
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosím o pomoc
Moderátor: Moderátoři
prosím o pomoc
Dobrý večer, včera som sťahoval nejaké kodeky a stalo sa mi pri tom, že sa do pc navliekla nejaká potvora "mystartsearch" a je to v prehliadačoch a neviem to odstrániť. Ak môžte tak pomožte.
Srdečne ďakujem.
Srdečne ďakujem.
Re: prosím o pomoc
Dobry vecer 
Kristalove koule jsou stale ve stadiu vyjednavani, takze pokud chcete pomoct, dejte log z RSIT - http://forum.viry.cz/viewtopic.php?f=13&t=130786
A netrefil jste ani sekci... priste dejte podobny problem do http://forum.viry.cz/viewforum.php?f=13



Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: prosím o pomoc
Prepáčte, že som nepriložil súbor, až potom čo ste mi to napísal som to urobil a tiež som nevedel kde to napísať.
Mám 64 bit Win7
Prikladám:
Logfile of random's system information tool 1.10 (written by random/random)
Run by I at 2015-01-28 20:23:40
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 43 GB (42%) free of 102 GB
Total RAM: 4094 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:23:42, on 28.1.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\XTab\cmdshell.exe
C:\Program Files (x86)\EPSON\MyEpson Portal\mep.exe
D:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
C:\Program Files (x86)\XTab\HPNotify.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe
D:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe
C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\I.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\XTab\SupTab.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [tsnpstd3] C:\Windows\tsnpstd3.exe
O4 - HKLM\..\Run: [UniColor Pro] "C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe"
O4 - HKLM\..\RunOnce: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "D:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 7] "D:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 7] "D:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'Default user')
O8 - Extra context menu item: Open with KUSO EXIF Viewer - D:\Program Files (x86)\KUSO EXIF Viewer\EXIF.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{6141B429-35AB-4AE5-9B2A-E71BAE169201}: NameServer = 195.146.128.60,195.146.132.59
O17 - HKLM\System\CS1\Services\Tcpip\..\{6141B429-35AB-4AE5-9B2A-E71BAE169201}: NameServer = 195.146.128.60,195.146.132.59
O17 - HKLM\System\CS2\Services\Tcpip\..\{6141B429-35AB-4AE5-9B2A-E71BAE169201}: NameServer = 195.146.128.60,195.146.132.59
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: EPSON V5 Service4(04) (EPSON_EB_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HTCMonitorService - Nero AG - D:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IHProtect Service - XTab system - C:\Program Files (x86)\XTab\ProtectService.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEpson Portal Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe
O23 - Service: This service enables products that use the Nalpeiron Licensing System. (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\nlssrv32.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Ochrana softwaru (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - SysTool PasSame LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11525 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE"
"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Genius\ioCentre\GMouseService.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"D:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe"
"C:\Program Files (x86)\XTab\ProtectService.exe"
"C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe"
"C:\Program Files (x86)\XTab\cmdshell.exe"
C:\Windows\SysWOW64\nlssrv32.exe
"C:\Program Files (x86)\EPSON\MyEpson Portal\mep.exe"
C:\Windows\splwow64.exe 16384
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 8b07e958-8a9a-4a57-80c0-29f959761034 1
\??\C:\Windows\system32\conhost.exe "-1788376846156966360815437204471191017314-1856191278-3568689-13444134961468390040
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "1906745768346614727-1728366332975034522-742951721218808589302300742-2005334306
adb fork-server server
C:\Windows\splwow64.exe 8192
HPNotify.exe -run
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"D:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\totalcmd\TOTALCMD64.EXE"
"D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
wmiadap.exe /F /T /R
C:\Windows\system32\wbem\wmiprvse.exe
"D:\DOWNLOAD\RSITx64(1).exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Mám 64 bit Win7
Prikladám:
Logfile of random's system information tool 1.10 (written by random/random)
Run by I at 2015-01-28 20:23:40
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 43 GB (42%) free of 102 GB
Total RAM: 4094 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:23:42, on 28.1.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\XTab\cmdshell.exe
C:\Program Files (x86)\EPSON\MyEpson Portal\mep.exe
D:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
C:\Program Files (x86)\XTab\HPNotify.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe
D:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe
C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\I.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp ... 73310431EA
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\XTab\SupTab.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [tsnpstd3] C:\Windows\tsnpstd3.exe
O4 - HKLM\..\Run: [UniColor Pro] "C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe"
O4 - HKLM\..\RunOnce: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "D:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 7] "D:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 7] "D:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'Default user')
O8 - Extra context menu item: Open with KUSO EXIF Viewer - D:\Program Files (x86)\KUSO EXIF Viewer\EXIF.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{6141B429-35AB-4AE5-9B2A-E71BAE169201}: NameServer = 195.146.128.60,195.146.132.59
O17 - HKLM\System\CS1\Services\Tcpip\..\{6141B429-35AB-4AE5-9B2A-E71BAE169201}: NameServer = 195.146.128.60,195.146.132.59
O17 - HKLM\System\CS2\Services\Tcpip\..\{6141B429-35AB-4AE5-9B2A-E71BAE169201}: NameServer = 195.146.128.60,195.146.132.59
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: EPSON V5 Service4(04) (EPSON_EB_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HTCMonitorService - Nero AG - D:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IHProtect Service - XTab system - C:\Program Files (x86)\XTab\ProtectService.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEpson Portal Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe
O23 - Service: This service enables products that use the Nalpeiron Licensing System. (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\nlssrv32.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Ochrana softwaru (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - SysTool PasSame LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11525 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE"
"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Genius\ioCentre\GMouseService.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"D:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe"
"C:\Program Files (x86)\XTab\ProtectService.exe"
"C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe"
"C:\Program Files (x86)\XTab\cmdshell.exe"
C:\Windows\SysWOW64\nlssrv32.exe
"C:\Program Files (x86)\EPSON\MyEpson Portal\mep.exe"
C:\Windows\splwow64.exe 16384
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 8b07e958-8a9a-4a57-80c0-29f959761034 1
\??\C:\Windows\system32\conhost.exe "-1788376846156966360815437204471191017314-1856191278-3568689-13444134961468390040
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "1906745768346614727-1728366332975034522-742951721218808589302300742-2005334306
adb fork-server server
C:\Windows\splwow64.exe 8192
HPNotify.exe -run
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"D:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\totalcmd\TOTALCMD64.EXE"
"D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
wmiadap.exe /F /T /R
C:\Windows\system32\wbem\wmiprvse.exe
"D:\DOWNLOAD\RSITx64(1).exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Re: prosím o pomoc


- kliknete pravym na ikonu OTL a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- zatrhnete moznosti Pro vsechny uzivatele, Kontrola na havet "LOP", Kontrola na havěť "Purity"
- do okna dole (Custom Scans/Fixes) zkopirujte script, ktery je nize
- zbytek ponechte, jak je a kliknete na Prohledat
- vysledne logy (OTL.txt a Extras.txt) budou dlouhe, takze je rozdelte do vice prispevku (odpovedi)
Kód: Vybrat vše
CREATERESTOREPOINT
netsvcs
drivers32
savembr:0
/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop
%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5
*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: prosím o pomoc
Keď som to dal kontrolovať potom na obrazavku napísalo: Cannot create file C:\User\I\Desktop\cmd.bat a nevedel som čo stým a súbory som nikde nenašiel.
Keď som posielal log.txt nebol kompletný, máte pravdu, doposeilam aj ostatnú časť po častiach, prepáčte, dik.
C:\Windows\tasks\GoogleUpdateTaskMachineUA1cf6b9fd42787e8.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#
=========Mozilla firefox=========
ProfilePath - C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.mystartsearch.com/?type=hppp ... 73310431EA"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\
faststartff@gmail.com
fftoolbar2014@etech.com
C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\searchplugins\
mystartsearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-02-09 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-02-09 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
IETabPage Class - C:\Program Files (x86)\XTab\SupTab.dll [2015-01-16 210096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2011-10-15 175744]
Keď som posielal log.txt nebol kompletný, máte pravdu, doposeilam aj ostatnú časť po častiach, prepáčte, dik.
C:\Windows\tasks\GoogleUpdateTaskMachineUA1cf6b9fd42787e8.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#
=========Mozilla firefox=========
ProfilePath - C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.mystartsearch.com/?type=hppp ... 73310431EA"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\
faststartff@gmail.com
fftoolbar2014@etech.com
C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\searchplugins\
mystartsearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-02-09 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-02-09 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
IETabPage Class - C:\Program Files (x86)\XTab\SupTab.dll [2015-01-16 210096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2011-10-15 175744]
Re: prosím o pomoc
ďalsí:
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-07 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}]
Ads Removal - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll [2014-06-11 464720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-07 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2011-10-15 4352120]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-09-17 2799784]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2014-10-01 5595336]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-08-09 12666984]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Zoner Photo Studio Autoupdate"=D:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [2014-12-19 458456]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21 472992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-12-21 1090040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^I^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RAVCpl64.exe]
C:\Users\I\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RAVCpl64.exe []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"tsnpstd3"=C:\Windows\tsnpstd3.exe [2007-03-30 262144]
"UniColor Pro"=C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe [2014-05-09 4420416]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"=C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe [2013-06-07 40960]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-28 20:23:40 ----D---- C:\rsit
2015-01-28 19:44:13 ----A---- C:\Windows\SYSWOW64\drivers\eve.sys
2015-01-28 18:57:32 ----D---- C:\Program Files\WinPcap
2015-01-28 18:57:24 ----D---- C:\ProgramData\VSO
2015-01-28 18:57:24 ----D---- C:\Program Files (x86)\vso
2015-01-27 20:28:06 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-01-27 20:23:03 ----A---- C:\Windows\DIFxAPI.dll
2015-01-27 20:08:01 ----A---- C:\Windows\SYSWOW64\unrar.dll
2015-01-27 18:42:57 ----D---- C:\ProgramData\IHProtectUpDate
2015-01-27 18:42:05 ----D---- C:\Program Files (x86)\XTab
2015-01-27 18:41:52 ----D---- C:\ProgramData\WindowsMangerProtect
2015-01-27 18:41:45 ----D---- C:\Program Files\Shark007
2015-01-27 18:41:27 ----D---- C:\Program Files (x86)\Shark007
2015-01-27 18:40:55 ----D---- C:\ProgramData\Advanced
2015-01-27 18:33:46 ----A---- C:\Windows\iun6002.exe
2015-01-26 20:21:07 ----D---- C:\Windows\Minidump
======List of files/folders modified in the last 1 month======
2015-01-28 20:23:41 ----D---- C:\Windows\temp
2015-01-28 20:23:41 ----D---- C:\Program Files\trend micro
2015-01-28 20:18:56 ----D---- C:\Users\I\AppData\Roaming\vlc
2015-01-28 20:18:36 ----D---- C:\Windows\SysWOW64
2015-01-28 20:18:19 ----D---- C:\ProgramData\NVIDIA
2015-01-28 20:18:15 ----D---- C:\Windows\System32
2015-01-28 20:17:06 ----RD---- C:\Program Files (x86)
2015-01-28 20:11:42 ----AD---- C:\ProgramData\TEMP
2015-01-28 19:47:02 ----D---- C:\Users\I\AppData\Roaming\Skype
2015-01-28 19:44:14 ----D---- C:\Windows\SYSWOW64\drivers
2015-01-28 19:44:13 ----D---- C:\Windows\system32\drivers
2015-01-28 18:58:02 ----D---- C:\Windows\inf
2015-01-28 18:58:01 ----D---- C:\Windows\system32\DriverStore
2015-01-28 18:58:01 ----D---- C:\Windows\system32\catroot
2015-01-28 18:57:32 ----RD---- C:\Program Files
2015-01-28 18:57:24 ----HD---- C:\ProgramData
2015-01-28 17:56:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-01-28 14:53:42 ----AD---- C:\Windows
2015-01-27 21:44:35 ----D---- C:\Windows\system32\catroot2
2015-01-27 21:22:04 ----D---- C:\Users\I\AppData\Roaming\uTorrent
2015-01-27 20:23:06 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-01-27 20:08:26 ----D---- C:\Windows\system32\Tasks
2015-01-27 18:51:04 ----SHD---- C:\Windows\Installer
2015-01-27 18:51:04 ----SHD---- C:\Config.Msi
2015-01-27 18:41:36 ----D---- C:\Windows\system32\config
2015-01-23 18:12:24 ----A---- C:\Users\I\AppData\Roaming\PLGComp.ini
2015-01-22 16:17:47 ----D---- C:\Windows\system32\FxsTmp
2015-01-22 13:28:09 ----AD---- C:\AAA
2015-01-22 12:41:42 ----AD---- C:\AA
2015-01-20 14:48:28 ----D---- C:\ProgramData\Skype
2015-01-20 14:48:06 ----D---- C:\Program Files (x86)\Common Files
2015-01-20 14:45:07 ----D---- C:\Windows\Logs
2015-01-18 12:37:35 ----D---- C:\ProgramData\CanonIJPLM
2015-01-10 14:30:34 ----RSD---- C:\Windows\assembly
2015-01-10 14:29:56 ----RSD---- C:\Windows\Fonts
2015-01-10 13:53:16 ----A---- C:\Windows\SLEX99.INI
2015-01-02 19:20:39 ----D---- C:\Windows\system32\NDF
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-07 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}]
Ads Removal - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll [2014-06-11 464720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-07 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2011-10-15 4352120]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-09-17 2799784]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2014-10-01 5595336]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-08-09 12666984]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Zoner Photo Studio Autoupdate"=D:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [2014-12-19 458456]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21 472992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-12-21 1090040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^I^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RAVCpl64.exe]
C:\Users\I\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RAVCpl64.exe []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"tsnpstd3"=C:\Windows\tsnpstd3.exe [2007-03-30 262144]
"UniColor Pro"=C:\Program Files (x86)\EIZO\UniColor Pro\ucpro.exe [2014-05-09 4420416]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"=C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe [2013-06-07 40960]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-28 20:23:40 ----D---- C:\rsit
2015-01-28 19:44:13 ----A---- C:\Windows\SYSWOW64\drivers\eve.sys
2015-01-28 18:57:32 ----D---- C:\Program Files\WinPcap
2015-01-28 18:57:24 ----D---- C:\ProgramData\VSO
2015-01-28 18:57:24 ----D---- C:\Program Files (x86)\vso
2015-01-27 20:28:06 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-01-27 20:23:03 ----A---- C:\Windows\DIFxAPI.dll
2015-01-27 20:08:01 ----A---- C:\Windows\SYSWOW64\unrar.dll
2015-01-27 18:42:57 ----D---- C:\ProgramData\IHProtectUpDate
2015-01-27 18:42:05 ----D---- C:\Program Files (x86)\XTab
2015-01-27 18:41:52 ----D---- C:\ProgramData\WindowsMangerProtect
2015-01-27 18:41:45 ----D---- C:\Program Files\Shark007
2015-01-27 18:41:27 ----D---- C:\Program Files (x86)\Shark007
2015-01-27 18:40:55 ----D---- C:\ProgramData\Advanced
2015-01-27 18:33:46 ----A---- C:\Windows\iun6002.exe
2015-01-26 20:21:07 ----D---- C:\Windows\Minidump
======List of files/folders modified in the last 1 month======
2015-01-28 20:23:41 ----D---- C:\Windows\temp
2015-01-28 20:23:41 ----D---- C:\Program Files\trend micro
2015-01-28 20:18:56 ----D---- C:\Users\I\AppData\Roaming\vlc
2015-01-28 20:18:36 ----D---- C:\Windows\SysWOW64
2015-01-28 20:18:19 ----D---- C:\ProgramData\NVIDIA
2015-01-28 20:18:15 ----D---- C:\Windows\System32
2015-01-28 20:17:06 ----RD---- C:\Program Files (x86)
2015-01-28 20:11:42 ----AD---- C:\ProgramData\TEMP
2015-01-28 19:47:02 ----D---- C:\Users\I\AppData\Roaming\Skype
2015-01-28 19:44:14 ----D---- C:\Windows\SYSWOW64\drivers
2015-01-28 19:44:13 ----D---- C:\Windows\system32\drivers
2015-01-28 18:58:02 ----D---- C:\Windows\inf
2015-01-28 18:58:01 ----D---- C:\Windows\system32\DriverStore
2015-01-28 18:58:01 ----D---- C:\Windows\system32\catroot
2015-01-28 18:57:32 ----RD---- C:\Program Files
2015-01-28 18:57:24 ----HD---- C:\ProgramData
2015-01-28 17:56:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-01-28 14:53:42 ----AD---- C:\Windows
2015-01-27 21:44:35 ----D---- C:\Windows\system32\catroot2
2015-01-27 21:22:04 ----D---- C:\Users\I\AppData\Roaming\uTorrent
2015-01-27 20:23:06 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-01-27 20:08:26 ----D---- C:\Windows\system32\Tasks
2015-01-27 18:51:04 ----SHD---- C:\Windows\Installer
2015-01-27 18:51:04 ----SHD---- C:\Config.Msi
2015-01-27 18:41:36 ----D---- C:\Windows\system32\config
2015-01-23 18:12:24 ----A---- C:\Users\I\AppData\Roaming\PLGComp.ini
2015-01-22 16:17:47 ----D---- C:\Windows\system32\FxsTmp
2015-01-22 13:28:09 ----AD---- C:\AAA
2015-01-22 12:41:42 ----AD---- C:\AA
2015-01-20 14:48:28 ----D---- C:\ProgramData\Skype
2015-01-20 14:48:06 ----D---- C:\Program Files (x86)\Common Files
2015-01-20 14:45:07 ----D---- C:\Windows\Logs
2015-01-18 12:37:35 ----D---- C:\ProgramData\CanonIJPLM
2015-01-10 14:30:34 ----RSD---- C:\Windows\assembly
2015-01-10 14:29:56 ----RSD---- C:\Windows\Fonts
2015-01-10 13:53:16 ----A---- C:\Windows\SLEX99.INI
2015-01-02 19:20:39 ----D---- C:\Windows\system32\NDF
Re: prosím o pomoc
posledný:
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2014-10-10 63160]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2014-10-10 44632]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 91568]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2013-08-07 70984]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2014-10-10 222280]
R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2009-07-14 120320]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2014-04-18 36600]
R3 anvsnddrv;AnvSoft Virtual Sound Device; C:\Windows\system32\drivers\anvsnddrv.sys [2012-05-17 33872]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-01-28 25640]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb16;USB 16-bit Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb16.sys [2009-06-25 11776]
R3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2015-01-28 30528]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-08-12 3053160]
R3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtpt64.sys [2009-09-29 16384]
R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbs64.sys [2009-09-29 14848]
R3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmdm64.sys [2009-09-29 17408]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-09-17 19272]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-09-04 38048]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 SNPSTD3;USB PC Camera (SNPSTD3); C:\Windows\system32\DRIVERS\snpstd3.sys [2007-04-03 10535040]
S2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files (x86)\GIGABYTE\ET6\amd64\AODDriver2.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-07 6659072]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-04-07 195584]
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus64.sys [2012-03-02 19456]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag64.sys [2012-03-02 27648]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps64.sys [2012-03-02 27136]
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem64.sys [2012-03-02 34304]
S3 AODDriver;AODDriver; \??\C:\Program Files (x86)\GIGABYTE\ET6\amd64\AODDriver.sys [2013-06-07 57952]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2014-11-21 25640]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2014-01-31 94704]
S3 gMouUsb;USB Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb.sys [2009-11-02 14336]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
S3 LGDDCDevice;LGDDCDevice; \??\C:\Program Files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys [2009-04-24 14336]
S3 LGII2CDevice;LGII2CDevice; \??\C:\Program Files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys [2009-04-24 18432]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\Windows\system32\DRIVERS\MSIRCOMM.sys [2009-07-14 30208]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-11-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-11-09 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2011-07-06 367976]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 STIrUsb;SigmaTel USB-IrDA Dongle; C:\Windows\system32\DRIVERS\irstusb.sys [2008-01-19 33792]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-11-09 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-11-09 9216]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-04-07 202752]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2013-09-07 55624]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2013-08-07 384840]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2014-10-01 1349576]
R2 EPSON_EB_RPCV4_04;EPSON V5 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [2009-09-14 166400]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [2009-09-14 128512]
R2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe [2010-03-11 16384]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-09-17 1148744]
R2 HTCMonitorService;HTCMonitorService; D:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [2013-09-02 87368]
R2 IHProtect Service;IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [2015-01-16 158896]
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 MyEpson Portal Service;MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [2012-07-26 703616]
R2 nlsX86cc;This service enables products that use the Nalpeiron Licensing System.; C:\Windows\SysWOW64\nlssrv32.exe [2011-09-22 66560]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-09-17 1795912]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-09-17 19439944]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 927520]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 413128]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2013-08-07 393032]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19 116648]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-10-18 1914656]
S2 SkypeUpdate;Skype Updater; D:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-04-11 111616]
S3 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2011-02-07 138192]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-12-19 732648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-09 1255736]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
-----------------EOF-----------------
Ešte raz prepáčte, ďakujem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2014-10-10 63160]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2014-10-10 44632]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 91568]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2013-08-07 70984]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2014-10-10 222280]
R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2009-07-14 120320]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2014-04-18 36600]
R3 anvsnddrv;AnvSoft Virtual Sound Device; C:\Windows\system32\drivers\anvsnddrv.sys [2012-05-17 33872]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-01-28 25640]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2011-10-26 25600]
R3 gMouUsb16;USB 16-bit Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb16.sys [2009-06-25 11776]
R3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2015-01-28 30528]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-08-12 3053160]
R3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtpt64.sys [2009-09-29 16384]
R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbs64.sys [2009-09-29 14848]
R3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmdm64.sys [2009-09-29 17408]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-09-17 19272]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-09-04 38048]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 SNPSTD3;USB PC Camera (SNPSTD3); C:\Windows\system32\DRIVERS\snpstd3.sys [2007-04-03 10535040]
S2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files (x86)\GIGABYTE\ET6\amd64\AODDriver2.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-07 6659072]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-04-07 195584]
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus64.sys [2012-03-02 19456]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag64.sys [2012-03-02 27648]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps64.sys [2012-03-02 27136]
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem64.sys [2012-03-02 34304]
S3 AODDriver;AODDriver; \??\C:\Program Files (x86)\GIGABYTE\ET6\amd64\AODDriver.sys [2013-06-07 57952]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2014-11-21 25640]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2014-01-31 94704]
S3 gMouUsb;USB Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb.sys [2009-11-02 14336]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
S3 LGDDCDevice;LGDDCDevice; \??\C:\Program Files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys [2009-04-24 14336]
S3 LGII2CDevice;LGII2CDevice; \??\C:\Program Files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys [2009-04-24 18432]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\Windows\system32\DRIVERS\MSIRCOMM.sys [2009-07-14 30208]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-11-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-11-09 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2011-07-06 367976]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 STIrUsb;SigmaTel USB-IrDA Dongle; C:\Windows\system32\DRIVERS\irstusb.sys [2008-01-19 33792]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-11-09 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-11-09 9216]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-04-07 202752]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2013-09-07 55624]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2013-08-07 384840]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2014-10-01 1349576]
R2 EPSON_EB_RPCV4_04;EPSON V5 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [2009-09-14 166400]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [2009-09-14 128512]
R2 GeniusMouseService;GeniusMouseService; C:\Genius\ioCentre\GMouseService.exe [2010-03-11 16384]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-09-17 1148744]
R2 HTCMonitorService;HTCMonitorService; D:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [2013-09-02 87368]
R2 IHProtect Service;IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [2015-01-16 158896]
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 MyEpson Portal Service;MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [2012-07-26 703616]
R2 nlsX86cc;This service enables products that use the Nalpeiron Licensing System.; C:\Windows\SysWOW64\nlssrv32.exe [2011-09-22 66560]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-09-17 1795912]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-09-17 19439944]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 927520]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 413128]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2013-08-07 393032]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19 116648]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-10-18 1914656]
S2 SkypeUpdate;Skype Updater; D:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-04-11 111616]
S3 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2011-02-07 138192]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-12-19 732648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-09 1255736]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
-----------------EOF-----------------
Ešte raz prepáčte, ďakujem
Re: prosím o pomoc




- Upozorneni: tento sken zabere od 30 minut po nekolik hodin
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: prosím o pomoc
Ďakujem pekne, urobím to až zajtra ak to bude trvať niekoľko hodín. Zajtra sa ozvem. Diky
Re: prosím o pomoc
ok, zitra se ozvete
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: prosím o pomoc
Dobrý deň.
Dnes ráno som urobil sken s anti-malware. Neviem či to poslať sem. Neskontroloval mi disk D, lebo sam od seba to neurobil a nemôžem najsť nastavenia kde sa to nastavuje aby skenoval aj ďalší disk. Už som našiel nastavenie ako kontrolovať aj dečko.
Diky.
Dnes ráno som urobil sken s anti-malware. Neviem či to poslať sem. Neskontroloval mi disk D, lebo sam od seba to neurobil a nemôžem najsť nastavenia kde sa to nastavuje aby skenoval aj ďalší disk. Už som našiel nastavenie ako kontrolovať aj dečko.
Diky.
Re: prosím o pomoc
ok, jak se dokonci sken, dejte log s nalezyigor_g píše:Už som našiel nastavenie ako kontrolovať aj dečko.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: prosím o pomoc
Prikladám sken z rána z c:disku:
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 29.1.2015
Čas skenování: 8:06:38
Protokol: sken.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2015.01.29.03
Databáze rootkitů: v2015.01.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: I
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 384981
Uplynulý čas: 8 min, 9 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 4
PUP.Optional.WindowsProtectManger.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, 1356, Smazat při restartu, [be6995685534fd3919a5d29452aebd43]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, 2456, Smazat při restartu, [9592609d91f8db5bb4b1f0189f636c94]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\CmdShell.exe, 2556, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\HPNotify.exe, 3484, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5]
Moduly: 10
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\IeWatchDog.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
Klíče registru: 23
PUP.Optional.WindowsProtectManger.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, Do karantény, [be6995685534fd3919a5d29452aebd43],
PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, Do karantény, [9592609d91f8db5bb4b1f0189f636c94],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, Do karantény, [9f88db22f990d85e5ae203f4ca389b65],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, Do karantény, [9f88db22f990d85e5ae203f4ca389b65],
PUP.Optional.Babylon.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Do karantény, [d552c8354544b4829975aa4d9969718f],
PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, Do karantény, [111665985f2abd798e02e79803000af6],
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\mystartsearchSoftware, Do karantény, [f433ac5152371422175cb8cf0bf8f808],
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, Do karantény, [0b1ca25b662386b08ee772889b691ee2],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, Do karantény, [0a1daf4e99f048ee98d3c7ce1ce7d12f],
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, Do karantény, [fd2a817c3e4be056c2d8f7933bc851af],
PUP.Optional.Spigot.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Search Settings, Do karantény, [92954fae98f19e98f58161997e8621df],
PUP.Optional.Spigot.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SEARCH SETTINGS, Do karantény, [1611ba431772f73f3dc6246eb54e11ef],
PUP.Optional.Softonic.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Softonic, Do karantény, [87a0f60743463afc3cd695ef2ad9ea16],
PUP.Optional.Qone8, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [d94e916c3c4dfe38e64080661aea10f0],
PUP.Optional.Qone8, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [66c1f40990f9310512148d59e91b6799],
Hodnoty registru: 4
PUP.Optional.FFToolbar.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|fftoolbar2014@etech.com, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com, Do karantény, [e641ec11c4c556e062c876094bb8ee12]
PUP.Optional.FastStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|faststartff@gmail.com, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com, Do karantény, [85a2fa039ced84b276197f7a29db42be]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, smt, Do karantény, [0a1daf4e99f048ee98d3c7ce1ce7d12f]
PUP.Optional.Spigot.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SEARCH SETTINGS|GCProtected, 1, Do karantény, [1611ba431772f73f3dc6246eb54e11ef]
Data registru: 20
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (firefox.exe), Špatné: ("D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[74b3926b3a4fe94d95d69a034bba6898]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (Chrome.exe), Špatné: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[75b27e7fb1d852e48ce21687d2338977]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (iexplore.exe), Špatné: (C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[e93e8578f990eb4bcca029747491c040]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[f92e94693257191de3d35d40996c718f]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[d750b944dfaac76f6e475b42ef16f30d]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[bc6be31a652494a2231b45668382619f]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[38ef837a4247be78f1c647563dc8e51b]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (firefox.exe), Špatné: ("D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[1d0a0bf2e9a0e84ef774e0bd63a216ea]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (Chrome.exe), Špatné: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[36f19d6095f469cdb8b62776689d3fc1]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (iexplore.exe), Špatné: (C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[a6819c61e1a84ee8d9935944db2ad62a]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[63c4d92430592e088e28b7e615f0aa56]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[1e091edf0e7b44f23f76e6b714f11ae6]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[7cab48b57d0c9a9cdd618b20669f4ab6]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[988fed105f2af640c1f6c8d59075ff01]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[db4cba4327623df9cceea6f7a5608b75]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[190ec83503864de99ca05556897c12ee]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 29.1.2015
Čas skenování: 8:06:38
Protokol: sken.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2015.01.29.03
Databáze rootkitů: v2015.01.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: I
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 384981
Uplynulý čas: 8 min, 9 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 4
PUP.Optional.WindowsProtectManger.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, 1356, Smazat při restartu, [be6995685534fd3919a5d29452aebd43]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, 2456, Smazat při restartu, [9592609d91f8db5bb4b1f0189f636c94]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\CmdShell.exe, 2556, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\HPNotify.exe, 3484, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5]
Moduly: 10
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\IeWatchDog.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
Klíče registru: 23
PUP.Optional.WindowsProtectManger.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, Do karantény, [be6995685534fd3919a5d29452aebd43],
PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, Do karantény, [9592609d91f8db5bb4b1f0189f636c94],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SupTab.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, Do karantény, [9f88db22f990d85e5ae203f4ca389b65],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, Do karantény, [9f88db22f990d85e5ae203f4ca389b65],
PUP.Optional.Babylon.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Do karantény, [d552c8354544b4829975aa4d9969718f],
PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, Do karantény, [111665985f2abd798e02e79803000af6],
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\mystartsearchSoftware, Do karantény, [f433ac5152371422175cb8cf0bf8f808],
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, Do karantény, [0b1ca25b662386b08ee772889b691ee2],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, Do karantény, [0a1daf4e99f048ee98d3c7ce1ce7d12f],
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, Do karantény, [fd2a817c3e4be056c2d8f7933bc851af],
PUP.Optional.Spigot.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Search Settings, Do karantény, [92954fae98f19e98f58161997e8621df],
PUP.Optional.Spigot.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SEARCH SETTINGS, Do karantény, [1611ba431772f73f3dc6246eb54e11ef],
PUP.Optional.Softonic.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Softonic, Do karantény, [87a0f60743463afc3cd695ef2ad9ea16],
PUP.Optional.Qone8, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [d94e916c3c4dfe38e64080661aea10f0],
PUP.Optional.Qone8, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [66c1f40990f9310512148d59e91b6799],
Hodnoty registru: 4
PUP.Optional.FFToolbar.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|fftoolbar2014@etech.com, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com, Do karantény, [e641ec11c4c556e062c876094bb8ee12]
PUP.Optional.FastStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|faststartff@gmail.com, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com, Do karantény, [85a2fa039ced84b276197f7a29db42be]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, smt, Do karantény, [0a1daf4e99f048ee98d3c7ce1ce7d12f]
PUP.Optional.Spigot.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SEARCH SETTINGS|GCProtected, 1, Do karantény, [1611ba431772f73f3dc6246eb54e11ef]
Data registru: 20
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (firefox.exe), Špatné: ("D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[74b3926b3a4fe94d95d69a034bba6898]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (Chrome.exe), Špatné: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[75b27e7fb1d852e48ce21687d2338977]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (iexplore.exe), Špatné: (C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[e93e8578f990eb4bcca029747491c040]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[f92e94693257191de3d35d40996c718f]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[d750b944dfaac76f6e475b42ef16f30d]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[bc6be31a652494a2231b45668382619f]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[38ef837a4247be78f1c647563dc8e51b]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (firefox.exe), Špatné: ("D:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[1d0a0bf2e9a0e84ef774e0bd63a216ea]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (Chrome.exe), Špatné: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[36f19d6095f469cdb8b62776689d3fc1]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA, Dobré: (iexplore.exe), Špatné: (C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&t ... 73310431EA),Nahrazeno,[a6819c61e1a84ee8d9935944db2ad62a]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[63c4d92430592e088e28b7e615f0aa56]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[1e091edf0e7b44f23f76e6b714f11ae6]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[7cab48b57d0c9a9cdd618b20669f4ab6]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[988fed105f2af640c1f6c8d59075ff01]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[db4cba4327623df9cceea6f7a5608b75]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[190ec83503864de99ca05556897c12ee]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?
Re: prosím o pomoc
druhý:
type=hppp&ts=1422380511&from=smt&uid=KINGSTONXSV300S37A120G_50026B73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[131401fcc7c21c1a6c4c336ad2334db3]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[a186b4492c5dc2741d9cd4c9fc091ae6]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[a681bb42fd8cb5812e8a2974f70e8f71]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[5ec9eb12a7e26fc77b3eaaf351b41fe1]
Složky: 70
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\weather, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en-US, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es-419, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it-CH, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pl, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\tr, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\vi, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults\preferences, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Smazat při restartu, [1d0af10c276290a69dac99c3966d33cd],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, Do karantény, [1d0af10c276290a69dac99c3966d33cd],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, Do karantény, [b96ee716becba98d980ee8912ed5e41c],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, Do karantény, [b96ee716becba98d980ee8912ed5e41c],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\content, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\skin, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
Soubory: 152
PUP.Optional.WindowsProtectManger.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Smazat při restartu, [be6995685534fd3919a5d29452aebd43],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, Smazat při restartu, [9592609d91f8db5bb4b1f0189f636c94],
PUP.Optional.SupTab.A, C:\Program Files (x86)\XTab\SupTab.dll, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\CmdShell.exe, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\conf, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1025.xpi, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\HPNotify.exe, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\IeWatchDog.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\ver.txt, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\arrow.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_add_logo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_add_logo_hover.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_logo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\googlelogo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\googlelogo2.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\weather\0.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ie8.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.MyStartSearch.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\searchplugins\mystartsearch.xml, Do karantény, [61c6f00dacdddc5afe741d6abe4506fa],
Malware.Trace, C:\Windows\inf\ntvdm.inf, Do karantény, [75b297668504dc5afccbb6255ba9758b],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\Allin1Convert@mindspark.com.gen1, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\Allin1ConvertCrxSetup.A7AFB721-64A8-42DF-8323-2F6E70AEA3B0.exe, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\sqlite3.dll, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\t8sql.dll, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome.manifest, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\install.rdf, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\index.html, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\quick_start.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A,
type=hppp&ts=1422380511&from=smt&uid=KINGSTONXSV300S37A120G_50026B73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[131401fcc7c21c1a6c4c336ad2334db3]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[a186b4492c5dc2741d9cd4c9fc091ae6]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.mystartsearch.com/?type=hppp ... 73310431EA, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/?type=hppp ... 73310431EA),Nahrazeno,[a681bb42fd8cb5812e8a2974f70e8f71]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-587793050-2680240534-2475341652-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.mystartsearch.com/web/?type= ... earchTerms}, Dobré: (www.google.com), Špatné: (http://www.mystartsearch.com/web/?type= ... earchTerms}),Nahrazeno,[5ec9eb12a7e26fc77b3eaaf351b41fe1]
Složky: 70
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\weather, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en-US, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es-419, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it-CH, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pl, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\tr, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\vi, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults\preferences, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Smazat při restartu, [1d0af10c276290a69dac99c3966d33cd],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, Do karantény, [1d0af10c276290a69dac99c3966d33cd],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, Do karantény, [b96ee716becba98d980ee8912ed5e41c],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, Do karantény, [b96ee716becba98d980ee8912ed5e41c],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\content, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\skin, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
Soubory: 152
PUP.Optional.WindowsProtectManger.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Smazat při restartu, [be6995685534fd3919a5d29452aebd43],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, Smazat při restartu, [9592609d91f8db5bb4b1f0189f636c94],
PUP.Optional.SupTab.A, C:\Program Files (x86)\XTab\SupTab.dll, Do karantény, [bf68e21b7712c670d5bb9f5c20e21fe1],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\CmdShell.exe, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\conf, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1025.xpi, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\HPNotify.exe, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\IeWatchDog.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\ver.txt, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\arrow.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_add_logo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_add_logo_hover.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_logo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\googlelogo.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\googlelogo2.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\weather\0.png, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ie8.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, Do karantény, [3bec57a6a9e0ab8b5041710eff043bc5],
PUP.Optional.MyStartSearch.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\searchplugins\mystartsearch.xml, Do karantény, [61c6f00dacdddc5afe741d6abe4506fa],
Malware.Trace, C:\Windows\inf\ntvdm.inf, Do karantény, [75b297668504dc5afccbb6255ba9758b],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\Allin1Convert@mindspark.com.gen1, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\Allin1ConvertCrxSetup.A7AFB721-64A8-42DF-8323-2F6E70AEA3B0.exe, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\sqlite3.dll, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\Allin1Convert_8h Chrome Extension\bar\t8sql.dll, Do karantény, [20071ce1b2d73204880387c63ac9b749],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome.manifest, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\install.rdf, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\index.html, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\quick_start.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A,
Re: prosím o pomoc
posledný z C:
C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\quick_start.xul, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\speed_dial.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\about_blank_hook.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\misc.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\popup_image_helper.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\urlrequestor.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\js.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib\doT.min.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\hotSearch.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\mostgrid.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\search.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\stat.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack\common.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack\ga.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack\xagainit.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en-US\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es-419\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it-CH\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pl\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\tr\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\vi\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\default_logo.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\googlelogo.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\google_trends.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\icon.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\loading.gif, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\logo.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\newtab.ico, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\simple.css, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\style.css, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults\preferences\fvd.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults\preferences\preferences.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\addonmanager.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\aes.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\config.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\dialogs.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\last_tab.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\misc.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\properties.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\remoterequest.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\restoreprefs.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\settings.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, Do karantény, [1d0af10c276290a69dac99c3966d33cd],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, Do karantény, [b96ee716becba98d980ee8912ed5e41c],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome.manifest, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\install.rdf, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\content\toolbar.js, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\content\toolbar.xul, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\skin\icon.png, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.QuickStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\prefs.js, Dobré: (), Špatné: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Nahrazeno,[0324c5382c5d0234477f25bed13437c9]
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\quick_start.xul, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\speed_dial.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\about_blank_hook.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\misc.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\popup_image_helper.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\include\tools\urlrequestor.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\js.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib\doT.min.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\hotSearch.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\mostgrid.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\search.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\module\stat.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack\common.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack\ga.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\content\js\pack\xagainit.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\en-US\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\es-419\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\it-CH\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pl\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\tr\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\vi\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW\locale.properties, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\default_logo.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\googlelogo.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\google_trends.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\icon.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\loading.gif, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\logo.png, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\newtab.ico, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\simple.css, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\chrome\skin\style.css, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults\preferences\fvd.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\defaults\preferences\preferences.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\addonmanager.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\aes.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\config.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\dialogs.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\last_tab.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\misc.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\properties.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\remoterequest.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\restoreprefs.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.FastStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\faststartff@gmail.com\modules\settings.js, Do karantény, [d057e419385183b3ec244b109e65ae52],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, Do karantény, [1d0af10c276290a69dac99c3966d33cd],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, Do karantény, [b96ee716becba98d980ee8912ed5e41c],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome.manifest, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\install.rdf, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\content\toolbar.js, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\content\toolbar.xul, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.FFToolbar.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\extensions\fftoolbar2014@etech.com\chrome\skin\icon.png, Do karantény, [c661bf3ec3c63ff7efe5bebbd82b16ea],
PUP.Optional.QuickStart.A, C:\Users\I\AppData\Roaming\Mozilla\Firefox\Profiles\wqnqzlba.default\prefs.js, Dobré: (), Špatné: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Nahrazeno,[0324c5382c5d0234477f25bed13437c9]
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)