
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
PC zahlceno reklamou, AVAST nestíhá
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
PC zahlceno reklamou, AVAST nestíhá
Dobrý den, včera jsem si stáhl a nainstaloval program pro konverzi souborů a zřejmě jsem k tomu dostal nějaký bonus, neboť se mi nainstalovalo i pár jiných programů. Nejdou odinstalovat, při odinstalaci se spouští avast s tím, že soubory jsou infikované. Jakmile spustím prohlížeč, okamžitě je zahlcen reklamou a spouští se avast. Přikládám log a pokud budete mít chvilku, poraďte prosím. Děkuji, Michal
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michal at 2014-11-23 20:06:17
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 170 GB (48%) free of 350 GB
Total RAM: 3959 MB (32% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:06:33, on 23.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Alwil Software\Avast5\avastui.exe
C:\Program Files (x86)\Mumble\mumble.exe
C:\Games\World_of_Tanks\worldoftanks.exe
C:\Program Files (x86)\snipsmart\bin\snipsmart.BrowserAdapter.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Michal.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: snipsmart - {68261aaa-dc9f-4c2b-a168-c323e304c3a2} - C:\Program Files (x86)\snipsmart\snipsmartbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A2ED3161-03D4-41C3-B361-DE7844F5C026}: NameServer = 88.83.169.2,195.113.144.194
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update snipsmart - Unknown owner - C:\Program Files (x86)\snipsmart\updatesnipsmart.exe
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: USBS3S4Detection - Unknown owner - C:\OEM\USBDECTION\USBS3S4Detection.exe
O23 - Service: Util snipsmart - Unknown owner - C:\Program Files (x86)\snipsmart\bin\utilsnipsmart.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10610 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
"C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe"
"C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
taskeng.exe {8185D542-E45A-49AD-8D98-1A7EEF720475}
"C:\Program Files\Alwil Software\Avast5\avastui.exe" /nogui
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe"
"C:\Program Files (x86)\Internet Speed Checker\fc6a064f-a2dd-4cc3-9a73-369f24d55904.exe" /agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=914029CBA7964733AB7093D33055F574IE /verifier=aae4ad5d5cce3aeac7febfd9d172f9af /installerversion=1_35_09_29 /installationtime=1416665136 /statsdomain=http://stats.newonlinedemoserv.com /errorsdomain=http://errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedemoserv.com /runfrom='task' /externallog=''
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
C:\OEM\USBDECTION\USBS3S4Detection.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
WLIDSvcM.exe 2988
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-119284ca-2eca-42d9-82b3-b571d482279b -SystemEventPortName:HostProcess-73274852-d7d2-4db3-810d-7fdd4e90e110 -IoCancelEventPortName:HostProcess-147caff6-e36a-43fd-a82c-1876a871574e -NonStateChangingEventPortName:HostProcess-7083716c-eb00-4e36-8d70-cc4ad4bfd55d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a1e5ec78-6b40-4e72-aa73-97a2887fb768 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mumble\mumble.exe"
"C:\Games\World_of_Tanks\worldoftanks.exe" wot_wait_for_mutex
"C:\Program Files (x86)\snipsmart\updatesnipsmart.exe"
"C:\Program Files (x86)\snipsmart\bin\utilsnipsmart.exe"
"C:\Program Files (x86)\snipsmart\bin\snipsmart.PurBrowse64.exe" /l false /s false /c "snipsmart" /t "C:\Program Files (x86)\snipsmart\bin\TEMP" /i "http://apisnipsmartinfo-a.akamaihd.net/ ... 0000000000" /d {e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64 /p 66e9f152-b817-4be3-a5f5-823779d838f2:iexplore /h cdn.sharedaddomain.com,cdn.sharedaddomain2.com 0 10 "C:\Program Files (x86)\snipsmart\bin\bau" true
\??\C:\Windows\system32\conhost.exe "1858469681-1187560236-5110556561458788025-1140710323-327179719168796357-300543697
/i 66e9f152-b817-4be3-a5f5-823779d838f2 /z "n=snipsmart&is=ob100ppCZ&dpt=20"
/i 66e9f152-b817-4be3-a5f5-823779d838f2 /z "n=snipsmart&is=ob100ppCZ&dpt=20"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:860 CREDAT:595238 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:860 CREDAT:4134169 /prefetch:2
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
taskhost.exe $(Arg0)
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe15_ Global\UsGthrCtrlFltPipeMssGthrPipe15 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Michal\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-11.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-11.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-2.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-2.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-3.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-3.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-4.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-4.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5_user.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.exe /rawdata=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
C:\Windows\tasks\51a4f134-17d5-4c6b-898f-dac446e1476f.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\51a4f134-17d5-4c6b-898f-dac446e1476f.exe /agentregpath='HQ-Video-Pro-2.1cV22.11' /appid=63163 /srcid='002255' /subid='0' /zdata='0' /bic=914029CBA7964733AB7093D33055F574IE /verifier=aae4ad5d5cce3aeac7febfd9d172f9af /installerversion=1_35_09_29 /installationtime=1416664547 /statsdomain=http://stats.newonlinedemoserv.com /errorsdomain=http://errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedemoserv.com /runfrom='task' /externallog=''
C:\Windows\tasks\9472bf32-801e-4380-a93a-312d3363a0e3.job - C:\Program Files (x86)\Internet Speed Checker\9472bf32-801e-4380-a93a-312d3363a0e3.exe 001726 914029CBA7964733AB7093D33055F574IE 61752 1416665136 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 Internet Speed Checker
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-1.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\HQ-Video-Pro-2.1cV22.11-codedownloader.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-11.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-11.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-2.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-2.exe /rawdata=HQflDMtsr+HXY4hGrjWaPOwmRA/Wi4JILwnUvnjhjw0ltIrkETlB7GkOkukoiA99UGsPeUbkypUnyGgI7Tq9fhCL92aWiGa8vZsgobARsZe9cExQKzhJLsNZeSDejJpOqeWsf0ZX417LaRwXlsLfj01ghHNuMls2u8Ub8cF+ej0BN77zRM+b4wH4Bs1HEAVGM1E9Cql1dpAcoxf3OXHmiSlNTGcNL/yPR9/SMZtLLZX0AqQVIGDrlIl1l0KHP/l+IFb93xQWoTD8dg2YBSukztQpv50AZabex8hikzc3+FCs0JVw5bomF3ZJEO2U4bubYZ3ccfDwsMu+9/paiK5Q0YvF8rYWGk6TcqA+wRgP3e1+BsTEwxx36cdL5jpJu1kR8dNR0iXO5hYw2zHIDbT6L873VPTidVzy6xVGPOcsVw8pcyuzyBvrnCTtm2lFeXM/bky4SgtfummXWGMuM2f4yBtdkSCxVtm24bcKirm+3+wCCsUE/uepxs848rTZhLDdDRy3kHrjcjeE86jnefdF3SQGwOSwO0fibW4I4qIqLfwpYuhSYJ/Gq9CS+9163HZWq2louSYc59fB0VGPBNVaROTaBqtYDg+cAkb8e6J34dytFYKEO+5TyEWSZHrLpDtUZAI5Lsbsp4AQf1oD+ydvF69+d/3iD0x/jUqjQKkavdRzmDECNvPEefXLR/M4Zkg9ORxD+3pOjucg96/HtZ61SiYsHgHItycW30uhLLsWKoFrCBdmuqpw9pMBxkuxvMOBF7j1v+zEoDVsgyB718iM+loqkMymzjReHh5LU5j5TbgzuM/PN3nyQLhCIohmNQqUSbw8IvZ8w1Nax1RYfr40AQ==
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-3.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-3.exe /rawdata=VALGOZtuoPNjVxtemPgQBCVWwtwH6W5Zd3MFjDeQLv+B3YrsjET8M2ckqA1qvaCFioRiRYnUFuNEcDkd5PuLo078xi6sPXHa1+ggK+hJVbsrCPuFUo8bbuGo7LbbqXAYT0y9XvzhPCCdO3L7kPBMUiJo8s7qnkoUaHSDV9iPh0dYIA4HQPWF3B8RtSHJ76EVD0Rk/Ets46ucOhkVhfWhoA9nXc+x8R2z3FONa+Uj3EJE//uJO7VS3wb0Sf6YYXMsflhl89JieE4bhDOH5on6kMlzkSckVbaDS8MITmbBVNu6QXpfIgHOQmNKu/FRs0K+MUmiGiOGLb2ftKh50u1gyprFGozvYUMpMU36dO3arNevG+MxTqFQMGo6dCY+yWLOG+MPcTkaBK7zQGJU0BuPz0vEBkLbo/+AsAjEbhLdXhUR2JNzqU4GJhXCYH+a2fB/2EsDsRWoWN4wn37O4O8JowCEvNXhYG/s9D+7juKU2FewHbUAbAUqb6Q4vFSFDbZDFlSs78EMhUEJqgqXeJkLC7UZKKGPZPqmCz0tAHw+AFffJ6pk+O1T0kHG6PzEspr11iwnMkXCDySc+QR7SIq7fY8nrMW9JWE1JKiKKtH4BxoCT59uptAwcv6PY+eetQ6AhpW6BWyxPDpvtyS/HEF64Adl/z2fL6YG7fDsC11iPl5cCjDmvC0/wjJTjldsDZwYpMMSC+GqtE0BwMB9MzQxad8VmHVLHt/A4yzP2AQs6OnE09ZFNRbXgJP8xJxD8kXhtx3togkuli69IfLYX29vjwbH0iC/JjqVC2PHPquuQbhH86pnoS5AvRDXrDq/VBuyvFe1YgCIJcAdrJ8YX9B37JVQbIJSjajmDHhnRFuUdj1CoAfFI1qi1NBBCRrT7yPTn62UO/iz6sOITjMqe0tLgjsGY6X5e/aVX17CcTP9Meht88Y2g/R3jKVsTYXtWguFL6XABuq2UWLE+3/21LTYiR0z9vZnfgFC+zj/U1+OOuqjmLpGpwINeHS3sAzx+4M/YScsFsGjbB0aMu1c9pq4qO8D4rUoPRWxJ0jSLz9d6T0HIPwb0OTV0iuLeMPzWqaZu9UQnFlB86xKylDdja8mBJtaAAGznKPafbozcxE8in81ZeyVIPiWW/EqmLn4kVHfzi067ox8chkOMF/RQEO3FSEXpTzfwyO3PINi67PzoXaGau7h/mHDuik8vWPX0dezh+pGHHcqp+howlpkjF0TewBet2RL+UECJS3SNkHLEUmoCyygzB42LrmH/FcfDdhh8Kd9VP7RlIjMz/7x+kXJ+1OA01BfBoRdw+NrDqP8iBHj+Xgcfmi5ahT8gnfBVhYESqgIyoy4oez/ti85xpkbSQdLiX6jn8d0aT6ugPHVWBdiVdNTya8KCboafnIGQKSzEioxD6MRMLRsn40anK00vxFWi8153LkCo98GVDu8YjmNpxNtgD0rcWWPiN+ux38QpKZkBtA0a932nppxRfV6PGUqI9zAJeWGL4R7pJB1z961kyHHPgdtxJ+dK2sxtJnYS2Zrr2lAnbYu0a7S10leDMRkhYmE8sdBlg+fqxxHaPDT3Z1PVGZsBI0ZlZ8Iz056QBXiVaunCf1rBN13RxVt2UrqvptYhZSP4aE9XaKcZaaJSIfghv6Yo1PQjBfxwJ5f2d63cK3r73MUx6V1H/fccd57QoP0VH4/afteQcMnKM1FufBsfVmM6vqSePxvXyMIQHvVojZkltSFStety5bvzPWtAg2dowD7OLtSK/g5tmGRYvpUjD4DhGmhfMah3SI66tOO4w7tgW5SgXi3Asc4q4HXV2jiaSTh92YAdOrTVbduOKM1or3+CXWPlJaYSQ8Sw3U/ibBNtQF4y2W6Bccs8XbFiDcl52lMsiJTPLeD5r3OBrLog4lmQqxS/nEvDNTV9pTfEJs7zmqAvUva7+umQhF18bJ/ZYwgNgUnOB0uRVkNAPTsA2EHsDLH2EQpc5p6Ybi8I2GkSVjs62g1JmL8UjbWOrnV+epXwcsGfgNbqaNawHe8/DrUZdTi3k1O6PwU
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-4.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-4.exe /rawdata=n/yokR9rkmmpax0P5YwBdtZ8ybvkgvho8jVXPSXMYYzXB7N7ohDyM8k08+IVe30ZRFeCfgbaZRa+IGpIRq0iaeLFJVwamd33qsBIDuPGOiLTdZ5LcQFMAPHUCqVpykAYLNDJlFzRj9FggAAQ6+OXAylnsV7S3rCKjyGAZ9aThzAf2cqC357A7vKlbYjQu0lcc1mDkEkCHGDQakV63lShA4e12dGhzwYGia1HqUd9S2oDbji+YjN9gFO7J833q2R8U+HKzgHS/dY7j58HLcgJSMPOxt/P8z1ozoQb6eU0PuehamY1bUssFgzki4YcPZ5Lfjljh4uNSquYWue5HyLTVD/wtJI7PbSJxB7MhDU9WVglZa3f6A4bcgZAK7k90ej4dKXAgllFKN5chViOElmHdO8pEpLKI+uT52pwKn7nSpyKNbyRzxUKjhb78tlb2AOFnvVWirBzpMQzelLwiOOoUNkY/OGEJmx74L8kBrMnnGJfoCaOPlkKPFNeQ6u/tffNHo/gDGXzvl+Wb9o/55e4s1C6sty5bl2GC3MGAOH7MCnLQFJGrUzIZJmp0dgT61+0V2IYXmU7t4+Mhg1/NTobQZz9hxg+Rr0O9P88uQcQhm79PZJ6l2EqDqHo4A1qp05mYH9iQkmse9vaaKUR+/dOBcsuTVCb31Mz61MnnhewuvtYaQ6PuCB7uhkZxxYtxbS4TW57TMsPkmmmYwVHz8qAp6Qds0V/Hs0BZMKYZx74kUIl5atoC9+tkhGwI9TGMtqIU7oU4hmqhC4aYq/Lq3KNBtdim6+ml+06M1dn983R3dcNkcSm/rGnL51Q+h1Sv68QrU4z6QhpP742Xel60BNeCC+JFilHPkSu/2Eq9CeH4v2/F/hU8rYmQpUcI7Q58zLUz+33pxQUkxTqH+l86sli6Q+DySrlQfAaqx0GokLu8iONnwWLPTdkZ6913YRLU4suuwrjgs15KULw5gLUvEho0910KGqygWE1OZUWu6IxFomSvUMYl/lq96COe/0xgh/ioIGcGl6t2QxdVJSiok1XEz9DY6agIGrhrPHlx3P8XVSMLR5Y4CaxrimGhU2Tiu3xtYqCkuCeMzE0tKBEE/ZQ2oRICs8gemhpvWN8xwvM6RBN/L2jMCP3SNX+LQxl8SlW9yW5j8eBCIUQypEewvF34ye/pxdlaXMUIkLWmOv7QXvAleOvuoe3qQbXQUkYBan8G1sJ4nyihgK1fs5PUh7cOIQ93BpVF/RgDA7LdjKRSP1X0FSTWAM3uJPnMK1awtj6Am6mgcATIVA4N/+XGoCBwRfDIqoiCRLQopvhO9zx0NT/UWgTSz1viEokoma/FiGykAEKoC+onlGVoQ2tgU3T0Xxfw1X0H2Ecug0hUtVZNyZsGDCxnNYOLOpnoxrG6TPqGBH2L+qBGLBzpeZZmr/ggEbSF6Hnj7oQ6dWYu+z/Qq+cqyDWyFfyl8prlzBFrWf8F3bKfN8UxIP7uz/3zmeIOeTMo7DFg7q2K/l2MtJ95LsUQiSHzj/6g2bUrCNL45ABHVjjrQzUSN38idveootlt3miYlzuxYeEKbNgJFEV0R1oWHNn1qTlJe6pkT9e5w+cg4YJGlZL8Ql6f5G+IFdElPrJAELqaQBaaz4c0Mb4vFWxxMtPdbPzHr5gjJ+SoCOb5j4Bexs1ejZxz+8UEo6qYf1c5jlCWPcWmCzs+Z7TA+QHx2Rj57G89oI1TKkaF/F+C0tHm9gvzZ4DnOok0eyhZkK0iLpMlziZHLeNz1820C5uiA8r4YPTV17C2iRTo2PBAYkf3kLufyjvjCgXt+rqr9sBfFr5Jhi+YpE7TyIt8m/BjZL3C1cvPNBDpPvI1eF3cKGVDFrLdHGL87YV7WeMU5I8i4smRmNOd79dEE43O2WlULTGuwhH9xlRC1w9gETD3aSxI03f2MHVReAWO7JDNYxM7id+eMwdIZrJUAnvetjS9ejGJQRJ73enecq8PO6k9IB6Rsn6PG8hTif3WN54da8ufEdH8mjewvW6PZ9puIMTIB/BfkV6QzhKJXc3Cpz0J1s5JuekkJGTDvSbp/uWXv9MASTrtRwTtTF/uBjliKlEl5fSCwj7AJj1zRk+SAUGDOb6uFJ4XaDzD0u3Qeys+Pcl0A1TJQFdHctUFumNkuJ/kfkm+trDT04gojXDSU+YZAv43piRVxXlPrBPXG/9CAPZhocAJTd+8/fa0jn4nzE=
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5_user.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.exe /rawdata=SFztoa08qprrbjyI/EfH0lXsIxbtlRZlPxAJxUt2Rs66FDsgo/5IU52wnSS0iVQNi4mkZDhnTqQpsJy8B7PKsWWG6WcfhwRu644NU6RoK6dTS94iHiWp+zdN9TVfAn6WDdW/5WPqNPVRMHGnJCQFFsAYRcDSxRIueVv1vGCTbbUsT52XSyaZaDbXBA9XN7nQ1DfhdidP74ZnjGTP09aiHuQHiG7KzjTJUf0t58ButsRtjfojHYEb7usd/EC1qEzXromDfdhVOFz79HO4SzpBwE5K7jh9G0ir55iqoa0j+ELhdx976qNRxhlse9AC2baWlOhDbRvKOPoRXVOCN1ggnCN1FIV0lq3kquPy0ONvEVaOLm5WVXa0ivUxii6zkc8r5JF6h5dycELMZorRKG8tfLrKIAFZ4gwgaINAZHzxnIRZURz0LuKOl6OTIWaANTPLmfIAGAf9m8BFVQ2ruKSv0Hqz3g0jVslypKyPrkaVskWFiHbwWuDYLOTts53J9UrTITKE4INWwoq4wpkR2tMS3+MoHiuwBLRdCnKvMf/m0XwaLgFPcQdGeXx4D65fTRHYVyrPUGaSNVefdyvsTMlhl+f2CzjkLF5R3EuaDuLDGCG21f3kekbpBirmDrnZe+pCte7SVukb/VxB/yIDuDLhAS+gcNnNzbVegv/WzfnDW/Bta4o1FZYbCL9hY3cPDVV0WAvMAsbuyq6yeX7XQYHgwZ3fZLzHFKSvaYnZwoXPVgF1szliNdY1mSXHuhBVPNSnDZSj0ZIPNC/MRB2FaEbO2i3VerC7sqOnvvdDCUuxU7pD2KB6D5uqsHKomqeKfDSrTmgx/C6VLjJauy1kfctZcpyXc8d1cYdzzfLDtpRWoqyPWNOTloaXFhGGYHo7QlSu5jPaoub26rfW9smMvKw6DDoGwagMcMtmwNlKicClQ7dIyncGx5Kkq+wi81swkjJ/uNOAM35ISW9AmLs1+tYhuYiVjYzDPOxIk0kmHMI+fCRnaGNMyP4qV9C5sAcHz480
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-1.job - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-11.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-11.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-2.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-2.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-4.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-4.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-5.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe /rawdata=SojouNmWn4osuHIbJVYCmTpbvH/p53xvkwoJ6KsvczkHfJboN+3pm5DfHCji3UWJBlittQ++m4UoJBV+SoYSnR22IeyOvYfnYYl1bW+eWQCr+Z4LsY2QjALmCiNgEAZHgEaBpDwECJzmm1KoDzo7YJKvFT6TWPr1wrpk38R7ID4BN77zRM+b4wH4Bs1HEAVGM1E9Cql1dpAcoxf3OXHmiSlNTGcNL/yPR9/SMZtLLZX0AqQVIGDrlIl1l0KHP/l+IFb93xQWoTD8dg2YBSukztQpv50AZabex8hikzc3+FCs0JVw5bomF3ZJEO2U4bubYZ3ccfDwsMu+9/paiK5Q0bTRIGWamAKrfD58mou2be01TURoUco+ZLM/lm0XkToxm7INwT9AvF0nvxjzbXfbls+ZYn4Tl77w1mUmBNwt6rOnK4wW5th1bnrldeqDlS3B/4IxkQUNiq1+FyIEHuouvzdxmAMVyvX9XRQAZfL7fOqwek3NkiMCEq8bsVWLxke3ngRA2LVBEH6GjZLAzX3AfsAgu59ssf67r0Etv9gFymsnLlZNmXwdlYBIIIPfO9WVJMIRfS8uPeykUoPJORlF33AFkLeNmPugfQGCPBYdTLKzcrnN1pPOtYHSrr8/NxoWYOhm/+KroyZ/wigI50UkGn3KGgmjVB81DSxfwRB+yvS6H9XbNaTKDZf+PWct9oA8xKi1T2yt+CP6g1C4wvVcRg6IHWjGnukSU2AMP8g7+Aij2U0vFKkzYiTgEZOdS0mDvt4MySdmhh/t+RzQtRICCp1ixIUetno8TF4mfLzTQIqqFrx4xNMfv9A9Nxhawj7x9fdJDLxnfH5V98Jhrfv/llNe0SWBXjgF9gnt2jobgKt4gSjJZOAKTur+gZiAQZcGXfYaZumnH/1VVmgCasagC072FPPLjW2FORBkK3s67jHe5P+qmjRBvBgBXFl2LLvSQYzkpsjsJ8njh/cBHj8SRDkLVcCSpQE9fjRRVYvPfNUM8Za/IDg5yTiPsRff8L6c
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-5_user.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe /rawdata=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
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\AmiUpdXp.job - C:\Users\Michal\AppData\Local\SwvUpdater\Updater.exe
C:\Windows\tasks\CODJ.job - C:\Users\Michal\AppData\Roaming\CODJ.exe /infocmdline=AsKZiyuCGo99gS9C92F4DOBzDIzRvLIx4JAeMLTxk7GE5Ky4nXS2/IdUuLUEmcguGl453lfmrcMk5zovsojXk/3Od0HQoz3KhV3jnjXH/g+XSCwbywFsVkfpvMDbVhmM7OO3JufaqUWXLWcCUSryOhJnk/323pAVlfD0ZYwL0uphEmfx1SgVBcym+Ukv/0i18XY5QlXdsMa2TgCJj3j3Wp2MvEoveSwvCsyXd9BplMDVTe/42PwhFmJUpsuYKLXRxQFBU2IhuQJZ56QPOD5uAyQvU1imn42fkcoKDT4W+5ELNFJyKbcI47g/UWdizMjEPk7NFIPJoxrGLCJ5WNRyM09jKIBOSX0wmn8wfg9ND4zTN60rZnlytZzkhgUFF0LrEdtX/h9nR7sjRRLApkfwn1qt0pVk3BOTFOPWUB4Jz1bDXrKiLcuo0pSgRBa2iJ0AHwZ7CQgnUHFs/vkO3n9Ua6+9lJSO72ZEVb3lsojlRyWEwl82fU85wI86/WwSeGnX
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-1.job - C:\Program Files (x86)\Ge-Force\Ge-Force-codedownloader.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-11.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-11.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-2.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-2.exe /rawdata=advKGVDKjaedwO/5TpV7W0zP9gj/0OyKB1uUN4iD6yfwQUfTT0/OWbfQSnBLt8kOSyNYCZAroNedAhhF/nJALxZ2jr25pGz7jhMHzaLjjT7yNZyMXw+zk5YgXg6g/QYbq96F9pNccsxwlZd+6OcloYjIijodeBdFb3vt9ybOb5BvRn1KNgtm1k+7uinzzsWCn6oCEvX0eHAL+rvGjTqSb9GJ4tRGk0gtC+oxTIqF2/SZMDS2HrlRepv5NrpxhxQsgSYHNs7Xno6iksltOLG//GQDSEiaBdpM4zTg/pqRsDZLN9BkZCR2mcLbY76532IJ6sVKFF42yNxvdWmg2U8B+SMrHrzhh/rDpesb8Y4SOYBAakCFkhSdhtb8V5kCI1OSNp0JU2Lnqolc/rCbqEHU4FUQr8vDFy8giGAh1WU5tMCxRMCCG9ikO8RAIY8O9pSoPOPTRPcFYk+wu7QNG3xPWdlztIBv1H2Ad5OfO0vj+lPQTfifnTJrISinE5BfNxtPuDcMT0iDCSZUiKXzOIMuYobLMS3XazgLcvRu+og5tLnRKu0kp5NxXkY8qDtYOwsZ2pItc7ePDpY6Jl7Hkfbcy1pMsSqhmTZEiSgBSbpyAk3VSFZB7+Y1gCWOFEyhABC40A7UHdi2EnR3lA5Je7re50NYzf6WID0ygcHTlc1kM0bCwihmwF/YGcgnQEwEGAfLFdkwL5Dny0k+kqpb0W2f4RLaG1RmGuMzQ3/AXuNGQpNiYUZYKvhRQhKOI12BzyevT/1GT2IkAILhBwrLq5+P0kYSD09v9sjgGvfZwjc5AEp+KbzWLQK9MvRdjQm58Twu3qhbfCAk33GeoykFOVxPxF4+70wGLBecxT4OvElZCNvPS9Gw4A8hFEetd4uerzzxpZAyZd1OIDwTg+5gvE76Xat+knfRML5Bqlk2dFxLzsqBKg6qKWeJcjYDW7hM2lfUEb6wCfDB7t8ZEzl6CVob0LJXgwpcevz/yVesaehIyULeEh335tzL6u9r2CvmYeZu
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-4.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-4.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5_user.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.exe /rawdata=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
C:\Windows\tasks\ee07ea1a-ce16-4c10-a157-1cc7a109998d.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ee07ea1a-ce16-4c10-a157-1cc7a109998d.exe 002255 914029CBA7964733AB7093D33055F574IE 63163 1416664547 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 HQ-Video-Pro-2.1cV22.11
C:\Windows\tasks\fc6a064f-a2dd-4cc3-9a73-369f24d55904.job - C:\Program Files (x86)\Internet Speed Checker\fc6a064f-a2dd-4cc3-9a73-369f24d55904.exe /agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=914029CBA7964733AB7093D33055F574IE /verifier=aae4ad5d5cce3aeac7febfd9d172f9af /installerversion=1_35_09_29 /installationtime=1416665136 /statsdomain=http://stats.newonlinedemoserv.com /errorsdomain=http://errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedemoserv.com /runfrom='task' /externallog=''
C:\Windows\tasks\PKLWOO.job - C:\Users\Michal\AppData\Roaming\PKLWOO.exe /infocmdline=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
C:\Windows\tasks\QYKYJ.job - C:\Users\Michal\AppData\Roaming\QYKYJ.exe /infocmdline=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
C:\Windows\tasks\TSHXHE.job - C:\Users\Michal\AppData\Roaming\TSHXHE.exe /infocmdline=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
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611311163}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2014-07-19 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2014-11-21 500584]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68261aaa-dc9f-4c2b-a168-c323e304c3a2}]
snipsmart - C:\Program Files (x86)\snipsmart\snipsmartbho.dll [2014-11-22 250096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-10-22 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2014-07-19 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-11-21 418664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-10-22 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-10-28 8312352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-09-12 959176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcadeDeluxeAgent]
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-11-16 128296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Michal\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload]
C:\Program Files (x86)\Samsung\Kies\Kies.exe [2014-02-14 1564992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-02-14 311616]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mwlDaemon]
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2009-09-10 349480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-04-30 1225920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPDriver]
C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VDownloader]
C:\Program Files\VDownloader\VDownloader.exe [2013-12-20 882176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Michal^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RollerCoaster Tycoon 3 Registration.lnk]
C:\Users\Michal\AppData\Local\Temp\{361677FF-6B37-44DF-9BF3-F6E68D7F90A6}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe /remind /language=CSY /PRNM=RollerCoaster Tycoon 3/PRMP=RCT3/SKUN=PCXX/GTYP=STRY []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"BackupManagerTray"=C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2009-08-12 261888]
"Hotkey Utility"=C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [2009-08-18 629280]
"EgisTecLiveUpdate"=C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [2009-08-04 199464]
"PlayMovie"=C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-11-12 181480]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2014-07-31 4085896]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-11-23 20:06:18 ----D---- C:\Program Files\trend micro
2014-11-23 20:06:17 ----D---- C:\rsit
2014-11-22 17:47:06 ----D---- C:\ProgramData\simplitec
2014-11-22 17:47:06 ----A---- C:\Windows\SYSWOW64\DLLDEV32i.dll
2014-11-22 17:46:34 ----A---- C:\Windows\SYSWOW64\certsentry.dll
2014-11-22 17:46:34 ----A---- C:\Windows\system32\certsentry.dll
2014-11-22 17:46:27 ----D---- C:\Program Files (x86)\Comodo
2014-11-22 17:40:02 ----D---- C:\Program Files (x86)\FreeTime
2014-11-22 17:21:49 ----A---- C:\test.txt
2014-11-22 15:09:43 ----D---- C:\Users\Michal\AppData\Roaming\Free Convert MP4 To MP3
2014-11-22 15:09:06 ----D---- C:\Program Files (x86)\4dots Software
2014-11-22 15:05:40 ----D---- C:\Program Files (x86)\Internet Speed Checker
2014-11-22 15:04:41 ----A---- C:\Windows\system32\drivers\{e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64.sys
2014-11-22 15:01:43 ----D---- C:\Users\Michal\AppData\Roaming\YoutubeToMp3Converter
2014-11-22 15:01:31 ----D---- C:\ProgramData\Freemake
2014-11-22 15:01:23 ----D---- C:\Program Files (x86)\Freemake
2014-11-22 14:57:08 ----D---- C:\Program Files (x86)\snipsmart
2014-11-22 14:55:53 ----D---- C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11
2014-11-22 14:51:19 ----D---- C:\Program Files (x86)\Sense
2014-11-22 14:51:19 ----D---- C:\Program Files (x86)\globalUpdate
2014-11-22 14:51:17 ----D---- C:\Program Files (x86)\Ge-Force
2014-11-22 14:50:40 ----D---- C:\ProgramData\ShopperPro
2014-11-22 14:50:36 ----D---- C:\Program Files (x86)\ShopperPro
2014-11-19 19:03:38 ----D---- C:\Program Files (x86)\Mumble
2014-11-19 14:20:57 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2014-11-19 14:20:57 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-19 14:20:57 ----A---- C:\Windows\system32\pku2u.dll
2014-11-19 14:20:57 ----A---- C:\Windows\system32\kerberos.dll
2014-11-13 15:51:17 ----A---- C:\Windows\system32\generaltel.dll
2014-11-13 15:51:16 ----A---- C:\Windows\system32\aepdu.dll
2014-11-13 15:51:16 ----A---- C:\Windows\system32\aeinv.dll
2014-11-13 15:51:12 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-13 15:51:12 ----A---- C:\Windows\system32\termsrv.dll
2014-11-13 15:51:12 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-13 15:51:12 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-13 15:51:12 ----A---- C:\Windows\system32\adtschema.dll
2014-11-13 15:51:10 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-13 15:51:10 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-13 15:51:10 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-13 15:51:10 ----A---- C:\Windows\system32\msaudite.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-13 15:51:06 ----A---- C:\Windows\system32\iernonce.dll
2014-11-13 15:51:06 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-13 15:51:06 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-13 15:51:06 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-13 15:51:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-13 15:51:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-13 15:51:03 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-13 15:51:03 ----A---- C:\Windows\system32\urlmon.dll
2014-11-13 15:51:03 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-13 15:51:02 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-13 15:51:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-13 15:51:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-13 15:51:01 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-13 15:51:01 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-13 15:51:01 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-13 15:51:01 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-13 15:51:00 ----A---- C:\Windows\system32\iesetup.dll
2014-11-13 15:51:00 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-13 15:50:59 ----A---- C:\Windows\system32\iertutil.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-13 15:50:58 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-13 15:50:58 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-13 15:50:57 ----A---- C:\Windows\system32\ieui.dll
2014-11-13 15:50:57 ----A---- C:\Windows\system32\ieframe.dll
2014-11-13 15:50:57 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\jscript9.dll
2014-11-13 15:50:55 ----A---- C:\Windows\system32\wininet.dll
2014-11-13 15:50:55 ----A---- C:\Windows\system32\vbscript.dll
2014-11-13 15:50:54 ----A---- C:\Windows\system32\msrating.dll
2014-11-13 15:50:54 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-13 15:50:54 ----A---- C:\Windows\system32\mshtml.dll
2014-11-13 15:49:45 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-13 15:49:45 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-13 15:49:45 ----A---- C:\Windows\system32\msxml3.dll
2014-11-13 15:49:44 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-13 15:49:44 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-13 15:49:44 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-13 15:49:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-13 15:49:41 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-13 15:49:39 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-13 15:49:39 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-13 15:49:38 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-13 15:49:38 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-13 15:49:38 ----A---- C:\Windows\system32\EncDump.dll
2014-11-13 15:49:38 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-13 15:49:34 ----A---- C:\Windows\system32\schannel.dll
2014-11-13 15:49:32 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-13 15:49:32 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-13 15:49:32 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-13 15:49:31 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-13 15:49:31 ----A---- C:\Windows\system32\wdigest.dll
2014-11-13 15:49:31 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-13 15:49:31 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-13 15:49:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-13 15:49:28 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-13 15:49:28 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-13 15:49:28 ----A---- C:\Windows\system32\credssp.dll
2014-11-13 15:49:16 ----A---- C:\Windows\system32\packager.dll
2014-11-13 15:49:15 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-13 15:49:14 ----A---- C:\Windows\system32\win32k.sys
2014-11-13 15:49:08 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-13 15:49:08 ----A---- C:\Windows\system32\msi.dll
2014-11-13 15:49:05 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-13 15:49:05 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-01 18:08:36 ----D---- C:\Program Files (x86)\DUHA system
======List of files/folders modified in the last 1 month======
2014-11-23 20:06:29 ----D---- C:\Windows\Temp
2014-11-23 20:06:18 ----D---- C:\Program Files
2014-11-23 19:45:10 ----D---- C:\Users\Michal\AppData\Roaming\Mumble
2014-11-23 19:41:43 ----A---- C:\Windows\win.ini
2014-11-23 16:41:22 ----D---- C:\Windows\system32\config
2014-11-23 15:29:02 ----D---- C:\Windows\system32\Tasks
2014-11-23 15:28:43 ----D---- C:\Windows\System32
2014-11-23 15:28:43 ----D---- C:\Windows\inf
2014-11-23 15:28:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-11-23 15:23:53 ----A---- C:\Windows\SYSWOW64\log.txt
2014-11-23 15:23:24 ----D---- C:\ProgramData\NVIDIA
2014-11-23 08:24:41 ----D---- C:\Windows\system32\LogFiles
2014-11-23 08:21:49 ----D---- C:\Program Files\VDownloader
2014-11-23 08:20:35 ----D---- C:\Windows\Prefetch
2014-11-23 08:19:33 ----AD---- C:\Windows
2014-11-23 01:01:34 ----D---- C:\Program Files (x86)
2014-11-23 01:01:33 ----D---- C:\Windows\Tasks
2014-11-23 01:00:54 ----D---- C:\Windows\SysWOW64
2014-11-22 17:53:09 ----D---- C:\Windows\SoftwareDistribution
2014-11-22 17:52:33 ----D---- C:\Windows\debug
2014-11-22 17:48:32 ----D---- C:\Windows\system32\drivers
2014-11-22 17:47:06 ----RSD---- C:\Windows\Fonts
2014-11-22 17:47:06 ----HD---- C:\ProgramData
2014-11-22 17:47:05 ----SHD---- C:\Windows\Installer
2014-11-22 15:13:42 ----SD---- C:\Users\Michal\AppData\Roaming\Microsoft
2014-11-19 22:22:06 ----SHD---- C:\System Volume Information
2014-11-19 18:21:52 ----D---- C:\Windows\winsxs
2014-11-17 01:22:03 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-15 17:22:29 ----D---- C:\Windows\rescache
2014-11-13 17:32:27 ----D---- C:\Windows\Microsoft.NET
2014-11-13 17:31:56 ----RSD---- C:\Windows\assembly
2014-11-13 17:23:32 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 17:23:32 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-13 17:23:32 ----D---- C:\Windows\system32\cs-CZ
2014-11-13 17:23:32 ----D---- C:\Program Files\Internet Explorer
2014-11-13 17:23:31 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 17:23:31 ----D---- C:\Windows\system32\en-US
2014-11-13 17:23:31 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-13 17:07:55 ----D---- C:\ProgramData\Microsoft Help
2014-11-13 17:04:45 ----D---- C:\Windows\system32\MRT
2014-11-13 17:02:04 ----A---- C:\Windows\system32\MRT.exe
2014-11-13 15:48:42 ----D---- C:\Windows\system32\catroot2
2014-11-09 09:40:12 ----D---- C:\ProgramData\Adobe
2014-11-09 09:40:11 ----D---- C:\Program Files (x86)\Adobe
2014-11-04 14:30:58 ----N---- C:\Windows\system32\MpSigStub.exe
2014-11-01 15:17:42 ----D---- C:\Users\Michal\AppData\Roaming\uTorrent
2014-11-01 15:17:36 ----D---- C:\Windows\Minidump
2014-11-01 09:39:02 ----D---- C:\Windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-19 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-19 224896]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-13 409624]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2009-10-29 115824]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-01-28 513080]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-19 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-22 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-19 427360]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-12-19 64288]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2009-06-02 22576]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2009-06-02 20016]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-02 60464]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-19 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-19 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-19 92008]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-12-03 42696]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-01-27 47632]
R2 SPDRIVER_1.37.0.1411;SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [2014-11-21 52584]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\Windows\system32\DRIVERS\e1k62x64.sys [2009-09-23 283824]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-10-28 2018080]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver; C:\Windows\system32\DRIVERS\netr28x.sys [2013-02-25 2426672]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-06 18432]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-06 16896]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\Windows\system32\DRIVERS\vcsvad.sys [2008-12-26 21504]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-03-09 310728]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2013-12-26 38080]
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2009-07-13 5020672]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 19744]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2013-12-26 169288]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2013-12-26 21320]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2013-12-26 188232]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2013-12-26 158024]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2013-12-26 169288]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2013-12-26 21320]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2013-12-26 188232]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudserd.sys [2014-01-22 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2014-07-19 50344]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-08-28 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 268824]
R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2009-09-10 305448]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2009-08-13 62208]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R2 Update snipsmart;Update snipsmart; C:\Program Files (x86)\snipsmart\updatesnipsmart.exe [2014-11-23 423152]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 USBS3S4Detection;USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [2009-12-09 76320]
R2 Util snipsmart;Util snipsmart; C:\Program Files (x86)\snipsmart\bin\utilsnipsmart.exe [2014-11-23 423152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-08-25 935208]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-02 1255736]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-17 267440]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1618888]
S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 21009352]
S4 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michal at 2014-11-23 20:06:17
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 170 GB (48%) free of 350 GB
Total RAM: 3959 MB (32% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:06:33, on 23.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Alwil Software\Avast5\avastui.exe
C:\Program Files (x86)\Mumble\mumble.exe
C:\Games\World_of_Tanks\worldoftanks.exe
C:\Program Files (x86)\snipsmart\bin\snipsmart.BrowserAdapter.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Michal.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: snipsmart - {68261aaa-dc9f-4c2b-a168-c323e304c3a2} - C:\Program Files (x86)\snipsmart\snipsmartbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A2ED3161-03D4-41C3-B361-DE7844F5C026}: NameServer = 88.83.169.2,195.113.144.194
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update snipsmart - Unknown owner - C:\Program Files (x86)\snipsmart\updatesnipsmart.exe
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: USBS3S4Detection - Unknown owner - C:\OEM\USBDECTION\USBS3S4Detection.exe
O23 - Service: Util snipsmart - Unknown owner - C:\Program Files (x86)\snipsmart\bin\utilsnipsmart.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10610 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
"C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe"
"C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
taskeng.exe {8185D542-E45A-49AD-8D98-1A7EEF720475}
"C:\Program Files\Alwil Software\Avast5\avastui.exe" /nogui
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe"
"C:\Program Files (x86)\Internet Speed Checker\fc6a064f-a2dd-4cc3-9a73-369f24d55904.exe" /agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=914029CBA7964733AB7093D33055F574IE /verifier=aae4ad5d5cce3aeac7febfd9d172f9af /installerversion=1_35_09_29 /installationtime=1416665136 /statsdomain=http://stats.newonlinedemoserv.com /errorsdomain=http://errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedemoserv.com /runfrom='task' /externallog=''
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
C:\OEM\USBDECTION\USBS3S4Detection.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
WLIDSvcM.exe 2988
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-119284ca-2eca-42d9-82b3-b571d482279b -SystemEventPortName:HostProcess-73274852-d7d2-4db3-810d-7fdd4e90e110 -IoCancelEventPortName:HostProcess-147caff6-e36a-43fd-a82c-1876a871574e -NonStateChangingEventPortName:HostProcess-7083716c-eb00-4e36-8d70-cc4ad4bfd55d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a1e5ec78-6b40-4e72-aa73-97a2887fb768 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mumble\mumble.exe"
"C:\Games\World_of_Tanks\worldoftanks.exe" wot_wait_for_mutex
"C:\Program Files (x86)\snipsmart\updatesnipsmart.exe"
"C:\Program Files (x86)\snipsmart\bin\utilsnipsmart.exe"
"C:\Program Files (x86)\snipsmart\bin\snipsmart.PurBrowse64.exe" /l false /s false /c "snipsmart" /t "C:\Program Files (x86)\snipsmart\bin\TEMP" /i "http://apisnipsmartinfo-a.akamaihd.net/ ... 0000000000" /d {e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64 /p 66e9f152-b817-4be3-a5f5-823779d838f2:iexplore /h cdn.sharedaddomain.com,cdn.sharedaddomain2.com 0 10 "C:\Program Files (x86)\snipsmart\bin\bau" true
\??\C:\Windows\system32\conhost.exe "1858469681-1187560236-5110556561458788025-1140710323-327179719168796357-300543697
/i 66e9f152-b817-4be3-a5f5-823779d838f2 /z "n=snipsmart&is=ob100ppCZ&dpt=20"
/i 66e9f152-b817-4be3-a5f5-823779d838f2 /z "n=snipsmart&is=ob100ppCZ&dpt=20"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:860 CREDAT:595238 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:860 CREDAT:4134169 /prefetch:2
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
taskhost.exe $(Arg0)
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe15_ Global\UsGthrCtrlFltPipeMssGthrPipe15 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Michal\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-11.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-11.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-2.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-2.exe /rawdata=j+oa+IJ0Xn2F/QxEeaewTxpQIpA2QgedSTs6ZUHB9Bdtyrc5GfgRRmOdVXvDbCBsrBhvhnsjPoXlNiVO2xieylmOO2myKp/fyn0Zk+nU9yBbSsdGOm+NOTe4xeJybaKJPn1J+qLzZH8QuA3O/v6OlB2G3n+8FdSrDr5XCereTQ94F4vVWMmHajrTYNmAHNmFjkonb8NUeZ3Y4jymJkhLNKqOBc0p1//ur8do3z5qHTqBNJ94xEpPt1f0SB3pq+YMg5y0KdoC1JFYU6uIqClvYoGzj7YnDTOMBcOgLRPnqGo9ajTpitzu2PFrHgoDq3SbhjbUincEwU1Dmt4CaG4IVFFsKS51+rNg2+3udWr9Ghh+nrcEoQDv8yFy7lbb8vdZp82sBmRpHbWKMQPB50l5y19b6O4xSAfIlHGAaxNqGRVw1GqYlDuEFHgFgpxUp+6rt78cjq6j9PqACrG8uJe0ie5U33sV7NIybI6IQ/WJEu3l8Xqf8OtSAfs2vsWz9LkicPUL76ZZ/5J7rRShNxKxNrtvbsvnGB0TuapU31kcwHBkyA++xvfQZ09X551xcF6VwF4tS3ZZI7fMIhksZBK2QOxSyTFFajqfnFZYtObYzCS2Yw893kmAF40f3Gr8uQmjDFkvK5ky+r+eYYQfS3JU1UJkbinTxjNcChv10JlE+7Bkna64/k3KL0FzlDvQ4NMzSOQBIEGu0tb/CiaTZqx2zvR356hhso/veIfK9j/RE0HtzH2ZCOhgyhw44QJ/iDQlTS/BTFHJ1zKeZMy4A0r5JwfQfdWbhVjAKPnrXiBPu+vop4rvEkGc1CM42SLVPwrMDXEh506MJqbmFIP/fw3OQgKWeKJwHxiJBm842JPB3H7tO9xcrErGL8DGwqO57RwJ8ufh4B9cx688s4bPgoehuQd+EXIPG94kgP0HUphrrn8EKNjXBFoBMx9XejjotaAVdwByGlcp9LeRXbA84BHhDpDe//ap+Y4zDgfHwqLoF4i7K11O5slOGfYzfGFRMH9/
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-3.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-3.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-4.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-4.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.exe /rawdata=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
C:\Windows\tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5_user.job - C:\Program Files (x86)\Sense\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.exe /rawdata=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
C:\Windows\tasks\51a4f134-17d5-4c6b-898f-dac446e1476f.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\51a4f134-17d5-4c6b-898f-dac446e1476f.exe /agentregpath='HQ-Video-Pro-2.1cV22.11' /appid=63163 /srcid='002255' /subid='0' /zdata='0' /bic=914029CBA7964733AB7093D33055F574IE /verifier=aae4ad5d5cce3aeac7febfd9d172f9af /installerversion=1_35_09_29 /installationtime=1416664547 /statsdomain=http://stats.newonlinedemoserv.com /errorsdomain=http://errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedemoserv.com /runfrom='task' /externallog=''
C:\Windows\tasks\9472bf32-801e-4380-a93a-312d3363a0e3.job - C:\Program Files (x86)\Internet Speed Checker\9472bf32-801e-4380-a93a-312d3363a0e3.exe 001726 914029CBA7964733AB7093D33055F574IE 61752 1416665136 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 Internet Speed Checker
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-1.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\HQ-Video-Pro-2.1cV22.11-codedownloader.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-11.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-11.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-2.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-2.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-3.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-3.exe /rawdata=VALGOZtuoPNjVxtemPgQBCVWwtwH6W5Zd3MFjDeQLv+B3YrsjET8M2ckqA1qvaCFioRiRYnUFuNEcDkd5PuLo078xi6sPXHa1+ggK+hJVbsrCPuFUo8bbuGo7LbbqXAYT0y9XvzhPCCdO3L7kPBMUiJo8s7qnkoUaHSDV9iPh0dYIA4HQPWF3B8RtSHJ76EVD0Rk/Ets46ucOhkVhfWhoA9nXc+x8R2z3FONa+Uj3EJE//uJO7VS3wb0Sf6YYXMsflhl89JieE4bhDOH5on6kMlzkSckVbaDS8MITmbBVNu6QXpfIgHOQmNKu/FRs0K+MUmiGiOGLb2ftKh50u1gyprFGozvYUMpMU36dO3arNevG+MxTqFQMGo6dCY+yWLOG+MPcTkaBK7zQGJU0BuPz0vEBkLbo/+AsAjEbhLdXhUR2JNzqU4GJhXCYH+a2fB/2EsDsRWoWN4wn37O4O8JowCEvNXhYG/s9D+7juKU2FewHbUAbAUqb6Q4vFSFDbZDFlSs78EMhUEJqgqXeJkLC7UZKKGPZPqmCz0tAHw+AFffJ6pk+O1T0kHG6PzEspr11iwnMkXCDySc+QR7SIq7fY8nrMW9JWE1JKiKKtH4BxoCT59uptAwcv6PY+eetQ6AhpW6BWyxPDpvtyS/HEF64Adl/z2fL6YG7fDsC11iPl5cCjDmvC0/wjJTjldsDZwYpMMSC+GqtE0BwMB9MzQxad8VmHVLHt/A4yzP2AQs6OnE09ZFNRbXgJP8xJxD8kXhtx3togkuli69IfLYX29vjwbH0iC/JjqVC2PHPquuQbhH86pnoS5AvRDXrDq/VBuyvFe1YgCIJcAdrJ8YX9B37JVQbIJSjajmDHhnRFuUdj1CoAfFI1qi1NBBCRrT7yPTn62UO/iz6sOITjMqe0tLgjsGY6X5e/aVX17CcTP9Meht88Y2g/R3jKVsTYXtWguFL6XABuq2UWLE+3/21LTYiR0z9vZnfgFC+zj/U1+OOuqjmLpGpwINeHS3sAzx+4M/YScsFsGjbB0aMu1c9pq4qO8D4rUoPRWxJ0jSLz9d6T0HIPwb0OTV0iuLeMPzWqaZu9UQnFlB86xKylDdja8mBJtaAAGznKPafbozcxE8in81ZeyVIPiWW/EqmLn4kVHfzi067ox8chkOMF/RQEO3FSEXpTzfwyO3PINi67PzoXaGau7h/mHDuik8vWPX0dezh+pGHHcqp+howlpkjF0TewBet2RL+UECJS3SNkHLEUmoCyygzB42LrmH/FcfDdhh8Kd9VP7RlIjMz/7x+kXJ+1OA01BfBoRdw+NrDqP8iBHj+Xgcfmi5ahT8gnfBVhYESqgIyoy4oez/ti85xpkbSQdLiX6jn8d0aT6ugPHVWBdiVdNTya8KCboafnIGQKSzEioxD6MRMLRsn40anK00vxFWi8153LkCo98GVDu8YjmNpxNtgD0rcWWPiN+ux38QpKZkBtA0a932nppxRfV6PGUqI9zAJeWGL4R7pJB1z961kyHHPgdtxJ+dK2sxtJnYS2Zrr2lAnbYu0a7S10leDMRkhYmE8sdBlg+fqxxHaPDT3Z1PVGZsBI0ZlZ8Iz056QBXiVaunCf1rBN13RxVt2UrqvptYhZSP4aE9XaKcZaaJSIfghv6Yo1PQjBfxwJ5f2d63cK3r73MUx6V1H/fccd57QoP0VH4/afteQcMnKM1FufBsfVmM6vqSePxvXyMIQHvVojZkltSFStety5bvzPWtAg2dowD7OLtSK/g5tmGRYvpUjD4DhGmhfMah3SI66tOO4w7tgW5SgXi3Asc4q4HXV2jiaSTh92YAdOrTVbduOKM1or3+CXWPlJaYSQ8Sw3U/ibBNtQF4y2W6Bccs8XbFiDcl52lMsiJTPLeD5r3OBrLog4lmQqxS/nEvDNTV9pTfEJs7zmqAvUva7+umQhF18bJ/ZYwgNgUnOB0uRVkNAPTsA2EHsDLH2EQpc5p6Ybi8I2GkSVjs62g1JmL8UjbWOrnV+epXwcsGfgNbqaNawHe8/DrUZdTi3k1O6PwU
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-4.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-4.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.exe /rawdata=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
C:\Windows\tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5_user.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-1.job - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-11.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-11.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-2.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-2.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-4.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-4.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-5.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe /rawdata=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
C:\Windows\tasks\abcbc285-3637-41b2-832a-af47b6df0881-5_user.job - C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe /rawdata=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
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\AmiUpdXp.job - C:\Users\Michal\AppData\Local\SwvUpdater\Updater.exe
C:\Windows\tasks\CODJ.job - C:\Users\Michal\AppData\Roaming\CODJ.exe /infocmdline=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-1.job - C:\Program Files (x86)\Ge-Force\Ge-Force-codedownloader.exe /rawdata=fNhi0Bme/ySlcK2XhIqde+C9cAt/NckGMRrEJtecf7OtYpAwEWXUIEzYL/HQdZnJ94Z71vT3AF+sbywO90M5IPWle2jTudNlWnX+kym3o86j5BCpFu/DHXv7708QGl14YlrujvIz3iQiXmNrUJ4APwKF83wZdaOgAIgPqQP80xVfh1eSSp7nH2DER5ONxcoyFM+gwc0dEqW/siDGjvezRRuBMGgcsD++PT62TjA3cds1t9WAF9AFwLHGmvQXbPdlkz8xtxw3b8k2kW6uCaj6fDZ4Ljm/78ttovTeRTuafz7P61FXdj1SL7OLJuBAej2C0xHRWHLmD0gxXQLD8FagnZ6w+z2wtO8uObp5oR9GIhMxWMHqWc48xDp4M6/4zIpqwRG7jCPETyqJZvSsx/lOJdRlX2FJ6du6K+8WiQPZpYZGOx0G0ppqvSu+NJewU/mPvHvxjYcRyRi2dO85gx22pF1vj+rbvpek0k/KC18Q11D3pc4qVpXYck77Gmq1MhngLC/TwRLRZepWGvdeyu4dOcNeeYuI4ol6oISx4eXdEGeSwfVVoU47LQjYi7yfgoVdV2n1ZrhJ5jIYA2URx/Bp/yWvb6qH2+HcyO1SNoXqdYiVWfpRuf8Mgkr7NldRHIfY5N6Fn4vpg4z33A7Q0R209yvVGUn0WMY9VUiRLtoUJFo3u6e2HAihLIq/WbZ7hos22qJFl/nYFtRXN4Sb0x1+V9ibyG53tjfHW8QPiXdPvC1kAWfctJdlvCsxSWW9zDPbQrSuFijnEizLNn23VdikBAoGWHr+MLMTqzI835sNyziWQFLh7082xKRLfbyifxGSulkAA/FHY9rqmQnuRSgpIW48VfpvO5Tir8BHau5Ii/pQ8GKBAxYhrOZd+klh1DxsvitZPVlbwB0KhbRM+HyB6e2z4pgoRF0xOamLzkfqhh+xO3e67D8QcfUH/IouFNiXQi0QnnrafF2sxsbKUwXakErsK7ATbwYe+zHRCl7TtQNMA6C+QFGcCwEEHP31rA1GPl4NBQ8ABq/valht7xJlL43dhN8iJ8r+/xKE9xOzMOkh6wW9HJ2YtN8hzC5e6bUQYhBsKhAJZCy707COsfPEjzuuWJFWRsIk/UVhWu9InSmu2uB3S5H04aEp/iTFjBovdYIJsEn6TyMFIgHY4Z9b8MwVxB59iMCHGecty2aWE+A6ExL1KPLkScge+49S05uOzHJ/sDy9WtWnYIBI212SlZeh5VpTb33qnI/KVBXuye5O2HlaAJTQ6O5348MkNrc7BleJXTQduhg4Jf8kWYqHaMoCnxq42poCBYZYl/ljys/sbNjbZ+ZLOAlJLDyFZF8p5I2xsf8hRWNmOolHXOEhWF1YTVcM2EVrjr4jqtTqal/Uam7WEe+VIWG/VKu+/Ro5ulUD7aITIYzzdjt3PJZpaNLw6HtVZwY1uh+G1GkBlafHihkvrU70b3wVEsVsXreKvHiMEHpXRugrWQIssXXxOnROADXoBVeUSJ8Wn4eJmko5GZ0Jp/BFWGM7a7mop2gtbRrLmyPl16tjVOY5vMx5dpdAteR4Bq2M7NWpxHuevOp1yR+83olWuLRiTP/w64YrdG/CPO68UVUSSDGczd7Y4/MM1uU2Nr03fm+gnb2mK+kT4RAGgcEk34GnfIwHkFU75/o67SAzM2tUylrA0utUvTamev4VUV7Q3Dt5x6fTHLU=
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-11.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-11.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-2.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-2.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-4.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-4.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.exe /rawdata=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
C:\Windows\tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5_user.job - C:\Program Files (x86)\Ge-Force\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.exe /rawdata=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
C:\Windows\tasks\ee07ea1a-ce16-4c10-a157-1cc7a109998d.job - C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11\ee07ea1a-ce16-4c10-a157-1cc7a109998d.exe 002255 914029CBA7964733AB7093D33055F574IE 63163 1416664547 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 HQ-Video-Pro-2.1cV22.11
C:\Windows\tasks\fc6a064f-a2dd-4cc3-9a73-369f24d55904.job - C:\Program Files (x86)\Internet Speed Checker\fc6a064f-a2dd-4cc3-9a73-369f24d55904.exe /agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=914029CBA7964733AB7093D33055F574IE /verifier=aae4ad5d5cce3aeac7febfd9d172f9af /installerversion=1_35_09_29 /installationtime=1416665136 /statsdomain=http://stats.newonlinedemoserv.com /errorsdomain=http://errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedemoserv.com /runfrom='task' /externallog=''
C:\Windows\tasks\PKLWOO.job - C:\Users\Michal\AppData\Roaming\PKLWOO.exe /infocmdline=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
C:\Windows\tasks\QYKYJ.job - C:\Users\Michal\AppData\Roaming\QYKYJ.exe /infocmdline=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
C:\Windows\tasks\TSHXHE.job - C:\Users\Michal\AppData\Roaming\TSHXHE.exe /infocmdline=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
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611311163}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2014-07-19 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2014-11-21 500584]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68261aaa-dc9f-4c2b-a168-c323e304c3a2}]
snipsmart - C:\Program Files (x86)\snipsmart\snipsmartbho.dll [2014-11-22 250096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-10-22 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2014-07-19 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-11-21 418664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-10-22 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-10-28 8312352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-09-12 959176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcadeDeluxeAgent]
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-11-16 128296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Michal\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload]
C:\Program Files (x86)\Samsung\Kies\Kies.exe [2014-02-14 1564992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-02-14 311616]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mwlDaemon]
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2009-09-10 349480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-04-30 1225920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPDriver]
C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VDownloader]
C:\Program Files\VDownloader\VDownloader.exe [2013-12-20 882176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Michal^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RollerCoaster Tycoon 3 Registration.lnk]
C:\Users\Michal\AppData\Local\Temp\{361677FF-6B37-44DF-9BF3-F6E68D7F90A6}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe /remind /language=CSY /PRNM=RollerCoaster Tycoon 3/PRMP=RCT3/SKUN=PCXX/GTYP=STRY []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"BackupManagerTray"=C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2009-08-12 261888]
"Hotkey Utility"=C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [2009-08-18 629280]
"EgisTecLiveUpdate"=C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [2009-08-04 199464]
"PlayMovie"=C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-11-12 181480]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2014-07-31 4085896]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-11-23 20:06:18 ----D---- C:\Program Files\trend micro
2014-11-23 20:06:17 ----D---- C:\rsit
2014-11-22 17:47:06 ----D---- C:\ProgramData\simplitec
2014-11-22 17:47:06 ----A---- C:\Windows\SYSWOW64\DLLDEV32i.dll
2014-11-22 17:46:34 ----A---- C:\Windows\SYSWOW64\certsentry.dll
2014-11-22 17:46:34 ----A---- C:\Windows\system32\certsentry.dll
2014-11-22 17:46:27 ----D---- C:\Program Files (x86)\Comodo
2014-11-22 17:40:02 ----D---- C:\Program Files (x86)\FreeTime
2014-11-22 17:21:49 ----A---- C:\test.txt
2014-11-22 15:09:43 ----D---- C:\Users\Michal\AppData\Roaming\Free Convert MP4 To MP3
2014-11-22 15:09:06 ----D---- C:\Program Files (x86)\4dots Software
2014-11-22 15:05:40 ----D---- C:\Program Files (x86)\Internet Speed Checker
2014-11-22 15:04:41 ----A---- C:\Windows\system32\drivers\{e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64.sys
2014-11-22 15:01:43 ----D---- C:\Users\Michal\AppData\Roaming\YoutubeToMp3Converter
2014-11-22 15:01:31 ----D---- C:\ProgramData\Freemake
2014-11-22 15:01:23 ----D---- C:\Program Files (x86)\Freemake
2014-11-22 14:57:08 ----D---- C:\Program Files (x86)\snipsmart
2014-11-22 14:55:53 ----D---- C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11
2014-11-22 14:51:19 ----D---- C:\Program Files (x86)\Sense
2014-11-22 14:51:19 ----D---- C:\Program Files (x86)\globalUpdate
2014-11-22 14:51:17 ----D---- C:\Program Files (x86)\Ge-Force
2014-11-22 14:50:40 ----D---- C:\ProgramData\ShopperPro
2014-11-22 14:50:36 ----D---- C:\Program Files (x86)\ShopperPro
2014-11-19 19:03:38 ----D---- C:\Program Files (x86)\Mumble
2014-11-19 14:20:57 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2014-11-19 14:20:57 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-19 14:20:57 ----A---- C:\Windows\system32\pku2u.dll
2014-11-19 14:20:57 ----A---- C:\Windows\system32\kerberos.dll
2014-11-13 15:51:17 ----A---- C:\Windows\system32\generaltel.dll
2014-11-13 15:51:16 ----A---- C:\Windows\system32\aepdu.dll
2014-11-13 15:51:16 ----A---- C:\Windows\system32\aeinv.dll
2014-11-13 15:51:12 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-13 15:51:12 ----A---- C:\Windows\system32\termsrv.dll
2014-11-13 15:51:12 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-13 15:51:12 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-13 15:51:12 ----A---- C:\Windows\system32\adtschema.dll
2014-11-13 15:51:10 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-13 15:51:10 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-13 15:51:10 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-13 15:51:10 ----A---- C:\Windows\system32\msaudite.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-13 15:51:06 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-13 15:51:06 ----A---- C:\Windows\system32\iernonce.dll
2014-11-13 15:51:06 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-13 15:51:06 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-13 15:51:06 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-13 15:51:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-13 15:51:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-13 15:51:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-13 15:51:03 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-13 15:51:03 ----A---- C:\Windows\system32\urlmon.dll
2014-11-13 15:51:03 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-13 15:51:02 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-13 15:51:02 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-13 15:51:01 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-13 15:51:01 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-13 15:51:01 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-13 15:51:01 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-13 15:51:01 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-13 15:51:01 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-13 15:51:00 ----A---- C:\Windows\system32\iesetup.dll
2014-11-13 15:51:00 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-13 15:50:59 ----A---- C:\Windows\system32\iertutil.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-13 15:50:58 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-13 15:50:58 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-13 15:50:58 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-13 15:50:57 ----A---- C:\Windows\system32\ieui.dll
2014-11-13 15:50:57 ----A---- C:\Windows\system32\ieframe.dll
2014-11-13 15:50:57 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-13 15:50:56 ----A---- C:\Windows\system32\jscript9.dll
2014-11-13 15:50:55 ----A---- C:\Windows\system32\wininet.dll
2014-11-13 15:50:55 ----A---- C:\Windows\system32\vbscript.dll
2014-11-13 15:50:54 ----A---- C:\Windows\system32\msrating.dll
2014-11-13 15:50:54 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-13 15:50:54 ----A---- C:\Windows\system32\mshtml.dll
2014-11-13 15:49:45 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-13 15:49:45 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-13 15:49:45 ----A---- C:\Windows\system32\msxml3.dll
2014-11-13 15:49:44 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-13 15:49:44 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-13 15:49:44 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-13 15:49:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-13 15:49:41 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-13 15:49:39 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-13 15:49:39 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-13 15:49:38 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-13 15:49:38 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-13 15:49:38 ----A---- C:\Windows\system32\EncDump.dll
2014-11-13 15:49:38 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-13 15:49:34 ----A---- C:\Windows\system32\schannel.dll
2014-11-13 15:49:32 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-13 15:49:32 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-13 15:49:32 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-13 15:49:31 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-13 15:49:31 ----A---- C:\Windows\system32\wdigest.dll
2014-11-13 15:49:31 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-13 15:49:31 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-13 15:49:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-13 15:49:28 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-13 15:49:28 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-13 15:49:28 ----A---- C:\Windows\system32\credssp.dll
2014-11-13 15:49:16 ----A---- C:\Windows\system32\packager.dll
2014-11-13 15:49:15 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-13 15:49:14 ----A---- C:\Windows\system32\win32k.sys
2014-11-13 15:49:08 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-13 15:49:08 ----A---- C:\Windows\system32\msi.dll
2014-11-13 15:49:05 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-13 15:49:05 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-01 18:08:36 ----D---- C:\Program Files (x86)\DUHA system
======List of files/folders modified in the last 1 month======
2014-11-23 20:06:29 ----D---- C:\Windows\Temp
2014-11-23 20:06:18 ----D---- C:\Program Files
2014-11-23 19:45:10 ----D---- C:\Users\Michal\AppData\Roaming\Mumble
2014-11-23 19:41:43 ----A---- C:\Windows\win.ini
2014-11-23 16:41:22 ----D---- C:\Windows\system32\config
2014-11-23 15:29:02 ----D---- C:\Windows\system32\Tasks
2014-11-23 15:28:43 ----D---- C:\Windows\System32
2014-11-23 15:28:43 ----D---- C:\Windows\inf
2014-11-23 15:28:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-11-23 15:23:53 ----A---- C:\Windows\SYSWOW64\log.txt
2014-11-23 15:23:24 ----D---- C:\ProgramData\NVIDIA
2014-11-23 08:24:41 ----D---- C:\Windows\system32\LogFiles
2014-11-23 08:21:49 ----D---- C:\Program Files\VDownloader
2014-11-23 08:20:35 ----D---- C:\Windows\Prefetch
2014-11-23 08:19:33 ----AD---- C:\Windows
2014-11-23 01:01:34 ----D---- C:\Program Files (x86)
2014-11-23 01:01:33 ----D---- C:\Windows\Tasks
2014-11-23 01:00:54 ----D---- C:\Windows\SysWOW64
2014-11-22 17:53:09 ----D---- C:\Windows\SoftwareDistribution
2014-11-22 17:52:33 ----D---- C:\Windows\debug
2014-11-22 17:48:32 ----D---- C:\Windows\system32\drivers
2014-11-22 17:47:06 ----RSD---- C:\Windows\Fonts
2014-11-22 17:47:06 ----HD---- C:\ProgramData
2014-11-22 17:47:05 ----SHD---- C:\Windows\Installer
2014-11-22 15:13:42 ----SD---- C:\Users\Michal\AppData\Roaming\Microsoft
2014-11-19 22:22:06 ----SHD---- C:\System Volume Information
2014-11-19 18:21:52 ----D---- C:\Windows\winsxs
2014-11-17 01:22:03 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-15 17:22:29 ----D---- C:\Windows\rescache
2014-11-13 17:32:27 ----D---- C:\Windows\Microsoft.NET
2014-11-13 17:31:56 ----RSD---- C:\Windows\assembly
2014-11-13 17:23:32 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 17:23:32 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-13 17:23:32 ----D---- C:\Windows\system32\cs-CZ
2014-11-13 17:23:32 ----D---- C:\Program Files\Internet Explorer
2014-11-13 17:23:31 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 17:23:31 ----D---- C:\Windows\system32\en-US
2014-11-13 17:23:31 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-13 17:07:55 ----D---- C:\ProgramData\Microsoft Help
2014-11-13 17:04:45 ----D---- C:\Windows\system32\MRT
2014-11-13 17:02:04 ----A---- C:\Windows\system32\MRT.exe
2014-11-13 15:48:42 ----D---- C:\Windows\system32\catroot2
2014-11-09 09:40:12 ----D---- C:\ProgramData\Adobe
2014-11-09 09:40:11 ----D---- C:\Program Files (x86)\Adobe
2014-11-04 14:30:58 ----N---- C:\Windows\system32\MpSigStub.exe
2014-11-01 15:17:42 ----D---- C:\Users\Michal\AppData\Roaming\uTorrent
2014-11-01 15:17:36 ----D---- C:\Windows\Minidump
2014-11-01 09:39:02 ----D---- C:\Windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-19 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-19 224896]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-13 409624]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2009-10-29 115824]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-01-28 513080]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-19 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-22 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-19 427360]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-12-19 64288]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2009-06-02 22576]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2009-06-02 20016]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-02 60464]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-19 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-19 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-19 92008]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-12-03 42696]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-01-27 47632]
R2 SPDRIVER_1.37.0.1411;SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [2014-11-21 52584]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\Windows\system32\DRIVERS\e1k62x64.sys [2009-09-23 283824]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-10-28 2018080]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver; C:\Windows\system32\DRIVERS\netr28x.sys [2013-02-25 2426672]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-06 18432]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-06 16896]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\Windows\system32\DRIVERS\vcsvad.sys [2008-12-26 21504]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-03-09 310728]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2013-12-26 38080]
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2009-07-13 5020672]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 19744]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2013-12-26 169288]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2013-12-26 21320]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2013-12-26 188232]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2013-12-26 158024]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2013-12-26 169288]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2013-12-26 21320]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2013-12-26 188232]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudserd.sys [2014-01-22 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2014-07-19 50344]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-08-28 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 268824]
R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2009-09-10 305448]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2009-08-13 62208]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R2 Update snipsmart;Update snipsmart; C:\Program Files (x86)\snipsmart\updatesnipsmart.exe [2014-11-23 423152]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 USBS3S4Detection;USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [2009-12-09 76320]
R2 Util snipsmart;Util snipsmart; C:\Program Files (x86)\snipsmart\bin\utilsnipsmart.exe [2014-11-23 423152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-08-25 935208]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-02 1255736]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-17 267440]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1618888]
S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 21009352]
S4 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Re: PC zahlceno reklamou, AVAST nestíhá
Zdravim
Solidni sbirecka reklamniho bordelu
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu



- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: PC zahlceno reklamou, AVAST nestíhá
zatím log z adw a jdu na to druhé
# AdwCleaner v4.101 - Report created 23/11/2014 at 20:22:05
# Updated 09/11/2014 by Xplode
# Database : 2014-11-23.7 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Michal - MICHAL-PC
# Running from : C:\Users\Michal\Downloads\adwcleaner_4.101.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : Update snipsmart
[#] Service Deleted : Util snipsmart
Service Deleted : {e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
Folder Deleted : C:\ProgramData\ClickPotatoLiteSA
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\simplitec
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\SearchProtect
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
[!] Folder Deleted : C:\Program Files (x86)\snipsmart
Folder Deleted : C:\Program Files (x86)\Internet Speed Checker
Folder Deleted : C:\Program Files (x86)\Ge-Force
Folder Deleted : C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11
[!] Folder Deleted : C:\Program Files (x86)\snipsmart
Folder Deleted : C:\Users\Michal\AppData\Local\genienext
Folder Deleted : C:\Users\Michal\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Michal\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Michal\AppData\Local\SearchProtect
Folder Deleted : C:\Users\Michal\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Michal\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Michal\AppData\LocalLow\iac
Folder Deleted : C:\Users\Michal\AppData\LocalLow\ShoppingReport2
Folder Deleted : C:\Users\Michal\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Folder Deleted : C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\edjkooiccbgjhlpfhkknkjhfpmjkmelk
File Deleted : C:\Windows\System32\\drivers\{e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64.sys
File Deleted : C:\Users\Michal\daemonprocess.txt
***** [ Scheduled Tasks ] *****
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : RunAsStdUser Task
Task Deleted : 3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-2
Task Deleted : 51a4f134-17d5-4c6b-898f-dac446e1476f
Task Deleted : 9472bf32-801e-4380-a93a-312d3363a0e3
Task Deleted : ab5350e2-22c0-4d2d-98d0-b08911c59661-2
Task Deleted : abcbc285-3637-41b2-832a-af47b6df0881-2
Task Deleted : dc4fb942-fe05-437e-bdbe-4feaac8dcd56-2
Task Deleted : ee07ea1a-ce16-4c10-a157-1cc7a109998d
Task Deleted : fc6a064f-a2dd-4cc3-9a73-369f24d55904
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\MenuButtonIE.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_ScriptHelper.com/Plugin
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update snipsmart
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util snipsmart
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D2083641-E57F-4EAB-BB85-0582424F4A29}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192211}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192215}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622312263}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{68261aaa-dc9f-4c2b-a168-c323e304c3a2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0EB3F101-224A-4B2B-9E5B-DF720857529C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A1F1ECD3-4806-44C6-A869-F0DADF11C57C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195511}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655315563}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176652}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196611}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666316663}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4086DF47-C0E9-4EA0-A7E4-FDD954B182A1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B035BA6B-57CD-4F72-B545-65BE465FCAF6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D44FD6F0-9746-484E-B5C4-C66688393872}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174452}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644194411}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644194415}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644314463}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{0c8e7de5-d3f4-4ff0-be7d-2547ff22a3bb}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68261aaa-dc9f-4c2b-a168-c323e304c3a2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D6F0AC3-0C2E-4E07-8FDA-11268AB51211}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192211}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192215}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622312263}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0EB3F101-224A-4B2B-9E5B-DF720857529C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A1F1ECD3-4806-44C6-A869-F0DADF11C57C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195511}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655315563}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176652}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196611}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666316663}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4086DF47-C0E9-4EA0-A7E4-FDD954B182A1}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Key Deleted : HKCU\Software\clickpotatolitesa
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\ShoppingReport2
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\snipsmart
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKCU\Software\AppDataLow\Software\ShoppingReport2
Key Deleted : HKCU\Software\AppDataLow\Software\Ge-Force
Key Deleted : HKCU\Software\AppDataLow\Software\HQ-Video-Pro-2.1cV22.11
Key Deleted : HKCU\Software\AppDataLow\Software\Internet Speed Checker
Key Deleted : HKLM\SOFTWARE\ClickPotatoLite
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\MediaWatchV1
Key Deleted : HKLM\SOFTWARE\Myfree Codec
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\ShoppingReport2
Key Deleted : HKLM\SOFTWARE\simplitec
Key Deleted : HKLM\SOFTWARE\snipsmart
Key Deleted : HKLM\SOFTWARE\Ge-Force
Key Deleted : HKLM\SOFTWARE\HQ-Video-Pro-2.1cV22.11
Key Deleted : HKLM\SOFTWARE\Internet Speed Checker
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ImageStoreRandomFolder]
-\\ Comodo Dragon v33.1.0.1
[C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-11-22&apn_dtid=%5ECMD127%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
[C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\preferences] - Deleted [Extension] : cmaiofennmphjldldcpphcechfnnohja
[C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\preferences] - Deleted [Extension] : edjkooiccbgjhlpfhkknkjhfpmjkmelk
*************************
AdwCleaner[R0].txt - [19691 octets] - [23/11/2014 20:20:16]
AdwCleaner[S0].txt - [17509 octets] - [23/11/2014 20:22:05]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [17570 octets] ##########
# AdwCleaner v4.101 - Report created 23/11/2014 at 20:22:05
# Updated 09/11/2014 by Xplode
# Database : 2014-11-23.7 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Michal - MICHAL-PC
# Running from : C:\Users\Michal\Downloads\adwcleaner_4.101.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : Update snipsmart
[#] Service Deleted : Util snipsmart
Service Deleted : {e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
Folder Deleted : C:\ProgramData\ClickPotatoLiteSA
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\simplitec
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\SearchProtect
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
[!] Folder Deleted : C:\Program Files (x86)\snipsmart
Folder Deleted : C:\Program Files (x86)\Internet Speed Checker
Folder Deleted : C:\Program Files (x86)\Ge-Force
Folder Deleted : C:\Program Files (x86)\HQ-Video-Pro-2.1cV22.11
[!] Folder Deleted : C:\Program Files (x86)\snipsmart
Folder Deleted : C:\Users\Michal\AppData\Local\genienext
Folder Deleted : C:\Users\Michal\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Michal\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Michal\AppData\Local\SearchProtect
Folder Deleted : C:\Users\Michal\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Michal\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Michal\AppData\LocalLow\iac
Folder Deleted : C:\Users\Michal\AppData\LocalLow\ShoppingReport2
Folder Deleted : C:\Users\Michal\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Folder Deleted : C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\edjkooiccbgjhlpfhkknkjhfpmjkmelk
File Deleted : C:\Windows\System32\\drivers\{e8687d73-4a93-4590-9271-bf6f94b4cd22}Gw64.sys
File Deleted : C:\Users\Michal\daemonprocess.txt
***** [ Scheduled Tasks ] *****
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : RunAsStdUser Task
Task Deleted : 3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-2
Task Deleted : 51a4f134-17d5-4c6b-898f-dac446e1476f
Task Deleted : 9472bf32-801e-4380-a93a-312d3363a0e3
Task Deleted : ab5350e2-22c0-4d2d-98d0-b08911c59661-2
Task Deleted : abcbc285-3637-41b2-832a-af47b6df0881-2
Task Deleted : dc4fb942-fe05-437e-bdbe-4feaac8dcd56-2
Task Deleted : ee07ea1a-ce16-4c10-a157-1cc7a109998d
Task Deleted : fc6a064f-a2dd-4cc3-9a73-369f24d55904
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\MenuButtonIE.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_ScriptHelper.com/Plugin
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update snipsmart
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util snipsmart
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D2083641-E57F-4EAB-BB85-0582424F4A29}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192211}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192215}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622312263}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{68261aaa-dc9f-4c2b-a168-c323e304c3a2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0EB3F101-224A-4B2B-9E5B-DF720857529C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A1F1ECD3-4806-44C6-A869-F0DADF11C57C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195511}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655315563}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176652}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196611}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666316663}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4086DF47-C0E9-4EA0-A7E4-FDD954B182A1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B035BA6B-57CD-4F72-B545-65BE465FCAF6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D44FD6F0-9746-484E-B5C4-C66688393872}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174452}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644194411}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644194415}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644314463}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{0c8e7de5-d3f4-4ff0-be7d-2547ff22a3bb}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68261aaa-dc9f-4c2b-a168-c323e304c3a2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D6F0AC3-0C2E-4E07-8FDA-11268AB51211}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192211}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192215}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622312263}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0EB3F101-224A-4B2B-9E5B-DF720857529C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A1F1ECD3-4806-44C6-A869-F0DADF11C57C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195511}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655315563}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176652}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196611}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666316663}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4086DF47-C0E9-4EA0-A7E4-FDD954B182A1}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Key Deleted : HKCU\Software\clickpotatolitesa
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\ShoppingReport2
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\snipsmart
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKCU\Software\AppDataLow\Software\ShoppingReport2
Key Deleted : HKCU\Software\AppDataLow\Software\Ge-Force
Key Deleted : HKCU\Software\AppDataLow\Software\HQ-Video-Pro-2.1cV22.11
Key Deleted : HKCU\Software\AppDataLow\Software\Internet Speed Checker
Key Deleted : HKLM\SOFTWARE\ClickPotatoLite
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\MediaWatchV1
Key Deleted : HKLM\SOFTWARE\Myfree Codec
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\ShoppingReport2
Key Deleted : HKLM\SOFTWARE\simplitec
Key Deleted : HKLM\SOFTWARE\snipsmart
Key Deleted : HKLM\SOFTWARE\Ge-Force
Key Deleted : HKLM\SOFTWARE\HQ-Video-Pro-2.1cV22.11
Key Deleted : HKLM\SOFTWARE\Internet Speed Checker
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ImageStoreRandomFolder]
-\\ Comodo Dragon v33.1.0.1
[C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-11-22&apn_dtid=%5ECMD127%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
[C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\preferences] - Deleted [Extension] : cmaiofennmphjldldcpphcechfnnohja
[C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\preferences] - Deleted [Extension] : edjkooiccbgjhlpfhkknkjhfpmjkmelk
*************************
AdwCleaner[R0].txt - [19691 octets] - [23/11/2014 20:20:16]
AdwCleaner[S0].txt - [17509 octets] - [23/11/2014 20:22:05]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [17570 octets] ##########
Re: PC zahlceno reklamou, AVAST nestíhá
ten zoek mi nejde ani stáhnout, avast ho blokuje jako malware.....
Re: PC zahlceno reklamou, AVAST nestíhá
Avast docasne vypnete - stahnete a spustte Zoek
Re: PC zahlceno reklamou, AVAST nestíhá
ok už se to povedlo, tady to je
Zoek.exe v5.0.0.0 Updated 23-11-2014
Tool run by Michal on ne 23.11.2014 at 20:38:16,86.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Michal\Downloads\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
23.11.2014 20:39:27 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\PROGRA~2\Disney Interactive deleted successfully
C:\PROGRA~2\Freemake deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~2\Xider deleted successfully
C:\PROGRA~2\COMMON~1\SWF Studio deleted successfully
C:\PROGRA~3\AWEM deleted successfully
C:\PROGRA~3\Big Fish Games deleted successfully
C:\PROGRA~3\Freemake deleted successfully
C:\PROGRA~3\Oracle deleted successfully
C:\Users\Michal\AppData\Roaming\Atari deleted successfully
C:\Users\Michal\AppData\Local\WarThunder deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32004B8A-44A9-43E7-84E9-808838809519} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{06c4fe07-3a4f-4f6e-a3aa-34fd269b6f85} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{103B659D-4E3E-4D0F-8C5C-98BB1848C43} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{113FEBAC-7568-4BB1-9B95-E1BB869E54} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11929711-74FD-4454-8BF2-169DE5988B9} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11D1B178-3F56-4007-9D25-8C44E2F99EEF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{144bb502-907c-4ab4-92ce-4b10a4b26d49} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{152F9BD4-21AA-4CBA-A5A8-892E4429FFF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15398F80-C485-4BC2-82C3-F705A491E75} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15AD3EB2-6C75-4A4E-9A5B-B269436E6C79} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16A5FAA0-E2C-43C2-8638-F23DBFCCFA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{184A292A-FBA4-4836-AA42-0D6DB6C4FEB} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AE96ED3-1257-4EEB-9B42-77A946CB00} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1CD1DEBE-D1B3-492F-BEF5-F5FD97AAFD5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D20D2D6-1548-4944-B82C-E019BABE393} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ECC60A0-6752-438B-8D37-7CBD68ADDA6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FDFEC3F-8EE9-4576-BC1B-68EC18E582BC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FF9967A-E15A-4501-A6C4-8E85AA67B8D0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2012500E-6DF6-4C73-B46-8758DB4BFD8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21200f59-0e5c-4c43-852f-fcefc3bccb4c} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{249D5F78-5732-4B01-B33E-EF8A0E93B2B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29EF0A7B-7566-4358-9A79-5D432CC8E5C5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A413EB8-37D5-4026-9C81-4387936152B6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C5FCD30-8B1C-427E-8575-C77A701FC5F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CFFB063-815D-48AE-845A-8269D8358E62} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F03C52-45EC-44C8-8869-3168457D1C5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F9D2F3D-EB66-4A6C-856-B66CECA3ABCD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31E27D63-2D4A-4384-BA88-C9A6C69A05C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33864D5A-A7B5-43E7-8B22-388B527ABDF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34BC97E8-E535-421C-9FC4-1E999CF1CB4C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39C24CC2-4C7C-4EC3-8E8D-9BFA402AEBAB} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C438E5F-F53B-4280-A6E1-3108E1329F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3EDFD779-D5A1-40DE-82C8-265C103367A4} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40749202-ADDA-435B-A8C9-914675DD4D16} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{432AA23E-1459-43C0-9B6A-7AA2CF4132FA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43B40FE1-F4E9-4810-87E0-FA5E5C1B93FD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{450CF109-D421-4010-BEFC-62AD80F0A0D6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47068985-B127-4BD9-9AF5-538361CB4ECA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48D8A7C9-5630-4D97-A76-65D23213AB0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{499A80F2-68F8-443B-9B5C-F1EB473E939} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A0FB2FF-8A32-4B86-A094-B3252794D3C3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C239E66-C333-46DB-875B-CE1BE4E032E1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E2F4D50-7947-4F7E-9B1C-8C2017563BB7} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54e7ce93-0374-44c7-ab57-6e1fee4a2475} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{557F5C56-1E59-4E2A-85B1-81872EA1A5B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56C0A725-1B35-48F7-B9E6-A0CA97D8DF81} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58c9410b-977e-4f96-b918-ccaa17f24f26} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5AFACC04-8DAA-4AB4-885A-D818EBEBCB6B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B3D5F9F-6678-4259-935E-07E2EA883E8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C39090D-CD6B-47F6-991D-495EC4DFE79} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c7947d3-6743-4a0e-a155-5e62fe7d1052} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6108E2E1-6C1D-481B-8769-FC6DAA4B528} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{617C622A-6988-4F6F-B8A4-73CD4FCE8134} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61C27BA3-B10E-47C4-978F-A398CEEC3BD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{647B095C-FF32-4674-BB1F-43CB3669DF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{666a3a18-7c04-48fa-87ac-fad6622eafe4} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6712FCAB-30CA-4CCE-84D8-C3C1258FD46} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6767201c-dda3-45dd-9662-913391386054} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{686A0455-6583-4349-898C-9BF5A9D7B998} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6904B5E-F490-4F13-B32D-C836D90BEA1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C2DDC86-3AF3-4743-9B86-9AF58711C70} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D2138D2-5E6B-4683-8E13-BA37AE94F63} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73841F5A-360E-44F3-BF3E-57B1484F9244} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74D613D4-F2B0-4365-9C36-11F0A846A67E} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76C95E06-4594-4768-94BA-415D76489B6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79EAA819-121F-4F13-A635-DE86EC7FFC8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A540CEA-2B5-472C-A75B-4AAB931E35} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C859C63-D1E2-43D0-9D3E-2818965B68E2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8005174B-C8EB-4E08-8133-1B2836DCDF5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8295ECF4-5475-4A08-AF58-4B247898EA3E} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CEEFD9-A6C1-4597-BFD7-60FCEC7666D8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84EF1CC1-4373-4F75-9517-9D7BC9414DB} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86A00FF4-F6C8-47AA-916B-AAB9896217E0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{895783e2-c556-44f6-800e-42898dfb98c3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{898DCEA2-1847-4F95-9ABB-5735C2B8993C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8AAD6593-201A-41CD-A494-981B3C95C3E5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C435844-717A-4EA7-8AE2-B173B03E1AD5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C8E7A46-153E-441D-8DE5-132D159E2CCA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F20A85D-5562-454D-8392-4C1DC58AC4F2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91E3BFA5-BF64-4431-8A4-9559E1F9AEA3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92F5399A-3A5E-4400-9126-65D996782D26} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93050AF0-54FE-4733-9BFE-50AB3BAFD53A} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{965067ED-185A-4777-977E-A6E7372276C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98D83326-5565-4B50-93DA-F3AA6D62AF2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99B52DF3-A808-4601-9758-41A51C786EE5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99FA54E-BFB8-4A7A-837C-AC7571CC39BC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B083791-1338-4D39-81B5-9129392158B2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C59D4C0-641D-4CE5-B189-64B49E3BACC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CC5F44F-F995-4661-B06-3680364AA0EA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D877799-7C2D-4C3B-AAAA-C03BF5828C7C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9E3BEE20-25AD-4359-86D-13891E43A0F0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A027B7D8-591B-44F9-953E-9249AA895EA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0DAB976-2A75-4AAC-88B0-E391145A49B0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1AA6666-409F-4488-819A-41D09832116D} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a2abc44c-9c7b-41f7-b6bd-84fa811968e1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A729C600-EA27-4244-ACFC-CA575BB5B543} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A89478F6-3F0-4D5F-9298-7C2C124CEB7A} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA56EFFE-F3E7-4307-B2A3-82A9F4B417B1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB6C8BA4-C786-46C7-BA9C-CC37C9B882FA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCCD5FD-F5ED-4211-BE4F-4DAD46138F55} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0CFA840-502-44F6-834E-2397E733781} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3AAA60A-90A3-4B42-9673-E2576B79914} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B99C0DD6-86DB-4DFC-AFC9-21469A803B7A} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD8E41E3-81E8-4EB8-9EAF-7580E41A494D} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEB55559-D1EF-4933-A312-FDF0D3761C2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BED3926F-D397-4B57-933-88B9473627D3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C02CD26-ECE7-4B60-AC2F-B217BE19575} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C490BBB9-A88E-4A07-9992-82D7D16F89} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC0F0EB-72F7-4DE3-89E1-D9AF313539B8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD326FC9-7C68-4055-B0B7-D3D98544A167} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ced194e7-4fec-4ea2-8bd2-9d25aa53d389} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF852968-3F19-4B02-BEE2-595598D4AAF1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0C272A7-8F9C-4DD2-9EEF-3C38EF348D} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D13D0DDD-2AA6-4BFF-92ED-BED68C5C15AC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1429169-1B09-4AFE-9686-F5B5993A1BD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D15FB078-A60E-4833-AD18-3BC69D133B1C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D26D4B22-A1A9-4FB7-B4BF-B6F0B8FA5B69} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D3205989-98DE-46B5-9430-AC3AB92D28F3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA75D02D-2184-436C-97D9-DC11D380539E} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD3D3EEB-E555-4684-87F7-9D84396646AA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE0F579-AF84-4B18-946D-50F1EE63DB99} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e1382ea5-38bc-4557-950b-058c7d56c20e} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2463014-7109-472F-8972-12EC8EF5E7F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7E63B55-D559-407F-9F63-2FEDE73D638B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E845A3A-5CCB-427B-9B37-AD20F456479} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA76F183-D00C-474D-AAA4-7A4DE28499} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF9A9E92-1093-4AAA-BBE4-CDEDC470FE96} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFC8980F-5FD9-449C-818B-5F9148DC84} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f2145977-8ed1-4a79-a564-b189ee0c2d2d} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2BD513E-F8F2-477C-82EB-805DA08E2613} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7A00A62-9CD1-4096-AFD2-78454A303A5C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f7e69180-a7bf-4bc4-9391-54584e9b3be9} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8E87E2D-9068-4D33-AD62-06BF1372E3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB794FD6-EE14-4C4D-B47-1871F45F6B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF03B25F-4A67-49A7-A461-301549D73EB} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611311163} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{06c4fe07-3a4f-4f6e-a3aa-34fd269b6f85} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{144bb502-907c-4ab4-92ce-4b10a4b26d49} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21200f59-0e5c-4c43-852f-fcefc3bccb4c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54e7ce93-0374-44c7-ab57-6e1fee4a2475} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58c9410b-977e-4f96-b918-ccaa17f24f26} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c7947d3-6743-4a0e-a155-5e62fe7d1052} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{666a3a18-7c04-48fa-87ac-fad6622eafe4} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6767201c-dda3-45dd-9662-913391386054} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{895783e2-c556-44f6-800e-42898dfb98c3} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a2abc44c-9c7b-41f7-b6bd-84fa811968e1} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ced194e7-4fec-4ea2-8bd2-9d25aa53d389} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e1382ea5-38bc-4557-950b-058c7d56c20e} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f2145977-8ed1-4a79-a564-b189ee0c2d2d} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f7e69180-a7bf-4bc4-9391-54584e9b3be9} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{34AB3C4C-DA1A-4067-96F4-31452C7CFE65} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\ClickPotatoLite@ClickPotatoLite.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\ext@MediaWatchV1home392.net deleted successfully
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\Michal\AppData\Roaming\ProtectDISC deleted
C:\Users\Michal\.android deleted
C:\extensions.ini deleted
C:\setup95.exe deleted
C:\Users\Michal\AppData\Local\cache deleted
C:\Users\Michal\AppData\Local\Installer deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-1.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-11.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-3.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-4.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5_user.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-1.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-11.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-3.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-4.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5_user.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-1.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-11.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-4.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5_user.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-1.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-11.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-4.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5_user.job deleted
C:\Windows\AppPatch\AppPatch64\SPVCLdr64.dll deleted
C:\Windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb deleted
C:\Windows\wininit.ini deleted
C:\Windows\tasks\AmiUpdXp.job deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\Public\Desktop\VDownloader.lnk deleted
"C:\Users\Michal\AppData\Local\{EFD79350-80A1-4ECD-86C1-944D1157BCF2}" deleted
"C:\Users\Michal\AppData\Roaming\CODJ" deleted
"C:\Windows\tasks\CODJ.job" deleted
"C:\Users\Michal\AppData\Roaming\PKLWOO" deleted
"C:\Windows\tasks\PKLWOO.job" deleted
"C:\Users\Michal\AppData\Roaming\QYKYJ" deleted
"C:\Windows\tasks\QYKYJ.job" deleted
"C:\Users\Michal\AppData\Roaming\TSHXHE" deleted
"C:\Windows\tasks\TSHXHE.job" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\Alwil Software\Avast5\WebRep\FF" [19.07.2014 05:28]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
bopakagnckmlgajfccecajhnimjiiedh - No path found[]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx[19.07.2014 05:28]
Ask Toolbar - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
Comodo Drag&Drop Service - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo
Comodo Web Inspector - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
Comodo Media Downloader - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo
==== Chromium Fix ======================
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko deleted successfully
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{093a15e6-f51d-4880-b251-c06bcf6fb819} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13906"
{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} Seznam Url="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
{435a85d6-e796-44e8-95d4-f9526d39561d} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13906"
{67A2568C-7A0A-4EED-AECC-B5405DE63B64} Google Url="http://www.google.com/search?sourceid=i ... AW_csCZ408"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... urceid=ie7"
{737c4608-0901-4c02-bab6-0c812498932e} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_13906"
{954C8A18-B617-48FE-88EE-81F74884E33B} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13906"
{A65DE443-3B6F-4F27-9CFA-9A7FEE10B968} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13906"
{bdb2399d-ac77-47ee-a0c2-f18cd5c83c45} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13906"
{D6D5CBE7-675E-4B69-8262-7581E7E27C52} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13906"
{DEFD4737-A9B4-4C30-9A05-28D392925272} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13906"
{FBD768E4-1210-4FDE-986E-FCDC42772B67} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13906"
==== Reset Google Chrome ======================
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Preferences was reset successfully
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_CURRENT_USER\Software\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPDriver deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=272 folders=110 6759264 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Michal\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Michal\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on ne 23.11.2014 at 20:55:17,03 ======================
Zoek.exe v5.0.0.0 Updated 23-11-2014
Tool run by Michal on ne 23.11.2014 at 20:38:16,86.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Michal\Downloads\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
23.11.2014 20:39:27 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\PROGRA~2\Disney Interactive deleted successfully
C:\PROGRA~2\Freemake deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~2\Xider deleted successfully
C:\PROGRA~2\COMMON~1\SWF Studio deleted successfully
C:\PROGRA~3\AWEM deleted successfully
C:\PROGRA~3\Big Fish Games deleted successfully
C:\PROGRA~3\Freemake deleted successfully
C:\PROGRA~3\Oracle deleted successfully
C:\Users\Michal\AppData\Roaming\Atari deleted successfully
C:\Users\Michal\AppData\Local\WarThunder deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32004B8A-44A9-43E7-84E9-808838809519} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{06c4fe07-3a4f-4f6e-a3aa-34fd269b6f85} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{103B659D-4E3E-4D0F-8C5C-98BB1848C43} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{113FEBAC-7568-4BB1-9B95-E1BB869E54} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11929711-74FD-4454-8BF2-169DE5988B9} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11D1B178-3F56-4007-9D25-8C44E2F99EEF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{144bb502-907c-4ab4-92ce-4b10a4b26d49} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{152F9BD4-21AA-4CBA-A5A8-892E4429FFF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15398F80-C485-4BC2-82C3-F705A491E75} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15AD3EB2-6C75-4A4E-9A5B-B269436E6C79} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16A5FAA0-E2C-43C2-8638-F23DBFCCFA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{184A292A-FBA4-4836-AA42-0D6DB6C4FEB} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AE96ED3-1257-4EEB-9B42-77A946CB00} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1CD1DEBE-D1B3-492F-BEF5-F5FD97AAFD5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D20D2D6-1548-4944-B82C-E019BABE393} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ECC60A0-6752-438B-8D37-7CBD68ADDA6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FDFEC3F-8EE9-4576-BC1B-68EC18E582BC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FF9967A-E15A-4501-A6C4-8E85AA67B8D0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2012500E-6DF6-4C73-B46-8758DB4BFD8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21200f59-0e5c-4c43-852f-fcefc3bccb4c} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{249D5F78-5732-4B01-B33E-EF8A0E93B2B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29EF0A7B-7566-4358-9A79-5D432CC8E5C5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A413EB8-37D5-4026-9C81-4387936152B6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C5FCD30-8B1C-427E-8575-C77A701FC5F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CFFB063-815D-48AE-845A-8269D8358E62} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F03C52-45EC-44C8-8869-3168457D1C5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F9D2F3D-EB66-4A6C-856-B66CECA3ABCD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31E27D63-2D4A-4384-BA88-C9A6C69A05C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33864D5A-A7B5-43E7-8B22-388B527ABDF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34BC97E8-E535-421C-9FC4-1E999CF1CB4C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39C24CC2-4C7C-4EC3-8E8D-9BFA402AEBAB} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C438E5F-F53B-4280-A6E1-3108E1329F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3EDFD779-D5A1-40DE-82C8-265C103367A4} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40749202-ADDA-435B-A8C9-914675DD4D16} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{432AA23E-1459-43C0-9B6A-7AA2CF4132FA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43B40FE1-F4E9-4810-87E0-FA5E5C1B93FD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{450CF109-D421-4010-BEFC-62AD80F0A0D6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47068985-B127-4BD9-9AF5-538361CB4ECA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48D8A7C9-5630-4D97-A76-65D23213AB0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{499A80F2-68F8-443B-9B5C-F1EB473E939} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A0FB2FF-8A32-4B86-A094-B3252794D3C3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C239E66-C333-46DB-875B-CE1BE4E032E1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E2F4D50-7947-4F7E-9B1C-8C2017563BB7} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54e7ce93-0374-44c7-ab57-6e1fee4a2475} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{557F5C56-1E59-4E2A-85B1-81872EA1A5B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56C0A725-1B35-48F7-B9E6-A0CA97D8DF81} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58c9410b-977e-4f96-b918-ccaa17f24f26} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5AFACC04-8DAA-4AB4-885A-D818EBEBCB6B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B3D5F9F-6678-4259-935E-07E2EA883E8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C39090D-CD6B-47F6-991D-495EC4DFE79} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c7947d3-6743-4a0e-a155-5e62fe7d1052} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6108E2E1-6C1D-481B-8769-FC6DAA4B528} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{617C622A-6988-4F6F-B8A4-73CD4FCE8134} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61C27BA3-B10E-47C4-978F-A398CEEC3BD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{647B095C-FF32-4674-BB1F-43CB3669DF} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{666a3a18-7c04-48fa-87ac-fad6622eafe4} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6712FCAB-30CA-4CCE-84D8-C3C1258FD46} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6767201c-dda3-45dd-9662-913391386054} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{686A0455-6583-4349-898C-9BF5A9D7B998} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6904B5E-F490-4F13-B32D-C836D90BEA1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C2DDC86-3AF3-4743-9B86-9AF58711C70} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D2138D2-5E6B-4683-8E13-BA37AE94F63} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73841F5A-360E-44F3-BF3E-57B1484F9244} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74D613D4-F2B0-4365-9C36-11F0A846A67E} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76C95E06-4594-4768-94BA-415D76489B6} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79EAA819-121F-4F13-A635-DE86EC7FFC8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A540CEA-2B5-472C-A75B-4AAB931E35} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C859C63-D1E2-43D0-9D3E-2818965B68E2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8005174B-C8EB-4E08-8133-1B2836DCDF5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8295ECF4-5475-4A08-AF58-4B247898EA3E} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CEEFD9-A6C1-4597-BFD7-60FCEC7666D8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84EF1CC1-4373-4F75-9517-9D7BC9414DB} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86A00FF4-F6C8-47AA-916B-AAB9896217E0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{895783e2-c556-44f6-800e-42898dfb98c3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{898DCEA2-1847-4F95-9ABB-5735C2B8993C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8AAD6593-201A-41CD-A494-981B3C95C3E5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C435844-717A-4EA7-8AE2-B173B03E1AD5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C8E7A46-153E-441D-8DE5-132D159E2CCA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F20A85D-5562-454D-8392-4C1DC58AC4F2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91E3BFA5-BF64-4431-8A4-9559E1F9AEA3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92F5399A-3A5E-4400-9126-65D996782D26} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93050AF0-54FE-4733-9BFE-50AB3BAFD53A} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{965067ED-185A-4777-977E-A6E7372276C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98D83326-5565-4B50-93DA-F3AA6D62AF2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99B52DF3-A808-4601-9758-41A51C786EE5} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99FA54E-BFB8-4A7A-837C-AC7571CC39BC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B083791-1338-4D39-81B5-9129392158B2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C59D4C0-641D-4CE5-B189-64B49E3BACC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CC5F44F-F995-4661-B06-3680364AA0EA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D877799-7C2D-4C3B-AAAA-C03BF5828C7C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9E3BEE20-25AD-4359-86D-13891E43A0F0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A027B7D8-591B-44F9-953E-9249AA895EA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0DAB976-2A75-4AAC-88B0-E391145A49B0} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1AA6666-409F-4488-819A-41D09832116D} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a2abc44c-9c7b-41f7-b6bd-84fa811968e1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A729C600-EA27-4244-ACFC-CA575BB5B543} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A89478F6-3F0-4D5F-9298-7C2C124CEB7A} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA56EFFE-F3E7-4307-B2A3-82A9F4B417B1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB6C8BA4-C786-46C7-BA9C-CC37C9B882FA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCCD5FD-F5ED-4211-BE4F-4DAD46138F55} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0CFA840-502-44F6-834E-2397E733781} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3AAA60A-90A3-4B42-9673-E2576B79914} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B99C0DD6-86DB-4DFC-AFC9-21469A803B7A} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD8E41E3-81E8-4EB8-9EAF-7580E41A494D} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEB55559-D1EF-4933-A312-FDF0D3761C2} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BED3926F-D397-4B57-933-88B9473627D3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C02CD26-ECE7-4B60-AC2F-B217BE19575} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C490BBB9-A88E-4A07-9992-82D7D16F89} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC0F0EB-72F7-4DE3-89E1-D9AF313539B8} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD326FC9-7C68-4055-B0B7-D3D98544A167} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ced194e7-4fec-4ea2-8bd2-9d25aa53d389} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF852968-3F19-4B02-BEE2-595598D4AAF1} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0C272A7-8F9C-4DD2-9EEF-3C38EF348D} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D13D0DDD-2AA6-4BFF-92ED-BED68C5C15AC} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1429169-1B09-4AFE-9686-F5B5993A1BD} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D15FB078-A60E-4833-AD18-3BC69D133B1C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D26D4B22-A1A9-4FB7-B4BF-B6F0B8FA5B69} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D3205989-98DE-46B5-9430-AC3AB92D28F3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA75D02D-2184-436C-97D9-DC11D380539E} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD3D3EEB-E555-4684-87F7-9D84396646AA} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE0F579-AF84-4B18-946D-50F1EE63DB99} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e1382ea5-38bc-4557-950b-058c7d56c20e} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2463014-7109-472F-8972-12EC8EF5E7F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7E63B55-D559-407F-9F63-2FEDE73D638B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E845A3A-5CCB-427B-9B37-AD20F456479} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA76F183-D00C-474D-AAA4-7A4DE28499} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF9A9E92-1093-4AAA-BBE4-CDEDC470FE96} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFC8980F-5FD9-449C-818B-5F9148DC84} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f2145977-8ed1-4a79-a564-b189ee0c2d2d} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2BD513E-F8F2-477C-82EB-805DA08E2613} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7A00A62-9CD1-4096-AFD2-78454A303A5C} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f7e69180-a7bf-4bc4-9391-54584e9b3be9} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8E87E2D-9068-4D33-AD62-06BF1372E3} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB794FD6-EE14-4C4D-B47-1871F45F6B} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF03B25F-4A67-49A7-A461-301549D73EB} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611311163} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{06c4fe07-3a4f-4f6e-a3aa-34fd269b6f85} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{144bb502-907c-4ab4-92ce-4b10a4b26d49} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21200f59-0e5c-4c43-852f-fcefc3bccb4c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54e7ce93-0374-44c7-ab57-6e1fee4a2475} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58c9410b-977e-4f96-b918-ccaa17f24f26} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c7947d3-6743-4a0e-a155-5e62fe7d1052} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{666a3a18-7c04-48fa-87ac-fad6622eafe4} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6767201c-dda3-45dd-9662-913391386054} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{895783e2-c556-44f6-800e-42898dfb98c3} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a2abc44c-9c7b-41f7-b6bd-84fa811968e1} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ced194e7-4fec-4ea2-8bd2-9d25aa53d389} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e1382ea5-38bc-4557-950b-058c7d56c20e} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f2145977-8ed1-4a79-a564-b189ee0c2d2d} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f7e69180-a7bf-4bc4-9391-54584e9b3be9} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully
HKEY_USERS\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{34AB3C4C-DA1A-4067-96F4-31452C7CFE65} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\ClickPotatoLite@ClickPotatoLite.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\ext@MediaWatchV1home392.net deleted successfully
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\Michal\AppData\Roaming\ProtectDISC deleted
C:\Users\Michal\.android deleted
C:\extensions.ini deleted
C:\setup95.exe deleted
C:\Users\Michal\AppData\Local\cache deleted
C:\Users\Michal\AppData\Local\Installer deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-1.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-11.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-3.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-4.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5.job deleted
C:\Windows\Tasks\3c59f3cd-d562-4f1f-9f44-0c79cec7f25a-5_user.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-1.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-11.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-3.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-4.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5.job deleted
C:\Windows\Tasks\ab5350e2-22c0-4d2d-98d0-b08911c59661-5_user.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-1.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-11.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-4.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5.job deleted
C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5_user.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-1.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-11.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-4.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5.job deleted
C:\Windows\Tasks\dc4fb942-fe05-437e-bdbe-4feaac8dcd56-5_user.job deleted
C:\Windows\AppPatch\AppPatch64\SPVCLdr64.dll deleted
C:\Windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb deleted
C:\Windows\wininit.ini deleted
C:\Windows\tasks\AmiUpdXp.job deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\Public\Desktop\VDownloader.lnk deleted
"C:\Users\Michal\AppData\Local\{EFD79350-80A1-4ECD-86C1-944D1157BCF2}" deleted
"C:\Users\Michal\AppData\Roaming\CODJ" deleted
"C:\Windows\tasks\CODJ.job" deleted
"C:\Users\Michal\AppData\Roaming\PKLWOO" deleted
"C:\Windows\tasks\PKLWOO.job" deleted
"C:\Users\Michal\AppData\Roaming\QYKYJ" deleted
"C:\Windows\tasks\QYKYJ.job" deleted
"C:\Users\Michal\AppData\Roaming\TSHXHE" deleted
"C:\Windows\tasks\TSHXHE.job" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\Alwil Software\Avast5\WebRep\FF" [19.07.2014 05:28]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
bopakagnckmlgajfccecajhnimjiiedh - No path found[]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx[19.07.2014 05:28]
Ask Toolbar - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
Comodo Drag&Drop Service - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo
Comodo Web Inspector - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
Comodo Media Downloader - Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo
==== Chromium Fix ======================
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko deleted successfully
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{093a15e6-f51d-4880-b251-c06bcf6fb819} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13906"
{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} Seznam Url="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
{435a85d6-e796-44e8-95d4-f9526d39561d} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13906"
{67A2568C-7A0A-4EED-AECC-B5405DE63B64} Google Url="http://www.google.com/search?sourceid=i ... AW_csCZ408"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... urceid=ie7"
{737c4608-0901-4c02-bab6-0c812498932e} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_13906"
{954C8A18-B617-48FE-88EE-81F74884E33B} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13906"
{A65DE443-3B6F-4F27-9CFA-9A7FEE10B968} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13906"
{bdb2399d-ac77-47ee-a0c2-f18cd5c83c45} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13906"
{D6D5CBE7-675E-4B69-8262-7581E7E27C52} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13906"
{DEFD4737-A9B4-4C30-9A05-28D392925272} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13906"
{FBD768E4-1210-4FDE-986E-FCDC42772B67} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13906"
==== Reset Google Chrome ======================
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Preferences was reset successfully
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_CURRENT_USER\Software\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SPDriver deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Michal\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=272 folders=110 6759264 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Michal\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Michal\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on ne 23.11.2014 at 20:55:17,03 ======================
Re: PC zahlceno reklamou, AVAST nestíhá
tady je
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-11-2014
Ran by Michal at 2014-11-23 21:10:27
Running from C:\Users\Michal\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\uTorrent) (Version: 3.4.2.31536 - BitTorrent Inc.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_OMUI.cs-cz_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_OMUI.cs-cz_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_OMUI.cs-cz_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 33.1.0.1 - Comodo)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
FormatFactory 3.3.5.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.5.0 - Format Factory)
Free Convert MP4 To MP3 (remove only) (HKLM\...\Free Convert MP4 To MP3) (Version: - )
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0100-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Language Pack 2007 - Czech/èeština (HKLM-x32\...\OMUI.cs-cz) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (Czech) (HKLM-x32\...\{95120000-00AF-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{99D7DE4C-2775-4B16-B155-7F09AE939E8E}) (Version: 9.7.0621 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mumble 1.2.8 (HKLM-x32\...\{0E784CFD-CEB1-42E1-9C42-FC2497DD653E}) (Version: 1.2.8 - Thorvald Natvig)
MyFreeCodec (HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MyFreeCodec) (Version: - )
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Plánování směn verze 1.0.0.23 (HKLM-x32\...\{51B687AD-E85A-444F-8F36-4C6C98E2DA7F}_is1) (Version: 1.0.0.23 - DUHA system spol. s r.o.)
Seznam Software (HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\SeznamInstall) (Version: - Seznam.cz)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{068B46A0-8858-4CEB-80BC-A4AE787A05FC}) (Version: 14.0.8089.726 - Microsoft Corporation)
WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
11-11-2014 15:08:04 Windows Update
13-11-2014 16:00:45 Windows Update
18-11-2014 15:34:04 Windows Update
19-11-2014 16:00:16 Windows Update
19-11-2014 18:03:10 Installed Mumble 1.2.8
23-11-2014 19:39:07 zoek.exe restore point
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2014-11-23 20:39 - 00000840 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {224A1666-D5C5-452A-8E1D-2567EAAFAD92} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd)
Task: {496C4587-2435-468F-8B01-397609EF3895} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [2014-07-19] (AVAST Software)
Task: {C962C654-D84E-4BE4-975E-F61FB2FB55BB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-17] (Adobe Systems Incorporated)
Task: {D1FCD371-3444-4EB1-96C8-393A8B4EE6D5} - System32\Tasks\Microsoft\Internet Explorer\Odstranit předchozí verze aplikace Internet Explorer => C:\Windows\SYSTEM32\ie4uinit.EXE [2014-11-06] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2009-12-14 03:19 - 2009-12-09 10:24 - 00076320 _____ () C:\OEM\USBDECTION\USBS3S4Detection.exe
2009-08-18 08:27 - 2009-08-18 08:27 - 00629280 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
2014-07-19 05:28 - 2014-07-19 05:28 - 00301152 _____ () C:\Program Files\Alwil Software\Avast5\aswProperty.dll
2014-11-23 19:22 - 2014-11-23 19:22 - 02903552 _____ () C:\Program Files\Alwil Software\Avast5\defs\14112301\algo.dll
2009-02-03 02:33 - 2009-02-03 02:33 - 00460199 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
2008-09-29 02:55 - 2008-09-29 02:55 - 01076224 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
2009-08-18 08:31 - 2009-08-18 08:31 - 00163840 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyHook.dll
2014-07-19 05:28 - 2014-07-19 05:28 - 19329904 _____ () C:\Program Files\Alwil Software\Avast5\libcef.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:444C53BA
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93DE1838
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\ProgramData\Temp:E3C56885
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: defragsvc => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: NvNetworkService => 2
MSCONFIG\Services: NvStreamSvc => 2
MSCONFIG\Services: nvsvc => 3
MSCONFIG\Services: TapiSrv => 3
MSCONFIG\Services: TermService => 3
MSCONFIG\startupfolder: C:^Users^Michal^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RollerCoaster Tycoon 3 Registration.lnk => C:\Windows\pss\RollerCoaster Tycoon 3 Registration.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: ArcadeDeluxeAgent => "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "C:\Users\Michal\AppData\Roaming\Seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\Michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: mwlDaemon => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: VDownloader => "C:\Program Files\VDownloader\VDownloader.exe" /silent
========================= Accounts: ==========================
Administrator (S-1-5-21-4084760807-734797207-667986238-500 - Administrator - Disabled)
Guest (S-1-5-21-4084760807-734797207-667986238-501 - Limited - Disabled)
Michal (S-1-5-21-4084760807-734797207-667986238-1000 - Administrator - Enabled) => C:\Users\Michal
==================== Faulty Device Manager Devices =============
Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: SPDRIVER_1.37.0.1411
Description: SPDRIVER_1.37.0.1411
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SPDRIVER_1.37.0.1411
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Error: (11/23/2014 08:55:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SPDRIVER_1.37.0.1411 neuspěla při spuštění v důsledku následující chyby:
%%3
Error: (11/23/2014 08:54:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atksgt neuspěla při spuštění v důsledku následující chyby:
%%1275
Error: (11/23/2014 08:54:58 PM) (Source: Application Popup) (EventID: 875) (User: )
Description: Načtení ovladače atksgt.sys je blokováno.
Error: (11/23/2014 08:51:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:30 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:30 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:23:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SPDRIVER_1.37.0.1411 neuspěla při spuštění v důsledku následující chyby:
%%3
Error: (11/23/2014 08:23:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atksgt neuspěla při spuštění v důsledku následující chyby:
%%1275
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 530 @ 2.93GHz
Percentage of memory in use: 34%
Total physical RAM: 3959.06 MB
Available physical RAM: 2603.23 MB
Total Pagefile: 7916.3 MB
Available Pagefile: 6509.41 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:341.95 GB) (Free:167.48 GB) NTFS
Drive d: (DATA) (Fixed) (Total:342.59 GB) (Free:274.46 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 68064C08)
Partition 1: (Not Active) - (Size=14 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=342 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=342.6 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-11-2014
Ran by Michal at 2014-11-23 21:10:27
Running from C:\Users\Michal\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\uTorrent) (Version: 3.4.2.31536 - BitTorrent Inc.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_OMUI.cs-cz_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_OMUI.cs-cz_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_OMUI.cs-cz_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 33.1.0.1 - Comodo)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
FormatFactory 3.3.5.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.5.0 - Format Factory)
Free Convert MP4 To MP3 (remove only) (HKLM\...\Free Convert MP4 To MP3) (Version: - )
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0100-0405-0000-0000000FF1CE}_OMUI.cs-cz_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Language Pack 2007 - Czech/èeština (HKLM-x32\...\OMUI.cs-cz) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (Czech) (HKLM-x32\...\{95120000-00AF-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{99D7DE4C-2775-4B16-B155-7F09AE939E8E}) (Version: 9.7.0621 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mumble 1.2.8 (HKLM-x32\...\{0E784CFD-CEB1-42E1-9C42-FC2497DD653E}) (Version: 1.2.8 - Thorvald Natvig)
MyFreeCodec (HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MyFreeCodec) (Version: - )
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Plánování směn verze 1.0.0.23 (HKLM-x32\...\{51B687AD-E85A-444F-8F36-4C6C98E2DA7F}_is1) (Version: 1.0.0.23 - DUHA system spol. s r.o.)
Seznam Software (HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\SeznamInstall) (Version: - Seznam.cz)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{068B46A0-8858-4CEB-80BC-A4AE787A05FC}) (Version: 14.0.8089.726 - Microsoft Corporation)
WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
11-11-2014 15:08:04 Windows Update
13-11-2014 16:00:45 Windows Update
18-11-2014 15:34:04 Windows Update
19-11-2014 16:00:16 Windows Update
19-11-2014 18:03:10 Installed Mumble 1.2.8
23-11-2014 19:39:07 zoek.exe restore point
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2014-11-23 20:39 - 00000840 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {224A1666-D5C5-452A-8E1D-2567EAAFAD92} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd)
Task: {496C4587-2435-468F-8B01-397609EF3895} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [2014-07-19] (AVAST Software)
Task: {C962C654-D84E-4BE4-975E-F61FB2FB55BB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-17] (Adobe Systems Incorporated)
Task: {D1FCD371-3444-4EB1-96C8-393A8B4EE6D5} - System32\Tasks\Microsoft\Internet Explorer\Odstranit předchozí verze aplikace Internet Explorer => C:\Windows\SYSTEM32\ie4uinit.EXE [2014-11-06] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2009-12-14 03:19 - 2009-12-09 10:24 - 00076320 _____ () C:\OEM\USBDECTION\USBS3S4Detection.exe
2009-08-18 08:27 - 2009-08-18 08:27 - 00629280 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
2014-07-19 05:28 - 2014-07-19 05:28 - 00301152 _____ () C:\Program Files\Alwil Software\Avast5\aswProperty.dll
2014-11-23 19:22 - 2014-11-23 19:22 - 02903552 _____ () C:\Program Files\Alwil Software\Avast5\defs\14112301\algo.dll
2009-02-03 02:33 - 2009-02-03 02:33 - 00460199 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
2008-09-29 02:55 - 2008-09-29 02:55 - 01076224 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
2009-08-18 08:31 - 2009-08-18 08:31 - 00163840 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyHook.dll
2014-07-19 05:28 - 2014-07-19 05:28 - 19329904 _____ () C:\Program Files\Alwil Software\Avast5\libcef.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:444C53BA
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93DE1838
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\ProgramData\Temp:E3C56885
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: defragsvc => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: NvNetworkService => 2
MSCONFIG\Services: NvStreamSvc => 2
MSCONFIG\Services: nvsvc => 3
MSCONFIG\Services: TapiSrv => 3
MSCONFIG\Services: TermService => 3
MSCONFIG\startupfolder: C:^Users^Michal^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RollerCoaster Tycoon 3 Registration.lnk => C:\Windows\pss\RollerCoaster Tycoon 3 Registration.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: ArcadeDeluxeAgent => "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "C:\Users\Michal\AppData\Roaming\Seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\Michal\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: mwlDaemon => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: VDownloader => "C:\Program Files\VDownloader\VDownloader.exe" /silent
========================= Accounts: ==========================
Administrator (S-1-5-21-4084760807-734797207-667986238-500 - Administrator - Disabled)
Guest (S-1-5-21-4084760807-734797207-667986238-501 - Limited - Disabled)
Michal (S-1-5-21-4084760807-734797207-667986238-1000 - Administrator - Enabled) => C:\Users\Michal
==================== Faulty Device Manager Devices =============
Name: Myš Microsoft pro port PS/2
Description: Myš Microsoft pro port PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: SPDRIVER_1.37.0.1411
Description: SPDRIVER_1.37.0.1411
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SPDRIVER_1.37.0.1411
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Error: (11/23/2014 08:55:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SPDRIVER_1.37.0.1411 neuspěla při spuštění v důsledku následující chyby:
%%3
Error: (11/23/2014 08:54:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atksgt neuspěla při spuštění v důsledku následující chyby:
%%1275
Error: (11/23/2014 08:54:58 PM) (Source: Application Popup) (EventID: 875) (User: )
Description: Načtení ovladače atksgt.sys je blokováno.
Error: (11/23/2014 08:51:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:31 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:30 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:51:30 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (11/23/2014 08:23:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SPDRIVER_1.37.0.1411 neuspěla při spuštění v důsledku následující chyby:
%%3
Error: (11/23/2014 08:23:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atksgt neuspěla při spuštění v důsledku následující chyby:
%%1275
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 530 @ 2.93GHz
Percentage of memory in use: 34%
Total physical RAM: 3959.06 MB
Available physical RAM: 2603.23 MB
Total Pagefile: 7916.3 MB
Available Pagefile: 6509.41 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:341.95 GB) (Free:167.48 GB) NTFS
Drive d: (DATA) (Fixed) (Total:342.59 GB) (Free:274.46 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 68064C08)
Partition 1: (Not Active) - (Size=14 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=342 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=342.6 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Re: PC zahlceno reklamou, AVAST nestíhá
Jeste dejte FRST.txt
Re: PC zahlceno reklamou, AVAST nestíhá
pardon, nevšiml jsem si
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014
Ran by Michal (administrator) on MICHAL-PC on 23-11-2014 21:09:50
Running from C:\Users\Michal\Desktop
Loaded Profile: Michal (Available profiles: Michal)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(Acer) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
() C:\OEM\USBDECTION\USBS3S4Detection.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
(Acer Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-10-13] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8312352 2009-10-28] (Realtek Semiconductor)
HKLM-x32\...\Run: [JMB36X IDE Setup] => C:\Windows\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [261888 2009-08-12] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [629280 2009-08-18] ()
HKLM-x32\...\Run: [EgisTecLiveUpdate] => C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [199464 2009-08-04] (Egis Technology Inc.)
HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-11-12] (Acer Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MountPoints2: {addc2eed-6c44-11e2-a6ee-90fba6473217} - L:\autorun.exe
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll (Egis Technology Inc.)
ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll (Egis Technology Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKLM-x32 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7ACAW
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {093a15e6-f51d-4880-b251-c06bcf6fb819} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {435a85d6-e796-44e8-95d4-f9526d39561d} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... AW_csCZ408
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {737c4608-0901-4c02-bab6-0c812498932e} URL = http://search.seznam.cz/?q={searchTerms ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {954C8A18-B617-48FE-88EE-81F74884E33B} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {A65DE443-3B6F-4F27-9CFA-9A7FEE10B968} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {bdb2399d-ac77-47ee-a0c2-f18cd5c83c45} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {D6D5CBE7-675E-4B69-8262-7581E7E27C52} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {DEFD4737-A9B4-4C30-9A05-28D392925272} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {FBD768E4-1210-4FDE-986E-FCDC42772B67} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Tcpip\Parameters: [DhcpNameServer] 88.83.169.2 195.113.144.194
Tcpip\..\Interfaces\{A2ED3161-03D4-41C3-B361-DE7844F5C026}: [NameServer] 88.83.169.2,195.113.144.194
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @protectdisc.com/NPMPDRM -> C:\Program Files (x86)\Common Files\mpDRM\NPMPDRM.dll ( )
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF [2011-12-28]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx [2014-07-19]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-07-19] (AVAST Software)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [305448 2009-09-10] (Egis Technology Inc.)
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [File not signed]
R2 USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [76320 2009-12-09] ()
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-19] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-19] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-19] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-19] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-19] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-12-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-19] ()
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310728 2013-03-09] ()
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2010-12-03] ()
R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-27] (CACE Technologies, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [513080 2011-01-28] () [File not signed]
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
R3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [21504 2008-12-26] (Avnex)
U3 abodk0xg; C:\Windows\System32\Drivers\abodk0xg.sys [0 ] (Advanced Micro Devices)
S2 SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-23 21:09 - 2014-11-23 21:10 - 00014662 _____ () C:\Users\Michal\Desktop\FRST.txt
2014-11-23 21:09 - 2014-11-23 21:09 - 02118144 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe
2014-11-23 21:09 - 2014-11-23 21:09 - 00000000 ____D () C:\FRST
2014-11-23 21:08 - 2014-11-23 21:08 - 00015327 _____ () C:\Users\Michal\Desktop\LM.bat
2014-11-23 21:06 - 2014-11-23 21:08 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2014-11-23 21:06 - 2014-11-23 21:08 - 00029696 _____ () C:\Users\Michal\AppData\Local\MSGBOX.EXE
2014-11-23 20:53 - 2014-11-23 20:38 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-23 20:39 - 2014-11-23 20:55 - 00041268 _____ () C:\zoek-results.log
2014-11-23 20:38 - 2014-11-23 20:52 - 00000000 ____D () C:\zoek_backup
2014-11-23 20:37 - 2014-11-05 19:37 - 01294848 _____ () C:\Users\Michal\Downloads\zoek.exe
2014-11-23 20:37 - 2014-10-29 11:01 - 01424929 _____ () C:\Users\Michal\Downloads\zoek.com
2014-11-23 20:31 - 2014-11-23 20:31 - 00000000 _____ () C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial
2014-11-23 20:29 - 2014-11-23 20:37 - 02705050 _____ () C:\Users\Michal\Downloads\zoek.zip
2014-11-23 20:20 - 2014-11-23 20:22 - 00000000 ____D () C:\AdwCleaner
2014-11-23 20:19 - 2014-11-23 20:19 - 02140160 _____ () C:\Users\Michal\Downloads\adwcleaner_4.101.exe
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\rsit
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\Program Files\trend micro
2014-11-23 20:05 - 2014-11-23 20:06 - 01222144 _____ () C:\Users\Michal\Downloads\RSITx64.exe
2014-11-23 08:19 - 2014-11-23 20:54 - 00028640 _____ () C:\Windows\PFRO.log
2014-11-23 08:19 - 2014-11-23 20:54 - 00000280 _____ () C:\Windows\setupact.log
2014-11-23 08:19 - 2014-11-23 08:19 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-22 22:15 - 2014-11-22 22:15 - 00000000 ____D () C:\Users\Michal\Documents\FormatFactory
2014-11-22 17:47 - 2014-10-09 09:51 - 00120200 _____ () C:\Windows\SysWOW64\DLLDEV32i.dll
2014-11-22 17:46 - 2014-11-22 17:46 - 00057096 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll
2014-11-22 17:46 - 2014-11-22 17:46 - 00048392 _____ (COMODO CA Limited) C:\Windows\SysWOW64\certsentry.dll
2014-11-22 17:46 - 2014-11-22 17:46 - 00001080 _____ () C:\Users\Public\Desktop\Comodo Dragon.lnk
2014-11-22 17:46 - 2014-11-22 17:46 - 00000000 ____D () C:\Users\Michal\AppData\Local\Comodo
2014-11-22 17:46 - 2014-11-22 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2014-11-22 17:46 - 2014-11-22 17:46 - 00000000 ____D () C:\Program Files (x86)\Comodo
2014-11-22 17:40 - 2014-11-22 17:40 - 00001162 _____ () C:\Users\Michal\Desktop\Format Factory.lnk
2014-11-22 17:40 - 2014-11-22 17:40 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2014-11-22 17:40 - 2014-11-22 17:40 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2014-11-22 17:38 - 2014-11-22 17:39 - 60029663 _____ () C:\Users\Michal\Downloads\ffactory-setup.exe
2014-11-22 17:36 - 2014-11-22 17:37 - 60024675 _____ () C:\Users\Michal\Downloads\ffactory-setup.exe.aauol63.partial
2014-11-22 17:34 - 2014-11-22 17:35 - 74364549 _____ () C:\Users\Michal\Downloads\MediaCoder-0.8.32.5660.exe.2ibbu3i.partial
2014-11-22 17:21 - 2014-11-22 17:21 - 00000161 _____ () C:\test.txt
2014-11-22 17:17 - 2014-11-22 17:17 - 05372552 _____ () C:\Users\Michal\Downloads\m-mp4-to-mp3-converter.exe
2014-11-22 17:12 - 2014-11-22 17:13 - 74319661 _____ (Mediatronic Pty Ltd) C:\Users\Michal\Downloads\MediaCoder-0.8.32.5660.exe.81uaybm.partial
2014-11-22 15:10 - 2014-11-22 15:10 - 00000000 ____D () C:\Users\Michal\AppData\Local\A
2014-11-22 15:09 - 2014-11-22 15:09 - 00001304 _____ () C:\Users\Public\Desktop\Free Convert MP4 To MP3.lnk
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Free Convert MP4 To MP3
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Program Files (x86)\4dots Software
2014-11-22 15:01 - 2014-11-22 15:01 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\YoutubeToMp3Converter
2014-11-22 15:00 - 2014-11-22 15:00 - 01235768 _____ (Ellora Assets Corporation ) C:\Users\Michal\Downloads\FreemakeYouTubeToMP3BoomSetup.exe
2014-11-22 14:41 - 2014-11-22 14:41 - 00000000 ____D () C:\Users\Michal\Documents\Any Video Converter
2014-11-21 19:05 - 2014-11-21 19:05 - 00000000 ____D () C:\Users\Michal\Desktop\2
2014-11-19 19:09 - 2014-11-19 19:03 - 00000996 _____ () C:\Users\Michal\Desktop\Mumble.lnk
2014-11-19 19:03 - 2014-11-19 19:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
2014-11-19 19:03 - 2014-11-19 19:03 - 00000000 ____D () C:\Program Files (x86)\Mumble
2014-11-19 19:02 - 2014-11-19 19:02 - 16995328 _____ () C:\Users\Michal\Downloads\mumble-1.2.8.msi
2014-11-19 14:20 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 14:20 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 14:20 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 14:20 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-13 17:33 - 2014-11-13 17:33 - 00000000 __SHD () C:\Users\Michal\AppData\Local\EmieBrowserModeList
2014-11-13 15:51 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-13 15:51 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-13 15:51 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-13 15:51 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-13 15:51 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-13 15:51 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-13 15:51 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-13 15:51 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-13 15:51 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-13 15:51 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-13 15:51 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-13 15:51 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-13 15:51 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-13 15:51 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-13 15:51 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-13 15:51 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-13 15:51 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-13 15:51 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-13 15:51 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-13 15:51 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-13 15:51 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-13 15:51 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-13 15:51 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-13 15:51 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-13 15:51 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-13 15:51 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-13 15:51 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-13 15:51 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-13 15:51 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-13 15:51 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-13 15:51 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-13 15:51 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-13 15:51 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-13 15:51 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-13 15:51 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-13 15:51 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-13 15:51 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-13 15:51 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-13 15:51 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-13 15:51 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-13 15:51 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-13 15:51 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-13 15:51 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-13 15:51 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-13 15:51 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-13 15:51 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-13 15:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-13 15:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-13 15:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-13 15:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-13 15:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-13 15:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-13 15:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-13 15:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-13 15:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-13 15:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-13 15:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-13 15:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-13 15:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-13 15:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-13 15:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-13 15:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-13 15:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-13 15:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-13 15:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-13 15:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-13 15:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-13 15:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-13 15:49 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-13 15:49 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-13 15:49 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-13 15:49 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-13 15:49 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-13 15:49 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-13 15:49 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-13 15:49 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-13 15:49 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-13 15:49 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-13 15:49 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-13 15:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-13 15:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-13 15:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-13 15:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-13 15:49 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-13 15:49 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-09 09:40 - 2014-11-09 09:40 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-11-09 09:40 - 2014-11-09 09:40 - 00001983 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-11-02 07:33 - 2014-11-02 08:46 - 00000000 ____D () C:\Users\Michal\Desktop\Mira notas
2014-11-01 18:08 - 2014-11-01 18:08 - 00001067 _____ () C:\Users\Public\Desktop\Plánování směn.lnk
2014-11-01 18:08 - 2014-11-01 18:08 - 00000000 ____D () C:\Program Files (x86)\DUHA system
2014-11-01 18:07 - 2014-04-25 19:34 - 00000000 ____D () C:\Users\Michal\Downloads\Planovani.smen.v1.0.0.24.Czech.Incl.Keygen-rG
2014-11-01 13:50 - 2014-11-01 13:55 - 00000000 ____D () C:\Users\Michal\Desktop\Tiger temple
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-23 21:02 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-23 21:02 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-23 20:59 - 2010-12-02 01:04 - 00668882 _____ () C:\Windows\system32\perfh005.dat
2014-11-23 20:59 - 2010-12-02 01:04 - 00141542 _____ () C:\Windows\system32\perfc005.dat
2014-11-23 20:59 - 2009-07-14 06:13 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-23 20:58 - 2010-12-01 16:13 - 01886743 _____ () C:\Windows\WindowsUpdate.log
2014-11-23 20:55 - 2014-03-22 18:52 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-11-23 20:54 - 2010-12-01 16:21 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-23 20:54 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-23 20:51 - 2010-12-01 16:22 - 00000000 ____D () C:\Users\Michal
2014-11-23 20:51 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-11-23 20:51 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-11-23 20:19 - 2013-10-30 18:54 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Mumble
2014-11-23 20:14 - 2013-10-26 10:35 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-23 19:41 - 2009-07-14 03:34 - 00000612 _____ () C:\Windows\win.ini
2014-11-23 08:21 - 2014-01-13 20:43 - 00000000 ____D () C:\Program Files\VDownloader
2014-11-22 19:32 - 2012-10-07 09:42 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 17:48 - 2009-07-14 05:45 - 00435392 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-22 17:47 - 2010-12-01 16:22 - 00113312 _____ () C:\Users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-22 13:42 - 2011-03-12 18:15 - 00000000 ____D () C:\Users\Michal\Desktop\NoveFilmy
2014-11-22 07:47 - 2011-12-28 15:03 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-17 01:22 - 2013-10-26 10:35 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-17 01:22 - 2013-10-26 10:35 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-17 01:22 - 2011-05-26 18:29 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-17 01:22 - 2011-01-24 21:12 - 00000000 ____D () C:\Users\Michal\AppData\Local\Adobe
2014-11-15 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-13 17:23 - 2014-05-06 16:00 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-13 17:07 - 2009-11-18 22:48 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-13 17:04 - 2013-08-15 16:01 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-13 17:02 - 2010-12-03 15:41 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-09 09:40 - 2009-11-18 23:07 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-09 09:40 - 2009-11-18 23:07 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-11-04 14:30 - 2011-02-21 13:07 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-01 15:19 - 2010-12-01 16:35 - 00000000 ____D () C:\Users\Michal\AppData\Local\Google
2014-11-01 15:17 - 2014-07-25 16:31 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\uTorrent
2014-11-01 15:17 - 2011-08-08 16:55 - 00000000 ____D () C:\Windows\Minidump
2014-11-01 09:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-15 17:13
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014
Ran by Michal (administrator) on MICHAL-PC on 23-11-2014 21:09:50
Running from C:\Users\Michal\Desktop
Loaded Profile: Michal (Available profiles: Michal)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(Acer) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
() C:\OEM\USBDECTION\USBS3S4Detection.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
(Acer Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-10-13] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8312352 2009-10-28] (Realtek Semiconductor)
HKLM-x32\...\Run: [JMB36X IDE Setup] => C:\Windows\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [261888 2009-08-12] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [629280 2009-08-18] ()
HKLM-x32\...\Run: [EgisTecLiveUpdate] => C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [199464 2009-08-04] (Egis Technology Inc.)
HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-11-12] (Acer Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4085896 2014-07-31] (AVAST Software)
HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MountPoints2: {addc2eed-6c44-11e2-a6ee-90fba6473217} - L:\autorun.exe
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll (Egis Technology Inc.)
ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll (Egis Technology Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-4084760807-734797207-667986238-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKLM-x32 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7ACAW
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {093a15e6-f51d-4880-b251-c06bcf6fb819} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {435a85d6-e796-44e8-95d4-f9526d39561d} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... AW_csCZ408
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {737c4608-0901-4c02-bab6-0c812498932e} URL = http://search.seznam.cz/?q={searchTerms ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {954C8A18-B617-48FE-88EE-81F74884E33B} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {A65DE443-3B6F-4F27-9CFA-9A7FEE10B968} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {bdb2399d-ac77-47ee-a0c2-f18cd5c83c45} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {D6D5CBE7-675E-4B69-8262-7581E7E27C52} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {DEFD4737-A9B4-4C30-9A05-28D392925272} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
SearchScopes: HKU\S-1-5-21-4084760807-734797207-667986238-1000 -> {FBD768E4-1210-4FDE-986E-FCDC42772B67} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Tcpip\Parameters: [DhcpNameServer] 88.83.169.2 195.113.144.194
Tcpip\..\Interfaces\{A2ED3161-03D4-41C3-B361-DE7844F5C026}: [NameServer] 88.83.169.2,195.113.144.194
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @protectdisc.com/NPMPDRM -> C:\Program Files (x86)\Common Files\mpDRM\NPMPDRM.dll ( )
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF [2011-12-28]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx [2014-07-19]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-07-19] (AVAST Software)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [305448 2009-09-10] (Egis Technology Inc.)
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [File not signed]
R2 USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [76320 2009-12-09] ()
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-19] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-19] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-19] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-19] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-19] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-12-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-19] ()
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310728 2013-03-09] ()
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2010-12-03] ()
R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-27] (CACE Technologies, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [513080 2011-01-28] () [File not signed]
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
R3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [21504 2008-12-26] (Avnex)
U3 abodk0xg; C:\Windows\System32\Drivers\abodk0xg.sys [0 ] (Advanced Micro Devices)
S2 SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-23 21:09 - 2014-11-23 21:10 - 00014662 _____ () C:\Users\Michal\Desktop\FRST.txt
2014-11-23 21:09 - 2014-11-23 21:09 - 02118144 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe
2014-11-23 21:09 - 2014-11-23 21:09 - 00000000 ____D () C:\FRST
2014-11-23 21:08 - 2014-11-23 21:08 - 00015327 _____ () C:\Users\Michal\Desktop\LM.bat
2014-11-23 21:06 - 2014-11-23 21:08 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2014-11-23 21:06 - 2014-11-23 21:08 - 00029696 _____ () C:\Users\Michal\AppData\Local\MSGBOX.EXE
2014-11-23 20:53 - 2014-11-23 20:38 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-23 20:39 - 2014-11-23 20:55 - 00041268 _____ () C:\zoek-results.log
2014-11-23 20:38 - 2014-11-23 20:52 - 00000000 ____D () C:\zoek_backup
2014-11-23 20:37 - 2014-11-05 19:37 - 01294848 _____ () C:\Users\Michal\Downloads\zoek.exe
2014-11-23 20:37 - 2014-10-29 11:01 - 01424929 _____ () C:\Users\Michal\Downloads\zoek.com
2014-11-23 20:31 - 2014-11-23 20:31 - 00000000 _____ () C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial
2014-11-23 20:29 - 2014-11-23 20:37 - 02705050 _____ () C:\Users\Michal\Downloads\zoek.zip
2014-11-23 20:20 - 2014-11-23 20:22 - 00000000 ____D () C:\AdwCleaner
2014-11-23 20:19 - 2014-11-23 20:19 - 02140160 _____ () C:\Users\Michal\Downloads\adwcleaner_4.101.exe
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\rsit
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\Program Files\trend micro
2014-11-23 20:05 - 2014-11-23 20:06 - 01222144 _____ () C:\Users\Michal\Downloads\RSITx64.exe
2014-11-23 08:19 - 2014-11-23 20:54 - 00028640 _____ () C:\Windows\PFRO.log
2014-11-23 08:19 - 2014-11-23 20:54 - 00000280 _____ () C:\Windows\setupact.log
2014-11-23 08:19 - 2014-11-23 08:19 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-22 22:15 - 2014-11-22 22:15 - 00000000 ____D () C:\Users\Michal\Documents\FormatFactory
2014-11-22 17:47 - 2014-10-09 09:51 - 00120200 _____ () C:\Windows\SysWOW64\DLLDEV32i.dll
2014-11-22 17:46 - 2014-11-22 17:46 - 00057096 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll
2014-11-22 17:46 - 2014-11-22 17:46 - 00048392 _____ (COMODO CA Limited) C:\Windows\SysWOW64\certsentry.dll
2014-11-22 17:46 - 2014-11-22 17:46 - 00001080 _____ () C:\Users\Public\Desktop\Comodo Dragon.lnk
2014-11-22 17:46 - 2014-11-22 17:46 - 00000000 ____D () C:\Users\Michal\AppData\Local\Comodo
2014-11-22 17:46 - 2014-11-22 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2014-11-22 17:46 - 2014-11-22 17:46 - 00000000 ____D () C:\Program Files (x86)\Comodo
2014-11-22 17:40 - 2014-11-22 17:40 - 00001162 _____ () C:\Users\Michal\Desktop\Format Factory.lnk
2014-11-22 17:40 - 2014-11-22 17:40 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2014-11-22 17:40 - 2014-11-22 17:40 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2014-11-22 17:38 - 2014-11-22 17:39 - 60029663 _____ () C:\Users\Michal\Downloads\ffactory-setup.exe
2014-11-22 17:36 - 2014-11-22 17:37 - 60024675 _____ () C:\Users\Michal\Downloads\ffactory-setup.exe.aauol63.partial
2014-11-22 17:34 - 2014-11-22 17:35 - 74364549 _____ () C:\Users\Michal\Downloads\MediaCoder-0.8.32.5660.exe.2ibbu3i.partial
2014-11-22 17:21 - 2014-11-22 17:21 - 00000161 _____ () C:\test.txt
2014-11-22 17:17 - 2014-11-22 17:17 - 05372552 _____ () C:\Users\Michal\Downloads\m-mp4-to-mp3-converter.exe
2014-11-22 17:12 - 2014-11-22 17:13 - 74319661 _____ (Mediatronic Pty Ltd) C:\Users\Michal\Downloads\MediaCoder-0.8.32.5660.exe.81uaybm.partial
2014-11-22 15:10 - 2014-11-22 15:10 - 00000000 ____D () C:\Users\Michal\AppData\Local\A
2014-11-22 15:09 - 2014-11-22 15:09 - 00001304 _____ () C:\Users\Public\Desktop\Free Convert MP4 To MP3.lnk
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Free Convert MP4 To MP3
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Program Files (x86)\4dots Software
2014-11-22 15:01 - 2014-11-22 15:01 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\YoutubeToMp3Converter
2014-11-22 15:00 - 2014-11-22 15:00 - 01235768 _____ (Ellora Assets Corporation ) C:\Users\Michal\Downloads\FreemakeYouTubeToMP3BoomSetup.exe
2014-11-22 14:41 - 2014-11-22 14:41 - 00000000 ____D () C:\Users\Michal\Documents\Any Video Converter
2014-11-21 19:05 - 2014-11-21 19:05 - 00000000 ____D () C:\Users\Michal\Desktop\2
2014-11-19 19:09 - 2014-11-19 19:03 - 00000996 _____ () C:\Users\Michal\Desktop\Mumble.lnk
2014-11-19 19:03 - 2014-11-19 19:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
2014-11-19 19:03 - 2014-11-19 19:03 - 00000000 ____D () C:\Program Files (x86)\Mumble
2014-11-19 19:02 - 2014-11-19 19:02 - 16995328 _____ () C:\Users\Michal\Downloads\mumble-1.2.8.msi
2014-11-19 14:20 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 14:20 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 14:20 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 14:20 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-13 17:33 - 2014-11-13 17:33 - 00000000 __SHD () C:\Users\Michal\AppData\Local\EmieBrowserModeList
2014-11-13 15:51 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-13 15:51 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-13 15:51 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-13 15:51 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-13 15:51 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-13 15:51 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-13 15:51 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-13 15:51 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-13 15:51 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-13 15:51 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-13 15:51 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-13 15:51 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-13 15:51 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-13 15:51 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-13 15:51 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-13 15:51 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-13 15:51 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-13 15:51 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-13 15:51 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-13 15:51 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-13 15:51 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-13 15:51 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-13 15:51 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-13 15:51 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-13 15:51 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-13 15:51 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-13 15:51 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-13 15:51 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-13 15:51 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-13 15:51 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-13 15:51 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-13 15:51 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-13 15:51 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-13 15:51 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-13 15:51 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-13 15:51 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-13 15:51 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-13 15:51 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-13 15:51 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-13 15:51 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-13 15:51 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-13 15:51 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-13 15:51 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-13 15:51 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-13 15:51 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-13 15:51 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-13 15:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-13 15:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-13 15:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-13 15:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-13 15:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-13 15:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-13 15:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-13 15:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-13 15:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-13 15:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-13 15:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-13 15:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-13 15:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-13 15:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-13 15:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-13 15:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-13 15:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-13 15:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-13 15:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-13 15:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-13 15:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-13 15:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-13 15:49 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-13 15:49 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-13 15:49 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-13 15:49 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-13 15:49 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-13 15:49 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-13 15:49 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-13 15:49 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-13 15:49 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-13 15:49 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-13 15:49 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-13 15:49 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-13 15:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-13 15:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-13 15:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-13 15:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-13 15:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-13 15:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-13 15:49 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-13 15:49 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-09 09:40 - 2014-11-09 09:40 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-11-09 09:40 - 2014-11-09 09:40 - 00001983 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-11-02 07:33 - 2014-11-02 08:46 - 00000000 ____D () C:\Users\Michal\Desktop\Mira notas
2014-11-01 18:08 - 2014-11-01 18:08 - 00001067 _____ () C:\Users\Public\Desktop\Plánování směn.lnk
2014-11-01 18:08 - 2014-11-01 18:08 - 00000000 ____D () C:\Program Files (x86)\DUHA system
2014-11-01 18:07 - 2014-04-25 19:34 - 00000000 ____D () C:\Users\Michal\Downloads\Planovani.smen.v1.0.0.24.Czech.Incl.Keygen-rG
2014-11-01 13:50 - 2014-11-01 13:55 - 00000000 ____D () C:\Users\Michal\Desktop\Tiger temple
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-23 21:02 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-23 21:02 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-23 20:59 - 2010-12-02 01:04 - 00668882 _____ () C:\Windows\system32\perfh005.dat
2014-11-23 20:59 - 2010-12-02 01:04 - 00141542 _____ () C:\Windows\system32\perfc005.dat
2014-11-23 20:59 - 2009-07-14 06:13 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-23 20:58 - 2010-12-01 16:13 - 01886743 _____ () C:\Windows\WindowsUpdate.log
2014-11-23 20:55 - 2014-03-22 18:52 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-11-23 20:54 - 2010-12-01 16:21 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-23 20:54 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-23 20:51 - 2010-12-01 16:22 - 00000000 ____D () C:\Users\Michal
2014-11-23 20:51 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-11-23 20:51 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-11-23 20:19 - 2013-10-30 18:54 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Mumble
2014-11-23 20:14 - 2013-10-26 10:35 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-23 19:41 - 2009-07-14 03:34 - 00000612 _____ () C:\Windows\win.ini
2014-11-23 08:21 - 2014-01-13 20:43 - 00000000 ____D () C:\Program Files\VDownloader
2014-11-22 19:32 - 2012-10-07 09:42 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 17:48 - 2009-07-14 05:45 - 00435392 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-22 17:47 - 2010-12-01 16:22 - 00113312 _____ () C:\Users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-22 13:42 - 2011-03-12 18:15 - 00000000 ____D () C:\Users\Michal\Desktop\NoveFilmy
2014-11-22 07:47 - 2011-12-28 15:03 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-17 01:22 - 2013-10-26 10:35 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-17 01:22 - 2013-10-26 10:35 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-17 01:22 - 2011-05-26 18:29 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-17 01:22 - 2011-01-24 21:12 - 00000000 ____D () C:\Users\Michal\AppData\Local\Adobe
2014-11-15 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-13 17:23 - 2014-05-06 16:00 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-13 17:07 - 2009-11-18 22:48 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-13 17:04 - 2013-08-15 16:01 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-13 17:02 - 2010-12-03 15:41 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-09 09:40 - 2009-11-18 23:07 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-09 09:40 - 2009-11-18 23:07 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-11-04 14:30 - 2011-02-21 13:07 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-01 15:19 - 2010-12-01 16:35 - 00000000 ____D () C:\Users\Michal\AppData\Local\Google
2014-11-01 15:17 - 2014-07-25 16:31 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\uTorrent
2014-11-01 15:17 - 2011-08-08 16:55 - 00000000 ____D () C:\Windows\Minidump
2014-11-01 09:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-15 17:13
==================== End Of Log ============================
Re: PC zahlceno reklamou, AVAST nestíhá

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start CloseProcesses: HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-11-12] (Acer Corp.) HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MountPoints2: {addc2eed-6c44-11e2-a6ee-90fba6473217} - L:\autorun.exe Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File S2 SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [X] 2014-11-23 21:09 - 2014-11-23 21:10 - 00014662 _____ () C:\Users\Michal\Desktop\FRST.txt 2014-11-23 21:08 - 2014-11-23 21:08 - 00015327 _____ () C:\Users\Michal\Desktop\LM.bat 2014-11-23 21:06 - 2014-11-23 21:08 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe 2014-11-23 21:06 - 2014-11-23 21:08 - 00029696 _____ () C:\Users\Michal\AppData\Local\MSGBOX.EXE 2014-11-23 20:53 - 2014-11-23 20:38 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-11-23 20:39 - 2014-11-23 20:55 - 00041268 _____ () C:\zoek-results.log 2014-11-23 20:38 - 2014-11-23 20:52 - 00000000 ____D () C:\zoek_backup 2014-11-23 20:37 - 2014-11-05 19:37 - 01294848 _____ () C:\Users\Michal\Downloads\zoek.exe 2014-11-23 20:37 - 2014-10-29 11:01 - 01424929 _____ () C:\Users\Michal\Downloads\zoek.com 2014-11-23 20:31 - 2014-11-23 20:31 - 00000000 _____ () C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial 2014-11-23 20:29 - 2014-11-23 20:37 - 02705050 _____ () C:\Users\Michal\Downloads\zoek.zip 2014-11-23 20:20 - 2014-11-23 20:22 - 00000000 ____D () C:\AdwCleaner 2014-11-23 20:19 - 2014-11-23 20:19 - 02140160 _____ () C:\Users\Michal\Downloads\adwcleaner_4.101.exe 2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\rsit 2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\Program Files\trend micro 2014-11-23 20:05 - 2014-11-23 20:06 - 01222144 _____ () C:\Users\Michal\Downloads\RSITx64.exe 2014-11-23 08:19 - 2014-11-23 20:54 - 00028640 _____ () C:\Windows\PFRO.log 2014-11-23 08:19 - 2014-11-23 20:54 - 00000280 _____ () C:\Windows\setupact.log 2014-11-23 08:19 - 2014-11-23 08:19 - 00000000 _____ () C:\Windows\setuperr.log AlternateDataStreams: C:\ProgramData\Temp:0B9176C0 AlternateDataStreams: C:\ProgramData\Temp:444C53BA AlternateDataStreams: C:\ProgramData\Temp:4CF61E54 AlternateDataStreams: C:\ProgramData\Temp:4D066AD2 AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F AlternateDataStreams: C:\ProgramData\Temp:93DE1838 AlternateDataStreams: C:\ProgramData\Temp:AB689DEA AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D AlternateDataStreams: C:\ProgramData\Temp:E3C56885 Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Hosts: EmptyTemp: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: PC zahlceno reklamou, AVAST nestíhá
zde je
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-11-2014
Ran by Michal at 2014-11-23 21:23:20 Run:1
Running from C:\Users\Michal\Desktop
Loaded Profile: Michal (Available profiles: Michal)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-11-12] (Acer Corp.)
HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MountPoints2: {addc2eed-6c44-11e2-a6ee-90fba6473217} - L:\autorun.exe
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
S2 SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [X]
2014-11-23 21:09 - 2014-11-23 21:10 - 00014662 _____ () C:\Users\Michal\Desktop\FRST.txt
2014-11-23 21:08 - 2014-11-23 21:08 - 00015327 _____ () C:\Users\Michal\Desktop\LM.bat
2014-11-23 21:06 - 2014-11-23 21:08 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2014-11-23 21:06 - 2014-11-23 21:08 - 00029696 _____ () C:\Users\Michal\AppData\Local\MSGBOX.EXE
2014-11-23 20:53 - 2014-11-23 20:38 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-23 20:39 - 2014-11-23 20:55 - 00041268 _____ () C:\zoek-results.log
2014-11-23 20:38 - 2014-11-23 20:52 - 00000000 ____D () C:\zoek_backup
2014-11-23 20:37 - 2014-11-05 19:37 - 01294848 _____ () C:\Users\Michal\Downloads\zoek.exe
2014-11-23 20:37 - 2014-10-29 11:01 - 01424929 _____ () C:\Users\Michal\Downloads\zoek.com
2014-11-23 20:31 - 2014-11-23 20:31 - 00000000 _____ () C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial
2014-11-23 20:29 - 2014-11-23 20:37 - 02705050 _____ () C:\Users\Michal\Downloads\zoek.zip
2014-11-23 20:20 - 2014-11-23 20:22 - 00000000 ____D () C:\AdwCleaner
2014-11-23 20:19 - 2014-11-23 20:19 - 02140160 _____ () C:\Users\Michal\Downloads\adwcleaner_4.101.exe
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\rsit
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\Program Files\trend micro
2014-11-23 20:05 - 2014-11-23 20:06 - 01222144 _____ () C:\Users\Michal\Downloads\RSITx64.exe
2014-11-23 08:19 - 2014-11-23 20:54 - 00028640 _____ () C:\Windows\PFRO.log
2014-11-23 08:19 - 2014-11-23 20:54 - 00000280 _____ () C:\Windows\setupact.log
2014-11-23 08:19 - 2014-11-23 08:19 - 00000000 _____ () C:\Windows\setuperr.log
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:444C53BA
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93DE1838
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\ProgramData\Temp:E3C56885
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\PlayMovie => value deleted successfully.
"HKU\S-1-5-21-4084760807-734797207-667986238-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{addc2eed-6c44-11e2-a6ee-90fba6473217}" => Key deleted successfully.
"HKCR\CLSID\{addc2eed-6c44-11e2-a6ee-90fba6473217}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully.
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
SPDRIVER_1.37.0.1411 => Service deleted successfully.
C:\Users\Michal\Desktop\FRST.txt => Moved successfully.
C:\Users\Michal\Desktop\LM.bat => Moved successfully.
C:\Users\Michal\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Users\Michal\AppData\Local\MSGBOX.EXE => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Michal\Downloads\zoek.exe => Moved successfully.
C:\Users\Michal\Downloads\zoek.com => Moved successfully.
C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial => Moved successfully.
C:\Users\Michal\Downloads\zoek.zip => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Michal\Downloads\adwcleaner_4.101.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\Michal\Downloads\RSITx64.exe => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\Windows\setupact.log => Moved successfully.
C:\Windows\setuperr.log => Moved successfully.
C:\ProgramData\Temp => ":0B9176C0" ADS removed successfully.
C:\ProgramData\Temp => ":444C53BA" ADS removed successfully.
C:\ProgramData\Temp => ":4CF61E54" ADS removed successfully.
C:\ProgramData\Temp => ":4D066AD2" ADS removed successfully.
C:\ProgramData\Temp => ":5D7E5A8F" ADS removed successfully.
C:\ProgramData\Temp => ":93DE1838" ADS removed successfully.
C:\ProgramData\Temp => ":AB689DEA" ADS removed successfully.
C:\ProgramData\Temp => ":ABE89FFE" ADS removed successfully.
C:\ProgramData\Temp => ":E1F04E8D" ADS removed successfully.
C:\ProgramData\Temp => ":E3C56885" ADS removed successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 13.4 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-11-2014
Ran by Michal at 2014-11-23 21:23:20 Run:1
Running from C:\Users\Michal\Desktop
Loaded Profile: Michal (Available profiles: Michal)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-11-12] (Acer Corp.)
HKU\S-1-5-21-4084760807-734797207-667986238-1000\...\MountPoints2: {addc2eed-6c44-11e2-a6ee-90fba6473217} - L:\autorun.exe
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
S2 SPDRIVER_1.37.0.1411; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1411\jsdrv.sys [X]
2014-11-23 21:09 - 2014-11-23 21:10 - 00014662 _____ () C:\Users\Michal\Desktop\FRST.txt
2014-11-23 21:08 - 2014-11-23 21:08 - 00015327 _____ () C:\Users\Michal\Desktop\LM.bat
2014-11-23 21:06 - 2014-11-23 21:08 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2014-11-23 21:06 - 2014-11-23 21:08 - 00029696 _____ () C:\Users\Michal\AppData\Local\MSGBOX.EXE
2014-11-23 20:53 - 2014-11-23 20:38 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-23 20:39 - 2014-11-23 20:55 - 00041268 _____ () C:\zoek-results.log
2014-11-23 20:38 - 2014-11-23 20:52 - 00000000 ____D () C:\zoek_backup
2014-11-23 20:37 - 2014-11-05 19:37 - 01294848 _____ () C:\Users\Michal\Downloads\zoek.exe
2014-11-23 20:37 - 2014-10-29 11:01 - 01424929 _____ () C:\Users\Michal\Downloads\zoek.com
2014-11-23 20:31 - 2014-11-23 20:31 - 00000000 _____ () C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial
2014-11-23 20:29 - 2014-11-23 20:37 - 02705050 _____ () C:\Users\Michal\Downloads\zoek.zip
2014-11-23 20:20 - 2014-11-23 20:22 - 00000000 ____D () C:\AdwCleaner
2014-11-23 20:19 - 2014-11-23 20:19 - 02140160 _____ () C:\Users\Michal\Downloads\adwcleaner_4.101.exe
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\rsit
2014-11-23 20:06 - 2014-11-23 20:06 - 00000000 ____D () C:\Program Files\trend micro
2014-11-23 20:05 - 2014-11-23 20:06 - 01222144 _____ () C:\Users\Michal\Downloads\RSITx64.exe
2014-11-23 08:19 - 2014-11-23 20:54 - 00028640 _____ () C:\Windows\PFRO.log
2014-11-23 08:19 - 2014-11-23 20:54 - 00000280 _____ () C:\Windows\setupact.log
2014-11-23 08:19 - 2014-11-23 08:19 - 00000000 _____ () C:\Windows\setuperr.log
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:444C53BA
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93DE1838
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\ProgramData\Temp:E3C56885
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\PlayMovie => value deleted successfully.
"HKU\S-1-5-21-4084760807-734797207-667986238-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{addc2eed-6c44-11e2-a6ee-90fba6473217}" => Key deleted successfully.
"HKCR\CLSID\{addc2eed-6c44-11e2-a6ee-90fba6473217}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully.
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
SPDRIVER_1.37.0.1411 => Service deleted successfully.
C:\Users\Michal\Desktop\FRST.txt => Moved successfully.
C:\Users\Michal\Desktop\LM.bat => Moved successfully.
C:\Users\Michal\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Users\Michal\AppData\Local\MSGBOX.EXE => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Michal\Downloads\zoek.exe => Moved successfully.
C:\Users\Michal\Downloads\zoek.com => Moved successfully.
C:\Users\Michal\Downloads\zoek.rar.6k7qyw3.partial => Moved successfully.
C:\Users\Michal\Downloads\zoek.zip => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Michal\Downloads\adwcleaner_4.101.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\Michal\Downloads\RSITx64.exe => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\Windows\setupact.log => Moved successfully.
C:\Windows\setuperr.log => Moved successfully.
C:\ProgramData\Temp => ":0B9176C0" ADS removed successfully.
C:\ProgramData\Temp => ":444C53BA" ADS removed successfully.
C:\ProgramData\Temp => ":4CF61E54" ADS removed successfully.
C:\ProgramData\Temp => ":4D066AD2" ADS removed successfully.
C:\ProgramData\Temp => ":5D7E5A8F" ADS removed successfully.
C:\ProgramData\Temp => ":93DE1838" ADS removed successfully.
C:\ProgramData\Temp => ":AB689DEA" ADS removed successfully.
C:\ProgramData\Temp => ":ABE89FFE" ADS removed successfully.
C:\ProgramData\Temp => ":E1F04E8D" ADS removed successfully.
C:\ProgramData\Temp => ":E3C56885" ADS removed successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 13.4 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Re: PC zahlceno reklamou, AVAST nestíhá
Tak jeste uklidime
DelFix https://toolslib.net/downloads/finish/2/
Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Ponechte zatrzitkou pouze u volby Remote disinfection tools
- Kliknete na Run

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: PC zahlceno reklamou, AVAST nestíhá
nejsou, moc děkuji za váš čas a pomoc!!!