Prosím o prověření
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Prosím o prověření
Dobrý den,prosím moc o prověření,notebook jede hrozne pomalu.Děkuji
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2014 01
Ran by lenka (administrator) on LENKA-PC on 17-12-2014 15:17:31
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Memeo) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(KMP Media co., Ltd) C:\Program Files (x86)\The KMPlayer\KMPlayer.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\lenka\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated)
HKLM\...\Run: [Power Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [7138816 2013-10-25] (Broadcom Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13260944 2012-11-19] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-09-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe [1584 2014-03-05] ()
HKLM-x32\...\Run: [mncugcySrv] => C:\Windows\SysWOW64\mncugcy.vbe [7670 2014-03-05] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_15_0_0_246_Plugin.exe [855216 2014-12-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=6826
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... -SearchBox
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 81.19.33.2 80.83.64.2
Tcpip\..\Interfaces\{6BAC88DA-4E21-4E20-A5B6-EF51DBD68DC8}: [NameServer] 8.8.8.4,8.8.8.8
FireFox:
========
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\firmy.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\videa.seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\yqs-barff-yandex.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\zbozi.cz-201516.xml
FF Extension: Battlefield Play4Free - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\battlefieldplay4free@ea.com [2014-10-06]
FF Extension: GFACE Experience Plugin - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cryenginebrowserplugin@crytek.com [2013-11-07]
FF Extension: Český slovník pro kontrolu pravopisu - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cs@dictionaries.addons.mozilla.org [2014-11-10]
Chrome:
=======
CHR Profile: C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [872552 2011-08-02] (Acer Incorporated)
R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-10-30] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2013-10-30] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [5824512 2013-10-25] (Broadcom Corporation) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-07-26] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-10-20] (DT Soft Ltd)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-11-19] (Intel Corporation)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-07-26] ()
S1 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed]
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-10-30] ()
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 15:17 - 2014-12-17 15:18 - 00015230 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-12-17 15:16 - 2014-12-17 15:17 - 00000000 ____D () C:\FRST
2014-12-17 15:14 - 2014-12-17 15:14 - 02119168 _____ (Farbar) C:\Users\lenka\Desktop\FRST64.exe
2014-12-17 15:14 - 2014-12-17 15:14 - 00112640 _____ (forum.viry.cz) C:\Users\lenka\Desktop\FRSTLauncher.exe
2014-12-14 12:05 - 2014-12-14 12:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 12:01 - 2014-12-14 12:20 - 2547796194 _____ () C:\Users\lenka\Downloads\Labyrint Útek.avi
2014-12-09 19:54 - 2014-12-09 19:54 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-12-09 17:09 - 2014-12-09 17:18 - 1042107960 _____ () C:\Users\lenka\Downloads\Vinaři S01E15 - Derby.avi
2014-12-04 18:49 - 2014-12-04 18:54 - 00000000 ____D () C:\Users\lenka\Downloads\Guardians.of.the.Galaxy.2014.480p.BRRip.XviD.AC3.CZ-4play
2014-12-04 18:22 - 2014-12-04 18:22 - 00000000 ____D () C:\Users\lenka\Downloads\The.Expendables.3.2014.DVDR.CZ-4play
2014-12-04 18:20 - 2014-12-04 20:45 - 1754363904 _____ () C:\Users\lenka\Downloads\Teenage.Mutant.Ninja.Turtles.2014.BDRip.XViD.AC3.CZ-GRiNGO.avi
2014-12-04 18:19 - 2014-12-04 18:35 - 00000000 ____D () C:\Users\lenka\Downloads\Fury.2014.DVDScr.XviD.AC3
2014-12-04 18:14 - 2014-12-04 18:21 - 776219440 _____ () C:\Users\lenka\Downloads\Pojedeme k moři 2014.avi
2014-11-28 18:31 - 2014-11-28 18:31 - 00000000 ____D () C:\Users\lenka\Downloads\Letadla 2
2014-11-28 16:41 - 2014-11-28 19:29 - 1733402624 _____ () C:\Users\lenka\Downloads\Zejtra napořád 2014 Cz.avi
2014-11-28 16:40 - 2014-11-28 16:50 - 00000000 ____D () C:\Users\lenka\Downloads\Dracula.Untold
2014-11-28 16:39 - 2014-11-28 18:29 - 1348609730 _____ () C:\Users\lenka\Downloads\Bunraku.2010.BDRip.XviD.CZ.avi
2014-11-28 10:14 - 2014-11-28 11:07 - 1875685376 _____ () C:\Users\lenka\Downloads\Drive.Angry.2011.480p.BRRip.XviD.AC3.CZ-LEADERs.avi
2014-11-28 10:05 - 2014-11-28 10:05 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-28 10:00 - 2014-11-28 10:00 - 00000000 ____D () C:\Users\lenka\Downloads\CCleaner Professional & Business Edition v5.00.5050 (2014)(CZ,SK)
2014-11-28 09:52 - 2014-11-28 10:13 - 1632995328 _____ () C:\Users\lenka\Downloads\Díra u Hanušovic.avi
2014-11-25 21:42 - 2014-11-28 20:05 - 1136981620 _____ () C:\Users\lenka\Downloads\Dopisy z Iwo Jimy.avi
2014-11-25 21:30 - 2014-11-25 21:58 - 1334059008 _____ () C:\Users\lenka\Downloads\Ponorka U-571.avi
2014-11-25 20:18 - 2014-11-25 20:22 - 00000000 ____D () C:\AdwCleaner
2014-11-25 11:36 - 2014-11-25 11:43 - 894041112 _____ () C:\Users\lenka\Downloads\Vinaři S01E13 - Tour de Burčák.avi
2014-11-24 12:38 - 2014-11-24 17:47 - 00000000 ____D () C:\Users\lenka\Downloads\Lucy.2014.480p.BDRip.XviD.AC3.CZ-GRiNGO
2014-11-24 12:31 - 2014-11-24 12:31 - 00000000 ____D () C:\Users\lenka\Downloads\Prijde.letos.jezisek.2013.DVDRip.XViD.AC3.CZ-GRiNGO
2014-11-20 18:48 - 2014-11-20 18:56 - 736618496 _____ () C:\Users\lenka\Downloads\V oku tornáda.avi
2014-11-19 18:59 - 2014-11-19 18:59 - 00000000 ____D () C:\Users\lenka\Downloads\Spartakus (1960)
2014-11-19 14:16 - 2013-12-30 15:36 - 00849360 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110.dll
2014-11-19 09:23 - 2014-11-19 10:01 - 825253888 _____ () C:\Users\lenka\Downloads\Tammy 2014 Cz dab..avi
2014-11-19 09:16 - 2014-11-19 09:32 - 1034917888 _____ () C:\Users\lenka\Downloads\Na život a na smrt.avi
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 15:15 - 2012-10-19 10:28 - 00000000 ____D () C:\Filmy
2014-12-17 14:54 - 2014-02-07 09:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-17 14:17 - 2014-11-10 15:02 - 00092031 ____N () C:\Windows\WindowsUpdate.log
2014-12-17 12:09 - 2012-12-05 11:52 - 00000000 ____D () C:\Program Files (x86)\Video Web Camera
2014-12-17 10:48 - 2013-08-23 12:51 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
2014-12-17 10:04 - 2014-03-26 20:02 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\vlc
2014-12-17 07:46 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-17 07:46 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-17 07:43 - 2012-07-10 14:34 - 00673424 _____ () C:\Windows\system32\perfh005.dat
2014-12-17 07:43 - 2012-07-10 14:34 - 00143486 _____ () C:\Windows\system32\perfc005.dat
2014-12-17 07:43 - 2009-07-14 06:13 - 01596636 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-17 07:42 - 2012-10-27 15:32 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\uTorrent
2014-12-17 07:41 - 2012-10-20 08:32 - 00000000 ____D () C:\Users\lenka\AppData\Local\CrashDumps
2014-12-17 07:39 - 2014-10-12 08:42 - 00000330 _____ () C:\Users\lenka\rgut
2014-12-17 07:37 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-14 18:48 - 2012-10-17 14:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-09 19:54 - 2012-10-17 15:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-09 19:54 - 2012-10-17 15:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-09 19:54 - 2011-10-20 11:30 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-09 18:16 - 2013-08-14 08:47 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-12-08 19:04 - 2014-07-27 19:58 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\dvdcss
2014-11-28 14:42 - 2014-09-08 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2014-11-28 14:42 - 2014-09-08 18:38 - 00000000 ____D () C:\Hry
2014-11-28 14:04 - 2013-03-24 11:58 - 00000000 ____D () C:\Users\lenka\Documents\My Games
2014-11-25 14:28 - 2012-10-27 14:55 - 00000000 ____D () C:\Users\lenka\Desktop\League of Legends
2014-11-24 10:57 - 2012-10-19 10:43 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\Winamp
2014-11-19 15:34 - 2013-09-11 15:56 - 00000000 ____D () C:\Games
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-17 10:37
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Packard Bell) (Fixed) (Total:446.66 GB) (Free:151.82 GB) NTFS
Available physical RAM: 2327.82 MB
Total physical RAM: 3947.86 MB
Percentage of memory in use: 41%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 29AC29F9)
Partition 1: (Not Active) - (Size=19 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=446.7 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\lenka\Desktop" je 9055 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2014 01
Ran by lenka (administrator) on LENKA-PC on 17-12-2014 15:17:31
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Memeo) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(KMP Media co., Ltd) C:\Program Files (x86)\The KMPlayer\KMPlayer.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\lenka\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated)
HKLM\...\Run: [Power Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [7138816 2013-10-25] (Broadcom Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13260944 2012-11-19] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-09-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe [1584 2014-03-05] ()
HKLM-x32\...\Run: [mncugcySrv] => C:\Windows\SysWOW64\mncugcy.vbe [7670 2014-03-05] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_15_0_0_246_Plugin.exe [855216 2014-12-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=6826
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... -SearchBox
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 81.19.33.2 80.83.64.2
Tcpip\..\Interfaces\{6BAC88DA-4E21-4E20-A5B6-EF51DBD68DC8}: [NameServer] 8.8.8.4,8.8.8.8
FireFox:
========
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\firmy.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\videa.seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\yqs-barff-yandex.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\zbozi.cz-201516.xml
FF Extension: Battlefield Play4Free - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\battlefieldplay4free@ea.com [2014-10-06]
FF Extension: GFACE Experience Plugin - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cryenginebrowserplugin@crytek.com [2013-11-07]
FF Extension: Český slovník pro kontrolu pravopisu - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cs@dictionaries.addons.mozilla.org [2014-11-10]
Chrome:
=======
CHR Profile: C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [872552 2011-08-02] (Acer Incorporated)
R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-10-30] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2013-10-30] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [5824512 2013-10-25] (Broadcom Corporation) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-07-26] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-10-20] (DT Soft Ltd)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-11-19] (Intel Corporation)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-07-26] ()
S1 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed]
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-10-30] ()
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 15:17 - 2014-12-17 15:18 - 00015230 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-12-17 15:16 - 2014-12-17 15:17 - 00000000 ____D () C:\FRST
2014-12-17 15:14 - 2014-12-17 15:14 - 02119168 _____ (Farbar) C:\Users\lenka\Desktop\FRST64.exe
2014-12-17 15:14 - 2014-12-17 15:14 - 00112640 _____ (forum.viry.cz) C:\Users\lenka\Desktop\FRSTLauncher.exe
2014-12-14 12:05 - 2014-12-14 12:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 12:01 - 2014-12-14 12:20 - 2547796194 _____ () C:\Users\lenka\Downloads\Labyrint Útek.avi
2014-12-09 19:54 - 2014-12-09 19:54 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-12-09 17:09 - 2014-12-09 17:18 - 1042107960 _____ () C:\Users\lenka\Downloads\Vinaři S01E15 - Derby.avi
2014-12-04 18:49 - 2014-12-04 18:54 - 00000000 ____D () C:\Users\lenka\Downloads\Guardians.of.the.Galaxy.2014.480p.BRRip.XviD.AC3.CZ-4play
2014-12-04 18:22 - 2014-12-04 18:22 - 00000000 ____D () C:\Users\lenka\Downloads\The.Expendables.3.2014.DVDR.CZ-4play
2014-12-04 18:20 - 2014-12-04 20:45 - 1754363904 _____ () C:\Users\lenka\Downloads\Teenage.Mutant.Ninja.Turtles.2014.BDRip.XViD.AC3.CZ-GRiNGO.avi
2014-12-04 18:19 - 2014-12-04 18:35 - 00000000 ____D () C:\Users\lenka\Downloads\Fury.2014.DVDScr.XviD.AC3
2014-12-04 18:14 - 2014-12-04 18:21 - 776219440 _____ () C:\Users\lenka\Downloads\Pojedeme k moři 2014.avi
2014-11-28 18:31 - 2014-11-28 18:31 - 00000000 ____D () C:\Users\lenka\Downloads\Letadla 2
2014-11-28 16:41 - 2014-11-28 19:29 - 1733402624 _____ () C:\Users\lenka\Downloads\Zejtra napořád 2014 Cz.avi
2014-11-28 16:40 - 2014-11-28 16:50 - 00000000 ____D () C:\Users\lenka\Downloads\Dracula.Untold
2014-11-28 16:39 - 2014-11-28 18:29 - 1348609730 _____ () C:\Users\lenka\Downloads\Bunraku.2010.BDRip.XviD.CZ.avi
2014-11-28 10:14 - 2014-11-28 11:07 - 1875685376 _____ () C:\Users\lenka\Downloads\Drive.Angry.2011.480p.BRRip.XviD.AC3.CZ-LEADERs.avi
2014-11-28 10:05 - 2014-11-28 10:05 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-28 10:00 - 2014-11-28 10:00 - 00000000 ____D () C:\Users\lenka\Downloads\CCleaner Professional & Business Edition v5.00.5050 (2014)(CZ,SK)
2014-11-28 09:52 - 2014-11-28 10:13 - 1632995328 _____ () C:\Users\lenka\Downloads\Díra u Hanušovic.avi
2014-11-25 21:42 - 2014-11-28 20:05 - 1136981620 _____ () C:\Users\lenka\Downloads\Dopisy z Iwo Jimy.avi
2014-11-25 21:30 - 2014-11-25 21:58 - 1334059008 _____ () C:\Users\lenka\Downloads\Ponorka U-571.avi
2014-11-25 20:18 - 2014-11-25 20:22 - 00000000 ____D () C:\AdwCleaner
2014-11-25 11:36 - 2014-11-25 11:43 - 894041112 _____ () C:\Users\lenka\Downloads\Vinaři S01E13 - Tour de Burčák.avi
2014-11-24 12:38 - 2014-11-24 17:47 - 00000000 ____D () C:\Users\lenka\Downloads\Lucy.2014.480p.BDRip.XviD.AC3.CZ-GRiNGO
2014-11-24 12:31 - 2014-11-24 12:31 - 00000000 ____D () C:\Users\lenka\Downloads\Prijde.letos.jezisek.2013.DVDRip.XViD.AC3.CZ-GRiNGO
2014-11-20 18:48 - 2014-11-20 18:56 - 736618496 _____ () C:\Users\lenka\Downloads\V oku tornáda.avi
2014-11-19 18:59 - 2014-11-19 18:59 - 00000000 ____D () C:\Users\lenka\Downloads\Spartakus (1960)
2014-11-19 14:16 - 2013-12-30 15:36 - 00849360 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110.dll
2014-11-19 09:23 - 2014-11-19 10:01 - 825253888 _____ () C:\Users\lenka\Downloads\Tammy 2014 Cz dab..avi
2014-11-19 09:16 - 2014-11-19 09:32 - 1034917888 _____ () C:\Users\lenka\Downloads\Na život a na smrt.avi
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 15:15 - 2012-10-19 10:28 - 00000000 ____D () C:\Filmy
2014-12-17 14:54 - 2014-02-07 09:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-17 14:17 - 2014-11-10 15:02 - 00092031 ____N () C:\Windows\WindowsUpdate.log
2014-12-17 12:09 - 2012-12-05 11:52 - 00000000 ____D () C:\Program Files (x86)\Video Web Camera
2014-12-17 10:48 - 2013-08-23 12:51 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
2014-12-17 10:04 - 2014-03-26 20:02 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\vlc
2014-12-17 07:46 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-17 07:46 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-17 07:43 - 2012-07-10 14:34 - 00673424 _____ () C:\Windows\system32\perfh005.dat
2014-12-17 07:43 - 2012-07-10 14:34 - 00143486 _____ () C:\Windows\system32\perfc005.dat
2014-12-17 07:43 - 2009-07-14 06:13 - 01596636 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-17 07:42 - 2012-10-27 15:32 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\uTorrent
2014-12-17 07:41 - 2012-10-20 08:32 - 00000000 ____D () C:\Users\lenka\AppData\Local\CrashDumps
2014-12-17 07:39 - 2014-10-12 08:42 - 00000330 _____ () C:\Users\lenka\rgut
2014-12-17 07:37 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-14 18:48 - 2012-10-17 14:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-09 19:54 - 2012-10-17 15:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-09 19:54 - 2012-10-17 15:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-09 19:54 - 2011-10-20 11:30 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-09 18:16 - 2013-08-14 08:47 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-12-08 19:04 - 2014-07-27 19:58 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\dvdcss
2014-11-28 14:42 - 2014-09-08 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2014-11-28 14:42 - 2014-09-08 18:38 - 00000000 ____D () C:\Hry
2014-11-28 14:04 - 2013-03-24 11:58 - 00000000 ____D () C:\Users\lenka\Documents\My Games
2014-11-25 14:28 - 2012-10-27 14:55 - 00000000 ____D () C:\Users\lenka\Desktop\League of Legends
2014-11-24 10:57 - 2012-10-19 10:43 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\Winamp
2014-11-19 15:34 - 2013-09-11 15:56 - 00000000 ____D () C:\Games
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-17 10:37
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Packard Bell) (Fixed) (Total:446.66 GB) (Free:151.82 GB) NTFS
Available physical RAM: 2327.82 MB
Total physical RAM: 3947.86 MB
Percentage of memory in use: 41%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 29AC29F9)
Partition 1: (Not Active) - (Size=19 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=446.7 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\lenka\Desktop" je 9055 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (8.32 KiB) Staženo 42 x
Re: Prosím o prověření
Zdravim 
Jste tak dobrosrdecny, ze pres pul roku pro nekoho tezite BitCoiny... ma z Vas urcite radost
Ale ted vazne... prehledl jsem antivir, takze si bud kupte licenci (napr. ESET, Kaspersky...) nebo nainstalujte free variantu... v testech se dlouhodobe dobrymi vysledky prezentuji avast! Free nebo Avira (ta je ve free verzi jen anglicky).
V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).
Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
- ukoncete vsechny programy
- kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- kliknete na Scan, pote na Clean
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
Půl roku?
to by mě měli poslat aspoň půlku... 
# AdwCleaner v4.105 - Report created 17/12/2014 at 16:00:15
# Updated 08/12/2014 by Xplode
# Database : 2014-12-16.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : lenka - LENKA-PC
# Running from : C:\Users\lenka\Desktop\adwcleaner_4.105.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\yqs-barff-yandex.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}
Key Deleted : HKCU\Software\Conduit
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v34.0.5 (x86 cs)
-\\ Google Chrome v
-\\ Chromium v
-\\ Opera v0.0.0.0
*************************
AdwCleaner[R2].txt - [1686 octets] - [25/11/2014 20:18:50]
AdwCleaner[R3].txt - [1372 octets] - [17/12/2014 15:58:01]
AdwCleaner[S1].txt - [1645 octets] - [25/11/2014 20:22:13]
AdwCleaner[S2].txt - [1256 octets] - [17/12/2014 16:00:15]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1316 octets] ##########
# AdwCleaner v4.105 - Report created 17/12/2014 at 16:00:15
# Updated 08/12/2014 by Xplode
# Database : 2014-12-16.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : lenka - LENKA-PC
# Running from : C:\Users\lenka\Desktop\adwcleaner_4.105.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\yqs-barff-yandex.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}
Key Deleted : HKCU\Software\Conduit
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v34.0.5 (x86 cs)
-\\ Google Chrome v
-\\ Chromium v
-\\ Opera v0.0.0.0
*************************
AdwCleaner[R2].txt - [1686 octets] - [25/11/2014 20:18:50]
AdwCleaner[R3].txt - [1372 octets] - [17/12/2014 15:58:01]
AdwCleaner[S1].txt - [1645 octets] - [25/11/2014 20:22:13]
AdwCleaner[S2].txt - [1256 octets] - [17/12/2014 16:00:15]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1316 octets] ##########
Re: Prosím o prověření
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
Vybral jsem Avast,už i nainstaloval. Už našel 4 viry,ale zatím jsem ho vypnul než to tady vše pošlu Vám.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2014 01
Ran by lenka (administrator) on LENKA-PC on 17-12-2014 16:21:23
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Memeo) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated)
HKLM\...\Run: [Power Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [7138816 2013-10-25] (Broadcom Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13260944 2012-11-19] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-09-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5225064 2014-12-17] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
BootExecute: autocheck autochk * aswBoot.exe /M:e8cc3217 /wow /dir:"C:\Program Files\AVAST Software\Avast"
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=6826
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... -SearchBox
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 81.19.33.2 80.83.64.2
Tcpip\..\Interfaces\{6BAC88DA-4E21-4E20-A5B6-EF51DBD68DC8}: [NameServer] 8.8.8.4,8.8.8.8
FireFox:
========
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\firmy.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\videa.seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\zbozi.cz-201516.xml
FF Extension: Battlefield Play4Free - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\battlefieldplay4free@ea.com [2014-10-06]
FF Extension: GFACE Experience Plugin - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cryenginebrowserplugin@crytek.com [2013-11-07]
FF Extension: Český slovník pro kontrolu pravopisu - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cs@dictionaries.addons.mozilla.org [2014-11-10]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-17]
Chrome:
=======
CHR Profile: C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-17]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-17] (AVAST Software)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [872552 2011-08-02] (Acer Incorporated)
R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-10-30] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2013-10-30] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [5824512 2013-10-25] (Broadcom Corporation) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-17] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-17] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-17] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-17] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-17] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-17] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-17] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-17] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-07-26] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-10-20] (DT Soft Ltd)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-11-19] (Intel Corporation)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-07-26] ()
S1 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed]
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-10-30] ()
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 16:09 - 2014-12-17 16:09 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\AVAST Software
2014-12-17 16:08 - 2014-12-17 16:09 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-12-17 16:08 - 2014-12-17 16:08 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-12-17 16:08 - 2014-12-17 16:08 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-12-17 16:08 - 2014-12-17 16:08 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00001972 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-12-17 16:08 - 2014-12-17 16:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2014-12-17 16:08 - 2014-12-17 16:07 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1418828928483
2014-12-17 16:06 - 2014-12-17 16:06 - 00000000 ____D () C:\Program Files\AVAST Software
2014-12-17 16:05 - 2014-12-17 16:06 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-12-17 16:01 - 2014-12-17 16:01 - 00000314 _____ () C:\Windows\PFRO.log
2014-12-17 16:01 - 2014-12-17 16:01 - 00000056 _____ () C:\Windows\setupact.log
2014-12-17 16:01 - 2014-12-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe
2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar
2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt
2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-12-17 15:16 - 2014-12-17 16:21 - 00000000 ____D () C:\FRST
2014-12-17 15:14 - 2014-12-17 15:14 - 02119168 _____ (Farbar) C:\Users\lenka\Desktop\FRST64.exe
2014-12-14 12:05 - 2014-12-14 12:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 12:01 - 2014-12-14 12:20 - 2547796194 _____ () C:\Users\lenka\Downloads\Labyrint Útek.avi
2014-12-09 19:54 - 2014-12-09 19:54 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-12-09 17:09 - 2014-12-09 17:18 - 1042107960 _____ () C:\Users\lenka\Downloads\Vinaři S01E15 - Derby.avi
2014-12-04 18:49 - 2014-12-04 18:54 - 00000000 ____D () C:\Users\lenka\Downloads\Guardians.of.the.Galaxy.2014.480p.BRRip.XviD.AC3.CZ-4play
2014-12-04 18:22 - 2014-12-04 18:22 - 00000000 ____D () C:\Users\lenka\Downloads\The.Expendables.3.2014.DVDR.CZ-4play
2014-12-04 18:20 - 2014-12-04 20:45 - 1754363904 _____ () C:\Users\lenka\Downloads\Teenage.Mutant.Ninja.Turtles.2014.BDRip.XViD.AC3.CZ-GRiNGO.avi
2014-12-04 18:19 - 2014-12-04 18:35 - 00000000 ____D () C:\Users\lenka\Downloads\Fury.2014.DVDScr.XviD.AC3
2014-12-04 18:14 - 2014-12-04 18:21 - 776219440 _____ () C:\Users\lenka\Downloads\Pojedeme k moři 2014.avi
2014-11-28 18:31 - 2014-11-28 18:31 - 00000000 ____D () C:\Users\lenka\Downloads\Letadla 2
2014-11-28 16:41 - 2014-11-28 19:29 - 1733402624 _____ () C:\Users\lenka\Downloads\Zejtra napořád 2014 Cz.avi
2014-11-28 16:40 - 2014-11-28 16:50 - 00000000 ____D () C:\Users\lenka\Downloads\Dracula.Untold
2014-11-28 16:39 - 2014-11-28 18:29 - 1348609730 _____ () C:\Users\lenka\Downloads\Bunraku.2010.BDRip.XviD.CZ.avi
2014-11-28 10:14 - 2014-11-28 11:07 - 1875685376 _____ () C:\Users\lenka\Downloads\Drive.Angry.2011.480p.BRRip.XviD.AC3.CZ-LEADERs.avi
2014-11-28 10:05 - 2014-11-28 10:05 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-28 10:00 - 2014-11-28 10:00 - 00000000 ____D () C:\Users\lenka\Downloads\CCleaner Professional & Business Edition v5.00.5050 (2014)(CZ,SK)
2014-11-28 09:52 - 2014-11-28 10:13 - 1632995328 _____ () C:\Users\lenka\Downloads\Díra u Hanušovic.avi
2014-11-25 21:42 - 2014-11-28 20:05 - 1136981620 _____ () C:\Users\lenka\Downloads\Dopisy z Iwo Jimy.avi
2014-11-25 21:30 - 2014-11-25 21:58 - 1334059008 _____ () C:\Users\lenka\Downloads\Ponorka U-571.avi
2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner
2014-11-25 11:36 - 2014-11-25 11:43 - 894041112 _____ () C:\Users\lenka\Downloads\Vinaři S01E13 - Tour de Burčák.avi
2014-11-24 12:38 - 2014-11-24 17:47 - 00000000 ____D () C:\Users\lenka\Downloads\Lucy.2014.480p.BDRip.XviD.AC3.CZ-GRiNGO
2014-11-24 12:31 - 2014-11-24 12:31 - 00000000 ____D () C:\Users\lenka\Downloads\Prijde.letos.jezisek.2013.DVDRip.XViD.AC3.CZ-GRiNGO
2014-11-20 18:48 - 2014-11-20 18:56 - 736618496 _____ () C:\Users\lenka\Downloads\V oku tornáda.avi
2014-11-19 18:59 - 2014-11-19 18:59 - 00000000 ____D () C:\Users\lenka\Downloads\Spartakus (1960)
2014-11-19 14:16 - 2013-12-30 15:36 - 00849360 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110.dll
2014-11-19 09:23 - 2014-11-19 10:01 - 825253888 _____ () C:\Users\lenka\Downloads\Tammy 2014 Cz dab..avi
2014-11-19 09:16 - 2014-11-19 09:32 - 1034917888 _____ () C:\Users\lenka\Downloads\Na život a na smrt.avi
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 16:19 - 2014-03-26 20:02 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\vlc
2014-12-17 16:09 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-17 16:09 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-17 16:07 - 2012-07-10 14:34 - 00673424 _____ () C:\Windows\system32\perfh005.dat
2014-12-17 16:07 - 2012-07-10 14:34 - 00143486 _____ () C:\Windows\system32\perfc005.dat
2014-12-17 16:07 - 2009-07-14 06:13 - 01596636 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-17 16:06 - 2014-11-10 15:02 - 00095434 _____ () C:\Windows\WindowsUpdate.log
2014-12-17 16:05 - 2012-10-19 10:28 - 00000000 ____D () C:\Filmy
2014-12-17 16:04 - 2012-10-20 08:32 - 00000000 ____D () C:\Users\lenka\AppData\Local\CrashDumps
2014-12-17 16:03 - 2014-10-12 08:42 - 00000330 _____ () C:\Users\lenka\rgut
2014-12-17 16:01 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-17 15:54 - 2014-02-07 09:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-17 12:09 - 2012-12-05 11:52 - 00000000 ____D () C:\Program Files (x86)\Video Web Camera
2014-12-17 10:48 - 2013-08-23 12:51 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
2014-12-17 07:42 - 2012-10-27 15:32 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\uTorrent
2014-12-14 18:48 - 2012-10-17 14:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-09 19:54 - 2012-10-17 15:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-09 19:54 - 2012-10-17 15:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-09 19:54 - 2011-10-20 11:30 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-09 18:16 - 2013-08-14 08:47 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-12-08 19:04 - 2014-07-27 19:58 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\dvdcss
2014-11-28 14:42 - 2014-09-08 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2014-11-28 14:42 - 2014-09-08 18:38 - 00000000 ____D () C:\Hry
2014-11-28 14:04 - 2013-03-24 11:58 - 00000000 ____D () C:\Users\lenka\Documents\My Games
2014-11-25 14:28 - 2012-10-27 14:55 - 00000000 ____D () C:\Users\lenka\Desktop\League of Legends
2014-11-24 10:57 - 2012-10-19 10:43 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\Winamp
2014-11-19 15:34 - 2013-09-11 15:56 - 00000000 ____D () C:\Games
Some content of TEMP:
====================
C:\Users\lenka\AppData\Local\Temp\Quarantine.exe
C:\Users\lenka\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-17 10:37
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2014 01
Ran by lenka (administrator) on LENKA-PC on 17-12-2014 16:21:23
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Memeo) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated)
HKLM\...\Run: [Power Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [7138816 2013-10-25] (Broadcom Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13260944 2012-11-19] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-09-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5225064 2014-12-17] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
BootExecute: autocheck autochk * aswBoot.exe /M:e8cc3217 /wow /dir:"C:\Program Files\AVAST Software\Avast"
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=6826
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... -SearchBox
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 81.19.33.2 80.83.64.2
Tcpip\..\Interfaces\{6BAC88DA-4E21-4E20-A5B6-EF51DBD68DC8}: [NameServer] 8.8.8.4,8.8.8.8
FireFox:
========
FF ProfilePath: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\firmy.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\videa.seznam.cz-201516.xml
FF SearchPlugin: C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\searchplugins\zbozi.cz-201516.xml
FF Extension: Battlefield Play4Free - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\battlefieldplay4free@ea.com [2014-10-06]
FF Extension: GFACE Experience Plugin - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cryenginebrowserplugin@crytek.com [2013-11-07]
FF Extension: Český slovník pro kontrolu pravopisu - C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\Extensions\cs@dictionaries.addons.mozilla.org [2014-11-10]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-17]
Chrome:
=======
CHR Profile: C:\Users\lenka\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-17]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-17] (AVAST Software)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [872552 2011-08-02] (Acer Incorporated)
R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-10-30] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2013-10-30] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [130048 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [5824512 2013-10-25] (Broadcom Corporation) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-17] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-17] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-17] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-17] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-17] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-17] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-17] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-17] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-07-26] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-10-20] (DT Soft Ltd)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-11-19] (Intel Corporation)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-07-26] ()
S1 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed]
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-10-30] ()
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 16:09 - 2014-12-17 16:09 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\AVAST Software
2014-12-17 16:08 - 2014-12-17 16:09 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-12-17 16:08 - 2014-12-17 16:08 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-12-17 16:08 - 2014-12-17 16:08 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-12-17 16:08 - 2014-12-17 16:08 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-12-17 16:08 - 2014-12-17 16:08 - 00001972 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-12-17 16:08 - 2014-12-17 16:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2014-12-17 16:08 - 2014-12-17 16:07 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1418828928483
2014-12-17 16:06 - 2014-12-17 16:06 - 00000000 ____D () C:\Program Files\AVAST Software
2014-12-17 16:05 - 2014-12-17 16:06 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-12-17 16:01 - 2014-12-17 16:01 - 00000314 _____ () C:\Windows\PFRO.log
2014-12-17 16:01 - 2014-12-17 16:01 - 00000056 _____ () C:\Windows\setupact.log
2014-12-17 16:01 - 2014-12-17 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe
2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar
2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt
2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-12-17 15:16 - 2014-12-17 16:21 - 00000000 ____D () C:\FRST
2014-12-17 15:14 - 2014-12-17 15:14 - 02119168 _____ (Farbar) C:\Users\lenka\Desktop\FRST64.exe
2014-12-14 12:05 - 2014-12-14 12:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 12:01 - 2014-12-14 12:20 - 2547796194 _____ () C:\Users\lenka\Downloads\Labyrint Útek.avi
2014-12-09 19:54 - 2014-12-09 19:54 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-12-09 17:09 - 2014-12-09 17:18 - 1042107960 _____ () C:\Users\lenka\Downloads\Vinaři S01E15 - Derby.avi
2014-12-04 18:49 - 2014-12-04 18:54 - 00000000 ____D () C:\Users\lenka\Downloads\Guardians.of.the.Galaxy.2014.480p.BRRip.XviD.AC3.CZ-4play
2014-12-04 18:22 - 2014-12-04 18:22 - 00000000 ____D () C:\Users\lenka\Downloads\The.Expendables.3.2014.DVDR.CZ-4play
2014-12-04 18:20 - 2014-12-04 20:45 - 1754363904 _____ () C:\Users\lenka\Downloads\Teenage.Mutant.Ninja.Turtles.2014.BDRip.XViD.AC3.CZ-GRiNGO.avi
2014-12-04 18:19 - 2014-12-04 18:35 - 00000000 ____D () C:\Users\lenka\Downloads\Fury.2014.DVDScr.XviD.AC3
2014-12-04 18:14 - 2014-12-04 18:21 - 776219440 _____ () C:\Users\lenka\Downloads\Pojedeme k moři 2014.avi
2014-11-28 18:31 - 2014-11-28 18:31 - 00000000 ____D () C:\Users\lenka\Downloads\Letadla 2
2014-11-28 16:41 - 2014-11-28 19:29 - 1733402624 _____ () C:\Users\lenka\Downloads\Zejtra napořád 2014 Cz.avi
2014-11-28 16:40 - 2014-11-28 16:50 - 00000000 ____D () C:\Users\lenka\Downloads\Dracula.Untold
2014-11-28 16:39 - 2014-11-28 18:29 - 1348609730 _____ () C:\Users\lenka\Downloads\Bunraku.2010.BDRip.XviD.CZ.avi
2014-11-28 10:14 - 2014-11-28 11:07 - 1875685376 _____ () C:\Users\lenka\Downloads\Drive.Angry.2011.480p.BRRip.XviD.AC3.CZ-LEADERs.avi
2014-11-28 10:05 - 2014-11-28 10:05 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-28 10:05 - 2014-11-28 10:05 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-28 10:00 - 2014-11-28 10:00 - 00000000 ____D () C:\Users\lenka\Downloads\CCleaner Professional & Business Edition v5.00.5050 (2014)(CZ,SK)
2014-11-28 09:52 - 2014-11-28 10:13 - 1632995328 _____ () C:\Users\lenka\Downloads\Díra u Hanušovic.avi
2014-11-25 21:42 - 2014-11-28 20:05 - 1136981620 _____ () C:\Users\lenka\Downloads\Dopisy z Iwo Jimy.avi
2014-11-25 21:30 - 2014-11-25 21:58 - 1334059008 _____ () C:\Users\lenka\Downloads\Ponorka U-571.avi
2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner
2014-11-25 11:36 - 2014-11-25 11:43 - 894041112 _____ () C:\Users\lenka\Downloads\Vinaři S01E13 - Tour de Burčák.avi
2014-11-24 12:38 - 2014-11-24 17:47 - 00000000 ____D () C:\Users\lenka\Downloads\Lucy.2014.480p.BDRip.XviD.AC3.CZ-GRiNGO
2014-11-24 12:31 - 2014-11-24 12:31 - 00000000 ____D () C:\Users\lenka\Downloads\Prijde.letos.jezisek.2013.DVDRip.XViD.AC3.CZ-GRiNGO
2014-11-20 18:48 - 2014-11-20 18:56 - 736618496 _____ () C:\Users\lenka\Downloads\V oku tornáda.avi
2014-11-19 18:59 - 2014-11-19 18:59 - 00000000 ____D () C:\Users\lenka\Downloads\Spartakus (1960)
2014-11-19 14:16 - 2013-12-30 15:36 - 00849360 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110.dll
2014-11-19 09:23 - 2014-11-19 10:01 - 825253888 _____ () C:\Users\lenka\Downloads\Tammy 2014 Cz dab..avi
2014-11-19 09:16 - 2014-11-19 09:32 - 1034917888 _____ () C:\Users\lenka\Downloads\Na život a na smrt.avi
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-17 16:19 - 2014-03-26 20:02 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\vlc
2014-12-17 16:09 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-17 16:09 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-17 16:07 - 2012-07-10 14:34 - 00673424 _____ () C:\Windows\system32\perfh005.dat
2014-12-17 16:07 - 2012-07-10 14:34 - 00143486 _____ () C:\Windows\system32\perfc005.dat
2014-12-17 16:07 - 2009-07-14 06:13 - 01596636 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-17 16:06 - 2014-11-10 15:02 - 00095434 _____ () C:\Windows\WindowsUpdate.log
2014-12-17 16:05 - 2012-10-19 10:28 - 00000000 ____D () C:\Filmy
2014-12-17 16:04 - 2012-10-20 08:32 - 00000000 ____D () C:\Users\lenka\AppData\Local\CrashDumps
2014-12-17 16:03 - 2014-10-12 08:42 - 00000330 _____ () C:\Users\lenka\rgut
2014-12-17 16:01 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-17 15:54 - 2014-02-07 09:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-17 12:09 - 2012-12-05 11:52 - 00000000 ____D () C:\Program Files (x86)\Video Web Camera
2014-12-17 10:48 - 2013-08-23 12:51 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
2014-12-17 07:42 - 2012-10-27 15:32 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\uTorrent
2014-12-14 18:48 - 2012-10-17 14:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-09 19:54 - 2012-10-17 15:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-09 19:54 - 2012-10-17 15:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-09 19:54 - 2011-10-20 11:30 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-09 18:16 - 2013-08-14 08:47 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-12-08 19:04 - 2014-07-27 19:58 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\dvdcss
2014-11-28 14:42 - 2014-09-08 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2014-11-28 14:42 - 2014-09-08 18:38 - 00000000 ____D () C:\Hry
2014-11-28 14:04 - 2013-03-24 11:58 - 00000000 ____D () C:\Users\lenka\Documents\My Games
2014-11-25 14:28 - 2012-10-27 14:55 - 00000000 ____D () C:\Users\lenka\Desktop\League of Legends
2014-11-24 10:57 - 2012-10-19 10:43 - 00000000 ____D () C:\Users\lenka\AppData\Roaming\Winamp
2014-11-19 15:34 - 2013-09-11 15:56 - 00000000 ____D () C:\Games
Some content of TEMP:
====================
C:\Users\lenka\AppData\Local\Temp\Quarantine.exe
C:\Users\lenka\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-17 10:37
==================== End Of Log ============================
- Přílohy
-
- Addition.rar
- (8.89 KiB) Staženo 42 x
Re: Prosím o prověření
- Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
- ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
- znovu spustte FRST a kliknete na Fix
- po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi
Kód: Vybrat vše
Start CloseProcesses: HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd) HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe C:\Windows\inf\msstp.vbe C:\Windows\inf\msstp.inf C:\Windows\SysWOW64\mncugcy.vbe C:\Windows\SysWOW64\mncugcy.inf SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quicksearch_6826&q={searchTerms} SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms} SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms} SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksearch_6826&q={searchTerms} SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quicksearch_6826&q={searchTerms} SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearch_6826&query={searchTerms} SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... =041913&q={searchTerms}&src=IE-SearchBox FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File 2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe 2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar 2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt 2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt 2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner Hosts: EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-12-2014
Ran by lenka at 2014-12-17 16:47:54 Run:1
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
C:\Windows\inf\msstp.vbe
C:\Windows\inf\msstp.inf
C:\Windows\SysWOW64\mncugcy.vbe
C:\Windows\SysWOW64\mncugcy.inf
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... =041913&q={searchTerms}&src=IE-SearchBox
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe
2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar
2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt
2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner
Hosts:
EmptyTemp:
End
*****************
Ran by lenka at 2014-12-17 16:47:54 Run:1
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
C:\Windows\inf\msstp.vbe
C:\Windows\inf\msstp.inf
C:\Windows\SysWOW64\mncugcy.vbe
C:\Windows\SysWOW64\mncugcy.inf
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... =041913&q={searchTerms}&src=IE-SearchBox
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe
2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar
2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt
2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner
Hosts:
EmptyTemp:
End
*****************
Re: Prosím o prověření
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
Ran by lenka at 2014-12-17 17:14:25 Run:2
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
C:\Windows\inf\msstp.vbe
C:\Windows\inf\msstp.inf
C:\Windows\SysWOW64\mncugcy.vbe
C:\Windows\SysWOW64\mncugcy.inf
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... =041913&q={searchTerms}&src=IE-SearchBox
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe
2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar
2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt
2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\MSStp => Value not found.
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => Value not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{80e28117-1a80-11e2-b996-dc0ea122e14a}" => Key not found.
"HKCR\CLSID\{80e28117-1a80-11e2-b996-dc0ea122e14a}" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e09cd44e-f07c-11e3-8a9b-8a1d5c535234}" => Key not found.
"HKCR\CLSID\{e09cd44e-f07c-11e3-8a9b-8a1d5c535234}" => Key not found.
"C:\Windows\inf\msstp.vbe" => File/Directory not found.
"C:\Windows\inf\msstp.inf" => File/Directory not found.
"C:\Windows\SysWOW64\mncugcy.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\mncugcy.inf" => File/Directory not found.
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\16B55AEAB6478E1EF51DE2B8CF7BB8D7" => Key not found.
"HKCR\CLSID\16B55AEAB6478E1EF51DE2B8CF7BB8D7" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\1BDAB46F4DC6D07801EEA4CCC95DFB02" => Key not found.
"HKCR\CLSID\1BDAB46F4DC6D07801EEA4CCC95DFB02" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\4062AC8D1AB860E44CB3178BA155189B" => Key not found.
"HKCR\CLSID\4062AC8D1AB860E44CB3178BA155189B" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\A44468FFD3C008988C3154CC0FAB26C1" => Key not found.
"HKCR\CLSID\A44468FFD3C008988C3154CC0FAB26C1" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\DF0B5857F29E06E755A76C83A669D4F0" => Key not found.
"HKCR\CLSID\DF0B5857F29E06E755A76C83A669D4F0" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{867F2578-8C98-4ADD-8130-11A820A2639F}" => Key not found.
"HKCR\CLSID\{867F2578-8C98-4ADD-8130-11A820A2639F}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => Key not found.
"C:\Users\lenka\Desktop\adwcleaner_4.105.exe" => File/Directory not found.
"C:\Users\lenka\Desktop\Addition.rar" => File/Directory not found.
"C:\Users\lenka\Desktop\Addition.txt" => File/Directory not found.
"C:\Users\lenka\Desktop\FRST.txt" => File/Directory not found.
"C:\AdwCleaner" => File/Directory not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 3.8 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Running from C:\Users\lenka\Desktop
Loaded Profile: lenka (Available profiles: lenka)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {80e28117-1a80-11e2-b996-dc0ea122e14a} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\...\MountPoints2: {e09cd44e-f07c-11e3-8a9b-8a1d5c535234} - F:\Startme.exe
C:\Windows\inf\msstp.vbe
C:\Windows\inf\msstp.inf
C:\Windows\SysWOW64\mncugcy.vbe
C:\Windows\SysWOW64\mncugcy.inf
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DefaultScope A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 16B55AEAB6478E1EF51DE2B8CF7BB8D7 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 1BDAB46F4DC6D07801EEA4CCC95DFB02 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> 4062AC8D1AB860E44CB3178BA155189B URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> A44468FFD3C008988C3154CC0FAB26C1 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> DF0B5857F29E06E755A76C83A669D4F0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1612007768-3651778876-998891124-1000 -> {867F2578-8C98-4ADD-8130-11A820A2639F} URL = http://www.bing.com/search?FORM=UP22DF& ... =041913&q={searchTerms}&src=IE-SearchBox
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
2014-12-17 15:56 - 2014-12-17 15:56 - 02166272 _____ () C:\Users\lenka\Desktop\adwcleaner_4.105.exe
2014-12-17 15:22 - 2014-12-17 15:22 - 00008522 _____ () C:\Users\lenka\Desktop\Addition.rar
2014-12-17 15:19 - 2014-12-17 15:19 - 00030907 _____ () C:\Users\lenka\Desktop\Addition.txt
2014-12-17 15:17 - 2014-12-17 16:22 - 00016356 _____ () C:\Users\lenka\Desktop\FRST.txt
2014-11-25 20:18 - 2014-12-17 16:00 - 00000000 ____D () C:\AdwCleaner
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\MSStp => Value not found.
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => Value not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{80e28117-1a80-11e2-b996-dc0ea122e14a}" => Key not found.
"HKCR\CLSID\{80e28117-1a80-11e2-b996-dc0ea122e14a}" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e09cd44e-f07c-11e3-8a9b-8a1d5c535234}" => Key not found.
"HKCR\CLSID\{e09cd44e-f07c-11e3-8a9b-8a1d5c535234}" => Key not found.
"C:\Windows\inf\msstp.vbe" => File/Directory not found.
"C:\Windows\inf\msstp.inf" => File/Directory not found.
"C:\Windows\SysWOW64\mncugcy.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\mncugcy.inf" => File/Directory not found.
HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\16B55AEAB6478E1EF51DE2B8CF7BB8D7" => Key not found.
"HKCR\CLSID\16B55AEAB6478E1EF51DE2B8CF7BB8D7" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\1BDAB46F4DC6D07801EEA4CCC95DFB02" => Key not found.
"HKCR\CLSID\1BDAB46F4DC6D07801EEA4CCC95DFB02" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\4062AC8D1AB860E44CB3178BA155189B" => Key not found.
"HKCR\CLSID\4062AC8D1AB860E44CB3178BA155189B" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\A44468FFD3C008988C3154CC0FAB26C1" => Key not found.
"HKCR\CLSID\A44468FFD3C008988C3154CC0FAB26C1" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\DF0B5857F29E06E755A76C83A669D4F0" => Key not found.
"HKCR\CLSID\DF0B5857F29E06E755A76C83A669D4F0" => Key not found.
"HKU\S-1-5-21-1612007768-3651778876-998891124-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{867F2578-8C98-4ADD-8130-11A820A2639F}" => Key not found.
"HKCR\CLSID\{867F2578-8C98-4ADD-8130-11A820A2639F}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => Key not found.
"C:\Users\lenka\Desktop\adwcleaner_4.105.exe" => File/Directory not found.
"C:\Users\lenka\Desktop\Addition.rar" => File/Directory not found.
"C:\Users\lenka\Desktop\Addition.txt" => File/Directory not found.
"C:\Users\lenka\Desktop\FRST.txt" => File/Directory not found.
"C:\AdwCleaner" => File/Directory not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 3.8 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Re: Prosím o prověření
- Upozorneni: tento sken zabere od 30 minut po nekolik hodin
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 17.12.2014
Čas skenování: 17:37:04
Protokol: Malware.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2014.12.17.03
Databáze rootkitů: v2014.12.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: lenka
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 537051
Uplynulý čas: 3 hod, 21 min, 58 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Žádné zákerné zjištěny položek)
Moduly: 0
(Žádné zákerné zjištěny položek)
Klíče registru: 7
PUP.Optional.DefaultTab.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7F6AFBF1-E065-4627-A2FD-810366367D01}, , [8463432093e973c395a0b1270cf65aa6],
PUP.Optional.DefaultTab.A, HKU\S-1-5-21-1612007768-3651778876-998891124-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7F6AFBF1-E065-4627-A2FD-810366367D01}, , [8463432093e973c395a0b1270cf65aa6],
PUP.Optional.RelatedSearchs.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{96A25A24-2E87-4374-8A50-CC6F943FCE4D}, , [27c0fa6924586ec821fc3a9c4eb45ca4],
PUP.Optional.DefaultTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B2D33ED6-EBBD-467C-BF6F-F175D9B51363}, , [945393d0bcc0f93d23e52bad03ff09f7],
PUP.Optional.DefaultTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BAD84EE2-624D-4e7c-A8BB-41EFD720FD77}, , [41a6dc87c7b5f640cf3a696fc83aca36],
PUP.Optional.DefaultTab.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DefaultTab, , [21c63a29fa8233034710a1b5c73c768a],
PUP.Optional.DefaultTab.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\DefaultTab, , [35b290d3ed8fc274c50b583fb84b867a],
Hodnoty registru: 0
(Žádné zákerné zjištěny položek)
Data registru: 0
(Žádné zákerné zjištěny položek)
Složky: 2
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages, , [8b5c2a39fd7fd4626f4733f27390d927],
Soubory: 137
PUP.Optional.Bitcoin, C:\Windows\SysWOW64\acumncugcy.exe, , [9b4c7fe4621a9b9bb1c3ce3d758df20e],
Trojan.BitMiner, C:\Windows\SysWOW64\dcgmncugcy.exe, , [02e59ac98eee96a03b35c854bb4739c7],
PUP.BitCoinMiner, C:\Windows\SysWOW64\lcpmncugcy.exe, , [ce192f340b711c1aa0fcc764c938a65a],
Hacktool.CheatEngine, C:\Hry\Assassins Creed IV - Black Flag\Trainerz +10 Assassin's Creed 4.Black Flag.Deluxe Edition.v 1.01.EXE, , [8b5c8ed5631980b690e58dad8e7218e8],
PUP.Optional.MultiPlug.A, C:\Filmy\Woodkid - Run Boy Run (Official HD Video).mp3.exe, , [3bacd68da4d888ae34cb98254db40000],
Hacktool.CheatEngine, C:\Filmy\assassins-creed-4-black-flag-v1.01-trainer-plus10.zip, , [0ed988db5626ff37a9cc7cbe857b15eb],
PUP.Optional.OpenCandy, C:\Filmy\FYDLoad.exe, , [4c9b62013b415adcaaa99206bb4ad52b],
Trojan.Agent.Gen, C:\Users\lenka\AppData\Roaming\javaw.exe.exe, , [fee96102c7b52b0b68633a7bae559769],
Trojan.P2P.Worm, C:\Users\lenka\AppData\Roaming\Secure-Soft Stealer\Update.exe, , [7e69a4bf4d2f26102b38e9d0b152639d],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.129813684258939747.search.selectedEngineId, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.129813684258939747.search.settings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.AlertService, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.AlertsInfoData, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.appOptions, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.cookiesRepo, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.fullUserID, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NotificationSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.alert_login_service, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_setupAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications-repository, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications-servicemap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications-service_1647765, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.pg_conf_global, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.searchProtectorData, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.skin, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.UserID, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\serviceLayer_userApps_added, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\serviceLayer_userApps_removed, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbar_initializing_logger.txt, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\uninstallData, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\uninstallUrl, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_userApps, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_setupAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\http___storage_conduit_com_53_307_CT3072253_Images_634520779497696087.png, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\http___storage_conduit_com_Images_ClientResources_mini_browser.gif, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\http___storage_conduit_com_images_searchengines_search_icon.gif, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\storage.conduit.com, , [8b5c2a39fd7fd4626f4733f27390d927],
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
www.malwarebytes.org
Datum skenování: 17.12.2014
Čas skenování: 17:37:04
Protokol: Malware.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2014.12.17.03
Databáze rootkitů: v2014.12.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: lenka
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 537051
Uplynulý čas: 3 hod, 21 min, 58 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Žádné zákerné zjištěny položek)
Moduly: 0
(Žádné zákerné zjištěny položek)
Klíče registru: 7
PUP.Optional.DefaultTab.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7F6AFBF1-E065-4627-A2FD-810366367D01}, , [8463432093e973c395a0b1270cf65aa6],
PUP.Optional.DefaultTab.A, HKU\S-1-5-21-1612007768-3651778876-998891124-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7F6AFBF1-E065-4627-A2FD-810366367D01}, , [8463432093e973c395a0b1270cf65aa6],
PUP.Optional.RelatedSearchs.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{96A25A24-2E87-4374-8A50-CC6F943FCE4D}, , [27c0fa6924586ec821fc3a9c4eb45ca4],
PUP.Optional.DefaultTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B2D33ED6-EBBD-467C-BF6F-F175D9B51363}, , [945393d0bcc0f93d23e52bad03ff09f7],
PUP.Optional.DefaultTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BAD84EE2-624D-4e7c-A8BB-41EFD720FD77}, , [41a6dc87c7b5f640cf3a696fc83aca36],
PUP.Optional.DefaultTab.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DefaultTab, , [21c63a29fa8233034710a1b5c73c768a],
PUP.Optional.DefaultTab.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\DefaultTab, , [35b290d3ed8fc274c50b583fb84b867a],
Hodnoty registru: 0
(Žádné zákerné zjištěny položek)
Data registru: 0
(Žádné zákerné zjištěny položek)
Složky: 2
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages, , [8b5c2a39fd7fd4626f4733f27390d927],
Soubory: 137
PUP.Optional.Bitcoin, C:\Windows\SysWOW64\acumncugcy.exe, , [9b4c7fe4621a9b9bb1c3ce3d758df20e],
Trojan.BitMiner, C:\Windows\SysWOW64\dcgmncugcy.exe, , [02e59ac98eee96a03b35c854bb4739c7],
PUP.BitCoinMiner, C:\Windows\SysWOW64\lcpmncugcy.exe, , [ce192f340b711c1aa0fcc764c938a65a],
Hacktool.CheatEngine, C:\Hry\Assassins Creed IV - Black Flag\Trainerz +10 Assassin's Creed 4.Black Flag.Deluxe Edition.v 1.01.EXE, , [8b5c8ed5631980b690e58dad8e7218e8],
PUP.Optional.MultiPlug.A, C:\Filmy\Woodkid - Run Boy Run (Official HD Video).mp3.exe, , [3bacd68da4d888ae34cb98254db40000],
Hacktool.CheatEngine, C:\Filmy\assassins-creed-4-black-flag-v1.01-trainer-plus10.zip, , [0ed988db5626ff37a9cc7cbe857b15eb],
PUP.Optional.OpenCandy, C:\Filmy\FYDLoad.exe, , [4c9b62013b415adcaaa99206bb4ad52b],
Trojan.Agent.Gen, C:\Users\lenka\AppData\Roaming\javaw.exe.exe, , [fee96102c7b52b0b68633a7bae559769],
Trojan.P2P.Worm, C:\Users\lenka\AppData\Roaming\Secure-Soft Stealer\Update.exe, , [7e69a4bf4d2f26102b38e9d0b152639d],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.129813684258939747.search.selectedEngineId, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.129813684258939747.search.settings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.AlertService, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.AlertsInfoData, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.appOptions, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.cookiesRepo, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.fullUserID, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NotificationSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.alert_login_service, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_setupAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications-repository, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications-servicemap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications-service_1647765, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.NOTIFICATION_ID.notifications_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.pg_conf_global, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.searchProtectorData, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.skin, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468.UserID, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.10.27.6.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\serviceLayer_userApps_added, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\serviceLayer_userApps_removed, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbar_initializing_logger.txt, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\uninstallData, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\uninstallUrl, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.370.524.serviceLayer_services_userApps, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.14.65.43.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.15.0.562.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.2.509.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.4.519.serviceLayer_services_translation, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.16.70.505.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_toolbarContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_10.20.0.513.serviceLayer_services_toolbarSettings, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_appsMetadata, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_appTrackingFirstTime, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_Configuration, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_gottenAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_location, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_login, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_otherAppsContextMenu, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_searchAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_serviceMap, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\CT3220468_RAW.serviceLayer_services_setupAPI, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\http___storage_conduit_com_53_307_CT3072253_Images_634520779497696087.png, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\http___storage_conduit_com_Images_ClientResources_mini_browser.gif, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\http___storage_conduit_com_images_searchengines_search_icon.gif, , [8b5c2a39fd7fd4626f4733f27390d927],
PUP.Optional.Conduit.A, C:\Users\lenka\AppData\Roaming\Mozilla\Firefox\Profiles\qstqk54v.default\CT3220468\toolbarImages\storage.conduit.com, , [8b5c2a39fd7fd4626f4733f27390d927],
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
Re: Prosím o prověření
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
Děkuji,ted muzu vse smazat?
Re: Prosím o prověření
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o prověření
- Stahnete a spustte DelFix - https://toolslib.net/downloads/viewdownload/2-delfix/
- Oznacte jen moznost "Remove disinfection tools"
- kliknete na Run
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.


Přispějete na provoz fóra?