Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kontrolu logu (istart.webssearches.com)

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

prosím o kontrolu logu (istart.webssearches.com)

#1 Příspěvek od PabloPicasso »

Dobrý den,
prosím o kontrolu logu, měl sem problém s "istart.webssearches.com", pořád mi vyskakovali nějaký okna ve firefoxu. Snad se mi to podařilo z pc dostat, ale pro jistotu posílám log na kontrolu. Také se mi poslední dobou znatelně zpomalil pc.
Děkuji Pavel

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-09-2014 01
Ran by Pavel (administrator) on PAVEL-PC on 22-09-2014 02:36:05
Running from C:\Users\Pavel\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(AuthenTec, Inc) C:\Program Files\AuthenTec TrueSuite\TrueSuiteService.exe
(NVIDIA Corporation) C:\Windows\System32\nvservice.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
(AuthenTec Inc.) C:\Program Files\AuthenTec TrueSuite\TouchControl.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
(Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpWareSE4.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
() C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Crawler.com) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe
(Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\loggingserver.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe
(AuthenTec Inc.) C:\Program Files\AuthenTec TrueSuite\BioMonitor.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe
(BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe
(BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Ghisler Software GmbH) C:\Program Files (x86)\totalcmd\TOTALCMD64.EXE
(Microsoft Corporation) C:\Windows\System32\msiexec.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [] => [X]
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [644696 2007-05-14] (CANON INC.)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1840720 2007-04-03] (CANON INC.)
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2774936 2014-05-14] (Crawler.com)
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [3681688 2014-05-14] (Crawler.com)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5188112 2014-08-25] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2640408 2014-08-27] ()
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [137352 2014-08-13] (Check Point Software Technologies Ltd.)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [839384 2014-09-16] (BlueStack Systems, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7763736 2014-09-10] (SUPERAntiSpyware)
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\MountPoints2: {e6cadf20-49da-11e3-a4e6-0024338924f3} - G:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vyhledat aktualizace.lnk
ShortcutTarget: Vyhledat aktualizace.lnk -> C:\Program Files (x86)\Common Files\PCTV Systems\WebUpdater\WebUpdater.exe (PCTV Systems)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp ... X49OXT263T
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp ... X49OXT263T
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?typ ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp ... X49OXT263T
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp ... X49OXT263T
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?typ ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?typ ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp ... X49OXT263T
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp ... X49OXT263T
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?typ ... earchTerms}
URLSearchHook: HKLM-x32 - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
URLSearchHook: HKCU - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/?type=sc ... X49OXT263T
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = https://mysearch.avg.com/search?cid={CB ... 2014-05-10 08:52:34&v=18.1.9.799&pid=safeguard&sg=&sap=dsp&q={searchTerms}
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH)
Toolbar: HKLM-x32 - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.9.799\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
DPF: HKLM-x32 {02CF1781-EA91-4FA5-A200-646E8241987C} http://esupport.sony.com/VaioInfo.CAB
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.9\ViProtocol.dll (AVG Secure Search)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default
FF Homepage: hxxp://www.google.cz
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.9\\npsitesafety.dll No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml
FF Extension: Classic Theme Restorer - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi [2014-05-12]
FF Extension: Linkification - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi [2012-12-31]
FF Extension: Adblock Plus - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-12-31]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-09-23]
FF HKLM-x32\...\Firefox\Extensions: [12x3q@3244516.com] - C:\Program Files (x86)\Better-Surf\ff
FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\18.1.9.799
FF Extension: AVG SafeGuard toolbar - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\18.1.9.799 [2014-08-27]
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://istart.webssearches.com/?type=sc ... X49OXT263T

Chrome:
=======
CHR Profile: C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\...\Chrome\Extension: [hidjnkeodmholilgafgdlgmgggbhnigl] - C:\Users\Pavel\AppData\Roaming\SimilarSites\similarsites.crx []
CHR HKLM-x32\...\Chrome\Extension: [poheodfamflhhhdcmjfeggbgigeefaco] - C:\Program Files (x86)\Better-Surf\ch\Chrome.crx []

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3242000 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-09-16] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384728 2014-09-16] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [777944 2014-09-16] (BlueStack Systems, Inc.)
R2 FPLService; C:\Program Files\AuthenTec TrueSuite\TrueSuiteService.exe [296808 2012-08-30] (AuthenTec, Inc)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-09-21] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-09-21] (globalUpdate) [File not signed]
R2 HPSLPSVC; C:\Users\Pavel\AppData\Local\Temp\7zS4277\hpslpsvc64.dll [1039360 2012-11-14] (Hewlett-Packard Co.) [File not signed]
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [774144 2007-01-15] (Nero AG) [File not signed]
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-03-12] (Nero AG)
R2 nvservice; C:\Windows\system32\nvservice.exe [192800 2013-02-04] (NVIDIA Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1146304 2014-05-14] (Crawler.com)
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [3596752 2014-08-13] (Check Point Software Technologies Ltd.)
R2 vToolbarUpdater18.1.9; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe [1820184 2014-08-13] (AVG Secure Search)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-27] (Sony Corporation)
R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [96272 2014-08-13] (Check Point Software Technologies, Ltd.)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [244504 2014-07-21] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [191768 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [323352 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-08-06] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [273176 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-13] (AVG Technologies)
R3 azvusb; C:\Windows\System32\DRIVERS\azvusb.sys [54784 2009-08-24] (AzureWave Technologies, Inc.)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-09-16] (BlueStack Systems)
S3 mod7700; C:\Windows\System32\DRIVERS\mod7700.sys [1077840 2010-11-19] (DiBcom SA)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SPI; C:\Windows\System32\DRIVERS\SonyPI.sys [17536 2007-08-03] (Sony Corporation)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2014-09-16] (Windows (R) Win 7 DDK provider)
R2 VBoxDrv; C:\Program Files (x86)\YouWave Android\vb\VBoxDrv.sys [202592 2011-11-20] (Oracle Corporation)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [450456 2014-08-13] (Check Point Software Technologies Ltd.)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 02:36 - 2014-09-22 02:37 - 00020931 _____ () C:\Users\Pavel\Desktop\FRST.txt
2014-09-22 02:35 - 2014-09-22 02:36 - 00000000 ____D () C:\FRST
2014-09-22 02:17 - 2014-09-22 02:17 - 02105856 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2014-09-22 02:17 - 2014-09-22 02:17 - 00112640 _____ () C:\Users\Pavel\Desktop\FRSTLauncher.exe
2014-09-22 01:40 - 2014-09-22 01:40 - 00000000 _____ () C:\autoexec.bat
2014-09-22 01:39 - 2014-09-22 01:39 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-09-22 01:38 - 2014-09-22 02:34 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-09-22 01:21 - 2014-09-22 01:21 - 00001960 _____ () C:\Windows\PFRO.log
2014-09-22 01:21 - 2014-09-22 01:21 - 00000056 _____ () C:\Windows\setupact.log
2014-09-22 01:21 - 2014-09-22 01:21 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-21 20:35 - 2013-01-08 17:11 - 876099468 _____ () C:\Users\Pavel\Desktop\Jako malé děti.avi
2014-09-21 18:30 - 2014-09-21 20:01 - 865851819 _____ () C:\Users\Pavel\Desktop\Jako-malé-děti-film-kate-winslet-CZ.rar
2014-09-21 18:24 - 2014-09-21 18:24 - 00000000 ____D () C:\Users\Pavel\Desktop\jako malé děti
2014-09-21 15:59 - 2014-09-21 17:01 - 856183866 _____ () C:\Users\Pavel\Desktop\Pribeh.kmotra.2013 DVDrip-Super-Drama.avi
2014-09-21 12:33 - 2014-09-21 12:58 - 169268948 _____ () C:\Users\Pavel\Desktop\I.Lossens.Time.2013.720p.BluRay.x264.anoXmous_.mp4
2014-09-21 02:08 - 2014-09-21 02:08 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk
2014-09-21 02:07 - 2014-09-21 02:07 - 00001818 _____ () C:\Users\Public\Desktop\Apps.lnk
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2014-09-21 02:05 - 2014-09-21 02:19 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-09-21 02:04 - 2014-09-21 02:04 - 13309928 _____ (BlueStack Systems Inc.) C:\Users\Pavel\Desktop\BlueStacks-SplitInstaller_native.exe
2014-09-21 02:04 - 2014-09-21 02:04 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Bluestacks
2014-09-21 01:42 - 2014-09-21 01:42 - 00012469 _____ () C:\Users\Pavel\Desktop\2D09CCE5521F00BA2286C87B800679A15201EC6E.torrent
2014-09-21 01:38 - 2014-09-21 01:38 - 00812850 _____ () C:\Users\Pavel\Desktop\YouWave_for_Android_Home_3_20_Multilingual_keygen.exe
2014-09-21 01:35 - 2014-09-21 01:35 - 00828928 _____ (Of Thermodynamic) C:\Users\Pavel\Desktop\YouWave 3.20 Latest Crack is Here !.exe
2014-09-21 01:28 - 2014-09-21 01:28 - 00828928 _____ (Points Serving) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(2).exe
2014-09-21 01:24 - 2014-09-21 01:24 - 00828928 _____ (Forced Having) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(1).exe
2014-09-21 01:23 - 2014-09-21 01:24 - 00000000 ____D () C:\Users\Pavel\Desktop\aaaaaa
2014-09-21 01:23 - 2014-09-21 01:23 - 00828928 _____ (Fruit Or) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial.exe
2014-09-21 01:15 - 2014-09-21 01:15 - 00828928 _____ (On Have) C:\Users\Pavel\Desktop\YouWave Home 4.1.1 Crack is Here ! (100%20Working ).exe
2014-09-21 01:14 - 2014-09-21 01:22 - 150612432 _____ () C:\Users\Pavel\Desktop\YouWave-Android-Home-3-20.exe
2014-09-21 01:13 - 2014-09-21 01:13 - 00828928 _____ (Some Question) C:\Users\Pavel\Desktop\YouWave for Android 4.1.2 Final Full Crack.exe
2014-09-21 01:09 - 2014-09-22 01:22 - 00001536 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1.job
2014-09-21 01:09 - 2014-09-22 01:22 - 00001456 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5.job
2014-09-21 01:09 - 2014-09-22 01:22 - 00001194 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10.job
2014-09-21 01:09 - 2014-09-21 01:09 - 00004566 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1
2014-09-21 01:09 - 2014-09-21 01:09 - 00004486 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5
2014-09-21 01:09 - 2014-09-21 01:09 - 00004224 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10
2014-09-21 01:09 - 2014-09-21 01:09 - 00003924 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-09-21 01:08 - 2014-09-22 01:22 - 00003804 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11.job
2014-09-21 01:08 - 2014-09-22 01:22 - 00002182 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4.job
2014-09-21 01:08 - 2014-09-22 01:22 - 00000922 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-09-21 01:08 - 2014-09-22 01:13 - 00000926 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-09-21 01:08 - 2014-09-21 01:09 - 00005212 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4
2014-09-21 01:08 - 2014-09-21 01:08 - 00006834 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11
2014-09-21 01:08 - 2014-09-21 01:08 - 00003670 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-09-21 01:08 - 2014-09-21 01:08 - 00000000 ____D () C:\Users\Pavel\AppData\Local\globalUpdate
2014-09-21 01:08 - 2014-09-21 01:08 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-09-21 00:53 - 2014-09-21 00:53 - 00828928 _____ (Who Forming) C:\Users\Pavel\Desktop\Patch YouWave for Android Home.rar.exe
2014-09-20 23:35 - 2014-09-20 23:35 - 00000218 _____ () C:\Users\Pavel\.recently-used.xbel
2014-09-20 09:16 - 2014-09-20 23:16 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\gtk-2.0
2014-09-20 09:12 - 2014-09-20 23:35 - 00000008 _____ () C:\Users\Public\youwave_size
2014-09-20 09:12 - 2014-09-20 09:12 - 00000000 ____D () C:\Users\Pavel\Documents\webkit
2014-09-20 09:11 - 2014-09-20 09:11 - 00000000 ____D () C:\ProgramData\Trusted Publisher
2014-09-20 09:09 - 2014-09-21 00:17 - 00000000 ____D () C:\Users\Pavel\youwave
2014-09-20 09:09 - 2014-09-20 09:09 - 00001095 _____ () C:\Users\Public\Desktop\YouWave Android.lnk
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\Users\Pavel\.Virtualbox
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouWave Android
2014-09-20 09:08 - 2014-09-20 09:09 - 00000000 ____D () C:\Program Files (x86)\YouWave Android
2014-09-19 14:18 - 2014-09-19 14:18 - 00000928 _____ () C:\Users\Pavel\Desktop\radius1.czu.cz.cer
2014-09-16 23:33 - 2014-09-22 01:25 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-09-16 23:33 - 2014-09-16 23:33 - 00001808 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-09-16 00:09 - 2014-09-19 20:46 - 00000000 ____D () C:\ProgramData\Spyware Terminator
2014-09-16 00:09 - 2014-09-16 00:09 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-09-16 00:09 - 2014-09-16 00:09 - 00001042 _____ () C:\Users\Public\Desktop\Spyware Terminator 2012.lnk
2014-09-16 00:09 - 2014-09-16 00:09 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\Spyware Terminator
2014-09-16 00:09 - 2014-09-16 00:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2012
2014-09-16 00:09 - 2014-09-16 00:09 - 00000000 ____D () C:\Program Files (x86)\Spyware Terminator
2014-09-16 00:07 - 2014-09-16 00:08 - 01056232 _____ (Crawler, LLC ) C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe
2014-09-16 00:02 - 2014-09-16 00:02 - 00431395 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-09-16 00:02 - 2014-09-16 00:02 - 00000762 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-09-16 00:02 - 2014-09-16 00:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check Point
2014-09-16 00:00 - 2014-09-16 00:02 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-09-15 23:58 - 2014-09-15 23:58 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-09-14 21:58 - 2014-09-14 22:00 - 00000000 ____D () C:\Users\Pavel\Desktop\Warcraft III
2014-09-13 20:43 - 2014-09-13 22:04 - 923046834 _____ () C:\Users\Pavel\Desktop\Stáhni mě do pekla.avi
2014-09-13 20:09 - 2014-09-13 20:10 - 00000000 ____D () C:\Users\Pavel\Desktop\C-Romca zkrácená verze
2014-09-13 10:11 - 2014-09-13 10:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-11 23:23 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-11 23:23 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 23:23 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-11 23:23 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-11 23:23 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 23:23 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 23:23 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-11 23:23 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-11 23:23 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-11 23:23 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-11 23:23 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-11 23:23 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-11 23:23 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 23:23 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-11 23:23 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-11 23:23 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-11 23:23 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-11 23:23 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-11 23:23 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-11 23:23 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 23:23 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 23:23 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-11 23:23 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 23:23 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 23:23 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 23:23 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 23:23 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 23:23 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 23:23 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-11 23:23 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-11 23:23 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 23:23 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 23:23 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-11 23:23 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 23:23 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 23:23 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 23:23 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 23:23 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-11 23:23 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-11 23:23 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-11 23:23 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-11 23:23 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 23:23 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 23:23 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 23:23 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 23:23 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-11 23:23 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 23:23 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-11 23:23 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 23:23 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 23:23 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 23:23 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-11 23:23 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 23:23 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 23:23 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-11 23:23 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-11 23:18 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 23:18 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 20:16 - 2014-09-20 19:10 - 00000000 ____D () C:\Users\Pavel\Desktop\PEF 1. ročník
2014-09-10 16:29 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 16:29 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 16:25 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 16:25 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-10 16:23 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 16:23 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-10 16:23 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 16:23 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 16:23 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 16:23 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 16:23 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-08 00:29 - 2014-09-08 00:29 - 00020343 _____ () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT.htm
2014-09-08 00:29 - 2014-09-08 00:29 - 00000000 ____D () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT_soubory
2014-08-27 19:31 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-27 19:31 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-27 19:31 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-27 12:15 - 2014-08-27 12:15 - 00000000 ____D () C:\Program Files (x86)\AVG Security Toolbar
2014-08-27 12:14 - 2014-08-27 12:14 - 00000000 ____D () C:\ProgramData\Avg_Update_0814tb
2014-08-24 20:25 - 2014-08-24 20:25 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Adobe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 02:37 - 2014-09-22 02:36 - 00020931 _____ () C:\Users\Pavel\Desktop\FRST.txt
2014-09-22 02:36 - 2014-09-22 02:35 - 00000000 ____D () C:\FRST
2014-09-22 02:34 - 2014-09-22 01:38 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-09-22 02:17 - 2014-09-22 02:17 - 02105856 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2014-09-22 02:17 - 2014-09-22 02:17 - 00112640 _____ () C:\Users\Pavel\Desktop\FRSTLauncher.exe
2014-09-22 01:51 - 2012-12-15 20:28 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-22 01:47 - 2012-12-31 15:45 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-22 01:40 - 2014-09-22 01:40 - 00000000 _____ () C:\autoexec.bat
2014-09-22 01:40 - 2012-12-14 23:28 - 01820237 _____ () C:\Windows\WindowsUpdate.log
2014-09-22 01:39 - 2014-09-22 01:39 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-09-22 01:32 - 2009-07-14 06:45 - 00026736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-22 01:32 - 2009-07-14 06:45 - 00026736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-22 01:30 - 2013-10-22 23:17 - 00000356 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-09-22 01:25 - 2014-09-16 23:33 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-09-22 01:23 - 2012-12-15 15:09 - 00000000 ____D () C:\ProgramData\MFAData
2014-09-22 01:22 - 2014-09-21 01:09 - 00001536 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1.job
2014-09-22 01:22 - 2014-09-21 01:09 - 00001456 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5.job
2014-09-22 01:22 - 2014-09-21 01:09 - 00001194 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10.job
2014-09-22 01:22 - 2014-09-21 01:08 - 00003804 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11.job
2014-09-22 01:22 - 2014-09-21 01:08 - 00002182 _____ () C:\Windows\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4.job
2014-09-22 01:22 - 2014-09-21 01:08 - 00000922 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-09-22 01:21 - 2014-09-22 01:21 - 00001960 _____ () C:\Windows\PFRO.log
2014-09-22 01:21 - 2014-09-22 01:21 - 00000056 _____ () C:\Windows\setupact.log
2014-09-22 01:21 - 2014-09-22 01:21 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-22 01:21 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-22 01:13 - 2014-09-21 01:08 - 00000926 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-09-22 00:29 - 2013-05-05 14:45 - 00000000 ____D () C:\Users\Pavel\Desktop\Pája věci
2014-09-21 20:01 - 2014-09-21 18:30 - 865851819 _____ () C:\Users\Pavel\Desktop\Jako-malé-děti-film-kate-winslet-CZ.rar
2014-09-21 18:26 - 2009-07-14 12:49 - 00672424 _____ () C:\Windows\system32\perfh005.dat
2014-09-21 18:26 - 2009-07-14 12:49 - 00142988 _____ () C:\Windows\system32\perfc005.dat
2014-09-21 18:26 - 2009-07-14 07:13 - 01593310 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-21 18:24 - 2014-09-21 18:24 - 00000000 ____D () C:\Users\Pavel\Desktop\jako malé děti
2014-09-21 17:01 - 2014-09-21 15:59 - 856183866 _____ () C:\Users\Pavel\Desktop\Pribeh.kmotra.2013 DVDrip-Super-Drama.avi
2014-09-21 12:58 - 2014-09-21 12:33 - 169268948 _____ () C:\Users\Pavel\Desktop\I.Lossens.Time.2013.720p.BluRay.x264.anoXmous_.mp4
2014-09-21 12:22 - 2014-05-21 00:06 - 00001145 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2014-09-21 02:19 - 2014-09-21 02:05 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-09-21 02:08 - 2014-09-21 02:08 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk
2014-09-21 02:07 - 2014-09-21 02:07 - 00001818 _____ () C:\Users\Public\Desktop\Apps.lnk
2014-09-21 02:07 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2014-09-21 02:04 - 2014-09-21 02:04 - 13309928 _____ (BlueStack Systems Inc.) C:\Users\Pavel\Desktop\BlueStacks-SplitInstaller_native.exe
2014-09-21 02:04 - 2014-09-21 02:04 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Bluestacks
2014-09-21 01:42 - 2014-09-21 01:42 - 00012469 _____ () C:\Users\Pavel\Desktop\2D09CCE5521F00BA2286C87B800679A15201EC6E.torrent
2014-09-21 01:38 - 2014-09-21 01:38 - 00812850 _____ () C:\Users\Pavel\Desktop\YouWave_for_Android_Home_3_20_Multilingual_keygen.exe
2014-09-21 01:35 - 2014-09-21 01:35 - 00828928 _____ (Of Thermodynamic) C:\Users\Pavel\Desktop\YouWave 3.20 Latest Crack is Here !.exe
2014-09-21 01:28 - 2014-09-21 01:28 - 00828928 _____ (Points Serving) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(2).exe
2014-09-21 01:24 - 2014-09-21 01:24 - 00828928 _____ (Forced Having) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(1).exe
2014-09-21 01:24 - 2014-09-21 01:23 - 00000000 ____D () C:\Users\Pavel\Desktop\aaaaaa
2014-09-21 01:23 - 2014-09-21 01:23 - 00828928 _____ (Fruit Or) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial.exe
2014-09-21 01:22 - 2014-09-21 01:14 - 150612432 _____ () C:\Users\Pavel\Desktop\YouWave-Android-Home-3-20.exe
2014-09-21 01:15 - 2014-09-21 01:15 - 00828928 _____ (On Have) C:\Users\Pavel\Desktop\YouWave Home 4.1.1 Crack is Here ! (100%20Working ).exe
2014-09-21 01:13 - 2014-09-21 01:13 - 00828928 _____ (Some Question) C:\Users\Pavel\Desktop\YouWave for Android 4.1.2 Final Full Crack.exe
2014-09-21 01:09 - 2014-09-21 01:09 - 00004566 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-1
2014-09-21 01:09 - 2014-09-21 01:09 - 00004486 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-5
2014-09-21 01:09 - 2014-09-21 01:09 - 00004224 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-10
2014-09-21 01:09 - 2014-09-21 01:09 - 00003924 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-09-21 01:09 - 2014-09-21 01:08 - 00005212 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-4
2014-09-21 01:08 - 2014-09-21 01:08 - 00006834 _____ () C:\Windows\System32\Tasks\d8f74118-7758-4a73-8216-f3d5e66779f5-11
2014-09-21 01:08 - 2014-09-21 01:08 - 00003670 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-09-21 01:08 - 2014-09-21 01:08 - 00000000 ____D () C:\Users\Pavel\AppData\Local\globalUpdate
2014-09-21 01:08 - 2014-09-21 01:08 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-09-21 00:53 - 2014-09-21 00:53 - 00828928 _____ (Who Forming) C:\Users\Pavel\Desktop\Patch YouWave for Android Home.rar.exe
2014-09-21 00:17 - 2014-09-20 09:09 - 00000000 ____D () C:\Users\Pavel\youwave
2014-09-20 23:35 - 2014-09-20 23:35 - 00000218 _____ () C:\Users\Pavel\.recently-used.xbel
2014-09-20 23:35 - 2014-09-20 09:12 - 00000008 _____ () C:\Users\Public\youwave_size
2014-09-20 23:35 - 2012-12-14 23:31 - 00000000 ____D () C:\Users\Pavel
2014-09-20 23:16 - 2014-09-20 09:16 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\gtk-2.0
2014-09-20 19:10 - 2014-09-10 20:16 - 00000000 ____D () C:\Users\Pavel\Desktop\PEF 1. ročník
2014-09-20 09:12 - 2014-09-20 09:12 - 00000000 ____D () C:\Users\Pavel\Documents\webkit
2014-09-20 09:12 - 2012-12-14 23:32 - 00001621 _____ () C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-20 09:11 - 2014-09-20 09:11 - 00000000 ____D () C:\ProgramData\Trusted Publisher
2014-09-20 09:09 - 2014-09-20 09:09 - 00001095 _____ () C:\Users\Public\Desktop\YouWave Android.lnk
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\Users\Pavel\.Virtualbox
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouWave Android
2014-09-20 09:09 - 2014-09-20 09:08 - 00000000 ____D () C:\Program Files (x86)\YouWave Android
2014-09-19 20:46 - 2014-09-16 00:09 - 00000000 ____D () C:\ProgramData\Spyware Terminator
2014-09-19 20:44 - 2009-07-14 07:08 - 00032614 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-19 14:18 - 2014-09-19 14:18 - 00000928 _____ () C:\Users\Pavel\Desktop\radius1.czu.cz.cer
2014-09-16 23:33 - 2014-09-16 23:33 - 00001808 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-09-16 20:23 - 2012-12-15 20:17 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-16 00:09 - 2014-09-16 00:09 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-09-16 00:09 - 2014-09-16 00:09 - 00001042 _____ () C:\Users\Public\Desktop\Spyware Terminator 2012.lnk
2014-09-16 00:09 - 2014-09-16 00:09 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\Spyware Terminator
2014-09-16 00:09 - 2014-09-16 00:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2012
2014-09-16 00:09 - 2014-09-16 00:09 - 00000000 ____D () C:\Program Files (x86)\Spyware Terminator
2014-09-16 00:08 - 2014-09-16 00:07 - 01056232 _____ (Crawler, LLC ) C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe
2014-09-16 00:02 - 2014-09-16 00:02 - 00431395 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-09-16 00:02 - 2014-09-16 00:02 - 00000762 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-09-16 00:02 - 2014-09-16 00:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check Point
2014-09-16 00:02 - 2014-09-16 00:00 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-09-15 23:58 - 2014-09-15 23:58 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-09-15 12:15 - 2012-12-31 15:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-14 22:00 - 2014-09-14 21:58 - 00000000 ____D () C:\Users\Pavel\Desktop\Warcraft III
2014-09-13 22:04 - 2014-09-13 20:43 - 923046834 _____ () C:\Users\Pavel\Desktop\Stáhni mě do pekla.avi
2014-09-13 20:10 - 2014-09-13 20:09 - 00000000 ____D () C:\Users\Pavel\Desktop\C-Romca zkrácená verze
2014-09-13 19:59 - 2013-09-29 12:31 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\vlc
2014-09-13 14:34 - 2013-04-01 18:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-09-13 14:34 - 2013-04-01 18:29 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-13 10:36 - 2014-08-22 21:51 - 00000000 ____D () C:\Windows\rescache
2014-09-13 10:11 - 2014-09-13 10:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-11 23:28 - 2012-12-15 19:20 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 23:22 - 2013-08-07 01:14 - 01568960 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-11 23:21 - 2013-08-11 15:51 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-11 23:19 - 2012-12-15 00:14 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-11 23:18 - 2014-05-01 08:44 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-10 20:51 - 2012-12-15 20:28 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-10 20:51 - 2012-12-15 20:28 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-10 20:51 - 2012-12-15 20:28 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-08 00:29 - 2014-09-08 00:29 - 00020343 _____ () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT.htm
2014-09-08 00:29 - 2014-09-08 00:29 - 00000000 ____D () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT_soubory
2014-09-05 04:10 - 2014-09-10 16:23 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-05 04:05 - 2014-09-10 16:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-04 12:16 - 2014-05-08 15:46 - 00000977 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-08-28 16:41 - 2009-07-14 06:45 - 08810464 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-27 19:35 - 2014-05-10 08:51 - 00000000 ____D () C:\ProgramData\AVG SafeGuard toolbar
2014-08-27 19:35 - 2014-05-10 08:51 - 00000000 ____D () C:\Program Files (x86)\AVG SafeGuard toolbar
2014-08-27 12:15 - 2014-08-27 12:15 - 00000000 ____D () C:\Program Files (x86)\AVG Security Toolbar
2014-08-27 12:14 - 2014-08-27 12:14 - 00000000 ____D () C:\ProgramData\Avg_Update_0814tb
2014-08-24 20:25 - 2014-08-24 20:25 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Adobe
2014-08-24 09:26 - 2013-05-06 22:43 - 00001915 _____ () C:\Users\Pavel\AppData\default.pls
2014-08-23 04:07 - 2014-08-27 19:31 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-27 19:31 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-27 19:31 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

Some content of TEMP:
====================
C:\Users\Pavel\AppData\Local\Temp\SHSetup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-16 00:56

==================== End Of Log ============================
Přílohy
Addition.rar
(7.96 KiB) Staženo 60 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu (istart.webssearches.com)

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Vase leceni bylo zcela nedostatecne, haveti je tam jeste spousty

:arrow: Odinstalujte Spyware Terminator

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

Re: prosím o kontrolu logu (istart.webssearches.com)

#3 Příspěvek od PabloPicasso »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.9 (09.20.2014:1)
OS: Windows 7 Professional x64
Ran by Pavel on po 22.09.2014 at 18:48:00,10
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escorteng.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\esrv.exe
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\viprotocol.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\protocols\handler\viprotocol
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\scripthelper.scripthelperapi
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\scripthelper.scripthelperapi.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\scripthost.tool
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\scripthost.tool.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\viprotocol.viprotocolole
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\viprotocol.viprotocolole.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{99c91fc5-db5b-4aa0-bb70-5d89c5a4df96}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\updateLemurLeap_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\updateLemurLeap_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\updateLemurLeap_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\updateLemurLeap_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}



~~~ Files

Successfully deleted: [File] C:\Windows\Tasks\amiupdxp.job
Successfully disinfected: [Shortcut] C:\Users\Pavel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Successfully disinfected: [Shortcut] C:\Users\Pavel\AppData\Roaming\microsoft\windows\start menu\Programs\Internet Explorer.lnk
Successfully disinfected: [Shortcut] C:\Users\Pavel\AppData\Roaming\microsoft\windows\start menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Pavel\AppData\Roaming\pdfforge"
Successfully deleted: [Folder] "C:\Users\Pavel\appdata\local\swvupdater"



~~~ FireFox

Successfully deleted the following from C:\Users\Pavel\AppData\Roaming\mozilla\firefox\profiles\gezs900q.default\prefs.js

user_pref("extensions.crossrider.bic", "14896ae956756741e0bb7a5cb8cdd373");
Emptied folder: C:\Users\Pavel\AppData\Roaming\mozilla\firefox\profiles\gezs900q.default\minidumps [224 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 22.09.2014 at 19:10:10,28
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

Re: prosím o kontrolu logu (istart.webssearches.com)

#4 Příspěvek od PabloPicasso »

# AdwCleaner v3.310 - Report created 22/09/2014 at 19:14:47
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Pavel - PAVEL-PC
# Running from : C:\Users\Pavel\Desktop\adwcleaner_3.310.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\AVG SafeGuard toolbar
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\AVG Security Toolbar
Folder Deleted : C:\ProgramData\House Of Soft
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\ProgramData\Trusted Publisher
Folder Deleted : C:\Program Files (x86)\AVG SafeGuard toolbar
Folder Deleted : C:\Program Files (x86)\AVG Security Toolbar
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Deleted : C:\Users\Pavel\AppData\Local\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Pavel\AppData\Local\FreeFixer
Folder Deleted : C:\Users\Pavel\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Pavel\AppData\LocalLow\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Pavel\AppData\Roaming\FreeFixer
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : d8f74118-7758-4a73-8216-f3d5e66779f5-1
Task Deleted : d8f74118-7758-4a73-8216-f3d5e66779f5-10
Task Deleted : d8f74118-7758-4a73-8216-f3d5e66779f5-11
Task Deleted : d8f74118-7758-4a73-8216-f3d5e66779f5-4
Task Deleted : d8f74118-7758-4a73-8216-f3d5e66779f5-5

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [12x3q@3244516.com]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hidjnkeodmholilgafgdlgmgggbhnigl
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\poheodfamflhhhdcmjfeggbgigeefaco
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-792098896
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{987D9269-F8A1-408F-BF62-4397D2F5363E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0722BEB-FDA1-4AA1-A2A8-15A74A5B3F70}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A36BCB13-778D-4A40-99C1-D686086D268F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BEAA0C04-ED15-4C17-800B-28716025A4E4}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CCA8F2AB-BE4E-41F0-A289-4D960CEA58EA}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{807DF5E0-4EF7-48A8-A405-239F3E29FFA9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{FE69C007-C452-4D3E-86D2-1730DF8BC871}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A36BCB13-778D-4A40-99C1-D686086D268F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\AVG SafeGuard toolbar
Key Deleted : HKCU\Software\AVG Security Toolbar
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\AVG SafeGuard toolbar
Key Deleted : HKLM\SOFTWARE\AVG Security Toolbar
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\SimilarSites
Key Deleted : HKLM\SOFTWARE\webssearchesSoftware
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v32.0.2 (x86 cs)

[ File : C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\prefs.js ]


-\\ Google Chrome v

*************************

AdwCleaner[R0].txt - [14244 octets] - [22/09/2014 19:13:03]
AdwCleaner[S0].txt - [13000 octets] - [22/09/2014 19:14:47]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13061 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu (istart.webssearches.com)

#5 Příspěvek od vyosek »

:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

Re: prosím o kontrolu logu (istart.webssearches.com)

#6 Příspěvek od PabloPicasso »

Zoek.exe v5.0.0.0 Updated 21-09-2014
Tool run by Pavel on po 22.09.2014 at 20:04:41,75.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Pavel\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.9.2014 20:06:56 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-1185336429-1689756948-2369916296-1001\Software\Microsoft\Internet Explorer\Approved Extensions\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC} deleted successfully
HKEY_USERS\S-1-5-21-1185336429-1689756948-2369916296-1001\Software\Microsoft\Internet Explorer\Approved Extensions\{1824FF90-C98E-48A6-838F-E3B6572B0C77} deleted successfully
HKEY_USERS\S-1-5-21-1185336429-1689756948-2369916296-1001\Software\Microsoft\Internet Explorer\Approved Extensions\{af9712f0-046e-4221-9dbf-b245adcb2766} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.1.9 deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater18.1.9 deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.cz");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default

user.js not found
---- Lines zonealarm removed from prefs.js ----
user_pref("extensions.dntp.addonId", "ffxtlbr@zonealarm.com");
user_pref("extensions.ffxtlbr@zonealarm.com.conflict.checked", "true");
user_pref("extensions.zonealarm.admin", false);
user_pref("extensions.zonealarm.aflt", "1001");
user_pref("extensions.zonealarm.appId", "{C56C48A0-DA4E-46F6-9859-1553DC865F84}");
user_pref("extensions.zonealarm.autoRvrt", "false");
user_pref("extensions.zonealarm.cntry", "CZ");
user_pref("extensions.zonealarm.dfltLng", "EN");
user_pref("extensions.zonealarm.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,7
user_pref("extensions.zonealarm.excTlbr", false);
user_pref("extensions.zonealarm.ffxUnstlRst", false);
user_pref("extensions.zonealarm.hdrMd5", "E6216B49BDB58CD808713A3CB73B8A03");
user_pref("extensions.zonealarm.id", "92ed0e03000000000000001a80d99eda");
user_pref("extensions.zonealarm.instlDay", "16328");
user_pref("extensions.zonealarm.instlRef", "ZLN124815671093514-1001");
user_pref("extensions.zonealarm.lastB", "www.google.cz");
user_pref("extensions.zonealarm.lastVrsnTs", "1.8.29.170:00:13");
user_pref("extensions.zonealarm.newTab", false);
user_pref("extensions.zonealarm.prdct", "zonealarm");
user_pref("extensions.zonealarm.prtnrId", "checkpoint");
user_pref("extensions.zonealarm.rvrt", "false");
user_pref("extensions.zonealarm.sg", "NewUSR");
user_pref("extensions.zonealarm.smplGrp", "NewUSR");
user_pref("extensions.zonealarm.tlbrId", "HFA5");
user_pref("extensions.zonealarm.tlbrSrchUrl", "http://search.zonealarm.com/search?src= ... fd83e71e&t
user_pref("extensions.zonealarm.vrsn", "1.8.29.17");
user_pref("extensions.zonealarm.vrsni", "1.8.29.17");
user_pref("extensions.zonealarm.vrsnTs", "1.8.29.170:00:13");
---- Lines FFPDFArchitectConverter@pdfarchitect.com modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"FFPDFArchitectConverter@pdfarchitect.com\":{\"descriptor\":\"C:\\
---- FireFox user.js and prefs.js backups ----

prefs_22.09.2014_2020_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~3\SummerSoft deleted
C:\PROGRA~2\Mozilla Firefox\defaults\preferences\pref.js deleted
C:\PROGRA~3\Avg_Update_0414c deleted
C:\PROGRA~3\Avg_Update_0814tb deleted
C:\PROGRA~3\AVG January 2013 Campaign deleted
C:\PROGRA~3\InstallMate deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar deleted
C:\Windows\tasks\ROC_REG_JAN_DELETE.job deleted
C:\windows\SysNative\tasks\ROC_REG_JAN_DELETE deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"FFPDFArchitectConverter@pdfarchitect.com"=hex(2):43,00,3a,00,5c,00,50,00,72,\ []

==== Firefox Extensions ======================

ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default
- Classic Theme Restorer Customize Australis - %ProfilePath%\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi
- Linkification - %ProfilePath%\extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default
DFC9460CC37E5C414DC4680B10C19E7A - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll - Shockwave Flash


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\FFPDFArchitectConverter@pdfarchitect.com deleted successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\e977a03c-2b3a-49c7-95d3-8d27c875d326 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{77A19607-8C06-516F-F7FE-585188402850} deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Pavel\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

No Chrome Cache found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=52 folders=13 17769996 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Pavel\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Pavel\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on po 22.09.2014 at 20:38:09,04 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu (istart.webssearches.com)

#7 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

Re: prosím o kontrolu logu (istart.webssearches.com)

#8 Příspěvek od PabloPicasso »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-09-2014 01
Ran by Pavel (administrator) on PAVEL-PC on 22-09-2014 21:24:43
Running from C:\Users\Pavel\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(AuthenTec, Inc) C:\Program Files\AuthenTec TrueSuite\TrueSuiteService.exe
(NVIDIA Corporation) C:\Windows\System32\nvservice.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
(AuthenTec Inc.) C:\Program Files\AuthenTec TrueSuite\TouchControl.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgscanx.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(AuthenTec Inc.) C:\Program Files\AuthenTec TrueSuite\BioMonitor.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpWareSE4.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe
(BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe
(BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [] => [X]
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [644696 2007-05-14] (CANON INC.)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1840720 2007-04-03] (CANON INC.)
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5188112 2014-08-25] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [137352 2014-08-13] (Check Point Software Technologies Ltd.)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [839384 2014-09-16] (BlueStack Systems, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7763736 2014-09-10] (SUPERAntiSpyware)
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\MountPoints2: {e6cadf20-49da-11e3-a4e6-0024338924f3} - G:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vyhledat aktualizace.lnk
ShortcutTarget: Vyhledat aktualizace.lnk -> C:\Program Files (x86)\Common Files\PCTV Systems\WebUpdater\WebUpdater.exe (PCTV Systems)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

URLSearchHook: HKLM-x32 - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
URLSearchHook: HKCU - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
DPF: HKLM-x32 {02CF1781-EA91-4FA5-A200-646E8241987C} http://esupport.sony.com/VaioInfo.CAB
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default
FF NewTab: hxxp://www.google.com/
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Classic Theme Restorer - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi [2014-05-12]
FF Extension: Linkification - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi [2012-12-31]
FF Extension: Adblock Plus - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-12-31]

Chrome:
=======
CHR Profile: C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3242000 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-09-16] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384728 2014-09-16] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [777944 2014-09-16] (BlueStack Systems, Inc.)
R2 FPLService; C:\Program Files\AuthenTec TrueSuite\TrueSuiteService.exe [296808 2012-08-30] (AuthenTec, Inc)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [774144 2007-01-15] (Nero AG) [File not signed]
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-03-12] (Nero AG)
R2 nvservice; C:\Windows\system32\nvservice.exe [192800 2013-02-04] (NVIDIA Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [3596752 2014-08-13] (Check Point Software Technologies Ltd.)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-27] (Sony Corporation)
R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [96272 2014-08-13] (Check Point Software Technologies, Ltd.)
S2 HPSLPSVC; C:\Users\Pavel\AppData\Local\Temp\7zS4277\hpslpsvc64.dll [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [244504 2014-07-21] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [191768 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [323352 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-08-06] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [273176 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-13] (AVG Technologies)
R3 azvusb; C:\Windows\System32\DRIVERS\azvusb.sys [54784 2009-08-24] (AzureWave Technologies, Inc.)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-09-16] (BlueStack Systems)
S3 mod7700; C:\Windows\System32\DRIVERS\mod7700.sys [1077840 2010-11-19] (DiBcom SA)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SPI; C:\Windows\System32\DRIVERS\SonyPI.sys [17536 2007-08-03] (Sony Corporation)
R2 VBoxDrv; C:\Program Files (x86)\YouWave Android\vb\VBoxDrv.sys [202592 2011-11-20] (Oracle Corporation)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [450456 2014-08-13] (Check Point Software Technologies Ltd.)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 20:27 - 2014-09-22 20:04 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-22 20:06 - 2014-09-22 20:38 - 00011792 _____ () C:\zoek-results.log
2014-09-22 20:04 - 2014-09-22 20:21 - 00000000 ____D () C:\zoek_backup
2014-09-22 20:03 - 2014-09-22 20:03 - 01290752 _____ () C:\Users\Pavel\Desktop\zoek.exe
2014-09-22 19:17 - 2014-09-22 20:36 - 00000866 _____ () C:\Windows\PFRO.log
2014-09-22 19:14 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-22 19:12 - 2014-09-22 19:15 - 00000000 ____D () C:\AdwCleaner
2014-09-22 19:10 - 2014-09-22 19:12 - 00006906 _____ () C:\Users\Pavel\Desktop\JRT.txt
2014-09-22 19:03 - 2014-09-22 19:03 - 01373475 _____ () C:\Users\Pavel\Desktop\adwcleaner_3.310.exe
2014-09-22 18:47 - 2014-09-22 18:47 - 00000000 ____D () C:\Windows\ERUNT
2014-09-22 18:46 - 2014-09-22 18:47 - 01027006 _____ (Thisisu) C:\Users\Pavel\Desktop\JRT.exe
2014-09-22 18:38 - 2014-09-22 18:38 - 00000000 ____D () C:\ProgramData\Spyware Terminator
2014-09-22 18:34 - 2014-09-22 18:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-22 12:24 - 2014-09-22 12:27 - 00000000 ____D () C:\Users\Pavel\Desktop\flash...new škola
2014-09-22 12:23 - 2014-09-22 12:23 - 00000000 ____D () C:\Users\Pavel\Desktop\foto promoce
2014-09-22 12:06 - 2014-09-22 20:37 - 00000280 _____ () C:\Windows\setupact.log
2014-09-22 12:06 - 2014-09-22 12:06 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-22 02:37 - 2014-09-22 02:38 - 00027965 _____ () C:\Users\Pavel\Desktop\Addition.txt
2014-09-22 02:36 - 2014-09-22 21:26 - 00014531 _____ () C:\Users\Pavel\Desktop\FRST.txt
2014-09-22 02:35 - 2014-09-22 21:24 - 00000000 ____D () C:\FRST
2014-09-22 02:17 - 2014-09-22 02:17 - 02105856 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2014-09-22 01:40 - 2014-09-22 01:40 - 00000000 _____ () C:\autoexec.bat
2014-09-22 01:38 - 2014-09-22 02:34 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-09-21 20:35 - 2013-01-08 17:11 - 876099468 _____ () C:\Users\Pavel\Desktop\Jako malé děti.avi
2014-09-21 18:30 - 2014-09-21 20:01 - 865851819 _____ () C:\Users\Pavel\Desktop\Jako-malé-děti-film-kate-winslet-CZ.rar
2014-09-21 18:24 - 2014-09-21 18:24 - 00000000 ____D () C:\Users\Pavel\Desktop\jako malé děti
2014-09-21 15:59 - 2014-09-21 17:01 - 856183866 _____ () C:\Users\Pavel\Desktop\Pribeh.kmotra.2013 DVDrip-Super-Drama.avi
2014-09-21 12:33 - 2014-09-21 12:58 - 169268948 _____ () C:\Users\Pavel\Desktop\I.Lossens.Time.2013.720p.BluRay.x264.anoXmous_.mp4
2014-09-21 02:08 - 2014-09-21 02:08 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk
2014-09-21 02:07 - 2014-09-21 02:07 - 00001818 _____ () C:\Users\Public\Desktop\Apps.lnk
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2014-09-21 02:05 - 2014-09-21 02:19 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-09-21 02:04 - 2014-09-21 02:04 - 13309928 _____ (BlueStack Systems Inc.) C:\Users\Pavel\Desktop\BlueStacks-SplitInstaller_native.exe
2014-09-21 02:04 - 2014-09-21 02:04 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Bluestacks
2014-09-21 01:42 - 2014-09-21 01:42 - 00012469 _____ () C:\Users\Pavel\Desktop\2D09CCE5521F00BA2286C87B800679A15201EC6E.torrent
2014-09-21 01:38 - 2014-09-21 01:38 - 00812850 _____ () C:\Users\Pavel\Desktop\YouWave_for_Android_Home_3_20_Multilingual_keygen.exe
2014-09-21 01:35 - 2014-09-21 01:35 - 00828928 _____ (Of Thermodynamic) C:\Users\Pavel\Desktop\YouWave 3.20 Latest Crack is Here !.exe
2014-09-21 01:28 - 2014-09-21 01:28 - 00828928 _____ (Points Serving) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(2).exe
2014-09-21 01:24 - 2014-09-21 01:24 - 00828928 _____ (Forced Having) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(1).exe
2014-09-21 01:23 - 2014-09-21 01:24 - 00000000 ____D () C:\Users\Pavel\Desktop\aaaaaa
2014-09-21 01:23 - 2014-09-21 01:23 - 00828928 _____ (Fruit Or) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial.exe
2014-09-21 01:15 - 2014-09-21 01:15 - 00828928 _____ (On Have) C:\Users\Pavel\Desktop\YouWave Home 4.1.1 Crack is Here ! (100%20Working ).exe
2014-09-21 01:14 - 2014-09-21 01:22 - 150612432 _____ () C:\Users\Pavel\Desktop\YouWave-Android-Home-3-20.exe
2014-09-21 01:13 - 2014-09-21 01:13 - 00828928 _____ (Some Question) C:\Users\Pavel\Desktop\YouWave for Android 4.1.2 Final Full Crack.exe
2014-09-21 00:53 - 2014-09-21 00:53 - 00828928 _____ (Who Forming) C:\Users\Pavel\Desktop\Patch YouWave for Android Home.rar.exe
2014-09-20 23:35 - 2014-09-20 23:35 - 00000218 _____ () C:\Users\Pavel\.recently-used.xbel
2014-09-20 09:16 - 2014-09-20 23:16 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\gtk-2.0
2014-09-20 09:12 - 2014-09-20 23:35 - 00000008 _____ () C:\Users\Public\youwave_size
2014-09-20 09:12 - 2014-09-20 09:12 - 00000000 ____D () C:\Users\Pavel\Documents\webkit
2014-09-20 09:09 - 2014-09-21 00:17 - 00000000 ____D () C:\Users\Pavel\youwave
2014-09-20 09:09 - 2014-09-20 09:09 - 00001095 _____ () C:\Users\Public\Desktop\YouWave Android.lnk
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\Users\Pavel\.Virtualbox
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouWave Android
2014-09-20 09:08 - 2014-09-20 09:09 - 00000000 ____D () C:\Program Files (x86)\YouWave Android
2014-09-19 14:18 - 2014-09-19 14:18 - 00000928 _____ () C:\Users\Pavel\Desktop\radius1.czu.cz.cer
2014-09-16 23:33 - 2014-09-22 20:39 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-09-16 23:33 - 2014-09-16 23:33 - 00001808 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-09-16 00:09 - 2014-09-16 00:09 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-09-16 00:07 - 2014-09-16 00:08 - 01056232 _____ (Crawler, LLC ) C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe
2014-09-16 00:02 - 2014-09-16 00:02 - 00431395 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-09-16 00:02 - 2014-09-16 00:02 - 00000762 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-09-16 00:02 - 2014-09-16 00:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check Point
2014-09-16 00:00 - 2014-09-16 00:02 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-09-15 23:58 - 2014-09-15 23:58 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-09-14 21:58 - 2014-09-14 22:00 - 00000000 ____D () C:\Users\Pavel\Desktop\Warcraft III
2014-09-13 20:43 - 2014-09-13 22:04 - 923046834 _____ () C:\Users\Pavel\Desktop\Stáhni mě do pekla.avi
2014-09-13 20:09 - 2014-09-13 20:10 - 00000000 ____D () C:\Users\Pavel\Desktop\C-Romca zkrácená verze
2014-09-13 10:11 - 2014-09-22 18:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak
2014-09-11 23:23 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-11 23:23 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 23:23 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-11 23:23 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-11 23:23 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 23:23 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 23:23 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-11 23:23 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-11 23:23 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-11 23:23 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-11 23:23 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-11 23:23 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-11 23:23 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 23:23 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-11 23:23 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-11 23:23 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-11 23:23 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-11 23:23 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-11 23:23 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-11 23:23 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 23:23 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 23:23 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-11 23:23 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 23:23 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 23:23 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 23:23 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 23:23 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 23:23 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 23:23 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-11 23:23 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-11 23:23 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 23:23 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 23:23 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-11 23:23 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 23:23 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 23:23 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 23:23 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 23:23 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-11 23:23 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-11 23:23 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-11 23:23 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-11 23:23 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 23:23 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 23:23 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 23:23 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 23:23 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-11 23:23 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 23:23 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-11 23:23 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 23:23 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 23:23 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 23:23 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-11 23:23 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 23:23 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 23:23 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-11 23:23 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-11 23:18 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 23:18 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 20:16 - 2014-09-20 19:10 - 00000000 ____D () C:\Users\Pavel\Desktop\PEF 1. ročník
2014-09-10 16:29 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 16:29 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 16:25 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 16:25 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-10 16:23 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 16:23 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-10 16:23 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 16:23 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 16:23 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 16:23 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 16:23 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-08 00:29 - 2014-09-08 00:29 - 00020343 _____ () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT.htm
2014-09-08 00:29 - 2014-09-08 00:29 - 00000000 ____D () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT_soubory
2014-08-27 19:31 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-27 19:31 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-27 19:31 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-24 20:25 - 2014-08-24 20:25 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Adobe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-22 21:26 - 2014-09-22 02:36 - 00014531 _____ () C:\Users\Pavel\Desktop\FRST.txt
2014-09-22 21:24 - 2014-09-22 02:35 - 00000000 ____D () C:\FRST
2014-09-22 20:51 - 2012-12-15 20:28 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-22 20:50 - 2012-12-14 23:28 - 01868465 _____ () C:\Windows\WindowsUpdate.log
2014-09-22 20:45 - 2009-07-14 06:45 - 00026736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-22 20:45 - 2009-07-14 06:45 - 00026736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-22 20:39 - 2014-09-16 23:33 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-09-22 20:38 - 2014-09-22 20:06 - 00011792 _____ () C:\zoek-results.log
2014-09-22 20:37 - 2014-09-22 12:06 - 00000280 _____ () C:\Windows\setupact.log
2014-09-22 20:37 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-22 20:36 - 2014-09-22 19:17 - 00000866 _____ () C:\Windows\PFRO.log
2014-09-22 20:21 - 2014-09-22 20:04 - 00000000 ____D () C:\zoek_backup
2014-09-22 20:04 - 2014-09-22 20:27 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-22 20:03 - 2014-09-22 20:03 - 01290752 _____ () C:\Users\Pavel\Desktop\zoek.exe
2014-09-22 19:17 - 2012-12-31 15:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-22 19:15 - 2014-09-22 19:12 - 00000000 ____D () C:\AdwCleaner
2014-09-22 19:12 - 2014-09-22 19:10 - 00006906 _____ () C:\Users\Pavel\Desktop\JRT.txt
2014-09-22 19:10 - 2012-12-14 23:32 - 00001397 _____ () C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-22 19:03 - 2014-09-22 19:03 - 01373475 _____ () C:\Users\Pavel\Desktop\adwcleaner_3.310.exe
2014-09-22 18:47 - 2014-09-22 18:47 - 00000000 ____D () C:\Windows\ERUNT
2014-09-22 18:47 - 2014-09-22 18:46 - 01027006 _____ (Thisisu) C:\Users\Pavel\Desktop\JRT.exe
2014-09-22 18:40 - 2014-09-13 10:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak
2014-09-22 18:38 - 2014-09-22 18:38 - 00000000 ____D () C:\ProgramData\Spyware Terminator
2014-09-22 18:34 - 2014-09-22 18:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-22 18:20 - 2009-07-14 12:49 - 00672424 _____ () C:\Windows\system32\perfh005.dat
2014-09-22 18:20 - 2009-07-14 12:49 - 00142988 _____ () C:\Windows\system32\perfc005.dat
2014-09-22 18:20 - 2009-07-14 07:13 - 01593310 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-22 17:56 - 2012-12-15 15:09 - 00000000 ____D () C:\ProgramData\MFAData
2014-09-22 12:27 - 2014-09-22 12:24 - 00000000 ____D () C:\Users\Pavel\Desktop\flash...new škola
2014-09-22 12:23 - 2014-09-22 12:23 - 00000000 ____D () C:\Users\Pavel\Desktop\foto promoce
2014-09-22 12:06 - 2014-09-22 12:06 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-22 02:38 - 2014-09-22 02:37 - 00027965 _____ () C:\Users\Pavel\Desktop\Addition.txt
2014-09-22 02:34 - 2014-09-22 01:38 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-09-22 02:17 - 2014-09-22 02:17 - 02105856 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2014-09-22 01:47 - 2012-12-31 15:45 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-22 01:40 - 2014-09-22 01:40 - 00000000 _____ () C:\autoexec.bat
2014-09-22 00:29 - 2013-05-05 14:45 - 00000000 ____D () C:\Users\Pavel\Desktop\Pája věci
2014-09-21 20:01 - 2014-09-21 18:30 - 865851819 _____ () C:\Users\Pavel\Desktop\Jako-malé-děti-film-kate-winslet-CZ.rar
2014-09-21 18:24 - 2014-09-21 18:24 - 00000000 ____D () C:\Users\Pavel\Desktop\jako malé děti
2014-09-21 17:01 - 2014-09-21 15:59 - 856183866 _____ () C:\Users\Pavel\Desktop\Pribeh.kmotra.2013 DVDrip-Super-Drama.avi
2014-09-21 12:58 - 2014-09-21 12:33 - 169268948 _____ () C:\Users\Pavel\Desktop\I.Lossens.Time.2013.720p.BluRay.x264.anoXmous_.mp4
2014-09-21 12:22 - 2014-05-21 00:06 - 00001145 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2014-09-21 02:19 - 2014-09-21 02:05 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-09-21 02:08 - 2014-09-21 02:08 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk
2014-09-21 02:07 - 2014-09-21 02:07 - 00001818 _____ () C:\Users\Public\Desktop\Apps.lnk
2014-09-21 02:07 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-09-21 02:06 - 2014-09-21 02:06 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2014-09-21 02:04 - 2014-09-21 02:04 - 13309928 _____ (BlueStack Systems Inc.) C:\Users\Pavel\Desktop\BlueStacks-SplitInstaller_native.exe
2014-09-21 02:04 - 2014-09-21 02:04 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Bluestacks
2014-09-21 01:42 - 2014-09-21 01:42 - 00012469 _____ () C:\Users\Pavel\Desktop\2D09CCE5521F00BA2286C87B800679A15201EC6E.torrent
2014-09-21 01:38 - 2014-09-21 01:38 - 00812850 _____ () C:\Users\Pavel\Desktop\YouWave_for_Android_Home_3_20_Multilingual_keygen.exe
2014-09-21 01:35 - 2014-09-21 01:35 - 00828928 _____ (Of Thermodynamic) C:\Users\Pavel\Desktop\YouWave 3.20 Latest Crack is Here !.exe
2014-09-21 01:28 - 2014-09-21 01:28 - 00828928 _____ (Points Serving) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(2).exe
2014-09-21 01:24 - 2014-09-21 01:24 - 00828928 _____ (Forced Having) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial(1).exe
2014-09-21 01:24 - 2014-09-21 01:23 - 00000000 ____D () C:\Users\Pavel\Desktop\aaaaaa
2014-09-21 01:23 - 2014-09-21 01:23 - 00828928 _____ (Fruit Or) C:\Users\Pavel\Desktop\YouWave 3.20 Download Full Version LifeTime Crack Patch Serial.exe
2014-09-21 01:22 - 2014-09-21 01:14 - 150612432 _____ () C:\Users\Pavel\Desktop\YouWave-Android-Home-3-20.exe
2014-09-21 01:15 - 2014-09-21 01:15 - 00828928 _____ (On Have) C:\Users\Pavel\Desktop\YouWave Home 4.1.1 Crack is Here ! (100%20Working ).exe
2014-09-21 01:13 - 2014-09-21 01:13 - 00828928 _____ (Some Question) C:\Users\Pavel\Desktop\YouWave for Android 4.1.2 Final Full Crack.exe
2014-09-21 00:53 - 2014-09-21 00:53 - 00828928 _____ (Who Forming) C:\Users\Pavel\Desktop\Patch YouWave for Android Home.rar.exe
2014-09-21 00:17 - 2014-09-20 09:09 - 00000000 ____D () C:\Users\Pavel\youwave
2014-09-20 23:35 - 2014-09-20 23:35 - 00000218 _____ () C:\Users\Pavel\.recently-used.xbel
2014-09-20 23:35 - 2014-09-20 09:12 - 00000008 _____ () C:\Users\Public\youwave_size
2014-09-20 23:35 - 2012-12-14 23:31 - 00000000 ____D () C:\Users\Pavel
2014-09-20 23:16 - 2014-09-20 09:16 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\gtk-2.0
2014-09-20 19:10 - 2014-09-10 20:16 - 00000000 ____D () C:\Users\Pavel\Desktop\PEF 1. ročník
2014-09-20 09:12 - 2014-09-20 09:12 - 00000000 ____D () C:\Users\Pavel\Documents\webkit
2014-09-20 09:09 - 2014-09-20 09:09 - 00001095 _____ () C:\Users\Public\Desktop\YouWave Android.lnk
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\Users\Pavel\.Virtualbox
2014-09-20 09:09 - 2014-09-20 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouWave Android
2014-09-20 09:09 - 2014-09-20 09:08 - 00000000 ____D () C:\Program Files (x86)\YouWave Android
2014-09-19 20:44 - 2009-07-14 07:08 - 00032614 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-19 14:18 - 2014-09-19 14:18 - 00000928 _____ () C:\Users\Pavel\Desktop\radius1.czu.cz.cer
2014-09-16 23:33 - 2014-09-16 23:33 - 00001808 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-09-16 23:33 - 2014-09-16 23:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-09-16 20:23 - 2012-12-15 20:17 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-16 00:09 - 2014-09-16 00:09 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-09-16 00:08 - 2014-09-16 00:07 - 01056232 _____ (Crawler, LLC ) C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe
2014-09-16 00:02 - 2014-09-16 00:02 - 00431395 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-09-16 00:02 - 2014-09-16 00:02 - 00000762 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-09-16 00:02 - 2014-09-16 00:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check Point
2014-09-16 00:02 - 2014-09-16 00:00 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-09-15 23:58 - 2014-09-15 23:58 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-09-14 22:00 - 2014-09-14 21:58 - 00000000 ____D () C:\Users\Pavel\Desktop\Warcraft III
2014-09-13 22:04 - 2014-09-13 20:43 - 923046834 _____ () C:\Users\Pavel\Desktop\Stáhni mě do pekla.avi
2014-09-13 20:10 - 2014-09-13 20:09 - 00000000 ____D () C:\Users\Pavel\Desktop\C-Romca zkrácená verze
2014-09-13 19:59 - 2013-09-29 12:31 - 00000000 ____D () C:\Users\Pavel\AppData\Roaming\vlc
2014-09-13 14:34 - 2013-04-01 18:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-09-13 14:34 - 2013-04-01 18:29 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-13 10:36 - 2014-08-22 21:51 - 00000000 ____D () C:\Windows\rescache
2014-09-11 23:28 - 2012-12-15 19:20 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 23:22 - 2013-08-07 01:14 - 01568960 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-11 23:21 - 2013-08-11 15:51 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-11 23:19 - 2012-12-15 00:14 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-11 23:18 - 2014-05-01 08:44 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-10 20:51 - 2012-12-15 20:28 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-10 20:51 - 2012-12-15 20:28 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-10 20:51 - 2012-12-15 20:28 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-08 00:29 - 2014-09-08 00:29 - 00020343 _____ () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT.htm
2014-09-08 00:29 - 2014-09-08 00:29 - 00000000 ____D () C:\Users\Pavel\Desktop\NABÍDKA KABELOVÝCH MOSTŮ Z PVC - TPMONT_soubory
2014-09-05 04:10 - 2014-09-10 16:23 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-05 04:05 - 2014-09-10 16:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-04 12:16 - 2014-05-08 15:46 - 00000977 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-08-28 16:41 - 2009-07-14 06:45 - 08810464 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-24 20:25 - 2014-08-24 20:25 - 00000000 ____D () C:\Users\Pavel\AppData\Local\Adobe
2014-08-24 09:26 - 2013-05-06 22:43 - 00001915 _____ () C:\Users\Pavel\AppData\default.pls
2014-08-23 04:07 - 2014-08-27 19:31 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-27 19:31 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-27 19:31 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-16 00:56

==================== End Of Log ============================
Přílohy
Addition1.rar
(6.36 KiB) Staženo 50 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu (istart.webssearches.com)

#9 Příspěvek od vyosek »

:arrow: Odinstalujte Spyware Terminator

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
    HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
    HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
    HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7763736 2014-09-10] (SUPERAntiSpyware)
    HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\MountPoints2: {e6cadf20-49da-11e3-a4e6-0024338924f3} - G:\Autorun.exe
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vyhledat aktualizace.lnk
    
    URLSearchHook: HKLM-x32 - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
    URLSearchHook: HKCU - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
    
    FF Extension: Linkification - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi [2012-12-31]
    
    S2 HPSLPSVC; C:\Users\Pavel\AppData\Local\Temp\7zS4277\hpslpsvc64.dll [X]
    
    2014-09-22 20:27 - 2014-09-22 20:04 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-09-22 20:06 - 2014-09-22 20:38 - 00011792 _____ () C:\zoek-results.log
    2014-09-22 20:04 - 2014-09-22 20:21 - 00000000 ____D () C:\zoek_backup
    2014-09-22 20:03 - 2014-09-22 20:03 - 01290752 _____ () C:\Users\Pavel\Desktop\zoek.exe
    2014-09-22 19:17 - 2014-09-22 20:36 - 00000866 _____ () C:\Windows\PFRO.log
    2014-09-22 19:14 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
    2014-09-22 19:12 - 2014-09-22 19:15 - 00000000 ____D () C:\AdwCleaner
    2014-09-22 19:10 - 2014-09-22 19:12 - 00006906 _____ () C:\Users\Pavel\Desktop\JRT.txt
    2014-09-22 19:03 - 2014-09-22 19:03 - 01373475 _____ () C:\Users\Pavel\Desktop\adwcleaner_3.310.exe
    2014-09-22 18:47 - 2014-09-22 18:47 - 00000000 ____D () C:\Windows\ERUNT
    2014-09-22 18:46 - 2014-09-22 18:47 - 01027006 _____ (Thisisu) C:\Users\Pavel\Desktop\JRT.exe
    2014-09-22 18:38 - 2014-09-22 18:38 - 00000000 ____D () C:\ProgramData\Spyware Terminator
    C:\Program Files (x86)\Spyware Terminator
    2014-09-22 02:37 - 2014-09-22 02:38 - 00027965 _____ () C:\Users\Pavel\Desktop\Addition.txt
    2014-09-22 02:36 - 2014-09-22 21:26 - 00014531 _____ () C:\Users\Pavel\Desktop\FRST.txt
    2014-09-22 01:38 - 2014-09-22 02:34 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
    2014-09-16 00:07 - 2014-09-16 00:08 - 01056232 _____ (Crawler, LLC ) C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe
    
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

Re: prosím o kontrolu logu (istart.webssearches.com)

#10 Příspěvek od PabloPicasso »

Dobrý večer,
napsal jste mi, že mám odinstalovat Spyware Terminator, ale já ho nikde nevidím. V program files není, nevidím ho ani přes ccleaner ani ve win v sekci přidat/odebrat programy.

log:


Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-09-2014
Ran by Pavel at 2014-09-23 21:57:03 Run:1
Running from C:\Users\Pavel\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7763736 2014-09-10] (SUPERAntiSpyware)
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\...\MountPoints2: {e6cadf20-49da-11e3-a4e6-0024338924f3} - G:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vyhledat aktualizace.lnk

URLSearchHook: HKLM-x32 - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}
URLSearchHook: HKCU - Default Value = {FE69C007-C452-4d3e-86D2-1730DF8BC871}

FF Extension: Linkification - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi [2012-12-31]

S2 HPSLPSVC; C:\Users\Pavel\AppData\Local\Temp\7zS4277\hpslpsvc64.dll [X]

2014-09-22 20:27 - 2014-09-22 20:04 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-22 20:06 - 2014-09-22 20:38 - 00011792 _____ () C:\zoek-results.log
2014-09-22 20:04 - 2014-09-22 20:21 - 00000000 ____D () C:\zoek_backup
2014-09-22 20:03 - 2014-09-22 20:03 - 01290752 _____ () C:\Users\Pavel\Desktop\zoek.exe
2014-09-22 19:17 - 2014-09-22 20:36 - 00000866 _____ () C:\Windows\PFRO.log
2014-09-22 19:14 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-22 19:12 - 2014-09-22 19:15 - 00000000 ____D () C:\AdwCleaner
2014-09-22 19:10 - 2014-09-22 19:12 - 00006906 _____ () C:\Users\Pavel\Desktop\JRT.txt
2014-09-22 19:03 - 2014-09-22 19:03 - 01373475 _____ () C:\Users\Pavel\Desktop\adwcleaner_3.310.exe
2014-09-22 18:47 - 2014-09-22 18:47 - 00000000 ____D () C:\Windows\ERUNT
2014-09-22 18:46 - 2014-09-22 18:47 - 01027006 _____ (Thisisu) C:\Users\Pavel\Desktop\JRT.exe
2014-09-22 18:38 - 2014-09-22 18:38 - 00000000 ____D () C:\ProgramData\Spyware Terminator
C:\Program Files (x86)\Spyware Terminator
2014-09-22 02:37 - 2014-09-22 02:38 - 00027965 _____ () C:\Users\Pavel\Desktop\Addition.txt
2014-09-22 02:36 - 2014-09-22 21:26 - 00014531 _____ () C:\Users\Pavel\Desktop\FRST.txt
2014-09-22 01:38 - 2014-09-22 02:34 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-09-16 00:07 - 2014-09-16 00:08 - 01056232 _____ (Crawler, LLC ) C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorShield => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorUpdater => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SSBkgdUpdate => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\OpwareSE4 => value deleted successfully.
HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
"HKU\S-1-5-21-1185336429-1689756948-2369916296-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6cadf20-49da-11e3-a4e6-0024338924f3}" => Key deleted successfully.
"HKCR\CLSID\{e6cadf20-49da-11e3-a4e6-0024338924f3}" => Key not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vyhledat aktualizace.lnk => Moved successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => value deleted successfully.
C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\gezs900q.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi => Moved successfully.
HPSLPSVC => Service deleted successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Pavel\Desktop\zoek.exe => Moved successfully.
"C:\Windows\PFRO.log" => File/Directory not found.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Pavel\Desktop\JRT.txt => Moved successfully.
C:\Users\Pavel\Desktop\adwcleaner_3.310.exe => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\Pavel\Desktop\JRT.exe => Moved successfully.
C:\ProgramData\Spyware Terminator => Moved successfully.
"C:\Program Files (x86)\Spyware Terminator" => File/Directory not found.
C:\Users\Pavel\Desktop\Addition.txt => Moved successfully.
C:\Users\Pavel\Desktop\FRST.txt => Moved successfully.
C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP => Moved successfully.
"C:\Users\Pavel\Desktop\SpywareTerminatorSetup.exe" => File/Directory not found.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 39.3 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu (istart.webssearches.com)

#11 Příspěvek od vyosek »

:arrow: Byly tam jeste nejake jeho zbytky, odstraneno FRSTem

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

PabloPicasso
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 11 úno 2013 22:01

Re: prosím o kontrolu logu (istart.webssearches.com)

#12 Příspěvek od PabloPicasso »

Zdravím, tak jsem vše udělal dle instrukcí, tak určitě notebook pošlape jak hodinky.
Děkuji moc za pomoc.
Kdyby ještě něco zlobilo určitě se ozvu, vím že zde naleznu vždy pomoc.
Ještě jednou děkuji.
Pavel

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu (istart.webssearches.com)

#13 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno