6.10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /JcyMnkJE=300 /bedFK=f80af4ec-42b9-429d-99b0-4078ec7cf864@44882d20-8865-4b13-b79e-ae8470d9a955.com /JqUZR=0.94 /mozpiHe=af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568 /xKbJX=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /59568.rdf /dsHOwFaOL='HD-V1.8' /bLKeQD='Turn YouTube videos to High Definition by default' /vXZtTvB='InfoHD-V1.8' /CjQVh=ff /tjDinAv='{"asw":[67108872, 5, 0]}' /AZptvQBh /PSuzmpV /kXxfiNB /bbHKcWc='http://update.democlientnet.com/ff_agen ... pdate.json' /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-5.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-5.exe /ARaItDTUx /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /XxMXNLpLI=http://ipgeoapi.com/ /fuwhFY=http://update.democlientnet.com /VOaTqVU=2 /VFGQskT=http://logs.democlientnet.com /bbHKcWc='http://update.democlientnet.com/updater ... pdate.json' /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-5_user.job - C:\Program Files (x86)\HD-V1.8\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-5.exe /ARaItDTUx /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /XxMXNLpLI=http://ipgeoapi.com/ /fuwhFY=http://update.democlientnet.com /VOaTqVU=2 /VFGQskT=http://logs.democlientnet.com /bbHKcWc='http://update.democlientnet.com/updater ... pdate.json' /Bzbhgmoy /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-6.job - C:\Program Files (x86)\HD-V1.8\HD-V1.8-novainstaller.exe /yUfafiBNd /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /qCHxovSgb=1.34.6.10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /wvFkWe=http://js.democlientnet.com /CjQVh=ff /JKTpqGJSV /kftdvfCHI=HD-V1.8 /hwvSBu='nova' /jZIHa=http://js.clientdemocloud.com /tjDinAv='{"asw":[67108872, 5, 0]}' /gjWvTITqL=task /bbHKcWc='http://update.democlientnet.com/novacod ... pdate.json' /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-7.job - C:\Program Files (x86)\HD-V1.8\HD-V1.8-nova.exe /tmYzF='HD-V1.8' /VcaOinD=59568 /iZKtjcC='001715' /DweBrm='0' /vZlOEbtTG='0' /uagnTWhw=23371C0280574D30A9607A6DFAF80BF1IE /jANlEtyt=dcb2966b5f933c1eba23a72d30b08c61 /jDoiK=1_34_06_10 /qCHxovSgb=1.34.6.10 /AZMKfmxC=1404211088 /bTnDNCp=http://stats.democlientnet.com /maTWCr=http://errors.democlientnet.com /wvFkWe=http://js.democlientnet.com /CjQVh=ff /JKTpqGJSV /kftdvfCHI=HD-V1.8 /hwvSBu='nova' /jZIHa=http://js.clientdemocloud.com /tjDinAv='{"asw":[67108872, 5, 0]}' /bbHKcWc='http://update.democlientnet.com/novarun ... pdate.json' /gjWvTITqL='task' /ZVXes=''
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\AmiUpdXp.job - C:\Users\Jakub\AppData\Local\8522\a28710.exe
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000Core.job - C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000UA.job - C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://sqc.zlin.cz/o/"
prefs.js - "keyword.URL" - "http://websearch.exitingsearch.info/?pi ... =50&l=1&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0]
"Description"=DivX Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin]
"Description"=VideoDownloadConverter Plugin
"Path"=C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\extensions\
cg9.6xu@ahahnhknl.com
EOPN29927080@OCIFAPD100469180.com
oqthxvb@jbujbcfw.net
sitematcher@sitematcher.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}]
HD-V1.8 - C:\Program Files (x86)\HD-V1.8\HD-V1.8-bho64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}]
SAveLots

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63A74F4E-FB96-C709-047D-605445B6E8B2}]
SNT - C:\Program Files (x86)\SNT\BGpYOd.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{98C291DE-287E-AE21-0C31-0CE533A393D2}]
RandOmPRRIce - C:\ProgramData\RandOmPRRIce\vo.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6A17344-1E02-489E-2468-93F7C287A76E}]
safoeeweb - C:\Program Files (x86)\safoeeweb\TykdtSp.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B50E5A3D-14C4-536E-6790-87E9977C4084}]
YoutubeAdblocker - C:\Program Files (x86)\YoutubeAdblocker\y_lVEC.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}]
HD-V1.8 - C:\Program Files (x86)\HD-V1.8\HD-V1.8-bho.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - SiteFinder - C:\Program Files (x86)\SiteFinder\SiteFinder.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 1331288]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-16 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-18 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent]
C:\Users\Jakub\AppData\Roaming\BitTorrent\BitTorrent.exe [2013-06-21 882520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BlueStacks Agent]
C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2014-01-20 811792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Jakub\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Jakub\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FixMyRegistry]
C:\Program Files (x86)\SmartTweak\FixMyRegistry\FixMyRegistry.exe [2013-07-22 1886840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\Windows\system32\hkcmd.exe [2009-09-02 380928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe [2009-09-02 159232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2009-09-02 358912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-03-21 1061960]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\Steam.exe [2013-03-29 1631144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VitaKeyPdtWzd]
C:\Program Files (x86)\Acer Bio Protection\PdtWzd.exe [2010-07-24 3576176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-08-14 1190920]
"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2014-05-28 455512]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10 1861968]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\progra~2\movies~1\datamngr\x64\mgrldr.dll C:\PROGRA~2\SW-BOO~1\ASSIST~2.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-02 259584]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=C:\Program Files (x86)\Acer Bio Protection\PwdFilterV64

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2014-09-24 13:32:12 ----D---- C:\Program Files\trend micro
2014-09-24 13:32:11 ----D---- C:\rsit
2014-09-24 11:19:36 ----A---- C:\awhEF2E.tmp
2014-09-24 09:56:13 ----A---- C:\Windows\system32\sdnclean64.exe
2014-09-24 09:56:10 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-09-24 09:55:56 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-09-23 08:18:02 ----A---- C:\awhBE7E.tmp
2014-09-23 06:36:49 ----A---- C:\awhD2E8.tmp
2014-09-22 18:58:50 ----A---- C:\awhE3B9.tmp
2014-09-22 08:39:16 ----A---- C:\awh209.tmp
2014-09-20 21:54:53 ----A---- C:\awhA5EF.tmp
2014-09-20 16:48:32 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-20 16:14:05 ----A---- C:\awh4021.tmp
2014-09-13 11:37:20 ----A---- C:\Windows\system32\ieui.dll
2014-09-13 11:37:19 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-09-13 11:37:17 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-09-13 11:37:17 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-09-13 11:37:16 ----A---- C:\Windows\system32\jscript9diag.dll
2014-09-13 11:37:16 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-13 11:37:16 ----A---- C:\Windows\system32\iernonce.dll
2014-09-13 11:37:15 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-09-13 11:37:15 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-09-13 11:37:15 ----A---- C:\Windows\system32\ieUnatt.exe
2014-09-13 11:37:15 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-09-13 11:37:14 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-09-13 11:37:14 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-09-13 11:37:14 ----A---- C:\Windows\system32\vbscript.dll
2014-09-13 11:37:14 ----A---- C:\Windows\system32\dxtrans.dll
2014-09-13 11:37:14 ----A---- C:\Windows\system32\dxtmsft.dll
2014-09-13 11:37:13 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-09-13 11:37:13 ----A---- C:\Windows\system32\msrating.dll
2014-09-13 11:37:13 ----A---- C:\Windows\system32\mshtmled.dll
2014-09-13 11:37:12 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-09-13 11:37:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-09-13 11:37:12 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-09-13 11:37:12 ----A---- C:\Windows\system32\msfeeds.dll
2014-09-13 11:37:12 ----A---- C:\Windows\system32\jsproxy.dll
2014-09-13 11:37:11 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-09-13 11:37:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-09-13 11:37:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-09-13 11:37:11 ----A---- C:\Windows\system32\iesetup.dll
2014-09-13 11:37:11 ----A---- C:\Windows\system32\iedkcs32.dll
2014-09-13 11:37:11 ----A---- C:\Windows\system32\ie4uinit.exe
2014-09-13 11:37:10 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-09-13 11:37:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-13 11:37:08 ----A---- C:\Windows\system32\mshtml.dll
2014-09-13 11:37:07 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-09-13 11:37:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-09-13 11:37:07 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-09-13 11:37:07 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-09-13 11:37:07 ----A---- C:\Windows\system32\ieapfltr.dll
2014-09-13 11:37:06 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-09-13 11:37:06 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-13 11:37:06 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-09-13 11:37:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-09-13 11:37:02 ----A---- C:\Windows\system32\iertutil.dll
2014-09-13 11:37:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-09-13 11:37:01 ----A---- C:\Windows\system32\wininet.dll
2014-09-13 11:37:00 ----A---- C:\Windows\system32\jscript9.dll
2014-09-13 11:36:59 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-09-13 11:36:59 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-09-13 11:36:59 ----A---- C:\Windows\system32\urlmon.dll
2014-09-13 11:36:56 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-09-13 11:36:55 ----A---- C:\Windows\system32\ieframe.dll
2014-09-13 11:36:54 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-09-13 03:01:37 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-09-13 03:01:37 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 13:15:36 ----A---- C:\awh11CB.tmp
2014-09-10 21:23:01 ----A---- C:\awhD2D8.tmp
2014-09-10 13:42:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2014-09-10 07:39:09 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-09-10 07:39:09 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-09-10 07:38:47 ----A---- C:\Windows\system32\d3d10warp.dll
2014-09-10 07:38:46 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-09-10 07:38:25 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-09-10 07:38:25 ----A---- C:\Windows\system32\lsasrv.dll
2014-09-10 07:38:25 ----A---- C:\Windows\system32\kerberos.dll
2014-09-10 07:38:24 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-09-10 07:38:23 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-09-10 07:38:18 ----A---- C:\Windows\system32\aepdu.dll
2014-09-10 07:38:16 ----A---- C:\Windows\system32\aeinv.dll
2014-09-10 07:25:05 ----A---- C:\awh5BC5.tmp
2014-09-04 13:20:30 ----SHD---- C:\Windows\ftpcache
2014-09-04 13:18:42 ----A---- C:\Windows\system32\HPSIsvc.exe
2014-09-04 13:17:47 ----A---- C:\Windows\system32\mvhlewsi.DLL
2014-09-04 13:17:46 ----A---- C:\Windows\system32\HPM1210SM.exe
2014-09-04 13:17:45 ----A---- C:\Windows\system32\HPM1210LM.DLL
2014-09-04 13:05:10 ----D---- C:\Program Files\HP
2014-09-02 13:48:13 ----A---- C:\awh5C33.tmp
2014-09-01 09:25:18 ----A---- C:\awh118C.tmp
2014-08-31 22:32:45 ----A---- C:\awhD26B.tmp
2014-08-31 14:19:50 ----A---- C:\awh5E5F.tmp
2014-08-28 22:15:24 ----A---- C:\awhFF86.tmp
2014-08-28 10:47:46 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 10:47:45 ----A---- C:\Windows\system32\gdi32.dll
2014-08-28 10:47:43 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-24 22:38:41 ----A---- C:\awhFD33.tmp
2014-08-17 09:37:27 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-17 09:37:27 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-17 09:37:27 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-17 09:37:27 ----A---- C:\Windows\system32\icardagt.exe
2014-08-17 09:37:24 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-17 09:37:24 ----A---- C:\Windows\system32\icardres.dll
2014-08-17 09:36:53 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-17 09:36:53 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-17 09:36:33 ----A---- C:\awh35A.tmp
2014-08-16 19:23:12 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-16 19:23:12 ----A---- C:\Windows\system32\tzres.dll
2014-08-16 19:23:03 ----A---- C:\Windows\system32\msi.dll
2014-08-16 19:23:02 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-16 19:23:01 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-16 19:23:01 ----A---- C:\Windows\system32\msihnd.dll
2014-08-16 19:23:01 ----A---- C:\Windows\system32\consent.exe
2014-08-16 19:23:01 ----A---- C:\Windows\system32\authui.dll
2014-08-16 19:23:00 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-16 19:22:55 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-16 19:22:51 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-16 19:22:51 ----A---- C:\Windows\system32\shell32.dll
2014-08-16 19:20:25 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-16 19:20:24 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-01 03:23:49 ----A---- C:\Windows\system32\wups2.dll
2014-08-01 03:23:49 ----A---- C:\Windows\system32\wucltux.dll
2014-08-01 03:23:49 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-01 03:23:48 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-01 03:23:29 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-01 03:23:29 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-01 03:23:29 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-01 03:23:29 ----A---- C:\Windows\system32\wups.dll
2014-08-01 03:23:29 ----A---- C:\Windows\system32\wudriver.dll
2014-08-01 03:23:29 ----A---- C:\Windows\system32\wuapi.dll
2014-08-01 03:23:01 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-01 03:23:00 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-01 03:23:00 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-01 03:22:59 ----A---- C:\Windows\system32\wuapp.exe
2014-07-25 02:35:46 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2014-07-24 23:47:06 ----A---- C:\Windows\system32\msvcr120_clr0400.dll
2014-07-23 14:47:55 ----A---- C:\awh63E9.tmp
2014-07-21 19:51:00 ----A---- C:\awh28F.tmp
2014-07-17 18:05:06 ----A---- C:\Windows\system32\drivers\MpFilter.sys
2014-07-11 12:58:11 ----A---- C:\awhF0D3.tmp
2014-07-11 12:34:35 ----D---- C:\7c2f80d69feeb8443af274d2a0
2014-07-11 12:19:18 ----D---- C:\074ad78ae838a954aaf94d700e26c7a3
2014-07-11 12:03:39 ----D---- C:\79b754d59677f7ce029e
2014-07-11 03:40:57 ----D---- C:\3419a10e1936d16f04dda72eeb
2014-07-11 03:34:15 ----A---- C:\awhB27C.tmp
2014-07-11 03:31:26 ----D---- C:\0f4fafd195af525e4ea33e2f505bdc4f
2014-07-11 03:16:56 ----A---- C:\awh9915.tmp
2014-07-11 03:14:42 ----D---- C:\321182a1c554e811c9884e
2014-07-11 03:06:19 ----D---- C:\ffcc849d520eea649f89215e6944a66a
2014-07-10 11:55:14 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-07-10 11:55:13 ----A---- C:\Windows\system32\osk.exe
2014-07-10 11:55:10 ----A---- C:\Windows\system32\qedit.dll
2014-07-10 11:55:09 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-07-10 11:55:08 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-10 11:55:01 ----A---- C:\Windows\system32\schannel.dll
2014-07-10 11:55:00 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-07-10 11:54:59 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-07-10 11:54:59 ----A---- C:\Windows\system32\msv1_0.dll
2014-07-10 11:54:58 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-07-10 11:54:58 ----A---- C:\Windows\system32\wdigest.dll
2014-07-10 11:54:58 ----A---- C:\Windows\system32\TSpkg.dll
2014-07-10 11:54:58 ----A---- C:\Windows\system32\ncrypt.dll
2014-07-10 11:54:57 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-07-10 11:54:57 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-07-10 11:54:54 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-07-10 11:54:54 ----A---- C:\Windows\system32\credssp.dll
2014-07-10 00:13:01 ----A---- C:\awhD410.tmp
2014-07-09 13:05:00 ----A---- C:\awh40F5.tmp
2014-07-09 09:29:28 ----A---- C:\awhBA65.tmp
2014-07-01 12:44:28 ----D---- C:\Users\Jakub\AppData\Roaming\DivX
2014-07-01 12:44:25 ----D---- C:\Program Files\DivX
2014-07-01 12:41:14 ----D---- C:\Program Files (x86)\DivX
2014-07-01 12:40:37 ----D---- C:\ProgramData\DivX
2014-07-01 12:38:25 ----D---- C:\Program Files (x86)\globalUpdate
2014-07-01 12:38:15 ----D---- C:\Program Files (x86)\HD-V1.8
2014-07-01 12:37:51 ----D---- C:\Program Files\PCDApp

======List of files/folders modified in the last 3 months======

2014-09-24 13:32:12 ----RD---- C:\Program Files
2014-09-24 13:30:15 ----D---- C:\Windows\Temp
2014-09-24 11:22:24 ----D---- C:\Windows\System32
2014-09-24 11:22:24 ----D---- C:\Windows\inf
2014-09-24 11:22:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-24 10:25:13 ----D---- C:\Windows\system32\config
2014-09-24 10:01:10 ----SHD---- C:\System Volume Information
2014-09-24 09:56:45 ----D---- C:\Windows\system32\Tasks
2014-09-24 09:56:31 ----SD---- C:\ProgramData\Microsoft
2014-09-24 09:56:10 ----HD---- C:\ProgramData
2014-09-24 09:55:56 ----RD---- C:\Program Files (x86)
2014-09-23 21:43:19 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-09-22 08:42:39 ----N---- C:\Windows\system32\MpSigStub.exe
2014-09-20 21:48:02 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-14 11:44:21 ----D---- C:\Windows\Microsoft.NET
2014-09-14 11:23:49 ----RSD---- C:\Windows\assembly
2014-09-13 12:11:21 ----D---- C:\Windows\winsxs
2014-09-13 12:00:34 ----D---- C:\Windows\system32\catroot
2014-09-13 12:00:07 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-13 12:00:07 ----D---- C:\Windows\SysWOW64
2014-09-13 12:00:07 ----D---- C:\Windows\system32\en-US
2014-09-13 12:00:07 ----D---- C:\Program Files\Internet Explorer
2014-09-13 12:00:06 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-13 11:44:32 ----SHD---- C:\Windows\Installer
2014-09-13 11:44:32 ----D---- C:\ProgramData\Microsoft Help
2014-09-13 11:37:45 ----D---- C:\Windows\system32\catroot2
2014-09-13 11:34:56 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-09-13 11:30:28 ----D---- C:\Windows
2014-09-13 11:30:27 ----D---- C:\Windows\system32\drivers
2014-09-13 11:30:22 ----D---- C:\Program Files\Microsoft Security Client
2014-09-13 11:30:21 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-09-13 11:29:07 ----D---- C:\Windows\system32\MRT
2014-09-13 03:03:11 ----A---- C:\Windows\system32\MRT.exe
2014-09-13 03:01:26 ----SD---- C:\Windows\system32\CompatTel
2014-09-10 12:42:28 ----D---- C:\Windows\Prefetch
2014-09-04 13:18:21 ----D---- C:\Windows\system32\DriverStore
2014-09-04 13:17:21 ----D---- C:\Windows\twain_32
2014-08-25 17:17:09 ----D---- C:\Windows\rescache
2014-08-17 14:20:32 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-17 14:20:32 ----D---- C:\Windows\system32\cs-CZ
2014-08-17 14:20:32 ----D---- C:\Windows\ehome
2014-08-17 14:20:24 ----D---- C:\Windows\PolicyDefinitions
2014-08-07 11:26:10 ----D---- C:\Program Files\Microsoft Silverlight
2014-08-07 11:26:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-07-27 20:17:25 ----D---- C:\Windows\system32\NDF
2014-07-11 13:21:02 ----D---- C:\Program Files\Windows Journal
2014-07-11 13:21:01 ----D---- C:\Windows\SYSWOW64\Dism
2014-07-11 13:21:01 ----D---- C:\Windows\system32\Dism
2014-07-11 12:18:04 ----D---- C:\Program Files (x86)\Steam
2014-07-10 18:31:13 ----D---- C:\Program Files (x86)\SiteFinder
2014-07-10 18:23:10 ----D---- C:\Program Files (x86)\Yontoo
2014-07-09 11:42:37 ----D---- C:\ProgramData\SAveLots
2014-07-09 09:53:49 ----D---- C:\Program Files (x86)\SW-Booster
2014-07-09 09:51:31 ----D---- C:\Users\Jakub\AppData\Roaming\Malwarebytes
2014-07-09 09:50:46 ----D---- C:\ProgramData\Malwarebytes
2014-07-01 12:43:37 ----D---- C:\Program Files (x86)\Common Files
2014-07-01 12:40:32 ----D---- C:\Windows\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 269008]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-02-19 283200]
R1 nethfdrv;nethfdrv; \??\C:\Windows\system32\drivers\nethfdrv.sys [2014-06-15 46160]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2009-09-23 66304]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2009-12-31 360712]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-01-20 115472]
R2 FPSensor;EgisTec-Corp Fingerprint Reader Driver (FPSensor.sys); C:\Windows\System32\Drivers\FPSensor.sys [2013-02-11 35888]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 125584]
R3 DKbFltr;Dritek Keyboard Filter Driver (64-bit); C:\Windows\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-02 7369728]
R3 NETw5s64;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 6952960]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-02 187392]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\Windows\system32\DRIVERS\vpchbus.sys [2009-09-23 187904]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\Windows\system32\DRIVERS\vpcusb.sys [2009-09-23 95232]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 int15;int15; \??\C:\Windows\SysWOW64\drivers\int15_64.sys [2010-07-24 14192]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 mvusbews;USB EWS Device; C:\Windows\System32\Drivers\mvusbews.sys [2012-12-24 20480]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 vpcuxd;Služba zástupné procedury virtualizace rozhraní USB; C:\Windows\system32\DRIVERS\vpcuxd.sys [2009-09-23 16384]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-01-20 385808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2009-08-24 107016]
R2 HPSIService;HP SI Service; C:\Windows\system32\HPSIsvc.exe [2010-04-29 127800]
R2 IGBASVC;EgisTec Service; C:\Program Files (x86)\Acer Bio Protection\BASVC.exe [2010-07-24 3457392]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 23784]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe [2005-08-08 167936]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 ServiceUpdater;Network Support Service Updater; C:\Windows\SysWOW64\netupdsrv.exe [2014-06-15 159744]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 368624]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-01-20 402192]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 d0e87c27;SW-Sustainer; C:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /svc []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-08 116648]
S2 NetHttpService;Network HTTP Support Service; C:\Windows\SysWOW64\nethtsrv.exe []
S2 ProtectMonitor;Protect Monitor; C:\Program Files\PCDApp\StartHelp.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-23 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /medsvc []
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-08 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-20 114288]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-03-29 543656]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-11 1255736]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#3 Příspěvek od Abbe »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.2.0 (09.22.2014:1)
OS: Windows 7 Professional x64
Ran by Jakub on st 24.09.2014 at 15:35:08,63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0059568.BHO
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0059568.BHO.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0059568.Sandbox
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0059568.Sandbox.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.DynamicBarButton
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.DynamicBarButton.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.FeedManager
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.FeedManager.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.HTMLMenu
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.HTMLMenu.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.HTMLPanel
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.HTMLPanel.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.MultipleButton
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.MultipleButton.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.PseudoTransparentPlugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.PseudoTransparentPlugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.Radio
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.Radio.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.RadioSettings
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.RadioSettings.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.ScriptButton
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.ScriptButton.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.SettingsPlugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.SettingsPlugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.SkinLauncher
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.SkinLauncher.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.ThirdPartyInstaller
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.ThirdPartyInstaller.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.ToolbarProtector
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.ToolbarProtector.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.UrlAlertButton
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.UrlAlertButton.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.XMLSessionPlugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\VideoDownloadConverter_4z.XMLSessionPlugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110511951168}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220522952268}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550555955568}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660566956668}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440544954468}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110511951168}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220522952268}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550555955568}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660566956668}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440544954468}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0059568.BHO
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0059568.BHO.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0059568.Sandbox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0059568.Sandbox.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550555955568}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660566956668}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440544954468}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511951168}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511951168}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550555955568}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660566956668}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440544954468}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{A3A25F2B-A0C0-40EC-BE33-8120857B5AF1}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{AFA57313-5C56-4FFC-933F-D83F9A08B4F3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{A3A25F2B-A0C0-40EC-BE33-8120857B5AF1}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}



~~~ Files

Successfully deleted: [File] C:\Windows\Tasks\amiupdxp.job



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\clsoft ltd"
Successfully deleted: [Folder] "C:\ProgramData\premium"
Successfully deleted: [Folder] "C:\ProgramData\snt"
Successfully deleted: [Folder] "C:\ProgramData\tarma installer"
Successfully deleted: [Folder] "C:\Users\Jakub\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Jakub\AppData\Roaming\pdfforge"
Successfully deleted: [Folder] "C:\Users\Jakub\AppData\Roaming\similarsites"
Successfully deleted: [Folder] "C:\Users\Jakub\AppData\Roaming\systweak"
Successfully deleted: [Folder] "C:\Users\Jakub\AppData\Roaming\yontoo"
Successfully deleted: [Folder] "C:\Users\Jakub\appdata\local\swvupdater"
Successfully deleted: [Folder] "C:\Users\Jakub\appdata\local\torch"
Successfully deleted: [Folder] "C:\Users\Jakub\appdata\local\videodownloadconverter_4z"
Successfully deleted: [Folder] "C:\Users\Jakub\appdata\locallow\videodownloadconverter_4z"
Successfully deleted: [Folder] "C:\Program Files (x86)\sitefinder"
Successfully deleted: [Folder] "C:\Program Files (x86)\smarttweak"
Successfully deleted: [Folder] "C:\Program Files (x86)\video download converter"
Successfully deleted: [Folder] "C:\Program Files (x86)\videoplayerv3"
Successfully deleted: [Folder] "C:\Program Files (x86)\websparkle"
Successfully deleted: [Folder] "C:\Program Files (x86)\yontoo"
Successfully deleted: [Folder] "C:\Users\Jakub\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software"



~~~ FireFox

Successfully deleted: [File] C:\Users\Jakub\AppData\Roaming\mozilla\firefox\profiles\mreyfwhb.default\user.js
Successfully deleted: [Folder] C:\Users\Jakub\AppData\Roaming\mozilla\firefox\profiles\mreyfwhb.default\smartbar
Successfully deleted the following from C:\Users\Jakub\AppData\Roaming\mozilla\firefox\profiles\mreyfwhb.default\prefs.js

user_pref("CT3225826.BT_Stats.enc", "eyJsYXN0X2xvZyI6MTM4NzU4NDQwMywidXVpZCI6NjI5NjYyMzY0MTMzMTA3LCJzZXFfaWQiOjEwNywic3NiIjoxMzYzODU5NzM2fQ==");
user_pref("CT3225826.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT3225826.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT3225826.FF19Solved", "true");
user_pref("CT3225826.FirstTime", "true");
user_pref("CT3225826.FirstTimeFF3", "true");
user_pref("CT3225826.PG_ENABLE", "dHJ1ZQ==");
user_pref("CT3225826.PG_ENABLE.enc", "dHJ1ZQ==");
user_pref("CT3225826.UserID", "UN69463672330541135");
user_pref("CT3225826.addressBarTakeOverEnabledInHidden", "true");
user_pref("CT3225826.autoDisableScopes", -1);
user_pref("CT3225826.cb_experience_000.enc", "Mg==");
user_pref("CT3225826.cb_firstuse0100.enc", "MQ==");
user_pref("CT3225826.cb_user_id_000.enc", "Q0I0NjgzNjc1NDkyMDdfMTM2OTczMjE4MjM4MV9GaXJlZm94");
user_pref("CT3225826.cbfirsttime.enc", "U3VuIE1heSAxOSAyMDEzIDAxOjE0OjI2IEdNVCswMjAw");
user_pref("CT3225826.defaultSearch", "false");
user_pref("CT3225826.embeddedsData", "[{\"appId\":\"129830626805552092\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"get
user_pref("CT3225826.enableFix404ByUser", "FALSE");
user_pref("CT3225826.enableSearchFromAddressBar", "false");
user_pref("CT3225826.firstTimeDialogOpened", "true");
user_pref("CT3225826.fixPageNotFoundError", "true");
user_pref("CT3225826.fixPageNotFoundErrorByUser", "true");
user_pref("CT3225826.fixPageNotFoundErrorInHidden", "true");
user_pref("CT3225826.fixUrls", true);
user_pref("CT3225826.hxxp___toolbar_utorrent_com.APP_WIN_FEATURES.enc", "cmVzaXphYmxlPTAsc2F2ZXJlc2l6ZWRzaXplPTAsdGl0bGViYXI9MCxjbG9zZW9uZXh0ZXJuYWxjbGljaz0wLHNhdmVsb2NhdGlvbj
user_pref("CT3225826.installDate", "21/3/2013 10:47:43");
user_pref("CT3225826.installType", "xpe");
user_pref("CT3225826.installUsage", "2013-03-21T12:47:51.2325382+03:00");
user_pref("CT3225826.installUsageEarly", "2013-03-21T12:47:50.5305247+03:00");
user_pref("CT3225826.installerVersion", "1.3.6.5");
user_pref("CT3225826.isCheckedStartAsHidden", true);
user_pref("CT3225826.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT3225826.isFirstTimeToolbarLoading", "false");
user_pref("CT3225826.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
user_pref("CT3225826.lastVersion", "10.14.370.24");
user_pref("CT3225826.mam_gk_appStateReportTime.enc", "MTM3NDgyMTQ0OTMyNw==");
user_pref("CT3225826.mam_gk_appState_CouponBuddy.enc", "b24=");
user_pref("CT3225826.mam_gk_appState_PriceGong.enc", "b24=");
user_pref("CT3225826.mam_gk_appsDefaultEnabled.enc", "bnVsbA==");
user_pref("CT3225826.mam_gk_calledSetupService.enc", "MQ==");
user_pref("CT3225826.mam_gk_currentVersion.enc", "MS4xMi4wLjU=");
user_pref("CT3225826.mam_gk_eventsCache.enc", "eyI5YTNjOWFmNy01Yzc2LTQ5NGQtOTQ1MS1lNDIwZDAwZDg5NjkiOnsidG9waWMiOiJzZW5kVXNhZ2UiLCJkYXRhIjpbIldlbGNvbWUiLCJWaWV3Il0sInVuaXF1ZUlk
user_pref("CT3225826.mam_gk_existingUsersRecoveryDone.enc", "MQ==");
user_pref("CT3225826.mam_gk_first_time.enc", "MQ==");
user_pref("CT3225826.mam_gk_gadgetOpen.enc", "MA==");
user_pref("CT3225826.mam_gk_installer_preapproved.enc", "ZmFsc2U=");
user_pref("CT3225826.mam_gk_lastLoginTime.enc", "MTM3NDgyMTQ1NDIzNg==");
user_pref("CT3225826.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJDb250ZW50IFBvbGljeSJ9LCJnYWRnZXREZXNjcmlwdGlvblByaW1hcnkiOnsiVGV4dCI6IlZhbHVlIEFwcHM
user_pref("CT3225826.mam_gk_mamEnabled.enc", "ZmFsc2U=");
user_pref("CT3225826.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
user_pref("CT3225826.mam_gk_settings1.4.3.2.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMTk1XzAiLCJpc1Rlc3QiOnRydWUsImlzV2VsY29tZUV4cGVyaWVu
user_pref("CT3225826.mam_gk_settings1.4.4.6.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMjE1Xy0xIiwiaXNUZXN0IjpmYWxzZSwiaXNXZWxjb21lRXhwZXJp
user_pref("CT3225826.mam_gk_settings1.6.0.1.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMjE1Xy0xIiwiaXNUZXN0IjpmYWxzZSwiaXNXZWxjb21lRXhwZXJp
user_pref("CT3225826.mam_gk_settings1.8.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiNTRfMCIsImlzVGVzdCI6dHJ1ZSwiVXNlckNvdW50cnlDb2RlIjoi
user_pref("CT3225826.mam_gk_settings1.9.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiODRfMCIsImlzVGVzdCI6dHJ1ZSwiVXNlckNvdW50cnlDb2RlIjoi
user_pref("CT3225826.mam_gk_showCloseButton.enc", "dHJ1ZQ==");
user_pref("CT3225826.mam_gk_showWelcomeGadget.enc", "ZmFsc2U=");
user_pref("CT3225826.mam_gk_userId.enc", "YzVkYzNlNTItNDI5ZS00ZmM5LTliZWEtNmU1ZTVjMTIyYWUx");
user_pref("CT3225826.mam_gk_user_apps_selection.enc", "");
user_pref("CT3225826.migrateAppsAndComponents", true);
user_pref("CT3225826.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxps%3A%2F%2Fwww.facebook.com%2F\",\"EB_MAIN_FRAME_TITLE\":\"Facebook\",\"EB_SEARCH_TERM\":\"\",\"EB_TO
user_pref("CT3225826.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
user_pref("CT3225826.openThankYouPage", "true");
user_pref("CT3225826.openUninstallPage", "false");
user_pref("CT3225826.price-gong.isManagedApp", "true");
user_pref("CT3225826.revertSettingsEnabled", "false");
user_pref("CT3225826.search.searchAppId", "129830626805552092");
user_pref("CT3225826.search.searchCount", "0");
user_pref("CT3225826.searchInNewTabEnabledByUser", "false");
user_pref("CT3225826.searchInNewTabEnabledInHidden", "true");
user_pref("CT3225826.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT3225826.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
user_pref("CT3225826.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
user_pref("CT3225826.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT3225826\"}");
user_pref("CT3225826.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://BitTorrentControlv12.OurToolbar.com//xpi\"}");
user_pref("CT3225826.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"BitTorrentControl_v12\"}");
user_pref("CT3225826.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT3225826.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1387033578444");
user_pref("CT3225826.serviceLayer_services_appsMetadata_lastUpdate", "1387585877198");
user_pref("CT3225826.serviceLayer_services_clientErrorLog_lastUpdate", "1364551619423");
user_pref("CT3225826.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1387033578177");
user_pref("CT3225826.serviceLayer_services_installUsage_ToolbarInstallEarly_lastUpdate", "1363859271220");
user_pref("CT3225826.serviceLayer_services_installUsage_ToolbarInstall_lastUpdate", "1363859272243");
user_pref("CT3225826.serviceLayer_services_location_lastUpdate", "1387584410347");
user_pref("CT3225826.serviceLayer_services_login_10.14.370.24_lastUpdate", "1387584407201");
user_pref("CT3225826.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1387033578263");
user_pref("CT3225826.serviceLayer_services_searchAPI_lastUpdate", "1387584410023");
user_pref("CT3225826.serviceLayer_services_serviceMap_lastUpdate", "1387584406736");
user_pref("CT3225826.serviceLayer_services_toolbarContextMenu_lastUpdate", "1387584410105");
user_pref("CT3225826.serviceLayer_services_toolbarSettings_lastUpdate", "1387585877273");
user_pref("CT3225826.serviceLayer_services_translation_lastUpdate", "1387584410196");
user_pref("CT3225826.settingsINI", true);
user_pref("CT3225826.shouldFirstTimeDialog", "false");
user_pref("CT3225826.smartbar.CTID", "CT3225826");
user_pref("CT3225826.smartbar.Uninstall", "0");
user_pref("CT3225826.smartbar.toolbarName", "BitTorrentControl_v12 ");
user_pref("CT3225826.startPage", "false");
user_pref("CT3225826.toolbarBornServerTime", "21-3-2013");
user_pref("CT3225826.toolbarCurrentServerTime", "21-12-2013");
user_pref("CT3225826.toolbarLoginClientTime", "Thu Mar 21 2013 10:55:34 GMT+0100");
user_pref("CT3225826.url_history0001.enc", "aHR0cHM6Ly93d3cuZmFjZWJvb2suY29tL3Bob3RvLnBocD9mYmlkPTU0OTE0OTg1ODQ1OTQwNCZzZXQ9YS4xMjUxMTcwMTQxOTYwMjYuODQ0MS4xMDAwMDA5MzE4NTc0OTc
user_pref("CT3225826_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1387558774908,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}
user_pref("aol_toolbar.default.homepage.check", false);
user_pref("aol_toolbar.default.search.check", false);
user_pref("browser.newtab.url", "hxxp://mixidj.delta-search.com/?babsrc=NT_ss&mntrId=F42F0022FB65DDBD&affID=121125&tsp=5028");
user_pref("browser.search.defaultengine", "Privitize VPN");
user_pref("browser.search.defaultenginename", "WebSearch");
user_pref("browser.search.defaultenginename,S", "WebSearch");
user_pref("browser.search.defaulturl", "hxxp://websearch.exitingsearch.info/?pid=2487&r=2014/03/14&hid=4900941986261119792&lg=EN&cc=CZ&unqvl=50&l=1&q=");
user_pref("browser.search.order.1", "WebSearch");
user_pref("browser.search.order.1,S", "WebSearch");
user_pref("browser.search.selectedEngine", "WebSearch");
user_pref("browser.search.selectedEngine,S", "WebSearch");
user_pref("extensions.6O0.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>
user_pref("extensions.7BLhz7x5ckja.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com
user_pref("extensions.BNyUo8Ob.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp0000080
user_pref("extensions.BabylonToolbar.prtkDS", 0);
user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
user_pref("extensions.Fng26wYc.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp0000080
user_pref("extensions.Fng26wYc.url", "hxxp://downloadusaweb.us/sync2/?q=hfZ9ofV9CShEAen0rTn5qGhTB6lKDzt4okqAtNtVh7n0rjnErHw9rjrGpjaHtMFHhd9FqdaHrHwFqjw8rjnMDMlGojUMAe4UojY9rjk
user_pref("extensions.Y82FcwpXq.scode", "(function(){try{var url=window.self.location.href;if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexO
user_pref("extensions.aEOPN29927080OCIFAPD100469180com61758.61758.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%
user_pref("extensions.aEOPN29927080OCIFAPD100469180com61758.61758.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%2
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A
user_pref("extensions.canKh3AafoJU.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp000
user_pref("extensions.ceGVCTA5.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp0000080
user_pref("extensions.crossrider.bic", "14418e552b5ad22003c15665b02d388f");
user_pref("extensions.mywebsearch.prevDefaultEngine", "Privitize VPN");
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://searchou.com/?affil=7&uid=330a286f-9258-11e2-9c63-001e3325379e&q=");
user_pref("extensions.mywebsearch.prevSelectedEngine", "Privitize VPN");
user_pref("extensions.toolbar.mindspark._4zMembers_.BUTTON_STRUCTURE", "[{\"b\":220737723,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":220737724,\"c\":\"mindspark.enterse
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.homepage.prev", "hxxp://mixidj.delta-search.com/?babsrc=HP_ss&mntrId=F42F0022FB65DDBD&affID=121125&tsp=5028
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.homepage.savedPrev", "true");
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.homepage.tb", "hxxp://home.tb.ask.com/index.jhtml?ptb=48ED6303-C6C7-4993-9C3D-5236455256F4&n=77fd0c74&p2=^H
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.page.savedPrev", 1);
user_pref("extensions.toolbar.mindspark._4zMembers_.browser.startup.page.tb", 1);
user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=48ED6303-C6C7-4993-9C3D-5236455256F4&n=77fd0c74&p2=^HJ^xdm007^YYA^cz&si=
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.lastGuardTime", -240985197);
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.numGuards", 1);
user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013072500");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm007^YYA^cz");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CL3srsCVybgCFQeW3godyV8AYA");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "48ED6303-C6C7-4993-9C3D-5236455256F4");
user_pref("extensions.toolbar.mindspark._4zMembers_.isCompliantUninstallImplementation", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1388503548910");
user_pref("extensions.toolbar.mindspark._4zMembers_.lastKnownVersion", "5.71.2.58327");
user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.toolbarCollapsed", false);
user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "videodownloadconverter@mindspark.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
user_pref("extentions.y2layers.installId", "af9ef960-af5e-4177-8f2f-1b8063e96895");
user_pref("keyword.URL", "hxxp://websearch.exitingsearch.info/?pid=2487&r=2014/03/14&hid=4900941986261119792&lg=EN&cc=CZ&unqvl=50&l=1&q=");
user_pref("smartbar.machineId", "KLSZ/2ZKVEUBFGJPS0ARAWHNYT0GATJUHGR4JYSXSXKRL8YMEDNPO3RFVBJLEC6QKCMSCO9WHLKWIH1ZHCKRQQ");
user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
user_pref("sweetim.toolbar.previous.keyword.URL", "");
user_pref("sweetim.toolbar.scripts.1.domain-blacklist", ".*");
user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "1");
user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "1");
user_pref("sweetim.toolbar.searchguard.enable", "false");
Emptied folder: C:\Users\Jakub\AppData\Roaming\mozilla\firefox\profiles\mreyfwhb.default\minidumps [146 files]



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Jakub\appdata\local\Google\Chrome\User Data\Default\Extensions\cdihkdldaicijakhchgojcokhpamkibi
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\dedmngkbaffkenlfdcbganndoghblmap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 24.09.2014 at 15:40:59,35
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#4 Příspěvek od Abbe »

# AdwCleaner v3.310 - Report created 24/09/2014 at 15:47:39
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Jakub - NTBU04
# Running from : C:\Users\Jakub\Downloads\adwcleaner_3.310.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : d0e87c27
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : nethfdrv
[#] Service Deleted : NethxxpService
[#] Service Deleted : ProtectMonitor
Service Deleted : ServiceUpdater

***** [ Files / Folders ] *****

[#] Folder Deleted : C:\ProgramData\BitGuard
[#] Folder Deleted : C:\ProgramData\Browser Manager
[#] Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\ProgramData\RegClean
Folder Deleted : C:\ProgramData\DowenSaeve
Folder Deleted : C:\ProgramData\MaiginiPiCC
Folder Deleted : C:\ProgramData\NeWSaveRR
Folder Deleted : C:\ProgramData\RandOmPRRIce
Folder Deleted : C:\ProgramData\safoeeweb
Folder Deleted : C:\ProgramData\SAveLots
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MaiginiPiCC
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\MediaPlayerV1
Folder Deleted : C:\Program Files (x86)\MediaViewerV1
Folder Deleted : C:\Program Files (x86)\MediaViewV1
Folder Deleted : C:\Program Files (x86)\MediaWatchV1
Folder Deleted : C:\Program Files (x86)\sw-booster
Folder Deleted : C:\Program Files (x86)\safoeeweb
Folder Deleted : C:\Program Files\PCDApp
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\torch
Folder Deleted : C:\Users\Jakub\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Jakub\AppData\LocalLow\MaiginiPiCC
Folder Deleted : C:\Users\Jakub\AppData\Roaming\EZDownloader
Folder Deleted : C:\Users\Jakub\AppData\Roaming\NCdownloader
Folder Deleted : C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\Extensions\cg9.6xu@ahahnhknl.com
Folder Deleted : C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\Extensions\oqthxvb@jbujbcfw.net
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
Folder Deleted : C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdjlcfmcokgpomnokijholhokfnidmbp
File Deleted : C:\Windows\SysWOW64\installd.exe
File Deleted : C:\Windows\SysWOW64\netupdsrv.exe
File Deleted : C:\Windows\System32\drivers\nethfdrv.sys
File Deleted : C:\Users\Jakub\Desktop\FixMyRegistry.lnk
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\Ask.xml

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : LaunchApp
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-1
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-10
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-11
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-2
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-3
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-4
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-5
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-5_user
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-6
Task Deleted : 64d5b3d7-f9f6-433f-afe2-74bbfe31ec2d-7

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SweeetPlayer bundle\SweeetPlayer bundle.lnk

***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [12x3q@3244516.com]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [xz123@ya456.com]
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\LatestDLMgr_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\LatestDLMgr_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_1_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_1_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\privitizevpn_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\FixMyRegistry.exe
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin
Key Deleted : HKLM\SOFTWARE\Classes\SauvveLoTs.SauvveLoTs
Key Deleted : HKLM\SOFTWARE\Classes\SauvveLoTs.SauvveLoTs.6.3
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{d0e87c27}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{d458591c}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{192F487E-E812-40C0-B0DE-CB4BFA20F37B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{37923200-6887-4B44-95D4-CAE8F83ECFEE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3EE17DD1-E28B-4AED-A3B2-9C29CB2C19D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{79332472-47F3-4E32-B07F-CF8DF4C58499}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{886F93AD-3CBB-4424-8442-A7340243540F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AA289DBC-59B6-40A5-AC7D-C90DF850289C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BC153A3C-0BB7-4EED-83AE-28E6E398F56E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CA723163-6FAD-43D4-8B93-0D8C52BD9974}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FB0E8A09-F08C-44CF-9E15-97ADAC016248}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D1DAC034-9FD9-4C13-A388-D2E10E57707F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1DAC034-9FD9-4C13-A388-D2E10E57707F}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{93A3111F-4F74-4ED8-895E-D9708497629E}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\powerpack
Key Deleted : HKCU\Software\PrivitizeVPNInstallDates
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\StartSearch
Key Deleted : HKCU\Software\SweetIM
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\VideoDownloadConverter_4z
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\BetterSurf
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\MediaPlayerV1
Key Deleted : HKLM\SOFTWARE\MediaViewerV1
Key Deleted : HKLM\SOFTWARE\MediaViewV1
Key Deleted : HKLM\SOFTWARE\MediaWatchV1
Key Deleted : HKLM\SOFTWARE\SP Global
Key Deleted : HKLM\SOFTWARE\SProtector
Key Deleted : HKLM\SOFTWARE\SW-Booster
Key Deleted : HKLM\SOFTWARE\SweetIM
Key Deleted : HKLM\SOFTWARE\systweak
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : HKLM\SOFTWARE\VideoDownloadConverter_4z
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FixMyRegistry
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\inethnfd
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{35E13884-BAC3-5F4A-799B-05F882E0BD9F}
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited
Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\movies~1\datamngr\x64\mgrldr.dll
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SW-BOO~1\ASSIST~2.DLL
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Mozilla Firefox v32.0.2 (x86 cs)

[ File : C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\prefs.js ]

Line Deleted : user_pref("CT3225826.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.embeddedsData", "[{\"appId\":\"129830626805552092\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"insta[...]
Line Deleted : user_pref("CT3225826.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Deleted : user_pref("CT3225826.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJDb250ZW50IFBvbGljeSJ9LCJnYWRnZXREZXNjcmlwdGlvblByaW1hcnkiOnsiVGV4dCI6IlZhbHVlIEFwcHMgZW5yaWNoZXMgeW91ciB3ZWIg[...]
Line Deleted : user_pref("CT3225826.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxps%3A%2F%2Fwww.facebook.com%2F\",\"EB_MAIN_FRAME_TITLE\":\"Facebook\",\"EB_SEARCH_TERM\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp[...]
Line Deleted : user_pref("CT3225826.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Line Deleted : user_pref("CT3225826.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT3225826\"}");
Line Deleted : user_pref("CT3225826.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://BitTorrentControlv12.OurToolbar.com//xpi\"}");
Line Deleted : user_pref("CT3225826.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"BitTorrentControl_v12\"}");
Line Deleted : user_pref("CT3225826.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT3225826.url_history0001.enc", "aHR0cHM6Ly93d3cuZmFjZWJvb2suY29tL3Bob3RvLnBocD9mYmlkPTU0OTE0OTg1ODQ1OTQwNCZzZXQ9YS4xMjUxMTcwMTQxOTYwMjYuODQ0MS4xMDAwMDA5MzE4NTc0OTcmdHlwZT0xJnJlbGV2YW50X2Nv[...]
Line Deleted : user_pref("CT3225826_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1387558774908,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Line Deleted : user_pref("extensions.6O0.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"sumorob[...]
Line Deleted : user_pref("extensions.7BLhz7x5ckja.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...]
Line Deleted : user_pref("extensions.BNyUo8Ob.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"su[...]
Line Deleted : user_pref("extensions.Fng26wYc.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"su[...]
Line Deleted : user_pref("extensions.Y82FcwpXq.scode", "(function(){try{var url=window.self.location.href;if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"sumorobo\")>-1||url.i[...]
Line Deleted : user_pref("extensions.aEOPN29927080OCIFAPD100469180com61758.61758.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anth[...]
Line Deleted : user_pref("extensions.aEOPN29927080OCIFAPD100469180com61758.61758.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%[...]
Line Deleted : user_pref("extensions.canKh3AafoJU.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf([...]
Line Deleted : user_pref("extensions.ceGVCTA5.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"su[...]
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.BUTTON_STRUCTURE", "[{\"b\":220737723,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":220737724,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]

-\\ Google Chrome v31.0.1650.63

[ File : C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://mixidj.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=F42F0022FB65DDBD&affID=121125&tsp=5028
Deleted [Search Provider] : hxxp://websearch.exitingsearch.info/?l=1&q={searchTerms}&pid=2487&r=2014/03/14&hid=4900941986261119792&lg=EN&cc=CZ&unqvl=50
Deleted [Extension] : cdihkdldaicijakhchgojcokhpamkibi
Deleted [Extension] : fdjlcfmcokgpomnokijholhokfnidmbp

*************************

AdwCleaner[R0].txt - [28559 octets] - [24/09/2014 15:46:03]
AdwCleaner[S0].txt - [27857 octets] - [24/09/2014 15:47:39]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [27918 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#5 Příspěvek od vyosek »

:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#6 Příspěvek od Abbe »

Zoek.exe v5.0.0.0 Updated 23-09-2014
Tool run by Jakub on st 24.09.2014 at 16:05:23,46.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Jakub\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

24.9.2014 16:07:16 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1984125612-1973881249-3784162068-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully
HKEY_USERS\S-1-5-21-1984125612-1973881249-3784162068-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Explorer Bars\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110511951168} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\prefs.js:
user_pref("browser.startup.homepage", "http://sqc.zlin.cz/o/");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\prefs.js:

ProfilePath: C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_24.09.2014_1624_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~3\meojmilnmlebjbinckebllondakeodph deleted
C:\Users\Jakub\AppData\LocalLow\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B} deleted
C:\Users\Jakub\AppData\LocalLow\{63A74F4E-FB96-C709-047D-605445B6E8B2} deleted
C:\Users\Jakub\AppData\LocalLow\{98C291DE-287E-AE21-0C31-0CE533A393D2} deleted
C:\Users\Jakub\AppData\LocalLow\{A6A17344-1E02-489E-2468-93F7C287A76E} deleted
C:\Users\Jakub\AppData\LocalLow\{B50E5A3D-14C4-536E-6790-87E9977C4084} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{BEB98C00-79CC-7DA5-F919-C65A387F1425} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{F74AFA63-4AB6-E6CB-F111-A6D33CF604D2} deleted
C:\Users\Jakub\AppData\Local\Packages\windows_ie_ac_001\AC\{5B0CDA5A-B244-DD44-12A1-76CB865C7F3B} deleted
C:\Users\Jakub\AppData\Local\Packages\windows_ie_ac_001\AC\{63A74F4E-FB96-C709-047D-605445B6E8B2} deleted
C:\Users\Jakub\AppData\Local\Packages\windows_ie_ac_001\AC\{98C291DE-287E-AE21-0C31-0CE533A393D2} deleted
C:\Users\Jakub\AppData\Local\Packages\windows_ie_ac_001\AC\{A6A17344-1E02-489E-2468-93F7C287A76E} deleted
C:\Users\Jakub\AppData\Local\Packages\windows_ie_ac_001\AC\{B50E5A3D-14C4-536E-6790-87E9977C4084} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{BEB98C00-79CC-7DA5-F919-C65A387F1425} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{F74AFA63-4AB6-E6CB-F111-A6D33CF604D2} deleted
C:\PROGRA~3\Speed Streamer deleted
C:\PROGRA~3\d3dc3672f00bc048 deleted
C:\PROGRA~2\Mozilla Firefox\defaults\preferences\pref.js deleted
C:\PROGRA~2\HD-V1.8 deleted
C:\PROGRA~2\COMMON~1\Config deleted
C:\awh118C.tmp deleted
C:\awh11CB.tmp deleted
C:\awh209.tmp deleted
C:\awh28F.tmp deleted
C:\awh35A.tmp deleted
C:\awh4021.tmp deleted
C:\awh40F5.tmp deleted
C:\awh5BC5.tmp deleted
C:\awh5C33.tmp deleted
C:\awh5E5F.tmp deleted
C:\awh63E9.tmp deleted
C:\awh9915.tmp deleted
C:\awhA5EF.tmp deleted
C:\awhB27C.tmp deleted
C:\awhBA65.tmp deleted
C:\awhBE7E.tmp deleted
C:\awhD26B.tmp deleted
C:\awhD2D8.tmp deleted
C:\awhD2E8.tmp deleted
C:\awhD410.tmp deleted
C:\awhE3B9.tmp deleted
C:\awhF0D3.tmp deleted
C:\awhFD33.tmp deleted
C:\awhFF86.tmp deleted
C:\Users\Jakub\AppData\Roaming\burnaware.ini deleted
C:\PROGRA~3\SnowApp deleted
C:\PROGRA~3\InstallMate deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 deleted
C:\Users\Jakub\Downloads\bsplayer257.1051ENnew.exe deleted
C:\Users\Jakub\Downloads\bsplayer258.1058.exe deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\CT3225826 deleted
C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\extensions\sitematcher@sitematcher.com deleted
"C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default\extensions\EOPN29927080@OCIFAPD100469180.com" deleted

==== Firefox Extensions ======================

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default
DFC9460CC37E5C414DC4680B10C19E7A - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll - Shockwave Flash
3CD19649B2C3023D65E67C056457A2BC - C:\Users\Jakub\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
CF25FDD7CA6BC88442A58F74DBB6CFA6 - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll - Shockwave for Director / Shockwave for Director


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
cbibijnioijgnmlmognllihcbccjbidp - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1665\ch\MediaViewV1alpha1665.crx[]
ijlgimgkigfpdodhckhaiiccofencblj - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home3294\ch\MediaWatchV1home3294.crx[]
jkcnmecejbffocgakamicimcfdlibceb - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta241\ch\VideoPlayerV3beta241.crx[]
jmkggcbemepkccogheofnglihocgphgh - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha713\ch\WebexpEnhancedV1alpha713.crx[]
mmifolfpllfdhilecpdpmemhelmanajl - C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ch\BetterSurfPlus.crx[]
nghjaanmeeipbpmbhicejiccinkgfpcl - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha5031\ch\MediaViewerV1alpha5031.crx[]
odlokaeilknccnaanafblnfnanoeange - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha130\ch\MediaViewV1alpha130.crx[]

SNT - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
SNT - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
Foxtab Speed Dial - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
SNT - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
SNT - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
SNT - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
Foxtab Speed Dial - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
SNT - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
SNT - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
SNT - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
Foxtab Speed Dial - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
SNT - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
SNT - Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo
Media Player - Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfonkfgjbncdgmlbiolkeboapgemeobo
SNT - Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj
safEweBa - Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp
Foxtab Speed Dial - Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
YoutubeAdblocker - Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo

==== Chromium Startpages ======================

C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://sqczlin.cz/o",


==== Chromium Fix ======================

C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfonkfgjbncdgmlbiolkeboapgemeobo deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kahieicmmlnhmfbkhkgoemoaedafhpdo deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cclbdampkfplknplmopajnadclbmphmj deleted successfully
C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\Jakub\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully
C:\Users\Jakub\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ckkobhidhcjbghnciajgkkefjkdgdfjp deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://sqczlin.cz/o"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://sqczlin.cz/o"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0278631F-2E76-41EE-A6C0-DA344D4850BF} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_16194"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{2664C7B5-E400-43A7-9B9E-DB268947A237} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_16194"
{4F19673A-83AC-42AF-B185-707F1AE4B700} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_16194"
{6CE15B21-FE7C-423B-86CF-FD919DA8C32F} Google Url="http://www.google.cz/search?hl=cs&sourc ... =&aq=f&oq="
{6E5D18EF-4959-4873-8972-F955FAD21486} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194"
{9587476C-B270-47BF-841D-47C37D030AA7} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_16194"
{97124C1B-CF54-4358-BB7B-AF4C3427087A} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_16194"
{CEADF1DD-4168-45DE-A647-FD2AA7A16AB7} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_16194"
{E85464E3-0437-4F4E-9470-7689F2A396A1} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_16194"

==== Reset Google Chrome ======================

C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MagniPic deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C5F8CE21-4A58-4573-A798-027A1E1BECD7} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\41e8b851-dc9b-4f29-b050-2c163ed91357 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1F0830A8-35FF-F80A-F394-CF1B4DAFE359} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\cbibijnioijgnmlmognllihcbccjbidp deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ijlgimgkigfpdodhckhaiiccofencblj deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jkcnmecejbffocgakamicimcfdlibceb deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\jmkggcbemepkccogheofnglihocgphgh deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\mmifolfpllfdhilecpdpmemhelmanajl deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\nghjaanmeeipbpmbhicejiccinkgfpcl deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\odlokaeilknccnaanafblnfnanoeange deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FixMyRegistry deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Jakub\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Jakub\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=503 folders=135 43216479 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Jakub\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Jakub\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on st 24.09.2014 at 16:36:56,91 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#7 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#8 Příspěvek od Abbe »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-09-2014
Ran by Jakub (administrator) on NTBU04 on 24-09-2014 18:33:50
Running from C:\Users\Jakub\Downloads
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Egis Technology Inc.) C:\Program Files (x86)\Acer Bio Protection\CompPtcVUI.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(Egis Technology Inc.) C:\Program Files (x86)\Acer Bio Protection\BASVC.exe
() C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1190920 2009-08-14] (Dritek System Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [455512 2014-05-28] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\Run: [Facebook Update] => C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-16] (Facebook Inc.)
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {012c0085-d682-11e3-b970-001e3325379e} - E:\Launcher.exe
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {05b9ab79-333e-11e4-93b2-001e3325379e} - E:\SISetup.exe
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {c42b1bc1-7a83-11e2-ab18-001e3325379e} - F:\RunGame.exe
Lsa: [Notification Packages] C:\Program Files (x86)\Acer Bio Protection\PwdFilterV64
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://sqczlin.cz/o
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x0CA509123389CA01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
URLSearchHook: HKLM-x32 - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
URLSearchHook: HKLM-x32 - (No Name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {0278631F-2E76-41EE-A6C0-DA344D4850BF} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKCU - {2664C7B5-E400-43A7-9B9E-DB268947A237} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKCU - {4F19673A-83AC-42AF-B185-707F1AE4B700} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {6CE15B21-FE7C-423B-86CF-FD919DA8C32F} URL = http://www.google.cz/search?hl=cs&sourc ... =&aq=f&oq=
SearchScopes: HKCU - {6E5D18EF-4959-4873-8972-F955FAD21486} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKCU - {9587476C-B270-47BF-841D-47C37D030AA7} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKCU - {97124C1B-CF54-4358-BB7B-AF4C3427087A} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKCU - {CEADF1DD-4168-45DE-A647-FD2AA7A16AB7} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKCU - {E85464E3-0437-4F4E-9470-7689F2A396A1} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
BHO: SNT -> {63A74F4E-FB96-C709-047D-605445B6E8B2} -> C:\Program Files (x86)\SNT\BGpYOd.x64.dll No File
BHO: RandOmPRRIce -> {98C291DE-287E-AE21-0C31-0CE533A393D2} -> C:\ProgramData\RandOmPRRIce\vo.x64.dll No File
BHO: safoeeweb -> {A6A17344-1E02-489E-2468-93F7C287A76E} -> C:\Program Files (x86)\safoeeweb\TykdtSp.x64.dll No File
BHO: YoutubeAdblocker -> {B50E5A3D-14C4-536E-6790-87E9977C4084} -> C:\Program Files (x86)\YoutubeAdblocker\y_lVEC.x64.dll No File
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF ProfilePath: C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\mreyfwhb.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Jakub\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml

Chrome:
=======
CHR Profile: C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-24]
CHR Extension: (Google Drive) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-24]
CHR Extension: (YouTube) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-24]
CHR Extension: (Google Search) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-24]
CHR Extension: (No Name) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdjlcfmcokgpomnokijholhokfnidmbp [2014-06-03]
CHR Extension: (Google Wallet) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-13]
CHR Extension: (Gmail) - C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-24]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-01-20] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-01-20] (BlueStack Systems, Inc.)
R2 IGBASVC; C:\Program Files (x86)\Acer Bio Protection\BASVC.exe [3457392 2010-07-24] (Egis Technology Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe [167936 2005-08-08] () [File not signed]
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [115472 2014-01-20] (BlueStack Systems)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-02-19] (DT Soft Ltd)
S2 int15; C:\Windows\SysWOW64\drivers\int15_64.sys [14192 2010-07-24] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
S3 mvusbews; C:\Windows\System32\Drivers\mvusbews.sys [20480 2012-12-24] (Marvell Semiconductor, Inc.)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-24 18:33 - 2014-09-24 18:34 - 00011996 _____ () C:\Users\Jakub\Downloads\FRST.txt
2014-09-24 18:33 - 2014-09-24 18:33 - 00000000 ____D () C:\FRST
2014-09-24 18:32 - 2014-09-24 18:33 - 02106880 _____ (Farbar) C:\Users\Jakub\Downloads\FRST64.exe
2014-09-24 16:34 - 2014-09-24 16:05 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-24 16:06 - 2014-09-24 16:36 - 00024430 _____ () C:\zoek-results.log
2014-09-24 16:05 - 2014-09-24 16:31 - 00000000 ____D () C:\zoek_backup
2014-09-24 16:04 - 2014-09-24 16:04 - 01290752 _____ () C:\Users\Jakub\Downloads\zoek.exe
2014-09-24 15:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-24 15:45 - 2014-09-24 15:48 - 00000000 ____D () C:\AdwCleaner
2014-09-24 15:44 - 2014-09-24 15:44 - 01373475 _____ () C:\Users\Jakub\Downloads\adwcleaner_3.310.exe
2014-09-24 15:40 - 2014-09-24 15:40 - 00029658 _____ () C:\Users\Jakub\Desktop\JRT.txt
2014-09-24 15:34 - 2014-09-24 15:34 - 00000000 ____D () C:\Windows\ERUNT
2014-09-24 15:29 - 2014-09-24 15:29 - 01024790 _____ (Thisisu) C:\Users\Jakub\Downloads\JRT.exe
2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\rsit
2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\Program Files\trend micro
2014-09-24 13:30 - 2014-09-24 13:30 - 04756944 _____ (Avira Operations GmbH & Co. KG) C:\Users\Jakub\Downloads\avira_en_av___ws.exe
2014-09-24 13:29 - 2014-09-24 13:29 - 01222144 _____ () C:\Users\Jakub\Downloads\RSITx64.exe
2014-09-24 09:56 - 2014-09-24 10:16 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-09-24 09:56 - 2014-09-24 09:56 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-09-24 09:56 - 2014-09-24 09:56 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-09-24 09:56 - 2014-09-24 09:56 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-09-24 09:56 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-09-24 09:55 - 2014-09-24 10:07 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-09-24 09:53 - 2014-09-24 09:54 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Jakub\Downloads\spybot-2.4.exe
2014-09-23 18:21 - 2014-09-23 18:24 - 00000000 ____D () C:\Users\Jakub\Desktop\ustavko
2014-09-22 21:44 - 2014-09-22 15:44 - 582603496 _____ () C:\Users\Jakub\Desktop\SNEZENKY-A-MACHRI-PO-25-LETECH+bonusove-sceny-avi.cz.avi
2014-09-20 16:48 - 2014-09-20 16:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-13 11:37 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-13 11:37 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-13 11:37 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-13 11:37 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-13 11:37 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-13 11:37 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-13 11:37 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-13 11:37 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-13 11:37 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-13 11:37 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-13 11:37 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-13 11:37 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-13 11:37 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-13 11:37 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-13 11:37 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-13 11:37 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-13 11:37 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-13 11:37 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-13 11:37 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-13 11:37 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-13 11:37 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-13 11:37 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-13 11:37 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-13 11:37 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-13 11:37 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-13 11:37 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-13 11:37 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-13 11:37 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-13 11:37 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-13 11:37 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-13 11:37 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-13 11:37 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-13 11:37 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-13 11:37 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-13 11:37 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-13 11:37 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-13 11:37 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-13 11:37 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-13 11:37 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-13 11:37 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-13 11:37 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-13 11:37 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-13 11:37 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-13 11:37 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-13 11:37 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-13 11:37 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-13 11:37 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-13 11:37 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-13 11:36 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-13 11:36 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-13 11:36 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-13 11:36 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-13 11:36 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-13 11:36 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-13 11:36 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-13 11:36 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-13 03:01 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-13 03:01 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 13:42 - 2014-09-23 21:42 - 03675824 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-10 07:39 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 07:39 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 07:38 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 07:38 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-10 07:38 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 07:38 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 07:38 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 07:38 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 07:38 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-10 07:38 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 07:38 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-04 13:20 - 2014-09-04 13:20 - 00000000 __SHD () C:\Windows\ftpcache
2014-09-04 13:18 - 2014-09-04 13:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-09-04 13:18 - 2010-04-29 19:10 - 00127800 _____ (HP) C:\Windows\system32\HPSIsvc.exe
2014-09-04 13:17 - 2012-09-29 13:26 - 01366528 _____ () C:\Windows\system32\HPM1210SM.exe
2014-09-04 13:17 - 2012-09-29 13:25 - 00409088 _____ () C:\Windows\system32\HPM1210LM.DLL
2014-09-04 13:17 - 2012-09-29 13:05 - 00350720 _____ () C:\Windows\system32\mvhlewsi.DLL
2014-09-04 13:14 - 2014-09-04 13:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_mvusbews_01009.Wdf
2014-09-04 13:05 - 2014-09-04 13:05 - 00000000 ____D () C:\Program Files\HP
2014-09-04 00:49 - 2014-09-05 00:58 - 00000000 ____D () C:\Users\Jakub\Desktop\filo
2014-08-31 17:15 - 2014-08-31 17:53 - 838891520 _____ () C:\Users\Jakub\Downloads\Pres-palubu-CZ.avi
2014-08-28 10:47 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 10:47 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 10:47 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-25 15:01 - 2014-08-25 15:09 - 1158924288 _____ () C:\Users\Jakub\Downloads\Captain-America-Návrat-prvního-Avengera-2014.cz(3).avi

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-24 18:34 - 2014-09-24 18:33 - 00011996 _____ () C:\Users\Jakub\Downloads\FRST.txt
2014-09-24 18:33 - 2014-09-24 18:33 - 00000000 ____D () C:\FRST
2014-09-24 18:33 - 2014-09-24 18:32 - 02106880 _____ (Farbar) C:\Users\Jakub\Downloads\FRST64.exe
2014-09-24 18:31 - 2013-03-08 16:38 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-24 18:31 - 2013-02-10 23:14 - 02005791 _____ () C:\Windows\WindowsUpdate.log
2014-09-24 18:30 - 2013-02-11 08:16 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-24 17:15 - 2013-12-11 12:33 - 00000000 ____D () C:\Windows\rescache
2014-09-24 16:44 - 2009-07-14 06:45 - 00031904 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-24 16:44 - 2009-07-14 06:45 - 00031904 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-24 16:43 - 2011-04-12 10:34 - 00685310 _____ () C:\Windows\system32\perfh005.dat
2014-09-24 16:43 - 2011-04-12 10:34 - 00147628 _____ () C:\Windows\system32\perfc005.dat
2014-09-24 16:43 - 2009-07-14 07:13 - 01614744 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-24 16:36 - 2014-09-24 16:06 - 00024430 _____ () C:\zoek-results.log
2014-09-24 16:36 - 2014-03-31 13:37 - 00006644 _____ () C:\Windows\setupact.log
2014-09-24 16:36 - 2013-03-08 16:38 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-24 16:36 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-24 16:35 - 2014-06-03 11:08 - 00008226 _____ () C:\Windows\PFRO.log
2014-09-24 16:31 - 2014-09-24 16:05 - 00000000 ____D () C:\zoek_backup
2014-09-24 16:05 - 2014-09-24 16:34 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-24 16:05 - 2014-01-16 20:00 - 00000928 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000UA.job
2014-09-24 16:04 - 2014-09-24 16:04 - 01290752 _____ () C:\Users\Jakub\Downloads\zoek.exe
2014-09-24 15:48 - 2014-09-24 15:45 - 00000000 ____D () C:\AdwCleaner
2014-09-24 15:48 - 2014-06-02 19:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SweeetPlayer bundle
2014-09-24 15:44 - 2014-09-24 15:44 - 01373475 _____ () C:\Users\Jakub\Downloads\adwcleaner_3.310.exe
2014-09-24 15:40 - 2014-09-24 15:40 - 00029658 _____ () C:\Users\Jakub\Desktop\JRT.txt
2014-09-24 15:34 - 2014-09-24 15:34 - 00000000 ____D () C:\Windows\ERUNT
2014-09-24 15:29 - 2014-09-24 15:29 - 01024790 _____ (Thisisu) C:\Users\Jakub\Downloads\JRT.exe
2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\rsit
2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\Program Files\trend micro
2014-09-24 13:30 - 2014-09-24 13:30 - 04756944 _____ (Avira Operations GmbH & Co. KG) C:\Users\Jakub\Downloads\avira_en_av___ws.exe
2014-09-24 13:29 - 2014-09-24 13:29 - 01222144 _____ () C:\Users\Jakub\Downloads\RSITx64.exe
2014-09-24 10:16 - 2014-09-24 09:56 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-09-24 10:07 - 2014-09-24 09:55 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-09-24 09:56 - 2014-09-24 09:56 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-09-24 09:56 - 2014-09-24 09:56 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-09-24 09:56 - 2014-09-24 09:56 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-09-24 09:54 - 2014-09-24 09:53 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Jakub\Downloads\spybot-2.4.exe
2014-09-23 21:43 - 2013-02-11 08:16 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-23 21:43 - 2013-02-11 08:16 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-23 21:43 - 2013-02-11 08:16 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-23 21:42 - 2014-09-10 13:42 - 03675824 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-23 19:05 - 2014-01-16 20:00 - 00000906 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000Core.job
2014-09-23 18:24 - 2014-09-23 18:21 - 00000000 ____D () C:\Users\Jakub\Desktop\ustavko
2014-09-22 15:44 - 2014-09-22 21:44 - 582603496 _____ () C:\Users\Jakub\Desktop\SNEZENKY-A-MACHRI-PO-25-LETECH+bonusove-sceny-avi.cz.avi
2014-09-22 08:42 - 2010-11-21 05:27 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-20 21:48 - 2013-02-11 08:06 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-20 16:49 - 2014-09-20 16:48 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-13 11:44 - 2013-02-11 21:56 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-13 11:34 - 2013-03-21 12:20 - 01594126 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-13 11:32 - 2013-02-11 22:26 - 00001912 _____ () C:\Windows\epplauncher.mif
2014-09-13 11:31 - 2013-02-11 22:22 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2014-09-13 11:30 - 2013-02-11 22:22 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-09-13 11:30 - 2013-02-11 22:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-09-13 11:29 - 2013-07-15 03:00 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-13 03:03 - 2013-02-11 00:08 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-13 03:01 - 2014-05-07 09:20 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-12 11:03 - 2009-07-14 07:08 - 00032584 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-11 13:09 - 2013-02-10 23:19 - 00000000 ____D () C:\Users\Jakub
2014-09-05 04:10 - 2014-09-10 07:38 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-05 04:05 - 2014-09-10 07:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-05 00:58 - 2014-09-04 00:49 - 00000000 ____D () C:\Users\Jakub\Desktop\filo
2014-09-04 13:20 - 2014-09-04 13:20 - 00000000 __SHD () C:\Windows\ftpcache
2014-09-04 13:18 - 2014-09-04 13:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-09-04 13:14 - 2014-09-04 13:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_mvusbews_01009.Wdf
2014-09-04 13:05 - 2014-09-04 13:05 - 00000000 ____D () C:\Program Files\HP
2014-09-01 09:42 - 2009-07-14 06:45 - 00342992 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-31 17:53 - 2014-08-31 17:15 - 838891520 _____ () C:\Users\Jakub\Downloads\Pres-palubu-CZ.avi
2014-08-25 15:09 - 2014-08-25 15:01 - 1158924288 _____ () C:\Users\Jakub\Downloads\Captain-America-Návrat-prvního-Avengera-2014.cz(3).avi

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-17 13:01

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#9 Příspěvek od vyosek »

:arrow: Odinstalujte Spybot - Search & Destroy - program ma uz nejlepsi leta davno za sebou a posledni cca 3 roky neni schopen celit aktualnim hrozbam

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [455512 2014-05-28] (DivX, LLC)
    HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
    HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\Run: [Facebook Update] => C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-16] (Facebook Inc.)
    HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {012c0085-d682-11e3-b970-001e3325379e} - E:\Launcher.exe
    HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {05b9ab79-333e-11e4-93b2-001e3325379e} - E:\SISetup.exe
    HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {c42b1bc1-7a83-11e2-ab18-001e3325379e} - F:\RunGame.exe
    GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x0CA509123389CA01
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
    URLSearchHook: HKLM-x32 - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
    URLSearchHook: HKLM-x32 - (No Name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File
    
    BHO: SNT -> {63A74F4E-FB96-C709-047D-605445B6E8B2} -> C:\Program Files (x86)\SNT\BGpYOd.x64.dll No File
    BHO: RandOmPRRIce -> {98C291DE-287E-AE21-0C31-0CE533A393D2} -> C:\ProgramData\RandOmPRRIce\vo.x64.dll No File
    BHO: safoeeweb -> {A6A17344-1E02-489E-2468-93F7C287A76E} -> C:\Program Files (x86)\safoeeweb\TykdtSp.x64.dll No File
    BHO: YoutubeAdblocker -> {B50E5A3D-14C4-536E-6790-87E9977C4084} -> C:\Program Files (x86)\YoutubeAdblocker\y_lVEC.x64.dll No File
    
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    
    DisableService: RichVideo
    
    2014-09-24 18:33 - 2014-09-24 18:34 - 00011996 _____ () C:\Users\Jakub\Downloads\FRST.txt
    2014-09-24 16:34 - 2014-09-24 16:05 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-09-24 16:06 - 2014-09-24 16:36 - 00024430 _____ () C:\zoek-results.log
    2014-09-24 16:05 - 2014-09-24 16:31 - 00000000 ____D () C:\zoek_backup
    2014-09-24 16:04 - 2014-09-24 16:04 - 01290752 _____ () C:\Users\Jakub\Downloads\zoek.exe
    2014-09-24 15:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
    2014-09-24 15:45 - 2014-09-24 15:48 - 00000000 ____D () C:\AdwCleaner
    2014-09-24 15:44 - 2014-09-24 15:44 - 01373475 _____ () C:\Users\Jakub\Downloads\adwcleaner_3.310.exe
    2014-09-24 15:40 - 2014-09-24 15:40 - 00029658 _____ () C:\Users\Jakub\Desktop\JRT.txt
    2014-09-24 15:34 - 2014-09-24 15:34 - 00000000 ____D () C:\Windows\ERUNT
    2014-09-24 15:29 - 2014-09-24 15:29 - 01024790 _____ (Thisisu) C:\Users\Jakub\Downloads\JRT.exe
    2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\rsit
    2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\Program Files\trend micro
    2014-09-24 13:30 - 2014-09-24 13:30 - 04756944 _____ (Avira Operations GmbH & Co. KG) C:\Users\Jakub\Downloads\avira_en_av___ws.exe
    2014-09-24 13:29 - 2014-09-24 13:29 - 01222144 _____ () C:\Users\Jakub\Downloads\RSITx64.exe
    C:\Users\Jakub\AppData\Local\8522
    
    C:\Windows\tasks\Adobe Flash Player Updater.job
    C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000Core.job
    C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000UA.job
    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam" /f
    
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#10 Příspěvek od Abbe »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-09-2014
Ran by Jakub at 2014-09-25 10:28:22 Run:1
Running from C:\Users\Jakub\Downloads
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [455512 2014-05-28] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\Run: [Facebook Update] => C:\Users\Jakub\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-16] (Facebook Inc.)
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {012c0085-d682-11e3-b970-001e3325379e} - E:\Launcher.exe
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {05b9ab79-333e-11e4-93b2-001e3325379e} - E:\SISetup.exe
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\...\MountPoints2: {c42b1bc1-7a83-11e2-ab18-001e3325379e} - F:\RunGame.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x0CA509123389CA01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
URLSearchHook: HKLM-x32 - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
URLSearchHook: HKLM-x32 - (No Name) - {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} - No File

BHO: SNT -> {63A74F4E-FB96-C709-047D-605445B6E8B2} -> C:\Program Files (x86)\SNT\BGpYOd.x64.dll No File
BHO: RandOmPRRIce -> {98C291DE-287E-AE21-0C31-0CE533A393D2} -> C:\ProgramData\RandOmPRRIce\vo.x64.dll No File
BHO: safoeeweb -> {A6A17344-1E02-489E-2468-93F7C287A76E} -> C:\Program Files (x86)\safoeeweb\TykdtSp.x64.dll No File
BHO: YoutubeAdblocker -> {B50E5A3D-14C4-536E-6790-87E9977C4084} -> C:\Program Files (x86)\YoutubeAdblocker\y_lVEC.x64.dll No File

CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

DisableService: RichVideo

2014-09-24 18:33 - 2014-09-24 18:34 - 00011996 _____ () C:\Users\Jakub\Downloads\FRST.txt
2014-09-24 16:34 - 2014-09-24 16:05 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-24 16:06 - 2014-09-24 16:36 - 00024430 _____ () C:\zoek-results.log
2014-09-24 16:05 - 2014-09-24 16:31 - 00000000 ____D () C:\zoek_backup
2014-09-24 16:04 - 2014-09-24 16:04 - 01290752 _____ () C:\Users\Jakub\Downloads\zoek.exe
2014-09-24 15:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-24 15:45 - 2014-09-24 15:48 - 00000000 ____D () C:\AdwCleaner
2014-09-24 15:44 - 2014-09-24 15:44 - 01373475 _____ () C:\Users\Jakub\Downloads\adwcleaner_3.310.exe
2014-09-24 15:40 - 2014-09-24 15:40 - 00029658 _____ () C:\Users\Jakub\Desktop\JRT.txt
2014-09-24 15:34 - 2014-09-24 15:34 - 00000000 ____D () C:\Windows\ERUNT
2014-09-24 15:29 - 2014-09-24 15:29 - 01024790 _____ (Thisisu) C:\Users\Jakub\Downloads\JRT.exe
2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\rsit
2014-09-24 13:32 - 2014-09-24 13:32 - 00000000 ____D () C:\Program Files\trend micro
2014-09-24 13:30 - 2014-09-24 13:30 - 04756944 _____ (Avira Operations GmbH & Co. KG) C:\Users\Jakub\Downloads\avira_en_av___ws.exe
2014-09-24 13:29 - 2014-09-24 13:29 - 01222144 _____ () C:\Users\Jakub\Downloads\RSITx64.exe
C:\Users\Jakub\AppData\Local\8522

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam" /f

EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXMediaServer => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SDTray => Value not found.
HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update => value deleted successfully.
"HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{012c0085-d682-11e3-b970-001e3325379e}" => Key deleted successfully.
"HKCR\CLSID\{012c0085-d682-11e3-b970-001e3325379e}" => Key not found.
"HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{05b9ab79-333e-11e4-93b2-001e3325379e}" => Key deleted successfully.
"HKCR\CLSID\{05b9ab79-333e-11e4-93b2-001e3325379e}" => Key not found.
"HKU\S-1-5-21-1984125612-1973881249-3784162068-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c42b1bc1-7a83-11e2-ab18-001e3325379e}" => Key deleted successfully.
"HKCR\CLSID\{c42b1bc1-7a83-11e2-ab18-001e3325379e}" => Key not found.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache AcceptLangs => value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63A74F4E-FB96-C709-047D-605445B6E8B2}" => Key deleted successfully.
"HKCR\CLSID\{63A74F4E-FB96-C709-047D-605445B6E8B2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{98C291DE-287E-AE21-0C31-0CE533A393D2}" => Key deleted successfully.
"HKCR\CLSID\{98C291DE-287E-AE21-0C31-0CE533A393D2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6A17344-1E02-489E-2468-93F7C287A76E}" => Key deleted successfully.
"HKCR\CLSID\{A6A17344-1E02-489E-2468-93F7C287A76E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B50E5A3D-14C4-536E-6790-87E9977C4084}" => Key deleted successfully.
"HKCR\CLSID\{B50E5A3D-14C4-536E-6790-87E9977C4084}" => Key deleted successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
RichVideo service was disabled
C:\Users\Jakub\Downloads\FRST.txt => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Jakub\Downloads\zoek.exe => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Jakub\Downloads\adwcleaner_3.310.exe => Moved successfully.
C:\Users\Jakub\Desktop\JRT.txt => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\Jakub\Downloads\JRT.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\Jakub\Downloads\avira_en_av___ws.exe => Moved successfully.
C:\Users\Jakub\Downloads\RSITx64.exe => Moved successfully.
C:\Users\Jakub\AppData\Local\8522 => Moved successfully.
C:\Windows\tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000Core.job => Moved successfully.
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1984125612-1973881249-3784162068-1000UA.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.

========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========

EmptyTemp: => Removed 10.1 GB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#11 Příspěvek od vyosek »

Jak se chova PC??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#12 Příspěvek od Abbe »

Myslim ze uz je to v poho... Internet funguje normalne a okna navic se mi sami take neoteviraji... Moc dekuji za pomoc... :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#13 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Abbe
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 24 zář 2014 12:42

Re: pomaly internet okna se mi sami oteviraji

#14 Příspěvek od Abbe »

Tfc vycistilo ale vypada to ze pc nebude restartovanoo. Je to problem nebo muzu prejit na ccleaner? Nebo mam pc restartovat sam?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: pomaly internet okna se mi sami oteviraji

#15 Příspěvek od vyosek »

Udelejte CCleaner, pak restart PC a napiste ci je vse OK
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno