Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomalené PC,vyskakující okna a hlášení viru.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Zpomalené PC,vyskakující okna a hlášení viru.

#1 Příspěvek od plch »

Prosím o kontrolu. Zpomalilo se mi PC,na internetu mi vyskakují okna.

Vkládám log z RSIT. Předem díky.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pepa at 2014-12-08 19:42:05
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 144 GB (68%) free of 210 GB
Total RAM: 2934 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:42:12, on 8.12.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Users\Pepa\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Pepa.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: 166090e0f32601317e4e5118752c52d60061752 - {11111111-1111-1111-1111-110611171152} - (no file)
O2 - BHO: Ask Toolbar BHO - {5347542D-5637-006A-76A7-7A786E7484D7} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: (no name) - {5347542D-5637-006A-76A7-7A786E7484D7} - (no file)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKCU\..\Run: [GUDelayStartup] "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10455 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {0E4080A8-99B5-426D-8562-517D7BA07514}
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {7EF64271-A211-42A0-8A3F-B60E5A9331C2}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Internet Speed Checker\8fd53764-18e4-45e6-850f-6c1866de0a58.exe" 001726 014825A1F0EC42ACB43FE0ED15955712IE 61752 1415700896 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 Internet Speed Checker
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Internet Speed Checker\fbdbf6ea-9d9d-4461-98e0-a928bd299d9d.exe" /agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=014825A1F0EC42ACB43FE0ED15955712IE /verifier=32f7f90ab19831c2dc685910c5eecee9 /installerversion=1_35_09_29 /installationtime=1415700896 /statsdomain=http://stats.newonlinedatastack.com /errorsdomain=http://errors.newonlinedatastack.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedatastack.com /runfrom='task' /externallog=''
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k HPService
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {2E346C69-AD8B-4D91-861C-C549F92BD9DC}
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
szndesktop.exe default start
"C:\Users\Pepa\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "-577480781-1104800086-1378273296159562060520552391051401245128-1708295921-954664121
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Glary Utilities 5\Integrator.exe" /autostart
"c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\Macromed\Flash\FlashUtil64_15_0_0_239_ActiveX.exe -Embedding
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:8156 CREDAT:267521 /prefetch:2
C:\Windows\system32\AUDIODG.EXE 0x75c
"C:\Users\Pepa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4NBUIINA\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\8fd53764-18e4-45e6-850f-6c1866de0a58.job - C:\Program Files (x86)\Internet Speed Checker\8fd53764-18e4-45e6-850f-6c1866de0a58.exe 001726 014825A1F0EC42ACB43FE0ED15955712IE 61752 1415700896 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 Internet Speed Checker
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-1.job - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /rawdata=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
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-11.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-11.exe /rawdata=ont1yOYfonaJRj5RfBZxfd71Rq6RrGsDtHV4pZjQOAV3vzf/K7/Ct8NJyNuZD7ANP0slRv4N1XkEfm3dM3zL/wg5JWYxr8N5BVGfVQC0cr/i9AOwhSAucUqjVYYRmtNJR+CPmXcoSQjrlGQAEeT3vgLsnKEBDL5WlSzH4s2COtxP7etdYTSA3AhQ6Du/ABS1uaTbc4545T6Do3eKf3HhQqmaGVfBz2AjNDQydiBK5Ut77hKCGIljiJ4oPKRDd5E72Ely8PLLA8oxl//W0Or5msIBXidfFpJHe0XOEIt6Xkp2Nf77FFOlqSdmghC3HeVZXZeKpkqX2eB81hC/JaoaPUcswNlE0EOpwZZesBPxnpLYyrZbvfn1DqifhmnzDSknc1YCZCZE+hseuppqhkUt/VI1qJ4zAaeLysSF5Xq9zydS1TEd4eg9FDz8Xhd1B5ej0+oJT/OyK6xS7YwRaWX8L9BNNFjp8SlcTMaDDQiqTCN8ZjyIHelbgJMOk2tHqy5XW5qyuwjvtrCAkcrzA14CP+d+dICUwzNJHj85i9KLco5NLkv+Tdx3soXMWWrfUpISPROLGrQbVdL3ydcruDBCjd1SEnUWaPxRh7Ut3uz3Lq5mlkH8oK9wit2h2VaKgBzs40qyk0rnRQuMxKdufp2mSdAqYVtnfIgEExBeHEBn3IUCmYx08Pn7CSgtTSqXfTtgmZBEQPAFP1Dq9jBCAKn7LRv7JRUGo1O5GWPFBKg4gaNmEwF9OYJ1ZuEZgfxkBVls/zcetme16yFjWhsXH5akjVHdamfczX1L/ZLVHo3HN2zqnslqDJgeWB1TsAC1adoA2+CBYwHLG+RoMcW2gysd5DgguCIjnEoRlbkDwuVCAq8MRNitb1JEodaBhwQBiLk6sYKmOqIGGF6lx29HBhI8Qoo8ScNcWwajjwiuO84nexnbpkqJ9bBfUVJHcDyOo7UJCRJFc14sfHRnqzErKjjCLgbK2NG0yqiaqBxGfoHj4plPpS/nSZwkj6WgnTKuTS/gFV5dZZxwo3TicL4jAepxen9kmZ9MeAZ0mdy/XZo6nIJHAIktdzpPQxoW/+M35QfxyKLXP5RwpCC3j/uwQDY6exOXWUIJZP1RV5zvdpzGKRC0ExC/GLwCng6w8NNgFt6r6iArcKsC1JO56Q6Vz9qwcGtyCZsqyGl6tvtH4V1VRmJ9jM+0mH36qNTHUrWyrcS5Qr02b//La2FhjntrzeqFyg/cl25DI8NcIds0MoMmvZ9kpKpp9iJ1wXuaM1wSsLl7G6xJXJzxWVgaOjYMvErjo4B8vC/1JRLcGwRVF92JD4IRd9Vq43gPZRmhKZWwclgs2gqa83ryDD4zcZUQTy7xj3A6/Fd4qIk2WPjyTW0Zbf+cBSbW7zlCII4gNK9JGiqTerZzW0vHf4zQSk8EVW+qWYPhXrFJt/rgoL1U2hPnBapvQyuFqjfFJL8DROQ1sekPs/6NmOeyWPjWqwXUlNXJWTvvzPrP47S5+DaQ5oKcY1t80JyzEu50FqWSEMhJ7nm6l5MkIPGnf2ndJJMjhiUH9wVrb8IyE/BeMiL/cmCswpwFhGevGXn+HcUgmNt3jQTgDiBmtdTqpnDxQNlMxebH4wEXDbuw6er0jhxF5Idl+30KlwjrHrJe2KVL4M3FS1EmufLrL2eKdiaWWE0VPrFJj9jwdVtY3RyHArMFid2zps3BwSpuNB4LBQqJRX82cYgf/3JvmWawb66x9ittHoJE5Y3id07UxmDn4zSWImr3S6iQPIhP5H8n6uL2krNlYis6NAZl0rouQ3FLLhCf2i9zEOjPHorm9eXaJU31J8TiyhJmK7QVxl45uqet1J+GSSgbNJcsZgUVP09GmAwEkR8oESwwYLnYt7cCeJ5bU6t2m4YMid8UXFk0NdCU7rZuujmaUHGqD2Hkm+U8z5L04u5gc2AKrnnxTWn3BCuOPqWfKiSwVbwKQIxX+Vx4SpkHLqLIZ+vhFbw2WmbKcVkaEmYshNqmzjz32XQr1RtV2SdA51IS6vxRtAF/7WrknNsL2FiBaPWEGAPqEWgnbhWkor9N9CjCvrn0CiIqmE8gGMH86fsZRt3C41J8AtN75inmojJNEany9+1ofbGll4j3USGlktq5oXhWOv+LeBjq5XdLtBP0Tt++NYflYVUqE8YRWtW+KvW95jGccRlxyWyEqIUfaBGPagx/E919KelL1fV10a0uiGn6YBW6/CLOq5nyYEvmNdHpqS7+HoDSi7SJhZEQU+hExAkildqoTJ5IgSNtskkQRuTpX3B4bWRfRY8Z0kMOI9zd2wLZXE2h93KMLoh9cKHBVHxm0ICsZQs2i9cVrJy3XoCeqRB2ZD7pLYRIbNn+5oZCAlb6Nz1MrvDXQYHfZw==
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-2.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-2.exe /rawdata=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
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-4.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-4.exe /rawdata=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
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-5.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-5.exe /rawdata=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
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-5_user.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-5.exe /rawdata=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
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-6.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-6.exe /rawdata=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
C:\Windows\tasks\a2498bb5-6571-4ce4-ba58-53ee974bfc40-7.job - C:\Program Files (x86)\Internet Speed Checker\a2498bb5-6571-4ce4-ba58-53ee974bfc40-7.exe /rawdata=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
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\AutoKMS.job - C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\tasks\AutoKMSDaily.job - C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\tasks\fbdbf6ea-9d9d-4461-98e0-a928bd299d9d.job - C:\Program Files (x86)\Internet Speed Checker\fbdbf6ea-9d9d-4461-98e0-a928bd299d9d.exe /agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=014825A1F0EC42ACB43FE0ED15955712IE /verifier=32f7f90ab19831c2dc685910c5eecee9 /installerversion=1_35_09_29 /installationtime=1415700896 /statsdomain=http://stats.newonlinedatastack.com /errorsdomain=http://errors.newonlinedatastack.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newonlinedatastack.com /runfrom='task' /externallog=''
C:\Windows\tasks\GlaryInitialize 5.job - C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5637-006A-76A7-7A786E7484D7}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-23 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2014-03-11 43520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5637-006A-76A7-7A786E7484D7}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-23 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-09-04 343456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-09-04 343456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{5347542D-5637-006A-76A7-7A786E7484D7}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-09-04 343456]
{5347542D-5637-006A-76A7-7A786E7484D7}

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GUDelayStartup"=C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [2014-11-24 37152]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-11-23 5226600]
""= []
"hpqSRMon"=C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-01-07 384000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-12-08 19:42:05 ----D---- C:\rsit
2014-12-08 19:42:05 ----D---- C:\Program Files\trend micro
2014-12-02 05:33:01 ----D---- C:\Program Files\VideoLAN
2014-11-23 15:40:37 ----A---- C:\Windows\system32\aswBoot.exe
2014-11-23 15:40:33 ----A---- C:\Windows\avastSS.scr
2014-11-19 06:12:50 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2014-11-19 06:12:50 ----A---- C:\Windows\system32\pku2u.dll
2014-11-19 06:12:50 ----A---- C:\Windows\system32\kerberos.dll
2014-11-19 06:12:49 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-12 09:47:02 ----D---- C:\Program Files\Microsoft Silverlight
2014-11-12 09:47:02 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-11-12 07:49:06 ----A---- C:\Windows\system32\termsrv.dll
2014-11-12 07:49:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-12 07:49:05 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-12 07:49:05 ----A---- C:\Windows\system32\adtschema.dll
2014-11-12 07:49:04 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-12 07:49:01 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-12 07:49:01 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-12 07:49:01 ----A---- C:\Windows\system32\msaudite.dll
2014-11-12 07:49:00 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-12 07:48:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-12 07:48:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-12 07:48:46 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-12 07:48:46 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-12 07:48:46 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-12 07:48:46 ----A---- C:\Windows\system32\iernonce.dll
2014-11-12 07:48:46 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-12 07:48:46 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-12 07:48:46 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-12 07:48:45 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 07:48:44 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-12 07:48:44 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-12 07:48:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-12 07:48:44 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 07:48:43 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-12 07:48:43 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-12 07:48:42 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-12 07:48:42 ----A---- C:\Windows\system32\urlmon.dll
2014-11-12 07:48:42 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-12 07:48:41 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-12 07:48:41 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-12 07:48:41 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-12 07:48:41 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 07:48:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-12 07:48:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 07:48:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-12 07:48:39 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-12 07:48:39 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-12 07:48:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-12 07:48:38 ----A---- C:\Windows\system32\iesetup.dll
2014-11-12 07:48:38 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-12 07:48:37 ----A---- C:\Windows\system32\iertutil.dll
2014-11-12 07:48:36 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-12 07:48:36 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-12 07:48:36 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-12 07:48:36 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-12 07:48:36 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-12 07:48:36 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-12 07:48:35 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-12 07:48:35 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-12 07:48:35 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-12 07:48:34 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-12 07:48:34 ----A---- C:\Windows\system32\ieui.dll
2014-11-12 07:48:34 ----A---- C:\Windows\system32\ieframe.dll
2014-11-12 07:48:33 ----A---- C:\Windows\system32\vbscript.dll
2014-11-12 07:48:33 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-12 07:48:33 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-12 07:48:33 ----A---- C:\Windows\system32\jscript9.dll
2014-11-12 07:48:32 ----A---- C:\Windows\system32\wininet.dll
2014-11-12 07:48:32 ----A---- C:\Windows\system32\msrating.dll
2014-11-12 07:48:32 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-12 07:48:31 ----A---- C:\Windows\system32\mshtml.dll
2014-11-12 07:47:23 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-12 07:47:23 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-12 07:47:23 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-12 07:47:23 ----A---- C:\Windows\system32\msxml3.dll
2014-11-12 07:47:22 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-12 07:47:22 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-12 07:47:21 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-12 07:47:21 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-12 07:47:21 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-12 07:47:20 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-12 07:47:20 ----A---- C:\Windows\system32\EncDump.dll
2014-11-12 07:47:20 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-12 07:47:20 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-12 07:47:19 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-12 07:47:19 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-12 07:47:19 ----A---- C:\Windows\system32\packager.dll
2014-11-12 07:47:10 ----A---- C:\Windows\system32\schannel.dll
2014-11-12 07:47:09 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-12 07:47:09 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-12 07:47:09 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-12 07:47:09 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-12 07:47:09 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-12 07:47:08 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-12 07:47:08 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-12 07:47:08 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-12 07:47:08 ----A---- C:\Windows\system32\wdigest.dll
2014-11-12 07:47:08 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-12 07:47:08 ----A---- C:\Windows\system32\credssp.dll
2014-11-12 07:46:59 ----A---- C:\Windows\system32\win32k.sys
2014-11-12 07:46:58 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-12 07:46:58 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-11 11:15:14 ----D---- C:\Program Files (x86)\d01d655a-5617-414d-8eba-a29dda7ec647
2014-11-11 11:15:03 ----D---- C:\Program Files (x86)\globalUpdate
2014-11-11 11:15:01 ----D---- C:\Program Files (x86)\Internet Speed Checker
2014-11-11 11:06:48 ----D---- C:\Users\Pepa\AppData\Roaming\GetnowUpdater
2014-11-11 11:06:16 ----D---- C:\Users\Pepa\AppData\Roaming\Driver Pro
2014-11-11 11:06:16 ----D---- C:\Program Files (x86)\Driver Pro
2014-11-11 11:04:39 ----D---- C:\Users\Pepa\AppData\Roaming\SONY ERICSSON W380I user guide
2014-11-10 21:47:37 ----D---- C:\Program Files (x86)\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2014-12-08 19:42:08 ----D---- C:\Windows\Temp
2014-12-08 19:42:05 ----D---- C:\Program Files
2014-12-08 19:02:56 ----D---- C:\Windows\Prefetch
2014-12-08 18:21:28 ----D---- C:\Windows\system32\config
2014-12-08 18:12:59 ----D---- C:\Windows\System32
2014-12-08 18:12:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-12-08 18:12:58 ----D---- C:\Windows\inf
2014-12-08 18:06:22 ----D---- C:\Windows\system32\NDF
2014-12-08 18:04:25 ----D---- C:\Users\Pepa\AppData\Roaming\Seznam.cz
2014-12-08 18:00:06 ----D---- C:\Windows\Tasks
2014-12-08 17:59:54 ----D---- C:\Program Files (x86)\Glary Utilities 5
2014-12-08 17:59:49 ----D---- C:\Windows
2014-12-08 17:59:49 ----A---- C:\Windows\KMSEmulator.exe
2014-12-06 23:12:19 ----D---- C:\Users\Pepa\AppData\Roaming\Skype
2014-12-06 22:30:24 ----D---- C:\Users\Pepa\AppData\Roaming\vlc
2014-12-06 20:47:33 ----SHD---- C:\System Volume Information
2014-12-04 20:22:14 ----D---- C:\Windows\system32\Tasks
2014-11-26 09:58:10 ----D---- C:\Windows\SysWOW64
2014-11-26 09:58:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-24 19:13:35 ----D---- C:\Windows\system32\catroot2
2014-11-24 19:12:11 ----RD---- C:\Program Files (x86)
2014-11-23 15:48:42 ----D---- C:\Program Files (x86)\Cyklotrasy
2014-11-23 15:48:38 ----HD---- C:\ProgramData
2014-11-23 15:42:49 ----D---- C:\Windows\system32\drivers
2014-11-19 22:14:38 ----D---- C:\Windows\winsxs
2014-11-19 06:09:13 ----D---- C:\Windows\system32\catroot
2014-11-16 12:42:07 ----SHD---- C:\Windows\Installer
2014-11-16 12:42:07 ----HD---- C:\Config.Msi
2014-11-16 08:05:52 ----D---- C:\Windows\system32\wdi
2014-11-13 08:40:12 ----D---- C:\Windows\Minidump
2014-11-13 08:40:12 ----D---- C:\Windows\debug
2014-11-12 12:50:50 ----D---- C:\Windows\rescache
2014-11-12 10:23:11 ----D---- C:\Windows\Microsoft.NET
2014-11-12 10:22:20 ----RSD---- C:\Windows\assembly
2014-11-12 10:00:21 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-12 10:00:21 ----D---- C:\Windows\system32\cs-CZ
2014-11-12 10:00:20 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-12 10:00:20 ----D---- C:\Program Files\Internet Explorer
2014-11-12 10:00:15 ----D---- C:\Windows\system32\en-US
2014-11-12 10:00:13 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-12 09:53:10 ----D---- C:\ProgramData\Microsoft Help
2014-11-12 09:49:38 ----RSD---- C:\Windows\Fonts
2014-11-12 09:45:29 ----D---- C:\Windows\system32\MRT
2014-11-12 09:42:16 ----A---- C:\Windows\system32\MRT.exe
2014-11-11 11:15:25 ----D---- C:\Program Files (x86)\Ashampoo
2014-11-11 11:11:20 ----D---- C:\Windows\system32\DriverStore
2014-11-11 11:05:43 ----SD---- C:\ProgramData\Microsoft
2014-11-10 20:36:20 ----D---- C:\Program Files (x86)\Google

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-11-23 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-11-23 267632]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2014-01-23 52856]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-11-23 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-23 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-11-23 436624]
R1 GUBootStartup;GUBootStartup; \??\C:\Windows\System32\drivers\GUBootStartup.sys [2014-12-02 20160]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-11-23 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-11-23 83280]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-11-23 116728]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-04-07 8281600]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-04-07 293376]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-07-01 4745280]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2010-07-28 31088]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdpmd64.sys [2011-01-07 12262688]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-12-16 1403440]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R); C:\Windows\system32\DRIVERS\e1y60x64.sys [2009-06-10 281088]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2012-05-04 75016]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2011-02-15 335464]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 winusb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\winusb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6; C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [2007-09-11 124832]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-04 64704]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-04-07 203776]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-23 50344]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2011-02-18 2372096]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-10 107912]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-26 267440]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-01-23 654848]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-10 107912]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-01-23 1255736]
S3 WMZuneComm;Zune Windows Mobile Connectivity Service; C:\Program Files\Zune\WMZuneComm.exe [2011-08-05 306400]
S3 ZuneNetworkSvc;Zune Network Sharing Service; C:\Program Files\Zune\ZuneNss.exe [2011-08-05 8277728]
S3 ZuneWlanCfgSvc;Zune Wireless Configuration Service; C:\Program Files\Zune\ZuneWlanCfgSvc.exe [2011-08-05 467680]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#3 Příspěvek od plch »

Zde je log z ADW cleaneru:

# AdwCleaner v4.104 - Report created 08/12/2014 at 20:23:32
# Updated 05/12/2014 by Xplode
# Database : 2014-12-08.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Pepa - PEPA-PC
# Running from : C:\Users\Pepa\Desktop\adwcleaner_4.104.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\ProgramData\ytd video downloader
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Pro
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
Folder Deleted : C:\Program Files (x86)\AskPartnerNetwork
Folder Deleted : C:\Program Files (x86)\Driver Pro
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\GreenTree Applications
Folder Deleted : C:\Program Files (x86)\SpeedItup Free
Folder Deleted : C:\Program Files (x86)\Internet Speed Checker
Folder Deleted : C:\Users\Pepa\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Pepa\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\Users\Pepa\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Pepa\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Pepa\AppData\Local\GetnowUninstall
Folder Deleted : C:\Users\Pepa\AppData\Roaming\Driver Pro
Folder Deleted : C:\Users\Pepa\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default\Extensions\sepherdwilbur@aol.com
Folder Deleted : C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
File Deleted : C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : Driver Pro Schedule
Task Deleted : 8fd53764-18e4-45e6-850f-6c1866de0a58
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-1
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-11
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-2
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-4
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-5
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-5_user
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-6
Task Deleted : a2498bb5-6571-4ce4-ba58-53ee974bfc40-7
Task Deleted : fbdbf6ea-9d9d-4461-98e0-a928bd299d9d

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Key Deleted : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176652}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174452}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172252}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175552}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176652}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Driver Pro
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\Internet Speed Checker
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Iminent
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\Clara
Key Deleted : HKLM\SOFTWARE\Internet Speed Checker
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Driver Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
Key Deleted : [x64] HKLM\SOFTWARE\AskPartnerNetwork
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\icq.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\wlogin.icq.com

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420


-\\ Mozilla Firefox v

[yiu9e040.default\prefs.js] - Line Deleted : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.Resources_meta.value", "%7B%22images/icon_255x255.png%22%3A%7B%22id%22%3A750126%2C%22ver%22%3A1%2C%22status%22%3A1%2C%22name%22%3A%22im[...]
[yiu9e040.default\prefs.js] - Line Deleted : user_pref("extensions.asepherdwilburaolcom61752.61752.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls[...]
[yiu9e040.default\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "1499e607413d406b797015327a795578");

-\\ Google Chrome v39.0.2171.71


*************************

AdwCleaner[R0].txt - [12399 octets] - [08/12/2014 20:20:46]
AdwCleaner[S0].txt - [11856 octets] - [08/12/2014 20:23:32]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11917 octets] ##########


A log ze ZOE:


Zoek.exe v5.0.0.0 Updated 06-December-2014
Tool run by Pepa on po 08.12.2014 at 20:35:36,20.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Pepa\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

8.12.2014 20:37:07 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\DsNET Corp deleted successfully
C:\PROGRA~2\GRETECH deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~3\Oracle deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5347542D-5637-006A-76A7-7A786E7484D7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611171152} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{102B15A2-E6B0-44CC-8441-DC2CB1D7C48F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10695F08-F31D-450E-91B2-F23917F610EE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1218ECA8-B6C7-4FD0-ACFD-8BA1A736162} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{126D0B01-F279-460D-B886-3CC8F1C8AA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1451bcec-4683-49cc-9ff1-5296bded69b6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{14ECC640-F481-4B5F-8328-A3EC7D793B9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15818625-9722-4F18-BA61-96FEAF1BEF2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15B7CB77-3D0C-41CA-BB39-36888D6E4724} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{164E732D-6043-4DC9-82FE-74689FA5929B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16555A8C-D8CB-4DE6-875-82F49687CF64} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1701E02D-D79B-47DF-8F98-84435CCD6E72} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1707AFF6-6BA3-4D65-8A37-FEF188A5DFC} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{17237486-F1E6-4F80-AA27-C3E648A7D348} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{173CBDCC-51A8-4825-8894-1ECA7060F625} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{17977CED-328A-4DAF-B568-97113FECC391} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18B32EFA-2C0E-41E6-8B4-56D093DB3585} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{19661784-FFFE-48E8-86CB-9572A8DCD62B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A017A0B-E2B4-4D8F-8F7B-0D2212167F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A4BC5CD-B786-4626-883B-376EB582C6E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ABAEA54-44E-43AE-91AB-8E1DB5B4C1E1} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B57A6A0-9457-440E-94A2-F6A3EA1F34B0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B71194E-B08F-4A22-9192-5BE3B1BAD3CF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C4E42C3-1D62-4872-8AB5-1BE0EA53D511} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C96E4D8-9B0E-4B1B-907D-EA7C76DF90A2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D2B5FC3-5AFB-4A46-9686-5A557F3EA6B2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1DB476BA-7A23-41ED-B1F7-3E228A3CBB5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1DE1D49D-EFB4-4E26-A9EE-72E9D8DDA2C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F60088A-F58D-4CEC-9FCB-90972DCCAB2E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FA01958-2505-4C1E-8F6-239FEF91605A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20596AAA-32F0-40FC-B4BE-9EAB567947E8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{214E3DBC-AFE3-4CAF-A43D-41814F6BA6E8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{22D77196-138A-41BB-804A-4B0D8C7C46F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{22E09609-502B-4BCE-9DB7-A66828F2E5C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23B04CEC-F37-456B-8C2B-AA8EA3EDDB29} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23E4100C-F4A8-41E7-BD11-CE13C33F9424} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23EDA047-8240-4E8B-AD88-311A81B5D48} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{243AB5B1-A739-40A1-95F2-C28F18915BD} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{254103FF-C4C0-4DC5-8A95-2A4815FE5C0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{254B568E-1910-433E-914B-BB5085651C80} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{261D183-83D0-4E71-BB7A-D9D23D543F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2689F23E-20EE-49AE-8149-25DB5F8CB5D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2717f2d0-4ed2-443e-a94e-c51512a64507} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27455C01-8C94-408F-BDBA-31568E32F5A5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{291FD780-6A13-48A2-ABDF-ACF669663FFB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A264E86-CE3D-40AB-A623-52CC7111914B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2BDD6908-2F4A-4E83-A4E2-D893A413CE2C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C910247-2D2C-415E-9232-78F7EDCBA6AF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2DC01CA6-1E6D-4940-A515-BC826EFDD53B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E06DC2D-44F8-4A40-8310-ACB191CD9A7C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E43CEBD-DDE7-48F0-B1E9-F29144F5C5E4} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31A95170-45FA-4FB7-B5C0-CA73798ED47} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32C0EA9F-CF41-4A29-9220-F37397A8B825} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32C61B99-24F-4E42-AA9B-CA30FB58113C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3391C253-860E-4819-9D0-433E19AAD580} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33A0A751-688B-42C0-B066-31DB7342994} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{35DE323F-5BAD-4636-9494-ED6856CB452A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{35F091F3-7B86-499D-9AA7-452EC28BC063} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{364D114C-66D2-41AD-A622-C1E85286EA8E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36B1F8E1-BD7B-483D-B150-A34DAD87EC8C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3712754E-71F2-4939-A8E8-E726563886D7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{392990D3-E6-4503-8BF5-FC98AF26DF1E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3999252D-CEBD-4D36-8283-588620CF2D11} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3BBF8401-3FDC-466E-8280-D29079A7EB49} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C8AA4BD-B7EE-4016-98E-ACDCB0716DA4} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3CB67C6-9954-460B-9857-AF92A7AF5864} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E2DF8AA-3898-45BD-985E-17411571C9B7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E931039-7F7A-4218-BC35-186A1547F4BC} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F72799E-7907-4C7F-8168-37110137E25} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3FF56AC7-A609-4D9D-B38E-1373CFD4465A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{427E91ED-43A9-48B5-AEE6-134E9965E99C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{431E94A5-FEF8-40AC-92E4-BBEC1F81557} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{455D8DD1-D475-4374-B990-B1C7B298AF5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{45AF4013-F399-4B2B-9D24-B13189CFB1BF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4793CB85-8675-4F2D-80C2-65B855CFDEA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47D2F090-880A-436F-A26C-D73598C579C3} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47FF369D-E1BE-4580-9A25-BCBCD6A1D295} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{483C3984-3B5D-42F2-A22-708523A0BC26} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48E0700C-EE56-484B-BBE6-1AE7939553} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{499C67A-AD58-47B2-99FF-C4C73442659} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A0FCD25-17E8-4AE9-BE88-7BF9A2A4FFD7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B151347-C504-44FD-9DA9-21368A9C30AE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4CFDD4FA-FCD-4AE8-B314-8822DFEFC5EF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E725C49-103A-4C87-AB42-1442A5917545} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EF490DD-3C77-4322-8690-519535E695D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EF4CEA4-D53B-41CE-8330-E1D02628DA7C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EFC19A7-44B4-453C-9957-416862402FB2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F53FEF2-85F0-4525-A12A-8B36D96766F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F798576-F1ED-40D6-B932-C2555FA2868B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F9E44B7-84A3-45E9-B32A-9D3C17C1A7F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4FD7D10A-E39-4A9D-8035-454B59EB3} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{52DD4B75-B11B-43D7-955E-2D69064EDD7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53498472-671F-4390-96C8-C0B7898E18E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5418DDE6-D9-40DB-8DBB-DA483C55B5B0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{544A2A2F-56B2-44D5-B083-FA814DE48252} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54C7D26F-51B7-4A7D-98ED-DE45759CEFC8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54D33765-B18F-42A9-822B-66B57F30441} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55193D0F-CC6-48F6-872F-70466DA7F741} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55288C9E-812B-4ED8-BB1-C3F3F6EF85} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56377BC7-93C8-456D-902F-FD276D5EE7F5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56AFDCE2-C518-4498-8621-20615CE66981} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{579DBE84-D0-4A9D-99FE-A401124E2FA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{584F6A12-8B41-42BA-BEC5-5DA247CDDA23} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{585E701B-4D51-45BD-B7C-8729564B4B57} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58f06d3b-2d9b-4850-81cd-928a425edf3d} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58F639A4-33A5-4863-AEF8-8F6B546B60BD} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59BEF360-B68A-4C46-B088-78E4A51EFAD4} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A396806-C0D3-4810-9D93-146EB45C2C59} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D0C0C0C-4971-4B38-BA76-BE31E2972CDE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5DF30D95-E8-48B4-BE27-A3A45D827FE8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E217402-FF8F-4E9F-B88F-7A9C52FF848E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FE6C28E-8242-4CC4-AF19-3448912B555} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6065FF5D-38DF-460B-823-36B034F97480} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{609122D4-BE5B-40D6-A15C-E818E2EDE36} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61235CE7-F98A-4AED-93F5-A1CE9C211AD6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61350FBD-CEA4-4E91-867A-2744FDD7CF51} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61BF3EFA-D4B1-4C2E-A5F-88B6D2BE96} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62384531-D748-48D1-A243-711F7A2EE3} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62FAC244-C51F-41C0-B99-902A9EE23C2D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6317CDC4-B430-4399-8AF2-23A2D428F9A6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{637643FF-D10B-4621-B89E-FC7F69DAE6B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6391B203-5E91-4DDE-AF66-BEC0E1ED93DB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{63A05B7E-CDBD-422D-911B-BC97469718F5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65D53101-567F-4678-B77B-76D2D1BA239E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67B5CA1F-4704-4795-BDDD-3AD210268B41} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{681A2787-3B0C-4ECC-9CA7-3752A97A2C8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{689C2953-78B7-48D1-A215-656D44FFE531} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68C34014-A36E-40E5-B82D-66CFD1EB3A9B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69242CD8-C00C-47CE-9818-9AC376E380A8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{698DC74A-9AD8-4F48-9A83-D494D77FC} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6AA22C5D-A708-41F7-AE6A-EB91EA29D714} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D2108D8-D8A7-4ED6-80AE-F2F529EFC4A6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6DB7E1B-6ED6-4121-AEE0-B351B694660} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6DB9F347-1107-4F9A-9AA5-C436510B7EC} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E0C1183-B2E7-47A9-9A7F-5879E68490D6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{701EA21C-C153-41D1-A4D5-F02660B6978B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7127F71B-BE47-492F-B8D8-F9BB74CF76E9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{727F8914-22C1-4BBC-BF5-40AF24CF2259} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73E8B-3AF9-4E02-931-1CA583B79FE7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74C0270-854C-4354-BA4C-EBB28E4EF299} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7718C5DA-73A8-41BA-8D63-958DEE51A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78C2075D-55C-462F-A6A1-85D84BF09273} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A0DB447-B54B-4935-A47D-68385CF5857E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AB2BC2-AB22-44AA-B745-7C2C5826C3DA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AD9DB2A-9910-4F18-885A-B7E0381713DE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7ADCB440-8A7F-46B0-8C3A-B7D59B61E279} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B29AB48-6954-4030-A777-41CBB6F0615E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B4E0DF7-80BC-4ECB-B59C-3EEBAD6CE69A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C424FD5-45BF-4690-8863-4937D367A7E4} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E5FB7D1-5C6E-4948-9C71-F4C0FAE1CCD9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E6E007A-AE3D-40E1-BD78-EF2DDCA5D0EF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E748A91-EBE0-424D-9C51-5E702E9DECD} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80400DAF-A7C7-4386-87CA-C39AE3DD9166} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80890071-D1B7-4489-AF46-5438566A450} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8217951A-EF68-4352-BB36-8B70ECD72A77} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{832C2771-5A03-4CD1-B044-67CEF148B1} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{834ED69D-9EC8-4E8A-9FFD-9C38F4F291E5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83DDBE81-B609-4632-B877-23F77A4E7415} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83DDE81-5B19-437A-80AA-BC5B291D16EF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84920269-8ACF-4B74-AC43-4D9CA8DB3CE6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84AFF8EA-3427-44A5-B3CA-4C9FDB6ED5AD} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{855161FF-BB28-4DD0-BEAE-9A35ACA8A516} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86AE36B6-9C40-4147-B3E5-90AA79318D3} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B52A772-DA5-48EF-AE95-C1F9DE3DB77} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C43E3D4-1D81-483A-9A1F-D404BA47D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8CF6D918-32A4-4BED-9FB2-CCAE16DF52A7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F888CF4-A592-4852-A77A-8F9E1549785} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8FBA8CD8-9EAB-4ECD-9664-68EFC18EA8C0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90BD06D9-CB55-4054-93B5-6DC8A852F53} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90E76DFE-6E4F-45F3-BBED-4399365B653D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91199DDD-AE0A-4D8E-AF45-2B73C42A8836} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91A1E4A-C4FB-490D-B2F3-B3B846E66DD} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91EB1C8-6E25-4502-BE8-A37456CE574} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92F2FD4B-3E7-432D-A872-E62E93BB753} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94A32C7D-13DA-4F03-BCF8-4671315062CA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{954ACA52-6BB3-4399-9AB6-A74F42DA6820} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97B11A1F-241D-4C4A-A525-8DD59DC7FA36} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97D53FC1-352F-40F6-A0F-4EDDEB8DD611} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97DE64FF-A993-4E64-AC6A-A05A4E212D79} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98B177B9-75F0-4218-965E-B2B902BD195} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9935259E-4A46-4604-921F-2DEED98BB29} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99A667FA-2BDD-4D62-98B-2A302AF21B4E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99F4AC1D-5D71-4285-ACD8-D8485A7F7977} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9ABE1224-2CCE-40D9-BAB5-A893A803874} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9ABECC65-AC38-481C-9ACA-614A9D763CF8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9AC28B9C-CD61-4D77-AB8-D281ECB24F9E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B66C092-9F65-45B5-8581-701FE3C28113} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B9FE947-DBE-4B07-A367-7081EDE0C836} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9BBC38BA-D9CC-4B65-89E7-7A2E1ABBFB2C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9BE68035-AA23-4AFA-9CD7-5D8AB274AE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C782A1C-4B56-4D49-A4AE-EB22BAE13FA8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CB8087D-CAF7-4BA6-B8B0-A7E392322832} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D627315-EE33-4842-A639-73A6AF11F9E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D70CF6-C3A2-4D81-B3A1-131344BF3E4} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9DEA4FC5-49-4B07-A944-9B2356BF71} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9DF57CFE-6160-476D-BD1F-4582CDAE3EE8} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A058A8EC-4692-4BB5-8557-6CF6485A92E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A130D189-56E7-41F5-ADD-C31A4BEB664} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A15132F8-3583-4A81-A523-5F7E8E2D5F0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3D51C0-7E13-4377-AF75-82A224FB43FE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3FA0D28-8A61-4AA9-85C3-40FD48CF9187} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3FD9818-A79D-41E0-BD32-E5EF266BF3AF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A4157C6-4E73-4FE3-86B3-F83A951336} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A564928B-78ED-4372-A747-E53BE6DE37F2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A59D5E69-FD8A-4303-AAB2-DA55D8D12725} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5F790EE-DA22-4B92-B2BB-392365B646F7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A68F914E-7A07-4B60-9C52-879283CFFC9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6B5D8D0-6A1C-4DC0-8870-3C6A5F597430} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A818D5EC-B508-49A5-AC8D-CB49648E0D0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A834C653-1D13-4110-935-6371EF4A7981} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A88AB02F-FC4-4B08-9271-4010834979BB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A92B238E-EE1D-4CBB-906A-4DD2BACC7B92} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A97B6AC7-F6ED-42FA-86A9-C9E1CBDEB9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A9BBC238-DBBF-403B-BD46-C08A5CEFCBA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A9D7A09-76F-4B3D-B6AE-89DCDE9F421} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAB89838-8145-4D91-B681-17C32CC4127D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB160845-684B-4705-B2A3-5AC9966FEBBE} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB70F3B9-250E-4147-A4DC-8F7CAC282152} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC9B27C3-938C-4FAB-BEF2-80FE2D2B344B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACC5C12C-E0EB-4D68-9E5B-C9A61BE549E5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD5D6483-8CCB-4577-99A2-E7DD1248882} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE13FEC7-5D42-433A-AE8D-3E17AA87363C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE89A6FC-A9B2-4A89-93AE-7F5EC950D31A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF422EEC-4713-488D-9DD8-F8BC29704BFB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF68DC20-9949-48E9-888B-8D4D2A1F1F4B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFED1E8E-7360-433E-AF32-4FBDC81B1279} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B03A9E1E-FE96-4862-A44A-AD9E5D8DDC15} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1DC8E47-BE9B-4EF3-9823-AC617E669978} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2CF7281-8B53-4F39-91EA-8C3FF28B8F45} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4854576-13C0-42B3-9333-64449241DB68} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4BCE306-E9D9-4DCB-B9DE-37979513F579} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5F9BDE0-A2EF-4BB0-A56A-B8908E105174} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6A2BEC1-6E83-4383-B451-7573583171F2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7324B52-6DFB-4FEC-9834-A657F1785AD} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7E4B087-DB03-489B-B68C-6EC83A3AE76} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B95613AB-DDC1-4573-AFD2-9B876BDAE4E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B96885F-B381-4873-8E4B-DBEA5417690} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA34CF6B-7E21-4ED8-919F-A8A17DA52C5C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BAB11957-3ECB-4E29-A348-55B8D4FE2025} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB1543EF-B730-4816-933A-C5F01172F7E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCD00DD2-FA9A-43E5-8CD0-9986C2DD4729} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCDBDBA7-E112-4C1C-94AA-96A83AC32932} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD489C43-594F-4635-86D3-8AA0D3A6F1B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE252344-E4A6-4842-A8DB-81B71592316} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C01988B8-7D65-4DE0-9CE7-9586BFCE018} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C059A1CD-345A-407F-BDAC-9BD998796E6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0C72623-CEAD-42F5-9DB1-89304F50691} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2201F6F-5E87-4794-A682-5AC0A23E32B9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2208729-46BA-453D-B079-607289AE87D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C29E7B7A-C95-4F6D-88C5-49AF3A917D74} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2E16DA7-7D80-4435-93B3-244961B99EEF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C34649BC-9DDE-4EB5-90D7-C56D5C13AE69} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4672081-38B8-46DF-A3DF-70D359DD3EE7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4AA1088-2974-4D69-88F6-B13FB03697ED} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C58530B9-1BA6-4EE2-BB8E-320F2E89F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5E77192-BCAE-4A90-AF25-91271A865938} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C60348E6-67A1-4A3D-B736-797C2FD6EEF3} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C67CD65B-2920-4B0C-8B19-84DCADF86026} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c791e616-1970-4e91-930c-fb5baa2a478a} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8CCD87B-DC8D-46F0-A69-94102BD6A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8E05A1C-5763-494A-9096-A620165CA3F1} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C91026E0-2186-4F84-AB45-C060E1D5EB99} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC0280E5-DE91-4FAD-98D3-B33145D1819} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCCD4401-A32C-40C8-8492-5EBFDBC5BE9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCE8E76A-D6A5-43FA-846E-1551FB62543E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDECF0E2-8423-4132-B71F-46B57D742476} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE53984E-B993-4FB0-8E88-9426F72C4C60} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE6DF396-593B-4C82-B063-C8A06319A0DB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CEA58AA1-D678-4A54-9EC7-7723B68481F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CEFD13D-6447-478D-9DF8-96D6659C98F7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF1C7F28-CBC3-4117-BF79-E7DE6EB36FAF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFBA2550-5068-4818-A851-5B7EAD8BCD13} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D06AF8BC-3AD-43CA-9B99-35BA22F4E50} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D077A9A5-3F74-4FDA-B9DD-7FF2539A8E22} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D106DD34-C5C0-4E91-B41B-79238EA74B49} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D13A07E7-8B06-414B-BEB0-5DF7164764F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D228951B-D6BE-4FF9-8E53-932569FA6443} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D22B7563-C91F-4938-B835-A2B15EFA6E5D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D2696A49-D2C8-4261-B71-14B7497F9FD5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D33A1B90-D455-4F90-98A2-5E37432AF335} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D35CE63-29B9-421A-9993-67B0F9E5D251} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D3664054-5A09-47D3-B331-65DE69944E} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D3EDE543-DD36-45AF-8131-912277E6E788} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D3F712FC-1FA-4948-AE42-7F17C74B502D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5F26F31-BDCA-4147-832-D9F73BFA82F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6D312B0-7C9F-45B9-B435-C1BD4ADC613} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D811C46E-B9D7-4BC7-83B1-F86FE6E0CE6} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8770479-3D91-4CDC-9082-351D8DEFF2B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8C395E2-29ED-4EEB-9BC3-AB8E55CE244} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9178B69-1EF5-4A04-A891-AE6BF39C8F1} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D967879-82E0-40C9-AFAD-1EDD7CF09A3} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA8A2EF7-18A5-440A-B32B-85F3D1167576} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DAAD975F-8D48-4716-A5B9-C37F71A18322} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DB09808C-A49E-4D3A-AED0-1EA7C1D4D9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DB425A33-883B-4665-93DF-77BF892CDB99} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DC8A132E-E29D-4834-8B26-EF4D6EBDB42A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DCC1EABD-626-48E7-8F39-885767697A92} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DCE7B050-52CD-49EB-A43C-F82B39F8EE2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE478569-4B00-470E-B8C-881433B799} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DEF6ED93-936B-47D6-B8BE-A8DB9EBA2486} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF28148-9AFC-440B-864E-058333F498D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF4784CB-3964-4338-BAB6-2BDF2EC4C3A5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF70AE5F-7FEC-444E-B63-C13933526BAF} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DFAD576A-98C1-4945-B436-3A19C7FB8235} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DFDAEADF-C9D2-4C16-9632-4AFF4CF47C3B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0E0B91E-75A6-4877-AC1A-B0EA3150ECFB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1374CF4-977F-4B05-978E-C0DC803A45AB} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1E3931-DA7D-48A0-BBBB-E18DC0DEB77D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3178289-438-4D24-9549-58A77ED0252A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E324C39B-F641-459C-ADA8-D5BFF546C75} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5CB21E4-9F4D-40E9-8A3F-264232533AFA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6FDCDF1-FE15-4178-BB1C-EBCAA0EAD7A0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7F1AAEF-1E86-4687-95AF-84D8251055B4} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7F212C2-FB71-44CD-B0FE-80A32F27A1BC} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E846015-42D-456A-BA20-2BBAA23778E2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9B87ED2-8D23-4B49-B641-5A497EB53411} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9FCCD1F-F2A-482A-9AB7-AF4A9D9AC41B} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA73B154-8858-4159-B446-B8761CC2A5E9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB51F104-B4F2-4DCC-8EF4-82324E24FBC7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC0E8CA0-24B7-4E4D-842C-C59E612047D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECF501E9-9A41-4D3A-A990-F9495D6BBBFC} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDD97E6D-7B70-45A1-A936-4AFF1B70CD78} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF916E55-E737-4AFB-9C65-377C813B19C} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFFCF0C9-19C5-47EA-B938-7CDA566FC713} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F14B7FAE-6DD5-4E95-AFD6-3394A47F521A} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F19F2C8A-20CF-4E1E-B453-E89D55D5BD7} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F22B24A2-280A-4171-A9E5-C99E88547EE5} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F269C14E-E409-429B-B5FC-7E7B4D4512B9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4C8CDBF-1C5D-4E76-B17E-518316435C94} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5FA7433-C4D5-48E3-A32A-3916DCDA917D} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F75A1378-313E-48B8-8D64-FD96411683F2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8429257-9D0-49DD-A5A4-E2B62E278131} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8496919-1357-4E20-9A47-B8E7153695E0} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F93B56DE-637C-4C0C-9927-6DA980A4C515} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F982FE38-6E6A-41D1-A95B-3669B9AC85FA} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA5CB0EB-E0C2-4D57-99FD-CA9A3F57E74} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAC74630-FB6A-4781-A18A-403F5BB4AF55} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB8E133E-3131-4386-9148-DDE08B9208} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC175606-B914-497B-99AC-494B4182AF53} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC185C22-9FC1-48F8-BAD7-EED6CBFB91B2} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC273891-5C59-4ACC-BE8D-61367160E693} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCAC46A0-B1B3-4F34-B464-39FA5E43991} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE44012A-B553-4559-ADC9-3C6A501BB6D9} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEA561EF-F1B3-4D76-932E-7B2BAB923F5F} deleted successfully
HKEY_USERS\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEFCDA0C-8166-4564-AF1C-FDB128EB61F} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5637-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5637-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1451bcec-4683-49cc-9ff1-5296bded69b6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2717f2d0-4ed2-443e-a94e-c51512a64507} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58f06d3b-2d9b-4850-81cd-928a425edf3d} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c791e616-1970-4e91-930c-fb5baa2a478a} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{5347542D-5637-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{5347542D-5637-006A-76A7-7A786E7484D7} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.seznam.cz/");

Added to C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default\prefs.js:

ProfilePath: C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_08.12.2014_2103_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\d01d655a-5617-414d-8eba-a29dda7ec647 deleted
C:\PROGRA~3\spds90.txt deleted
C:\Users\Public\Desktop\YTD Video Downloader.lnk deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [23.11.2014 15:40]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [28.01.2014 12:03]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default
CBFE3156904AB2D1A097F5E74A6C62F3 - C:\Program Files\VLC\npvlc.dll - VLC Web Plugin


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[23.11.2014 15:40]

Seznam Lištička - Slovník - Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
Avast Online Security - Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"
{14C08858-D372-4E9B-B68B-75E4740A0C9B} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_12454"
{327D3BFA-3A5D-4BE5-B419-553281BD7FA1} Google Url="https://www.google.com/search?q={searchTerms}"
{4B2A872C-2EF3-4A18-90F6-8AC43566DCB5} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_12454"
{9E06B85E-4A17-47D8-AADF-97EEF3DC78C7} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
{A81379D0-16D7-4407-A640-F6C979CF3D57} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
{BFB77D5E-CC94-4A3D-A72E-A5DED12E41D0} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_12454"
{DA2A9D9E-96AA-4AC2-AC8A-14852C39B7D6} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_12454"
{E3DCDAD3-B1E4-46FF-8D3F-5ABD8FC6CA1F} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454"
{F2E8B426-2E2F-45A7-AB6F-7DC45C61792D} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_12454"
{FD86AF32-9957-4B05-BED3-1A580A78B118} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_12454"

==== Reset Google Chrome ======================

C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts on Users Desktops ======================

C:\Users\Pepa\Desktop\Microsoft Excel 2010.lnk - C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\xlicons.exe
C:\Users\Pepa\Desktop\Microsoft Word 2010.lnk - C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\wordicon.exe
C:\Users\Pepa\Desktop\HP\Centrum řešení HP.lnk -
C:\Users\Pepa\Desktop\HP\HP Photosmart Essential 3.5.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe
C:\Users\Pepa\Desktop\HP\Nakupujte spotřební materiál HP.lnk -
C:\Users\Pepa\Desktop\Programy z plochy\Adobe Acrobat X Pro.lnk - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat.exe
C:\Users\Pepa\Desktop\Programy z plochy\Ashampoo Burning Studio 6 FREE.lnk - C:\Program Files (x86)\Ashampoo\Ashampoo Burning Studio 6 FREE\burningstudio.exe
C:\Users\Pepa\Desktop\Programy z plochy\avast Free Antivirus.lnk -
C:\Users\Pepa\Desktop\Programy z plochy\Desktop.lnk - C:\Users\Pepa\Desktop
C:\Users\Pepa\Desktop\Programy z plochy\Ravo Rife.lnk - C:\RavoRife\run.bat
C:\Users\Pepa\Desktop\Programy z plochy\Skype.lnk - C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe
C:\Users\Pepa\Desktop\Programy z plochy\Total Commander.lnk - C:\totalcmd\TOTALCMD.EXE
C:\Users\Pepa\Desktop\Programy z plochy\VLC media player.lnk - C:\Program Files\VLC\vlc.exe
C:\Users\Pepa\Desktop\Programy z plochy\Výběr prohlížeče.lnk -
C:\Users\Pepa\Desktop\Programy z plochy\Zune.lnk - C:\Program Files (x86)\Zune\Zune.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\Adobe Photoshop Elements 6.0.lnk - C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\Photoshop Elements 6.0.exe
C:\Users\Public\Desktop\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Public\Desktop\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --remote-debugging-port=9223

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk - C:\Windows\Installer\{AC76BA86-1029-4770-7760-000000000005}\_SC_Distiller.ico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk - C:\Windows\Installer\{AC76BA86-1029-4770-7760-000000000005}\_SC_Acrobat.ico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2\Adobe LiveCycle Designer ES2.lnk - C:\Program Files (x86)\Adobe\Acrobat 10.0\Designer 9.0\FormDesigner.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Uninstall.lnk - C:\Program Files (x86)\Glary Utilities 5\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Website.lnk - C:\Program Files (x86)\Glary Utilities 5\Glary Utilities 5.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled\HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files\VideoLAN\VLC\Documentation.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files\VideoLAN\VLC\NEWS.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files\VideoLAN\VLC\VideoLAN Website.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe -Iskins
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 5.lnk - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --remote-debugging-port=9223
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Adobe Acrobat X Pro.lnk - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --remote-debugging-port=9223
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Excel 2010.lnk - C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\xlicons.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\wordicon.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\YTD Video Downloader.lnk - C:\Program Files (x86)\GreenTree Applications\YTD Video Downloader\ytd.exe

==== shortcuts After Repair ======================

C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Pepa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Pepa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Pepa\AppData\Local\Mozilla\Firefox\Profiles\yiu9e040.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=6 folders=1 385097 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Pepa\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Pepa\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted

==== EOF on po 08.12.2014 at 21:12:30,40 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#4 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#5 Příspěvek od plch »

Log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-12-2014
Ran by Pepa (administrator) on PEPA-PC on 08-12-2014 21:39:37
Running from C:\Users\Pepa\Desktop
Loaded Profile: Pepa (Available profiles: Pepa)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(forum.viry.cz) C:\Users\Pepa\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-23] (AVAST Software)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-4043110630-1395603381-2878645168-1000\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [37152 2014-11-24] (Glarysoft Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
BootExecute: autocheck autochk *

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {14C08858-D372-4E9B-B68B-75E4740A0C9B} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {327D3BFA-3A5D-4BE5-B419-553281BD7FA1} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {4B2A872C-2EF3-4A18-90F6-8AC43566DCB5} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {9E06B85E-4A17-47D8-AADF-97EEF3DC78C7} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {A81379D0-16D7-4407-A640-F6C979CF3D57} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {BFB77D5E-CC94-4A3D-A72E-A5DED12E41D0} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {DA2A9D9E-96AA-4AC2-AC8A-14852C39B7D6} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {E3DCDAD3-B1E4-46FF-8D3F-5ABD8FC6CA1F} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {F2E8B426-2E2F-45A7-AB6F-7DC45C61792D} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> {FD86AF32-9957-4B05-BED3-1A580A78B118} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Seznam lištička - C:\Users\Pepa\AppData\Roaming\Mozilla\Firefox\Profiles\yiu9e040.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2014-06-04]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-11-10]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-01-23]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-01-28]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-22]
FF HKU\S-1-5-21-4043110630-1395603381-2878645168-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

Chrome:
=======
CHR Profile: C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-26]
CHR Extension: (Dokumenty Google) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-26]
CHR Extension: (Disk Google) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-26]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-11-12]
CHR Extension: (YouTube) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-26]
CHR Extension: (Vyhledávání Google) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-26]
CHR Extension: (Tabulky Google) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-26]
CHR Extension: (Avast Online Security) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-09-26]
CHR Extension: (Peněženka Google) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-26]
CHR Extension: (Gmail) - C:\Users\Pepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-26]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-23]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeActiveFileMonitor6.0; C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832 2007-09-11] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-23] (AVAST Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2014-01-23] (Macrovision Europe Ltd.) [File not signed]
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2372096 2011-02-18] (Realsil Microelectronics Inc.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-23] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-23] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-23] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-23] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-23] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-23] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-23] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-23] ()
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2014-12-02] (Glarysoft Ltd)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-08 21:39 - 2014-12-08 21:40 - 00015954 _____ () C:\Users\Pepa\Desktop\FRST.txt
2014-12-08 21:38 - 2014-12-08 21:39 - 00000000 ____D () C:\FRST
2014-12-08 21:37 - 2014-12-08 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\Pepa\Desktop\FRSTLauncher.exe
2014-12-08 21:36 - 2014-12-08 21:36 - 02119680 _____ (Farbar) C:\Users\Pepa\Desktop\FRST64.exe
2014-12-08 21:14 - 2014-12-08 21:14 - 00080859 _____ () C:\Users\Pepa\Desktop\zoek-results.txt
2014-12-08 21:10 - 2014-12-08 20:35 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-12-08 20:36 - 2014-12-08 21:12 - 00080859 _____ () C:\zoek-results.log
2014-12-08 20:35 - 2014-12-08 21:11 - 00000000 ____D () C:\zoek_backup
2014-12-08 20:35 - 2014-12-08 20:35 - 01295360 _____ () C:\Users\Pepa\Desktop\zoek.exe
2014-12-08 20:32 - 2014-12-08 20:32 - 00012030 _____ () C:\Users\Pepa\Desktop\AdwCleaner[S0].txt
2014-12-08 20:24 - 2014-12-08 21:11 - 00000644 _____ () C:\Windows\PFRO.log
2014-12-08 20:20 - 2014-12-08 20:23 - 00000000 ____D () C:\AdwCleaner
2014-12-08 20:20 - 2014-12-08 20:20 - 00000055 _____ () C:\AdwCleanerDebug.txt
2014-12-08 20:18 - 2014-12-08 20:18 - 02153472 _____ () C:\Users\Pepa\Desktop\adwcleaner_4.104.exe
2014-12-08 19:42 - 2014-12-08 19:42 - 00000000 ____D () C:\rsit
2014-12-08 19:42 - 2014-12-08 19:42 - 00000000 ____D () C:\Program Files\trend micro
2014-12-04 20:22 - 2014-12-08 21:12 - 00002756 _____ () C:\Windows\System32\Tasks\AutoKMSDaily
2014-12-03 22:59 - 2014-12-08 21:11 - 00000728 _____ () C:\Windows\setupact.log
2014-12-03 22:59 - 2014-12-03 22:59 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-02 05:33 - 2014-12-02 05:33 - 00000000 ____D () C:\Program Files\VideoLAN
2014-11-23 15:40 - 2014-11-23 15:40 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-23 15:40 - 2014-11-23 15:40 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-23 15:40 - 2014-11-23 15:40 - 00001924 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-19 11:51 - 2014-11-19 11:51 - 00000000 __SHD () C:\Users\Pepa\AppData\Local\EmieBrowserModeList
2014-11-19 06:12 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 06:12 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 06:12 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 06:12 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-13 20:01 - 2014-11-13 20:01 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
2014-11-12 09:48 - 2014-11-12 09:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-11-12 09:47 - 2014-11-12 09:47 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-11-12 09:47 - 2014-11-12 09:47 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-11-12 07:49 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 07:49 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 07:49 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 07:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 07:49 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 07:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 07:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 07:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 07:49 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 07:48 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 07:48 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 07:48 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 07:48 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 07:48 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 07:48 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 07:48 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 07:48 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 07:48 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 07:48 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 07:48 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 07:48 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 07:48 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 07:48 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 07:48 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 07:48 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 07:48 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 07:48 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 07:48 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 07:48 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 07:48 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 07:48 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 07:48 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 07:48 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 07:48 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 07:48 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 07:48 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 07:48 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 07:48 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 07:48 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 07:48 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 07:48 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 07:48 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 07:48 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 07:48 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 07:48 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 07:48 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 07:48 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 07:48 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 07:48 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 07:48 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 07:48 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 07:48 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 07:48 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 07:48 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 07:48 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 07:48 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 07:48 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 07:48 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 07:48 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 07:48 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 07:48 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 07:48 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 07:48 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 07:48 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 07:48 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 07:47 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 07:47 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 07:47 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 07:47 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 07:47 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 07:47 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 07:47 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 07:47 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 07:47 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 07:47 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 07:47 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 07:47 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 07:47 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 07:47 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 07:47 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 07:47 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 07:47 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 07:47 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 07:47 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 07:47 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 07:47 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 07:47 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 07:47 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 07:47 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 07:47 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 07:47 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 07:47 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 07:47 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-12 07:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 07:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 07:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-11 11:21 - 2014-05-16 10:52 - 135538504 _____ () C:\Users\Pepa\Documents\DNGConverter_8_2.exe
2014-11-11 11:06 - 2014-11-11 11:12 - 00000000 ____D () C:\Users\Pepa\AppData\Roaming\GetnowUpdater
2014-11-11 11:06 - 2014-11-11 11:06 - 00000000 ____D () C:\Users\Pepa\AppData\Local\GetNowUpdater
2014-11-11 11:04 - 2014-11-11 11:04 - 00000000 ____D () C:\Users\Pepa\AppData\Roaming\SONY ERICSSON W380I user guide
2014-11-10 21:47 - 2014-11-23 15:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-10 20:36 - 2014-12-08 21:07 - 00002198 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-11-10 20:36 - 2014-11-10 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-11-10 20:31 - 2014-12-08 21:12 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-10 20:31 - 2014-12-08 20:42 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-10 20:31 - 2014-11-16 12:37 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-10 20:31 - 2014-11-16 12:37 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-08 21:16 - 2014-01-22 20:54 - 01072416 _____ () C:\Windows\WindowsUpdate.log
2014-12-08 21:16 - 2009-07-14 16:18 - 00668698 _____ () C:\Windows\system32\perfh005.dat
2014-12-08 21:16 - 2009-07-14 16:18 - 00141326 _____ () C:\Windows\system32\perfc005.dat
2014-12-08 21:16 - 2009-07-14 06:13 - 01582838 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-08 21:13 - 2014-05-28 12:34 - 00000326 _____ () C:\Windows\Tasks\GlaryInitialize 5.job
2014-12-08 21:12 - 2014-05-28 12:34 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 5
2014-12-08 21:12 - 2014-02-04 20:03 - 00000218 _____ () C:\Windows\Tasks\AutoKMSDaily.job
2014-12-08 21:12 - 2014-01-22 21:17 - 00000214 _____ () C:\Windows\Tasks\AutoKMS.job
2014-12-08 21:12 - 2014-01-22 21:16 - 00151552 _____ () C:\Windows\KMSEmulator.exe
2014-12-08 21:11 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-08 20:58 - 2014-02-07 16:39 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-08 20:10 - 2009-07-14 05:45 - 00014096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-08 20:10 - 2009-07-14 05:45 - 00014096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-08 18:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-08 18:04 - 2014-01-23 17:03 - 00000000 ____D () C:\Users\Pepa\AppData\Roaming\Seznam.cz
2014-12-06 23:12 - 2014-01-23 15:22 - 00000000 ____D () C:\Users\Pepa\AppData\Roaming\Skype
2014-12-06 22:30 - 2014-01-30 09:08 - 00000000 ____D () C:\Users\Pepa\AppData\Roaming\vlc
2014-12-06 07:19 - 2014-01-22 21:04 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-12-03 21:25 - 2014-02-06 16:08 - 00000000 ____D () C:\Users\Pepa\Desktop\Branná
2014-12-02 05:15 - 2014-05-28 12:34 - 00020160 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\GUBootStartup.sys
2014-12-02 05:15 - 2014-05-28 12:34 - 00002968 _____ () C:\Windows\System32\Tasks\GU5SkipUAC
2014-12-02 05:15 - 2014-05-28 12:34 - 00002618 _____ () C:\Windows\System32\Tasks\GlaryInitialize 5
2014-12-02 05:15 - 2014-05-28 12:34 - 00001096 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2014-12-02 05:15 - 2014-05-28 12:34 - 00001084 _____ () C:\Users\Public\Desktop\Glary Utilities 5.lnk
2014-12-01 19:47 - 2014-02-08 05:20 - 00000000 ____D () C:\Users\Pepa\Documents\Léčba
2014-11-26 13:15 - 2014-11-03 07:34 - 00000000 ____D () C:\Users\Pepa\Desktop\Pepa plocha
2014-11-26 09:58 - 2014-02-07 16:39 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 09:58 - 2014-02-07 16:39 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 09:58 - 2014-02-07 16:39 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 15:48 - 2014-06-29 11:41 - 00000000 ____D () C:\Program Files (x86)\Cyklotrasy
2014-11-23 15:40 - 2014-07-21 09:59 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-23 15:40 - 2014-01-22 21:04 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-13 08:40 - 2014-06-10 20:50 - 00000000 ____D () C:\Windows\Minidump
2014-11-12 12:50 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-12 10:04 - 2014-01-22 21:03 - 00111152 _____ () C:\Users\Pepa\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-12 10:02 - 2009-07-14 05:45 - 00415024 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-12 09:53 - 2014-01-22 21:08 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-12 09:45 - 2014-08-02 18:01 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 09:42 - 2014-08-02 18:01 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-11 12:21 - 2014-11-03 07:46 - 00000000 ___RD () C:\Users\Pepa\Desktop\Programy z plochy
2014-11-11 11:15 - 2014-01-23 05:32 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-11-10 20:36 - 2014-01-23 15:58 - 00000000 ____D () C:\Program Files (x86)\Google

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-26 08:00




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:205.08 GB) (Free:140.67 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:14.06 GB) (Free:1.73 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
Drive g: (Foto) (Fixed) (Total:123.16 GB) (Free:123.07 GB) NTFS
Drive h: (Video) (Fixed) (Total:123.16 GB) (Free:123.07 GB) NTFS

Available physical RAM: 1779.56 MB
Total physical RAM: 2933.86 MB
Percentage of memory in use: 39%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 353048F4)
Partition 1: (Not Active) - (Size=993 KB) - (Type=42)
Partition 2: (Active) - (Size=199 MB) - (Type=42)
Partition 3: (Not Active) - (Size=205.1 GB) - (Type=42)
Partition 4: (Not Active) - (Size=260.5 GB) - (Type=42)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\Windows\Tasks\AutoKMSDaily.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Pepa\Desktop" je 44 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(6.48 KiB) Staženo 57 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#6 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM-x32\...\Run: [] => [X]
    
    Toolbar: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
    
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    
    R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
    R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
    
    C:\Program Files (x86)\Skype\Toolbars
    2014-12-08 21:39 - 2014-12-08 21:40 - 00015954 _____ () C:\Users\Pepa\Desktop\FRST.txt
    2014-12-08 21:37 - 2014-12-08 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\Pepa\Desktop\FRSTLauncher.exe
    2014-12-08 21:14 - 2014-12-08 21:14 - 00080859 _____ () C:\Users\Pepa\Desktop\zoek-results.txt
    2014-12-08 21:10 - 2014-12-08 20:35 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-12-08 20:36 - 2014-12-08 21:12 - 00080859 _____ () C:\zoek-results.log
    2014-12-08 20:35 - 2014-12-08 21:11 - 00000000 ____D () C:\zoek_backup
    2014-12-08 20:35 - 2014-12-08 20:35 - 01295360 _____ () C:\Users\Pepa\Desktop\zoek.exe
    2014-12-08 20:32 - 2014-12-08 20:32 - 00012030 _____ () C:\Users\Pepa\Desktop\AdwCleaner[S0].txt
    2014-12-08 20:24 - 2014-12-08 21:11 - 00000644 _____ () C:\Windows\PFRO.log
    2014-12-08 20:20 - 2014-12-08 20:23 - 00000000 ____D () C:\AdwCleaner
    2014-12-08 20:20 - 2014-12-08 20:20 - 00000055 _____ () C:\AdwCleanerDebug.txt
    2014-12-08 20:18 - 2014-12-08 20:18 - 02153472 _____ () C:\Users\Pepa\Desktop\adwcleaner_4.104.exe
    2014-12-08 19:42 - 2014-12-08 19:42 - 00000000 ____D () C:\rsit
    2014-12-08 19:42 - 2014-12-08 19:42 - 00000000 ____D () C:\Program Files\trend micro
    
    2014-12-04 20:22 - 2014-12-08 21:12 - 00002756 _____ () C:\Windows\System32\Tasks\AutoKMSDaily
    2014-12-08 21:12 - 2014-02-04 20:03 - 00000218 _____ () C:\Windows\Tasks\AutoKMSDaily.job
    2014-12-08 21:12 - 2014-01-22 21:17 - 00000214 _____ () C:\Windows\Tasks\AutoKMS.job
    2014-12-08 21:12 - 2014-01-22 21:16 - 00151552 _____ () C:\Windows\KMSEmulator.exe
    C:\Windows\AutoKMS
    
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
    Task: C:\Windows\Tasks\AutoKMSDaily.job => C:\Windows\AutoKMS\AutoKMS.exe
    Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#7 Příspěvek od plch »

Vkládám fixlog:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-12-2014
Ran by Pepa at 2014-12-09 19:29:37 Run:1
Running from C:\Users\Pepa\Desktop
Loaded Profile: Pepa (Available profiles: Pepa)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM-x32\...\Run: [] => [X]

Toolbar: HKU\S-1-5-21-4043110630-1395603381-2878645168-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File

FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File

R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)

C:\Program Files (x86)\Skype\Toolbars
2014-12-08 21:39 - 2014-12-08 21:40 - 00015954 _____ () C:\Users\Pepa\Desktop\FRST.txt
2014-12-08 21:37 - 2014-12-08 21:38 - 00112640 _____ (forum.viry.cz) C:\Users\Pepa\Desktop\FRSTLauncher.exe
2014-12-08 21:14 - 2014-12-08 21:14 - 00080859 _____ () C:\Users\Pepa\Desktop\zoek-results.txt
2014-12-08 21:10 - 2014-12-08 20:35 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-12-08 20:36 - 2014-12-08 21:12 - 00080859 _____ () C:\zoek-results.log
2014-12-08 20:35 - 2014-12-08 21:11 - 00000000 ____D () C:\zoek_backup
2014-12-08 20:35 - 2014-12-08 20:35 - 01295360 _____ () C:\Users\Pepa\Desktop\zoek.exe
2014-12-08 20:32 - 2014-12-08 20:32 - 00012030 _____ () C:\Users\Pepa\Desktop\AdwCleaner[S0].txt
2014-12-08 20:24 - 2014-12-08 21:11 - 00000644 _____ () C:\Windows\PFRO.log
2014-12-08 20:20 - 2014-12-08 20:23 - 00000000 ____D () C:\AdwCleaner
2014-12-08 20:20 - 2014-12-08 20:20 - 00000055 _____ () C:\AdwCleanerDebug.txt
2014-12-08 20:18 - 2014-12-08 20:18 - 02153472 _____ () C:\Users\Pepa\Desktop\adwcleaner_4.104.exe
2014-12-08 19:42 - 2014-12-08 19:42 - 00000000 ____D () C:\rsit
2014-12-08 19:42 - 2014-12-08 19:42 - 00000000 ____D () C:\Program Files\trend micro

2014-12-04 20:22 - 2014-12-08 21:12 - 00002756 _____ () C:\Windows\System32\Tasks\AutoKMSDaily
2014-12-08 21:12 - 2014-02-04 20:03 - 00000218 _____ () C:\Windows\Tasks\AutoKMSDaily.job
2014-12-08 21:12 - 2014-01-22 21:17 - 00000214 _____ () C:\Windows\Tasks\AutoKMS.job
2014-12-08 21:12 - 2014-01-22 21:16 - 00151552 _____ () C:\Windows\KMSEmulator.exe
C:\Windows\AutoKMS

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\Windows\Tasks\AutoKMSDaily.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\S-1-5-21-4043110630-1395603381-2878645168-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
"HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
c2cautoupdatesvc => Service deleted successfully.
c2cpnrsvc => Service deleted successfully.
C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
C:\Users\Pepa\Desktop\FRST.txt => Moved successfully.
C:\Users\Pepa\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Users\Pepa\Desktop\zoek-results.txt => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Pepa\Desktop\zoek.exe => Moved successfully.
C:\Users\Pepa\Desktop\AdwCleaner[S0].txt => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\AdwCleanerDebug.txt => Moved successfully.
C:\Users\Pepa\Desktop\adwcleaner_4.104.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Windows\System32\Tasks\AutoKMSDaily => Moved successfully.
C:\Windows\Tasks\AutoKMSDaily.job => Moved successfully.
C:\Windows\Tasks\AutoKMS.job => Moved successfully.
C:\Windows\KMSEmulator.exe => Moved successfully.
C:\Windows\AutoKMS => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\AutoKMS.job not found.
C:\Windows\Tasks\AutoKMSDaily.job not found.
C:\Windows\Tasks\GlaryInitialize 5.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 394.5 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#8 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remote disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#9 Příspěvek od plch »

Díky moc za pomoc. Už jsem to viděl na přeinstalování. Ještě, že jste tady. Ještě jednou moc děkuji.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomalené PC,vyskakující okna a hlášení viru.

#10 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno