Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu, děkuju

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Prosím o kontrolu, děkuju

#1 Příspěvek od sara.slaba »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Sára at 2015-02-01 18:39:57
Microsoft Windows 8.1
System drive C: has 352 GB (76%) free of 463 GB
Total RAM: 3362 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:40:06, on 1. 2. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files\Lenovo Fingerprint Reader\x86\IEWebSiteLogon.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\Lenovo\Communications Utility\tpknrres.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Sára.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: TrueSuite Browser Helper Object - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files\Lenovo Fingerprint Reader\x86\IEBHO.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O4 - HKLM\..\Run: [331BigDog] C:\Program Files (x86)\USB Camera\VM331STI.EXE
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {4FF78044-96B4-4312-A5B7-FDA3CB328095} -
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: AVControlCenter - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - AuthenTec, Inc - C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HitmanPro Scheduler (HitmanProScheduler) - SurfRight B.V. - C:\Program Files\HitmanPro\hmpsched.exe
O23 - Service: @oem22.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe (file missing)
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo Settings Service - Lenovo Group Limited - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Lenovo Camera Mute (LENOVO.CAMMUTE) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo AVFramework Microphone Volume Controller and Dolby Interface (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
O23 - Service: ThinkVantage Virtual Camera Controller (LENOVO.TVTVCAM) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LocationTaskManager - Unknown owner - C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
O23 - Service: LSCWinService - Unknown owner - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo Settings Power Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\WINDOWS\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: TrueAPI Service component (TrueService) - AuthenTec, Inc. - C:\Program Files\Common Files\AuthenTec\TrueService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 11337 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe"
C:\WINDOWS\system32\ibmpmsvc.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\HitmanPro\hmpsched.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\system32\WLANExt.exe 313695395776
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {8aa20650-66b2-434f-8b62813a640c11e2}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe"
"C:\Program Files\Lenovo Fingerprint Reader\TouchControl.exe"
"C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe"
taskhostex.exe
"C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe"
C:\WINDOWS\system32\rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
C:\Program Files\LENOVO\HOTKEY\tpnumlkd.exe
C:\PROGRA~1\Lenovo\HOTKEY\MKRMSG.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.MediaKey
C:\PROGRA~1\Lenovo\HOTKEY\TPOSD.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-16ba85e1-4fb9-407c-8fc8-2616dbd0866b -SystemEventPortName:HostProcess-af774a03-9915-43a2-8f34-98e35646c0bb -IoCancelEventPortName:HostProcess-ab99f2ba-a98c-4398-be48-1986e5296f31 -NonStateChangingEventPortName:HostProcess-d36ec0da-c217-421d-bfc7-6f4ab0115927 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:de0bfe3f-9a82-4f38-b767-9c33131cea36 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-941b5c38-8dc6-477a-b7fc-80692e6cd6af -SystemEventPortName:HostProcess-e57148cc-0743-4e51-8ac6-6b30cb50e2be -IoCancelEventPortName:HostProcess-dd569130-3132-4e2e-b549-77885d12f875 -NonStateChangingEventPortName:HostProcess-3e4d8a71-9916-4082-a580-8d50e4952119 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c2e6879d-c9f1-4a00-903c-cd77445ffa3a -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-262c292b-d418-466d-884b-ff5ffa19fa34 -SystemEventPortName:HostProcess-17652886-a038-49dd-82a3-6fc4fe211603 -IoCancelEventPortName:HostProcess-9fdb2d58-8c29-4f7d-a19c-2b466a3789a8 -NonStateChangingEventPortName:HostProcess-6eeb372a-00d6-480d-b52a-9a456c3f1896 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c3337172-8df1-4b08-9f70-4d4431f81258 -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ea638498-db69-4607-925a-dedd1c1bf6be -SystemEventPortName:HostProcess-015486b9-7c80-4322-b470-0853eab684c6 -IoCancelEventPortName:HostProcess-d9dfc894-156c-48f3-8817-1e216921dbd2 -NonStateChangingEventPortName:HostProcess-079f834e-84a6-4257-9335-36722e3d6f0e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:748da993-435b-4972-b965-ae3d9a70eee3 -DeviceGroupId:
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"c:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
ngservice.exe pipeserver
"C:\Program Files\Common Files\AuthenTec\TrueService.exe"
/ChildServer
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Lenovo Fingerprint Reader\x86\IEWebSiteLogon.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" -quickstart
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" "-quickstart" "-env:OOO_CWD=2C:\\Program Files (x86)\\OpenOffice.org 3\\program"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Lenovo\Communications Utility\tpknrres.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5568.0.1362153544\636307085" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.3347 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6_Postperiod/PasswordGeneration/Disabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5568.3.1448402950\484840946" /prefetch:673131151
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6_Postperiod/PasswordGeneration/Disabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5568.7.64309404\903938999" /prefetch:673131151
"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "0xd78_0x1718_0x590a247b"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6_Postperiod/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/HTTP/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5568.36.1473652711\830954834" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6_Postperiod/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/HTTP/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5568.42.339819598\118847654" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592

"C:\Users\Sára\Downloads\RSITx64.exe"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe#
C:\WINDOWS\tasks\FMMDNS.job - C:\Users\S�ra\AppData\Roaming\FMMDNS.exe# /infocmdline=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#
C:\WINDOWS\tasks\FOGQBCT.job - C:\Users\S�ra\AppData\Roaming\FOGQBCT.exe# /infocmdline=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#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#

=========Mozilla firefox=========

ProfilePath - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default

prefs.js - "keyword.URL" - "https://www.google.com/search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.296 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@authentec.com/ffwloplugin]
"Description"=
"Path"=C:\Program Files\Lenovo Fingerprint Reader\npffwloplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.296 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll


C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\
718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com
{7c231677-e4fb-44ac-80a5-c87fcb7c2be9}

C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\searchplugins\
Google.xml
seznam-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611381133}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Browser Helper Object - C:\Program Files\Lenovo Fingerprint Reader\IEBHO.DLL [2012-08-31 2517864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-01-29 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Browser Helper Object - C:\Program Files\Lenovo Fingerprint Reader\x86\IEBHO.dll [2012-08-31 2352488]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-01-29 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-08-20 13192848]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-08-17 1215632]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2012-08-08 11554688]
"TpShocks"=C:\WINDOWS\system32\TpShocks.exe [2012-08-24 222720]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [2014-03-04 74288]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-10 2912056]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EA Core"=C:\Program Files (x86)\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2012-05-02 548864]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-29 5227112]

C:\Users\Sára\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.2.lnk - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-02-01 18:39:57 ----D---- C:\rsit
2015-02-01 18:39:57 ----D---- C:\Program Files\trend micro
2015-02-01 17:10:41 ----D---- C:\Program Files\HitmanPro
2015-02-01 17:10:08 ----D---- C:\ProgramData\HitmanPro
2015-02-01 16:57:36 ----D---- C:\WINDOWS\SYSWOW64\vbox
2015-02-01 16:57:36 ----D---- C:\WINDOWS\system32\vbox
2015-02-01 16:52:52 ----D---- C:\WINDOWS\ERUNT
2015-02-01 16:41:08 ----D---- C:\AdwCleaner
2015-01-29 13:04:02 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-01-29 13:03:55 ----A---- C:\WINDOWS\avastSS.scr
2015-01-21 14:42:49 ----A---- C:\WINDOWS\system32\drivers\iSafeNetFilter.sys
2015-01-21 14:42:48 ----D---- C:\WINDOWS\system32\log
2015-01-21 14:42:30 ----D---- C:\Program Files (x86)\Elex-tech
2015-01-16 14:44:36 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-16 14:44:36 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-01-16 14:44:36 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-01-16 14:44:36 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-01-16 14:44:36 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-01-16 14:44:35 ----A---- C:\WINDOWS\SYSWOW64\nlaapi.dll
2015-01-16 14:44:35 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-01-16 14:44:35 ----A---- C:\WINDOWS\system32\nlaapi.dll
2015-01-16 14:44:26 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2015-01-16 14:44:26 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-01-16 14:44:26 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-01-16 14:44:26 ----A---- C:\WINDOWS\system32\WerFault.exe
2015-01-16 14:44:26 ----A---- C:\WINDOWS\system32\wer.dll
2015-01-16 14:44:26 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-01-16 14:44:26 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2015-01-16 14:44:25 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-01-16 14:44:25 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\wermgr.exe
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\ci.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-01-16 14:44:25 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-01-16 14:44:24 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2015-01-16 14:44:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-01-02 15:17:33 ----D---- C:\WINDOWS\Minidump

======List of files/folders modified in the last 1 month======

2015-02-01 18:40:06 ----D---- C:\WINDOWS\Prefetch
2015-02-01 18:39:57 ----D---- C:\Program Files
2015-02-01 18:00:03 ----D---- C:\WINDOWS\system32\sru
2015-02-01 17:38:52 ----D---- C:\WINDOWS\Temp
2015-02-01 17:38:09 ----SHD---- C:\WINDOWS\Installer
2015-02-01 17:37:39 ----RD---- C:\WINDOWS\System32
2015-02-01 17:34:30 ----D---- C:\WINDOWS\system32\drivers
2015-02-01 17:29:45 ----D---- C:\WINDOWS\Tasks
2015-02-01 17:29:45 ----D---- C:\WINDOWS\system32\Tasks
2015-02-01 17:29:42 ----RD---- C:\Program Files (x86)
2015-02-01 17:28:24 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-02-01 17:21:05 ----SHD---- C:\System Volume Information
2015-02-01 17:10:08 ----HD---- C:\ProgramData
2015-02-01 16:57:36 ----D---- C:\WINDOWS\SysWOW64
2015-02-01 16:56:41 ----D---- C:\Windows
2015-01-29 19:53:43 ----D---- C:\WINDOWS\Inf
2015-01-29 19:42:35 ----D---- C:\WINDOWS\Microsoft.NET
2015-01-29 19:37:57 ----D---- C:\WINDOWS\system32\DriverStore
2015-01-29 12:29:28 ----D---- C:\WINDOWS\system32\config
2015-01-28 21:42:56 ----D---- C:\WINDOWS\WinSxS
2015-01-28 21:41:57 ----D---- C:\WINDOWS\system32\catroot2
2015-01-28 21:32:25 ----D---- C:\WINDOWS\CbsTemp
2015-01-27 19:27:33 ----D---- C:\WINDOWS\AppReadiness
2015-01-25 23:42:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-01-24 21:20:40 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-01-24 01:24:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-01-23 22:52:03 ----D---- C:\WINDOWS\system32\MRT
2015-01-23 22:44:14 ----A---- C:\WINDOWS\system32\MRT.exe
2015-01-21 21:01:21 ----HD---- C:\Program Files\WindowsApps
2015-01-21 20:53:14 ----D---- C:\WINDOWS\system32\NDF
2015-01-02 16:01:55 ----D---- C:\ldiag

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-01-29 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-01-29 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 Shockprf;Shockprf; C:\WINDOWS\System32\DRIVERS\Apsx64.sys [2012-07-24 148328]
R0 TPDIGIMN;TPDIGIMN; C:\WINDOWS\System32\DRIVERS\ApsHM64.sys [2012-08-13 25448]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-01-29 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-01-29 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-01-29 436624]
R1 iSafeKrnlKit;YAC Kit Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [2015-01-19 99496]
R1 iSafeKrnlMon;YAC Monitor Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [2015-01-19 42152]
R1 TPPWRIF;TPPWRIF; C:\WINDOWS\System32\drivers\Tppwr64v.sys [2014-03-07 20736]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-01-29 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-01-29 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-01-29 116728]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-01-29 271752]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2012-07-15 825344]
R3 IBMPMDRV;IBMPMDRV; C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [2012-08-15 42344]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2012-07-04 55848]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-08-21 4106256]
R3 IntcDAud;@oem9.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem17.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2012-07-27 25568]
R3 MEIx64;@oem29.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NETwNe64;@oem32.inf,___ %NIC_Service_DispName_WIN8_64%;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2013-09-04 3345376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 RSPCIESTOR;@oem28.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPStor.sys [2012-07-04 339600]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-08-10 43832]
R3 SynTP;@oem26.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-08-10 446264]
R3 vm331avs;@oem7.inf,%USBCamera.DeviceDesc2%;Digital Camera 1; C:\WINDOWS\System32\Drivers\vm331avs.sys [2012-07-24 974848]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dg_ssudbus;@oem47.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 dot4;@oem20.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-10-19 151968]
S3 Dot4Print;@oem21.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-10-19 27040]
S3 dot4usb;@oem20.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-10-19 49056]
S3 ssudmdm;@oem48.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 SWIX64;SWIX64; \??\C:\Program Files (x86)\Lenovo\System Update\tvsuhd64.sys [2012-09-12 33856]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-01-29 50344]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-08-08 1091520]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-08-08 1112000]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2012-07-18 627504]
R2 FPLService;TrueSuiteService; C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe [2012-08-31 2139496]
R2 HitmanProScheduler;HitmanPro Scheduler; C:\Program Files\HitmanPro\hmpsched.exe [2015-02-01 127752]
R2 IBMPMSVC;@oem22.inf,%ibm.svcDesc0%;Lenovo PM Service; C:\WINDOWS\system32\ibmpmsvc.exe [2012-08-15 49544]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-07-13 2451456]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-17 128896]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-17 165760]
R2 Lenovo Settings Service;Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2014-03-10 2085184]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [2012-08-16 559504]
R2 LENOVO.CAMMUTE;Lenovo Camera Mute; C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe [2014-03-04 512048]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2012-08-24 127072]
R2 LENOVO.TVTVCAM;ThinkVantage Virtual Camera Controller; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [2014-03-04 702512]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2012-08-11 136288]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 276864]
R2 LocationTaskManager;LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [2013-12-11 468288]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2012-07-18 149296]
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2012-05-29 147040]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 364416]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-01-29 4012248]
R3 Power Manager DBC Service;Lenovo Settings Power Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2014-03-07 1669976]
R3 TrueService;TrueAPI Service component; C:\Program Files\Common Files\AuthenTec\TrueService.exe [2012-07-16 401256]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2013-07-18 762192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-24 267440]
S3 AVControlCenter;AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [2014-03-04 573488]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]
S3 LENOVO.TPKNRSVC;Lenovo AVFramework Microphone Volume Controller and Dolby Interface; C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe [2014-03-04 527920]
S3 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2013-09-25 1674720]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-10-06 114288]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-07-18 272176]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2014-02-21 24120]
S3 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\WINDOWS\System32\TPHDEXLG64.exe [2012-08-13 46984]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu, děkuju

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#3 Příspěvek od sara.slaba »

# AdwCleaner v4.109 - Report created 01/02/2015 at 19:22:01
# Updated 24/01/2015 by Xplode
# Database : 2015-01-26.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Sára - LENNY
# Running from : C:\Users\Sára\Desktop\adwcleaner_4.109 (1).exe
# Option : Clean

***** [ Services ] *****

Service Deleted : iSafeKrnlKit
Service Deleted : iSafeKrnlMon

***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\Elex-tech
Folder Deleted : C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v32.0.3 (x86 cs)


-\\ Google Chrome v40.0.2214.94


*************************

AdwCleaner[R0].txt - [17673 octets] - [01/02/2015 16:41:10]
AdwCleaner[R1].txt - [1118 octets] - [01/02/2015 19:18:13]
AdwCleaner[S0].txt - [17090 octets] - [01/02/2015 16:44:10]
AdwCleaner[S1].txt - [1048 octets] - [01/02/2015 19:22:01]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1108 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu, děkuju

#4 Příspěvek od Márty84 »

:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=29&t=137928 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#5 Příspěvek od sara.slaba »

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 1. 2. 2015
Scan Time: 22:38:53
Logfile: log.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2015.02.01.06
Rootkit Database: v2015.01.14.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: SA!ra

Scan Type: Custom Scan
Result: Completed
Objects Scanned: 629504
Time Elapsed: 2 hr, 26 min, 56 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 3
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\TotalPlus01-3.1V16.09-nv, , [a4a6b8613654b28493aab3de34cf2bd5],
PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TornTv Downloader, , [2f1bc55443475fd74f66bbd0b74cd42c],
PUP.Optional.CrossRider.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TotalPlus01-3.1V16.09, , [b694e5346327d462d867d8b9927126da],

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 27
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\defaults, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\defaults\preferences, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\userCode, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\locale, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\locale\en-US, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\userCode, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\icons, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\icons\actions, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\popupResource, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh, , [0f3bd4457b0f54e292069eda56ada957],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0, , [0f3bd4457b0f54e292069eda56ada957],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0\_metadata, , [0f3bd4457b0f54e292069eda56ada957],

Files: 218
PUP.Optional.SearchProtect, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\Loader64.exe.vir, , [f951ed2c85056acc3ebe3caed72acd33],
PUP.Optional.IEPluginService.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\RSHP.exe.vir, , [d27864b5484237ffd1ba3c5219e8c33d],
PUP.Optional.Skytech.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SearchProtect32.dll.vir, , [7fcb1cfd36548caa286c7d2ea35e867a],
PUP.Optional.Skytech.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SearchProtect64.dll.vir, , [ea60041589012511e0b48823d62b59a7],
PUP.Optional.IePluginService.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupIePluginServiceUpdate.exe.vir, , [3e0cfa1f0b7f4beba40379025da448b8],
PUP.Optional.SupTab.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupTab.dll.vir, , [2426be5b1b6f96a0308b9d98d22e768a],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\2626f646-e0c1-48b6-83f4-ed0a94ea0a7a.exe.vir, , [ec5eab6e21699b9b2a7804d1d32e3bc5],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\751e8a28-b2a0-4b3e-8254-d82eab052bfb-11.exe.vir, , [8dbd13063159b284277ba5308879f40c],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\751e8a28-b2a0-4b3e-8254-d82eab052bfb-3.exe.vir, , [e1690910f397b5810c968055778afb05],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\751e8a28-b2a0-4b3e-8254-d82eab052bfb-4.exe.vir, , [3f0bf227dab01c1a039f5481f809da26],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\TotalPlus01-3.1V16.09-bg.exe.vir, , [8bbf0811276371c522808a4bc140df21],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\TotalPlus01-3.1V16.09-bho.dll.vir, , [c4865abfacde5adc92108f461ee3758b],
PUP.Optional.TotalPlus.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\TotalPlus01-3.1V16.09\TotalPlus01-3.1V16.09-bho64.dll.vir, , [78d2da3f0b7f9c9a3e6426af08f925db],
PUP.Optional.IePluginService.A, C:\AdwCleaner\Quarantine\C\ProgramData\IePluginServices\PluginService.exe.vir, , [61e98e8b98f2e551f7b0fd7ee0215aa6],
PUP.Optional.WindowsProtectManger.A, C:\AdwCleaner\Quarantine\C\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe.vir, , [0f3b1504434738febd12e8df40c14cb4],
PUP.Optional.SkyTech.A, C:\Users\SA!ra\AppData\Local\Microsoft\Windows\INetCache\IE\AHWH6KOE\1[1].zip, , [98b2ff1ad4b65adce947877431d052ae],
PUP.Optional.Conduit, C:\Users\SA!ra\Desktop\Programy\bsplayer264.1073.exe, , [f1590c0de9a18caa11a7924865a041bf],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx, , [0644be5bc1c9ac8aeae635525ba8ed13],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome.manifest, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\install.rdf, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\0de4612aae6770f5eaef03879489a3a5.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\5958a33c6c2e2fbf8a4724e439622f23.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\6513b310b6145ddf46b668e1e1cc7ba8.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\95d63288f6fa1fe2993d02ef99f48b51.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\background.html, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\bbbbadc43db6366dbe5c4001e6f185ce.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\browser.xul, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\dialog.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\e46951afc55ca08fdeebc34113ddeaf4.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\ffCoreFilesIndex.txt, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\options.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\options.xul, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\search_dialog.xul, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\857fefea60f6362bce7a2a4e89e806e1.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\0a91bd58089a6fa8b37b959c160b41f5.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\1fe6830b0370e85ee5ebe19b594fffe8.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\2cd74f74a996a3cbc35a9cfaccbd13a6.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\391c5ef173f46fb82c0cfdcc25d01261.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\4145e059c5fe349f489ac194600bf3fd.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\6d6384fc3c54e959e2c38489e03e45d7.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\803d1f770e7c0033a1a416d2d3457244.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\8051ec430adffa02e9a9f5bedb25ca44.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\85bb71d9b22f8551e33a0a6b198dbbc6.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\9478905f839882bf322b591203b3089f.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\9901abd1fbd637f09310b6f23f843b98.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\acaecae9dcc7e5895767309ceac8b20e.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\ae658cf6edbe9127e39b0b2ec67e5c15.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\d6ce120ae334ce0899ce795f6380199d.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\api\da01e112eb802cfe412bd3bb368542e8.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\74429f07d52dd2fe9274083a6d5d277a.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\04f4f26035c98e8719970d45a370c0ec.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\1000234fd0f27ed2680eedc33d76d964.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\10c39ce8a2f1499d07741105468d636a.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\1569579cbac073726884bbfb86675235.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\2953c54256215135af22e5a653db0157.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\2ac5f7dee1e810941ba93e8205e431ec.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\2b3338f8baf5e9383605b246f41fc09d.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\32bc84c663affc5b9680d8a82ea69453.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\39f743f75c4768cb40d710e4491ffe95.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\433762dc5dd8c8c91a43f140ddaff187.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\4381cf0b8e59a88d9915bae2e384946f.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\61e1dcc1751eaa818d226ee933e2ea66.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\6b2b924d38b4d7d30f896e017bc1dcf8.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\9b4fb79116cc728491a9b0700935c6c0.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\b996c08dbe64e276dd7566bf9fca4c19.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\c3f93d9385767b43a3633772defb283c.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\c8b5595b0c7a96510dc6442d785c761f.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\cb9070faacc94a025da23dd724cb794c.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\d14d39a0ac08ff9cc22ea1a6a13bc56a.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\chrome\content\core\installer.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\defaults\preferences\prefs.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\manifest.xml, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins.json, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\242.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\102.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\104.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\119.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\123.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\13.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\14.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\16.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\17.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\178.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\179.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\180.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\184.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\190.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\191.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\195.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\217.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\220.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\221.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\223.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\231.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\232.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\246.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\260.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\262.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\263.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\268.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\273.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\275.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\281.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\286.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\288.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\289.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\300.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\4.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\47.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\64.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\7.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\78.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\9.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\91.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\plugins\93.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\userCode\background.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\extensionData\userCode\extension.js, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\locale\en-US\translations.dtd, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\button1.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\button2.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\button3.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\button4.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\button5.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\crossrider_statusbar.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\icon128.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\icon16.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\icon24.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\icon48.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\panelarrow-up.png, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\popup.html, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\skin.css, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com\skin\update.css, , [3e0c53c67a107bbb2ccbbea88f74a65a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\background.html, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\chromeCoreFilesIndex.txt, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\manifest.json, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\popup.html, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\Settings.json, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\manifest.xml, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins.json, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\260.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\102.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\104.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\119.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\123.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\13.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\14.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\17.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\178.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\179.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\180.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\184.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\19.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\190.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\195.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\217.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\220.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\221.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\223.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\231.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\232.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\242.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\246.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\262.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\263.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\267.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\273.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\275.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\281.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\286.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\288.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\289.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\300.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\302.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\4.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\47.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\64.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\7.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\78.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\80.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\9.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\91.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\93.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\plugins\97.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\userCode\background.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\extensionData\userCode\extension.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\icons\icon128.png, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\icons\icon16.png, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\icons\icon48.png, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\icons\actions\1.png, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\6828f7c988f46d379a973cf7e94b7d6d.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\7cc2fec5e21e0f17f2638cc9be82d7b5.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\main.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api\0dbf1eafb9634b9505f5ec183e17b74d.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api\3ee2bbc35693134b65e10bec6d027c0f.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api\496745b6f83aa905ff96af396a4e903a.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api\98a1d5aeaab53475417b545ec60ef8d0.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api\e291eaa4705f1cc7e2914187ba43206a.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\api\pageAction.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\918eaba039021e9a6fbedeaaee9f702d.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\2195067b50a476f341f2f6418d5fd4a2.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\239c938afa608842f03eb9dcda4eca12.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\3279ac2097187936c0fbe1a57ad6e13c.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\45fc630aefe5ef0b7e8bb3dd6377b209.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\73daf18be958cd3196cb26e26d405b14.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\753b44161de94711cf8b6c902f802f41.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\83262fb823c4f50684dbd59d39ec94e9.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\876c96ca3ca4aff0e16e9f052403b202.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\9fc791a6a9d641613f39699b7c61b342.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\app_api.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\e6340a8043f90e9e8237c110c814771d.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\ef2cae17be4219137bb87b7131661f75.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\f0e9f1b16778e51b22ddea940f54cdb8.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\fd031b0d38cd29199f79acbbad9b6040.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\installer.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\popupResource\newPopup.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.CrossRider.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfnkfijppleacdmhpognjiflfmhhll\1.26.34_0\js\lib\popupResource\popup.js, , [ab9f5dbc3b4f51e5d646531cd62d867a],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0\_metadata\computed_hashes.json, , [0f3bd4457b0f54e292069eda56ada957],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0\_metadata\verified_contents.json, , [0f3bd4457b0f54e292069eda56ada957],

Physical Sectors: 0
(No malicious items detected)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu, děkuju

#6 Příspěvek od Márty84 »

Vsechny nalezy hodte do karanteny. Po restartu pc test zopakujte, at vime, jestli se to nevraci. Napiste vysledek testu a podle nej zvolim dalsi postup :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#7 Příspěvek od sara.slaba »

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 2. 2. 2015
Scan Time: 10:34:05
Logfile: log 2.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2015.02.02.01
Rootkit Database: v2015.01.14.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: SA!ra

Scan Type: Custom Scan
Result: Completed
Objects Scanned: 629425
Time Elapsed: 2 hr, 7 min, 12 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 3
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh, , [5b4e26f31d6d8da9895191e7b54e7888],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0, , [5b4e26f31d6d8da9895191e7b54e7888],
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0\_metadata, , [5b4e26f31d6d8da9895191e7b54e7888],

Files: 1
PUP.Optional.SecurityProtection.A, C:\Users\SA!ra\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.4_0\_metadata\verified_contents.json, , [5b4e26f31d6d8da9895191e7b54e7888],

Physical Sectors: 0
(No malicious items detected)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu, děkuju

#8 Příspěvek od Márty84 »

:arrow: Nalezy hodte do karanteny, pak MBAM odinstalujte.


:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#9 Příspěvek od sara.slaba »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.2 (02.02.2015:1)
OS: Windows 8.1 x64
Ran by S ra on po 02. 02. 2015 at 21:57:01,11
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}



~~~ Files



~~~ Folders



~~~ FireFox

Successfully deleted the following from C:\Users\S ra\AppData\Roaming\mozilla\firefox\profiles\t27v9mzs.default\prefs.js

user_pref("extensions.foxcub.config.encodedConfig", "{\"core\":{\"configUrl\":\"hxxp://download.seznam.cz/software/conf/\",\"updateUrl\":\"hxxp://download.seznam.cz/software/c



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 02. 02. 2015 at 22:04:23,46
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#10 Příspěvek od sara.slaba »

Zoek.exe v5.0.0.0 Updated 27-01-2015
Tool run by S ra on po 02. 02. 2015 at 22:07:41,36.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\SRA~1\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

2. 2. 2015 22:10:08 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Origin Games deleted successfully
C:\PROGRA~2\URUSoft deleted successfully
C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully
C:\Users\SRA~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Games deleted successfully
C:\Users\Sandra\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10172B90-C668-420F-BB88-1956EF715559} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{101E1F68-8446-4BEF-BB1A-A03595DC2AA0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{104C4169-AE99-41BB-AA75-B9CEABF68E19} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{107D9381-157B-4CF7-BF5-C5F4785AEE7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1089A791-BC49-4C1D-A74E-637FEE641DA1} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10F127B1-BCBF-4A00-87C-6E5674245721} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1106D694-B91D-48E8-87DC-9BB4BC3D563} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{119257A-671F-499B-B754-5A67B139F858} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11CCA860-FF4A-420F-B8AC-5137E1686570} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{12D7F71C-3954-40DF-A733-F8166EA0B6C2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{135CD92F-4E29-43B5-9FCE-88D7B642973} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{136773CE-D4C1-4B32-8115-59A2A2846EE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1405C729-850-4AAC-8062-74E6DABFBA4} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{141600C7-6E9F-4432-9F13-D61F1EF3DF34} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{14ADD04E-2EA5-4BB1-A278-44EAAEB954} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{14B8D235-D025-4BC7-8DF0-114D17FA7B64} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{165C97B1-E9DB-45A7-BA6C-CA10B6CEE3AB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1801C7FA-F7C0-453D-AF6D-E0C19D87F223} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18478E1F-2121-4875-89FF-B8746E1AD13} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18FBF8E9-EA36-4440-8C38-BF2EFF5048E6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ACA4B75-706D-4343-BD8A-EDADAC3D82C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ACDA936-9839-4C29-A01B-7DFCABE87DC3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AF7B6B5-E35D-4E35-B7FC-569C1AD5C83} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B2457D7-CEF0-4643-8049-B2EEEC80D2C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B2A51DF-9470-4243-B8D7-4319F7A6122D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1CC2C527-EE68-410B-BAEA-20E8CA1DC395} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E0FE077-87C4-4C72-88D0-CF65639B693C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E1E8FBB-3D00-4EB9-91BD-9FAAAE25FBB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F630032-73E-4C40-97B4-48FEB5BC9AB2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FC8B93-98A9-4C8E-96B0-6F4C36628B34} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{206ACEE6-9E34-403E-88B6-73C3A76A2AC2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20AC83DB-4112-4719-AE1B-1CBAFE742152} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20BCA024-755B-4723-BDE7-BE934ED3E8A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21CFDA6-D584-4FA3-8C68-A18F7FD61EFD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{22B1323D-D03F-4989-988E-49D7AC44DD4C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{22CD7316-5ADB-4E68-A310-179EBDF5D979} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{231E2AA4-CE98-4FFE-885F-1D3DFD19FF95} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{237CF4A7-D9B3-4D69-9511-16F539D6712} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{239FF33F-ED38-41BF-B46B-12AC96AA7B8E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23A58625-A17C-486A-A185-DC36BD11E8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24092638-FFF3-4208-ADE7-5BFAD04AC214} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24159AC0-83ED-404C-8DDA-CD72E2FD049} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24F0BFFA-B924-4861-99A8-DA5A830EA7F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{251CA537-267-4D68-84F1-86C4C78475A2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{267F7F74-9BC0-4473-857-BCB8234CEE13} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26F45B5A-5CE5-4AF9-9D8E-A3DC5BD134FF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2722280E-C8E8-411A-AB96-3A74E82350AE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27D86E76-AEE4-4171-BB62-B0CBF6AB316C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2893092F-F76D-41B4-8855-BD14A03E969D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A2D15CD-EE1-4509-8CFF-7FEA03C8228} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A2FE8AC-B18F-4AD2-8A63-8E54DA9A6E65} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B30A90-C144-446D-A640-159E2BB6C33E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C98FBFF-9899-42FB-84F0-F89635671256} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CF2E7AC-6D17-4BA0-8A51-50BA2188F7B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D06C6C1-3229-41FD-B568-C59331B4360} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D481F5F-367D-4467-9D6-F7C2C0A22187} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D7F745-A58C-405F-9E19-E1C7D8FA8348} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E94B577-6D83-4D5B-8B7E-80C6602AE3FB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F1E6F69-5A47-47DB-8DED-A9BE319DA6F7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F318CC3-8539-451B-826-F387547C9EBF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F4E35D1-1059-4A84-A448-453F79427593} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F8BB382-A42B-4CF7-A336-F6A98B2B2D0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30577D9D-AB2D-4825-8E16-91D1831E5FA9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3063692B-ECE8-45D4-B3A0-4A5BBC8204A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30BE9282-F32F-44EF-A7F-512894F6F3A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30FD0C54-977B-4182-BCED-C76F3C127E0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3223E0EB-4606-4295-A45A-328420CBB43F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3279EFC6-557B-4C6F-ACF9-3DE133B203E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32BF2F84-704C-494A-946F-F29145E4B1B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3311BD9E-3411-41BD-8C9A-FD23D475C184} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3354C584-DAE1-4CAA-A45D-3BA4C55FB31B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33E97A2E-7F6F-429F-AB22-AB63EDB86B42} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3505F7E-E89F-4909-8E47-539F273AE1A5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{354168E0-46FF-45BB-99D4-394B69AE992F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{362F70B8-D5C1-421B-A267-4CB3A39F42} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36B6BCB1-99F6-4CD6-8F9-B05C3B32BE9C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37411887-52CE-4480-997D-1A94C292D647} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3761247E-2B77-4F55-AADA-A08B6EE5828D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{379DA2BD-5331-4FA8-8871-FB7155DEDD4A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37E3FE65-4309-4179-826D-C6AB65C62B5F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37F62929-F2D-4ECC-BA46-B0F3B6C267E2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38186E2D-78AC-4998-A74E-E2794CC1E3D5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38DD2860-9980-471F-B617-918694E7D59C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{391B9ECE-883B-401A-9259-C0609D74575A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3940A9B5-3804-40C7-8D2B-7DB0AC5ABA9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3A0AEE12-5754-45BC-9B16-8E7D9981F29} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3A951AAE-290-4509-BC5C-CA17F0109555} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B245338-B75-41EB-BA95-EB6688C1C479} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B467192-5C60-43BD-A5B2-ADEE506A58CC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C034E15-A2C5-4A48-AF67-F7B937E9AADF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C080E1E-B42D-486C-9FA2-13B86B5CEB96} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C1A20D4-9195-4707-A6F1-7CC368D92CDF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3CC01F04-1FFA-4F13-8538-B3C5E57550} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3DB5A0DD-41D4-4FEB-8756-3B4F7DA977C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E0F71F7-A7EE-4B66-885C-9EEE29D4EDB7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E3BF1F7-E566-479D-965-86FFAE88FFBF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F590821-7480-4A60-BF14-133FF1738B8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40791BD2-EAE5-4BFE-99BF-57CCAF8A9F17} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40D4ECB6-89F9-45A4-9BA2-339231AB5C93} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40FEA70D-8B38-4260-BBC5-165E7F96237D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4135C040-3B5F-4F46-86C3-8C6092FE461} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{413C9BD7-A943-4BC0-93A7-7E58F37CAE73} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{414B2675-7142-44E3-9672-669104B9752} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{414D777D-DEE-4D09-93EB-B5861E45043} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{417B231-3820-4EA8-B654-5BF9DE9CF4BC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{41D75F94-206D-4E9F-86E0-FCA26375379} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{425FE001-E38E-40F9-844B-E337932C98C0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42E0C0D6-76D0-4FCA-AC9B-2EFCB3686414} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43197133-140C-4C8F-A24B-D1A182FCD428} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{431B32BB-6719-4278-A5C3-13EB283B2246} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43728599-4328-42FD-856E-A15A9767F1CC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4380F814-1390-4198-B715-DEFB76535C6B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44B1872B-7D3F-4812-A46A-EEBCC8AB30D5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{45503849-71D6-4E27-B7F6-C136B67478B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4592BB29-D920-40CD-80AB-8B7EF3A64F2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{461492B7-3BA3-4713-BD4E-A0F83E776E39} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{461DA15F-B388-4095-AA6F-F24A29CF72D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4631B840-7694-4E0E-87CB-BF4361D4359A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{46B80407-9D26-4728-9AD-A3404F9085BA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{470802E5-3CD4-453F-9731-287B5F2CDD5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4726C0F6-CF65-4DC4-B658-52688FCAEC5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4774340D-46FD-42A4-BF33-55543F150B5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4782CA1B-DC7E-4C90-9762-ABF8DEADB9DB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47BADE59-8FA7-4A30-8645-195DBADAD738} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47BB8ECC-8642-47E0-8542-952E6C286FC8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47BC6067-F18F-4A11-B9F9-BE43643D43A7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{481E52FA-465-43B1-BFC7-3A2F5E9A3D3F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4869FE1B-41E2-4BED-BF8A-64A593FB7560} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{495799AA-DE0D-4484-A758-DBDE7333A23} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{497960B5-3CE9-4592-A8FB-5FC0ECF33E4A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49F747A5-7A40-40F4-A83E-24D82F99D71D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A1540E0-FFFB-4B8A-B95F-8F43B3E885A1} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A3A7626-467A-4108-97C0-5CD67A313A9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B42C2C4-C65F-45E4-AC11-FEDB37AB28CF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B9971BC-B1FC-45C1-B196-8087A1AD5B57} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4BAB2DAC-105-4F31-822-651ABF5749CA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4BFCA252-C953-4365-A985-1207BFDEE40} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C1DF2AF-7688-4C40-9464-31206B54BD14} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4DFD86D2-E78B-45E0-80B4-EB6C5DDCA2CD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E6E63A4-821A-4AD0-A7A5-FB4F62A1F8B9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F6C3395-40B6-4905-BA95-AC7E1E1758F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F71C513-ACD5-4C1E-AACC-D89FE0C245CD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F8A2FC-DDF8-47E3-9AA9-C14F1E227A40} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4FE61FD0-2609-43DD-B2CD-CBDD6187C3E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5095C9E3-9723-4AD2-BA5D-93E3661CE628} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50A0B26B-3066-431E-90E-377BF926333B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50BDF91-D61F-4C0B-8785-3A5F71FB4F59} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51268A0E-F9FA-4763-BB62-9A1340784EF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51E04EF8-B88-4C78-AE34-ECC9ECD712} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{525BDCCC-DB85-483B-A0D7-E9A38D3CCC93} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{527C560F-E6CE-4F68-BD64-2F4C6D23575D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54f2a06a-d194-4630-a38f-1f8da55ba8c9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54F5AAB9-1C7F-4F79-9D96-9DE66DD561} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{551EA9CA-48D7-44D1-B16-582374A13337} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{557ECE13-5E2E-4851-B8D2-752EC1CEBF3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55BA0AD8-5271-49BA-B619-2F2A2119DDFC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55FFD9BA-7660-4A8C-9651-9DD58A09DD5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{563B9F3E-9906-4F20-9A92-45931FAA085} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{564751C2-445-46A4-926A-8922B3E6E9D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57196FE4-7672-4DC5-8324-458437F5BB98} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57E22648-E766-4603-AA1E-1F875E968989} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57E890F2-F0B0-483B-B28D-AE9AC787E4EF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{581A72D4-EE76-4FE4-9860-69F0E6BBC8B8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58F8AD7E-B097-41A8-9A92-5970B7FA4E50} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5911BC28-2F5E-4210-BE6B-5FE468586CC9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59D5EF5F-4894-4CB1-8F5A-5318E3951CD1} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A037E92-60F-41A2-93F3-FEAF122765} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A709998-83B4-4B08-BD18-24D4814E309F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A94B546-FCD-4232-AA3F-D8D18CA819C8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B9B3E7A-9160-4826-8574-A2326971288} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5DBB8306-82C8-4135-BA67-213EEDD673A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E090AB-2719-4E26-B2BB-F184C37C698C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5F0DEA52-C1DD-4ABB-80A8-2F9AAB6ED4D8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FBCD926-6876-479B-A492-C54401B76FE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60186C60-D64A-433A-AF5A-2DF3D472F2CD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{616BB0C-1EDA-4C80-A1F3-B37B5CF629DA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61ADAD30-9AF-49AA-9BEE-6D68850A1B7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62972205-FECA-4BB1-BF59-DDEA4E9F7AA0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62A1960F-6100-409D-AC4-2F94A7F59E0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62ABF28B-AC61-4FBF-ABA7-DB2EA7C41E78} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62C38A79-925A-47F3-A562-62D3F234A98} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64E4CFC8-B4BA-4839-B47B-6CD49460A349} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65D57C77-235C-47B7-BABA-6E54D581892B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6693B82-F8-4DEB-A47E-8B1E72854F72} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68A6105C-7E15-4007-B540-9F58EDA3A2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{693213BE-CB3A-4D80-89D3-3A2149A988F5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6AA98220-A04-4C4C-BDCA-196825212D3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D3A3496-4393-49C7-A258-4C39346F2994} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E751450-7CEB-4D4E-B445-573420EB4B88} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6EF6E225-E654-4886-9B82-EDCCD9A6B630} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FD222B9-F84-459A-859E-24A5198C36AE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7001EF7C-9AF-46B1-8DA4-A37C1454EA38} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7120F2-FF50-4CA4-84B6-6534FE287C53} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{715B5D48-75DB-4334-BCCC-7BB8699AF00} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71F925BC-8FAB-4C71-A66B-739CA517E5E6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72ACBD7B-49D4-48FE-957A-6668D0691813} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72E2415C-E4E-4983-9DD1-CB654A9B6B6A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74009489-CDDB-4109-917E-D532D9278FE2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74375C00-F32B-4469-9922-747E27EC6998} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{744B90B9-92AF-4C09-A4D6-6AA4A2B56C40} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{746DABAE-EC7F-4634-9AE9-F7BBE85B3C74} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{75463C0A-93E7-4D29-B891-DFBD494869D5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{756DF1AA-F114-426D-9FCD-856F148824} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7611DE24-68A1-4AC5-BE4F-B6E33D383F79} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{763076BF-A5E5-4288-8ADF-27D3DFF8FA16} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76C8AD8E-B419-4A0F-A7A0-69A5126DA0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{77647226-3E22-41A9-9CBA-194829D5579} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{779D4EAD-FA3D-43FB-8DF1-7A968639F092} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7809C008-4A8E-4E86-9686-BCD8E666E740} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7834B2E8-8644-4EF8-B675-77FD501710} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78ACA1D8-81EC-4262-A228-B6D96615D4B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78B56918-3BBE-4DD8-A41E-EDD907BE370} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78C0B321-A022-4667-959C-FE9A03DAAB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79461EAF-B7E4-4260-B0EF-5A6C8148AEF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79547793-307F-4165-9DE5-8CF1C93A4F82} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A64DEE9-4A17-430C-9CE8-477C4994E99} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A721478-E2A2-463C-BD81-F6418A75EE55} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AE299D6-64A0-4522-9FF0-A9A3CDEA47BF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B4AD8A8-8863-499E-BD7C-68672AC5FD90} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7b6b8ccb-cc23-47ee-ab35-0c42b2992dd1} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7BC0E7C6-94CA-454D-B06B-7408691867} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C36F697-E5F3-4225-8084-F93558DDD5DF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CA5FB21-DD-40AE-96A6-114D4C90F0F1} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CD9FAD4-8A4E-4CF2-AD3D-5E18DD44BE35} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D3C2F5E-23D1-43C1-96BD-B3DC7DB826F5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7DFD1E30-7D0-4732-B4D0-A7449705988} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E22C681-F10A-43E5-965-827A9A20CF4} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E8E40A9-F56-4361-8AB7-E6975EBB7484} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7EE64971-C479-4D27-ACEE-335B0C4A16A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F502D25-20C2-47C2-A7B2-23FDF932B1A0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F7EC7ED-2AAA-4AFB-971-1EFB9D164685} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7FF0C49D-2FF7-4889-9A93-C5DE215612A6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8121D256-9A6A-4040-A6F8-B0E657DE3D2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{81B1FF7E-1772-464E-AE8-7127FF62C264} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82C2A196-EDFD-451C-8E98-3B666229D51} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{835A396C-10FE-4A3C-85BD-1AE275FB3D38} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83681C3B-2E11-4579-9267-21C1C2613FFC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84F9BCAB-B026-4CF6-A05B-55431297E285} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85D6F34F-47CE-449A-89E4-39456EEF3113} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87F8AEB9-D63-409F-AF5A-C1F8584BDF0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88B5FB73-F613-4747-A26E-7335F61DDA49} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{896D1133-F3E1-4965-94D5-7E7E41ED7539} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89F0201B-D342-44EE-9E6E-2982862446BE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A1E7372-CF1D-4F59-93D5-11AB1EF081E0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A4374CC-EDEF-47A7-A81F-845488E0958F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A71F036-C9CC-4856-AF18-7D1B0CC753} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B17E9FA-B7F-4D77-AA7B-4329392C3D83} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8BF3B62F-3A13-446E-B651-FCEE403B1446} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C527387-EFFE-4BE7-A027-90BFDAE8D9B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D58AAC7-2C32-4B12-B4FE-15711463277E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D6CA2D4-C5BC-4256-AF43-7612DAC921} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8DA611AB-3A01-4D07-B8A0-FAC93F4EB8CF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8DC0E842-B152-436D-8C33-5711EE113BE5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8DD6DB20-8F2B-412D-A1B6-C5D9754B1F7F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E2B3E17-BD48-4189-8F1B-8FD66E72F74} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E48B8FA-A09F-4CC0-B7E3-9B74372289D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E5C8F95-22BB-430F-A8DB-4631862EF359} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F308CE5-2327-45DF-8A67-BB8668108D2E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F46E20D-DC54-4FEB-9C34-3B9552AEB7A6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F8E5E92-76BD-4BA8-B319-9A33F46A5C7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9021BB12-FDF5-49BA-B736-3C95AF9D8F2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{906451FA-4230-43F3-AFDD-6D6DA1A0CF8B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90B603F4-AFBA-48BC-89AA-FFA1AF193460} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{929C4071-E2BD-4368-9BC2-6AEA84C4EFF8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92C2FC7D-4CA0-49B9-A8DE-D8D34305F9F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92CF701F-D55B-4876-86BA-8553E9D952A7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93989A07-7E10-4809-BEA-E02192A8AB21} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9687AB3D-60E-4FD7-AF24-AFFEF81C702C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96E86079-B3B0-4A52-8F81-FF7B4E75A259} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98326FA1-7514-4D53-AB8F-E3A2D0ABF3B7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9898BBF9-CEC4-4FEE-BBA4-E578AC1144B3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{998B0E78-AF03-4345-BCAE-28EADCDA3A22} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99D64922-BE2A-4327-A816-1B717EEEDD61} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A1405B0-F7DF-4878-86CA-8B3C6F225AD1} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A8CB002-55DA-453C-BCC7-2ECE71F16F36} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B42BF80-C7F1-4E37-9C27-77157EE2A970} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B4DAA9D-A0B3-403A-AFC-5FA456EA6997} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C7C700D-CDF5-4A9A-ADED-FA277613D66} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D1DD9CF-41CA-42BC-A99-209D4D0DC28} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9DBA2E3A-D388-43F3-B876-2E2F39D66ED} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9E838603-F1C1-435B-9086-68BA37C24FDC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9E8D386D-D732-4100-AEA1-E59C5CB88F69} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A017C94B-18D8-4529-9A8F-938390367C68} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0365531-C0CF-4C06-8E89-D447F0279134} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0479C73-A407-47A8-829A-3C7846723492} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0E4CFAB-D1BC-4A3A-B228-1A3A9DA7EF7A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0F9FBFB-7680-4B70-828E-4D2557C5123} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A111CE76-8060-4A57-BEAE-4B6F3B0FEF7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A127BD27-904C-4114-9C97-4B76B06FF666} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A175A834-26BF-4515-8392-FAA011899DFB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1DAFD92-A24D-43B0-A9C2-2EA94ABC3592} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1F100E-7B2A-41F9-BDA7-8BB7C03AA966} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2A9C592-B61D-4244-9566-B764731A4799} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2F19EAD-95F6-4680-A91E-6BB377C139B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A309C9A4-862A-48F6-986A-63189D343589} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A360CB7-F2E2-48AD-91DF-D4BEE2495084} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A40089F-65CC-4EE2-B756-6F81D82B38D9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A40FF3F1-D416-48C2-A194-788D228559D6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A433770E-CF37-4ADE-9298-85AE39541C56} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A513B787-C9AE-4545-9578-6C56A5C872F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5542709-76A4-4496-BB49-9071CFDFB736} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5D09EE6-D0EB-487B-A7CF-8E0814908D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6344C21-C726-4589-A898-898F685E303E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6E8CA48-3EF8-4B02-AEF-FAFEE497A716} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A72CFDE4-B493-403F-9A76-DE421CC5715} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A7CE53AC-CB1A-4386-A8E-51BBD4FB9EDF} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A83242F4-28D3-41D9-8018-244B73A861D4} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A861F938-BBB1-4D3F-BAB-C4122CAAE4DC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8657866-7BA0-4DA5-B2C1-7C56BDC6D7F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8D952CB-14B2-44D7-9FC8-1C8137A4B5D9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A91AF03E-51ED-4067-8EB8-B2C7945EC1A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A95B5B5F-EEE7-4C19-88DA-6E9CEB2CF13A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA24023A-6767-425B-A493-B74AD290B5D9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA297254-D897-473A-B75F-481D4D1E30} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA5A0866-D626-4F75-B8D7-9EC6CC9D77CC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA885568-B892-41FA-B16-5DF3476C655B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB567025-A3D9-4FD0-8273-2350EC5B15} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB92A1A3-237F-4826-B4D3-98685D486636} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC36293A-2B65-473B-AFCA-35F274942094} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC515DD3-9E7D-4D95-AD61-CE53C35FA472} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC539F95-567A-4D6C-845F-BA7197390F7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADCEDFBA-BD75-44B0-BCBD-C1AAA07871B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEB3EB15-FEB7-45A8-B783-2CB6173FE342} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0917FE4-B7A-4BFD-ACC2-408F666C79B8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0F924D0-CBAF-464A-A681-CFCEB68A93D6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B13D27BD-F5C3-4B21-A0BB-826C89AD9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1618640-E27C-42A5-99A6-5D8921ABF2C9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B24FE385-C7F5-46BF-A245-75E62538E85} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3069557-BD0D-4826-8FAB-A43CF3149C5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B33480DE-8150-4DAC-92C8-AC64DBCCDA69} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3409023-7CEF-47CA-BDCB-B8AA18823CA3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B393A31-A80E-46EE-A19D-3FD1ED4099F0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3BD0D2D-7D7D-4F41-962D-EB4581F1F762} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5062D8D-24AA-4448-A367-5E897D24E421} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B50EE11B-4841-4390-B8EF-CCC85922EC11} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5222C9-6192-4D78-9954-7A6E462DD215} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5D41B06-FD7B-439D-B4E9-76E87B9785DD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B894924D-5696-4A26-902-8D04AD14C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA25D5A3-1FA-431B-815-FBB93F834F0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA362AE6-650F-4F94-BEA8-A6B71ADE177F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA9849DF-74AB-42F5-A182-755511C7E84F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB4125C-D831-4BD3-9A6D-CCE0458CDD6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BBB64747-4BCC-4C97-B55F-4AAF92891AAA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BBCB0A65-56A0-41AE-8D3D-E8ADFF4AEC57} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BBFAE480-7E23-4459-9952-CA8BAE3DCA5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE15257-530E-4B9E-B127-907D28E0D43F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE41616D-DC1F-4827-94FE-55A9797314} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE7E24B6-3C5-44EF-BC52-C3E9B5118055} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEDC1765-98AB-481B-9E18-1E7254806429} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C133DC67-7D9-4F81-84BE-409B90C7E3C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C14612F4-A26C-41BC-9A55-CCE68DFC1C27} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C26F626A-65D9-4A1E-9612-E9295E34445} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2A36C05-6E9-45DA-B4C2-2286B8C4C0BA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C392B09F-9119-48AA-AB44-5876E86832EC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3DE1E5-E145-4259-AE8F-94A019C7DB2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C44048B4-C082-441B-AFE6-1B42BD7C3A64} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C498F434-30DC-4297-8B5A-EF6EDEF58AB3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C509CC65-FAF3-42F8-B742-58113F309C9B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C51418FE-324D-4017-8A44-CD9844A8609C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C52083D-4F48-4028-9767-D633F260FA3E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5264D0A-2E25-4053-9B14-F6F42B76699F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C619EAAD-ACEF-4637-BE2E-D0F0511578D8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C630AB60-B0C2-41DD-8966-31E7CBB951EC} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C695FAFC-AD2C-4B34-815A-81C726942C9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C6D80E5-2FFC-4FE0-8835-C5A4FF7C738F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C71818A1-9814-4452-A828-12E3A5DDDC5A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7817C5E-EAC6-462C-A9DA-F750C691F3F3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C792466-ADEA-49F7-A1AC-5C1B8E4D48D6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7D36CFC-CF69-4145-BE57-C2E6E8E9478C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7F266FC-16B4-41CD-ADC5-D244FD17F4D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C85233F7-2EF1-431B-B242-2CEF1C382ED9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8FE191-1DC1-4259-BE15-385C99E79BD9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9112C6D-EEAF-4077-A2F7-5BB6268C288A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C99189D0-6478-4B07-946C-8C8FDD27DAA5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9D85C28-CCB4-471F-AB2B-A1B8FD5A222} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA0854D7-1DDA-4B21-9AD6-EEAF13EF14AE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA19646-A5DE-4570-9199-803689926740} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA52E403-C8EA-4456-B76F-834B68F697B3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB49FF0F-2D74-491D-9E35-414CA1A9E5E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBC79AE-C834-4278-B7DA-AC308BC5DE51} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBF75D3A-7BE9-4FB8-9133-317513365E28} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC37E7DA-3C9C-4067-A05-5B583BD4B2EB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD0FACD0-93D0-48A6-A615-85B01368F2E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDFC2B3A-59A8-4BBE-9E14-B8FBB906D42} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE43DAF8-8574-4E5D-8299-ECB01EAD6D81} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE522207-F6D4-49C4-9D9B-B8696EC9DB8A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE99CDC3-6CB9-4DA9-B61A-2E427961E9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF21344-7EB9-4093-8F13-DAF9F4255094} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF443705-11C3-4055-ADFD-43C6C747B8F7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D08F52B-257C-4E75-915C-1F7B9DF1DA63} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D148669-9153-4F7F-829D-B53C80AF73E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1554F66-E1A2-4576-8174-3C6756A3E80} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D157893A-5916-4624-BB3A-9C1A6A964} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1BEA87B-666E-4B14-8D47-FD4F6ECBD5C7} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D21A040F-C037-43E2-94B8-B33E5DDD695} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D3044A28-305B-4C3A-B7A4-40BE45A75CB0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D36C43CC-DD8C-43A1-9C19-15245747F684} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D39296D6-2257-49BC-8ACD-A48AE222DF4} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4A4CB35-FCA1-4E1D-8C6B-975D37E7F2B5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5A9DA41-2E77-4523-95EF-B3BB34D79C88} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5B0D2FA-CE2-46F4-AB5-13F0C0A952BE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7B6E26-89AA-4A14-AFA3-1ABE368CC7BE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8996CE2-F5AF-4DBD-86A0-29BC6FD536C5} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8B8318-D65B-4842-B936-49D44781E55D} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8B8918F-7358-4A93-99F5-D5CCC91099} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9443346-1AED-48FC-81DE-6BE914447FDE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA59C8C8-A6BF-42D2-B136-CB92361B4F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA75A7D7-5EF3-4A47-881B-B2A1D8E4342} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA8A86E3-94F0-4D9F-B74-60FE6E387F5F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DAC76BB-D43B-4B80-BA27-643D3BAF18D3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DAD2C01C-A41A-4611-A177-4073A7A05A4F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDEA845-362C-4CD7-BA8B-FD72E19566B0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE1538E5-F18F-4E9A-B56D-1DDD907A9290} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DEABE95-76EE-42FA-90FE-5479AEB0CFC6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DFE27B11-AA8F-4466-944-7DB0CD3DBB23} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DFE3BFCB-3FC-4374-8F79-DBC468163E24} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E032FAC-CB7D-4A9C-ACB7-B19066FFB18E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0FA1364-A550-464F-A5A1-6CACE695501} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1798EB2-57B5-4DAA-A8D6-75BD74DEA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E213E56-C853-45AF-BB3F-AFF1A42CC2AB} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3B2190-F315-440C-A374-FD4E51F6D7E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E410D597-6ABF-4A12-A8A4-9B95B0251940} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4DE5F56-1E33-409D-8D83-8A5F22635CE6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E57ED79C-B090-4644-953A-6ED04873B499} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E82CD89-942-48F7-B448-1D9636A4CAD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8C420BB-AEF3-4CEA-84FF-7173EB77D37C} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBE80DCA-B7BE-4FF5-828A-366376599A8F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC9F31F6-3810-4635-B548-FCB842A256F3} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECCE1241-D012-4FA7-AD10-19313BE37EC4} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECE8FC0D-B113-4BAC-A362-4A9586ECFA4B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED2DCE60-2E1A-46CD-B4CA-2C197D6EAF8F} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED3CD75B-1CB3-4FAC-8FAB-D952602F7110} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED7ED6C9-4260-4B6C-8C1E-C2B084448AAD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED92AD0A-EDD7-4C12-BEB4-AB59ED7EF0DD} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE1EF2E5-C315-4A68-B32D-D23C7312C0D2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEC17914-6F85-4ED4-8E5E-2D50DC4449A8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF1E03B4-5F25-4C8E-AD7-A0AA164FAB3A} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F150EA33-8C2E-4012-A73B-19D8A9B74D56} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F22DA18-CE26-4E7D-9FA7-9DC4313894B6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F24E415-FF09-449E-ADBC-CF9AAA113E20} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2A06958-CC45-42BB-AEE5-3BE942D9B72} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F309EC97-F4F0-40CE-8E9F-CA11ADA493C0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F52BB364-EA95-4616-92E-DB3D9E2DB2C9} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F54AF42C-237D-4F1A-9E60-65968BB0E58} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F56D421B-90DB-4C17-8EF9-D79DE7F6310} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F69E8F5D-F5FD-461A-BC53-5FB7BF8F7B56} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F70DD61F-BCF1-43DE-8ECD-7373ADCE4ED} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F73DA86E-230A-413E-BF87-8DAB6F2F4B0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F744A674-8D4-428C-9DC5-548CDFEA1E11} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F74A740F-C308-4472-AEB4-F2609DAF4376} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7AB3879-19D9-4E3E-A09D-D74669291A20} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7BDD161-E827-40D5-98FB-45CAEFE864B0} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7D119FA-A766-4863-B8E8-95D38B64CB12} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8B0E3CD-C1F7-4DB1-9C66-FF2DCF3B3168} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8F61B78-5F1F-4E6D-B5F3-B3ADE8611D4E} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9886A39-8D24-4F83-9358-AFC555784BDA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA226C7E-437D-4296-BD69-6AEC16FF22EE} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA2DE2AE-DB9-40C7-B2C5-919EEEF1B454} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA91E96-CF1D-4DAC-89AF-854431D6A6A2} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF25DA0-A97D-41FE-9AEF-248518A1BEC6} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB5AC85B-6894-4A97-87D0-B1279BF3BC96} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD486ED-DFC4-4989-8250-E59CC645E743} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDBC84F8-2367-411A-B240-805D2F56F33B} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDD2ACAB-716F-4DAF-B7D2-CE54D2B411} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE8D2AB2-1C44-4691-A290-DDC3D221511} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE9643FD-2DBD-40C2-9D94-2BC6ED287252} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF51DE81-2F1C-4A3F-A737-42BED64925EA} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF77ADD4-33D9-43FE-97D1-9E29C5B113C8} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF79AA1F-FFD1-4CEC-BF1D-779BF6F92332} deleted successfully
HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFA42B4A-111A-4E76-A9D-32AC644E81E} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611381133} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\prefs.js:
user_pref("browser.search.defaulturl", "https://www.google.com/search");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "https://www.google.com/search");

Added to C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\prefs.js:

ProfilePath: C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_201502.02._2253_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~3\MH_ErrorLog.txt deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
C:\Users\SRA~1\Documents\Add-in Express deleted
C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\CT1750559 deleted
C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{7c231677-e4fb-44ac-80a5-c87fcb7c2be9} deleted
"C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\toolbar_SGT-V7@apn.ask.com.xpi" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [01. 02. 2015 16:14]

==== Firefox Extensions ======================

ProfilePath: C:\Users\SRA~1\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default
- Undetermined - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Undetermined - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================


==== Chromium Look ======================

Google Chrome Version: 40.0.2214.94 (Possible outdated, latest Stable version: 40.0.2214.93)

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[29. 01. 2015 13:03]
iokmdlapebooifaijckgcmncjdpojmjl - C:\Program Files\Lenovo Fingerprint Reader\x86\tschrome.crx[03. 08. 2012 07:35]

Avast Online Security - SRA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Website Logon - SRA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\iokmdlapebooifaijckgcmncjdpojmjl

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} Microsoft (Bing) Url="http://www.bing.com/search?q={searchTer ... DF&PC=AV01"
{A3A0CC01-18C0-470D-A985-834F8FE4E4B0} Unknown Url="Not_Found"

==== Reset Google Chrome ======================

C:\Users\SRA~1\AppData\Local\Google\Chrome\User Data\Default\Preferences will be reset at reboot
C:\Users\SRA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\SearchScopes\{A3A0CC01-18C0-470D-A985-834F8FE4E4B0} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_CURRENT_USER\Software\Policies\Google deleted successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Sandra\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\SRA~1\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\SRA~1\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Sandra\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\SRA~1\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\SRA~1\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

C:\Users\SRA~1\AppData\Local\Mozilla\Firefox\Profiles\t27v9mzs.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\SRA~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=341 folders=10 7245374 bytes)

==== Empty Temp Folders ======================

C:\Users\ADMINI~1\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Sandra\AppData\Local\Temp emptied successfully
C:\Users\SRA~1\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\SRA~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\SRA~1\AppData\Local\Google\Chrome\User Data\Default\Preferences" not found

==== EOF on po 02. 02. 2015 at 23:01:13,17 ======================

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu, děkuju

#11 Příspěvek od Márty84 »

:arrow: Dejte logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#12 Příspěvek od sara.slaba »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-02-2015
Ran by Sára (administrator) on LENNY on 03-02-2015 19:51:22
Running from C:\Users\Sára\Desktop
Loaded Profiles: Sára (Available profiles: Sandra & Sára)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AuthenTec, Inc) C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
(LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\mkrmsg.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(AuthenTec, Inc.) C:\Program Files\Common Files\AuthenTec\TrueService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
() C:\Program Files\Lenovo Fingerprint Reader\x86\IEWebSiteLogon.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe
() C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
() C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AuthenTec Inc.) C:\Program Files\Lenovo Fingerprint Reader\TouchControl.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe
(forum.viry.cz) C:\Users\Sára\Desktop\FRSTLauncher (1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848 2012-08-20] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-17] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [TpShocks] => C:\WINDOWS\system32\TpShocks.exe [222720 2012-08-24] (Lenovo.)
HKLM\...\Run: [LENOVO.TPKNRRES] => rundll32.exe "C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll",AVStartupStub
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2912056 2012-08-10] (Synaptics Incorporated)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [548864 2012-05-02] (Vimicro)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-29] (AVAST Software)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\...\Run: [EA Core] => "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\...\MountPoints2: {36f39423-39b7-11e3-beaf-84a6c8c33b87} - "D:\Autorun.exe"
Startup: C:\Users\Sára\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1268638539-1286994899-3073911602-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1268638539-1286994899-3073911602-1004 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
BHO: TrueSuite Browser Helper Object -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\Lenovo Fingerprint Reader\IEBHO.DLL (AuthenTec Inc.)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: TrueSuite Browser Helper Object -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\Lenovo Fingerprint Reader\x86\IEBHO.dll (AuthenTec Inc.)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
DPF: HKLM-x32 {4FF78044-96B4-4312-A5B7-FDA3CB328095}
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
FF Plugin-x32: @authentec.com/ffwloplugin -> C:\Program Files\Lenovo Fingerprint Reader\npffwloplugin.dll (AuthenTec, Inc)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\searchplugins\seznam-avast.xml
FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\websitelogon@truesuite.com [2014-10-06]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-03-07]
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [Not Found]
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com [Not Found]

Chrome:
=======
CHR HomePage: Default -> https://www.google.cz/
CHR StartupUrls: Default -> "https://www.google.com/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-02]
CHR Extension: (Dokumenty Google) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-02]
CHR Extension: (Disk Google) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-02]
CHR Extension: (YouTube) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-02]
CHR Extension: (Vyhledávání Google) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-02]
CHR Extension: (Tabulky Google) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-02]
CHR Extension: (Avast Online Security) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-08-19]
CHR Extension: (Website Logon) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\iokmdlapebooifaijckgcmncjdpojmjl [2013-06-04]
CHR Extension: (Peněženka Google) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-07]
CHR Extension: (Security Protection) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh [2015-02-02]
CHR Extension: (Gmail) - C:\Users\Sára\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-02]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-29]
CHR HKLM-x32\...\Chrome\Extension: [iokmdlapebooifaijckgcmncjdpojmjl] - C:\Program Files\Lenovo Fingerprint Reader\x86\tschrome.crx [2012-08-03]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-29] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-29] (Avast Software)
R3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation)
R2 FPLService; C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe [2139496 2012-08-31] (AuthenTec, Inc)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [127752 2015-02-01] (SurfRight B.V.)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-17] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited)
R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [559504 2012-08-16] (LENOVO INCORPORATED.)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-11] (Lenovo Group Limited)
R2 LocationTaskManager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] ()
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1674720 2013-09-25] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [24120 2014-02-21] ()
R3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401256 2012-07-16] (AuthenTec, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-29] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-29] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-29] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-29] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-29] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-29] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-29] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-29] ()
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-09-04] (Intel Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-10] (Synaptics Incorporated)
S3 SWIX64; C:\Program Files (x86)\Lenovo\System Update\tvsuhd64.sys [33856 2012-09-12] (Lenovo Group Limited)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-29] (Avast Software)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [974848 2012-07-24] (Vimicro Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [227840 2014-05-31] (Microsoft Corporation)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-07-27] (Windows (R) Win 7 DDK provider)
S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-03 19:51 - 2015-02-03 19:52 - 00020449 _____ () C:\Users\Sára\Desktop\FRST.txt
2015-02-03 19:50 - 2015-02-03 19:51 - 00000000 ____D () C:\FRST
2015-02-03 19:48 - 2015-02-03 19:49 - 00112640 _____ (forum.viry.cz) C:\Users\Sára\Desktop\FRSTLauncher (1).exe
2015-02-03 19:48 - 2015-02-03 19:48 - 00112640 _____ (forum.viry.cz) C:\Users\Sára\Downloads\Nepotvrzeno 824324.crdownload
2015-02-03 19:46 - 2015-02-03 19:46 - 02131456 _____ (Farbar) C:\Users\Sára\Desktop\FRST64.exe
2015-02-02 23:04 - 2015-02-02 23:04 - 00097241 _____ () C:\Users\Sára\Desktop\zoek-results.txt
2015-02-02 22:58 - 2015-02-02 22:07 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-02-02 22:09 - 2015-02-02 23:01 - 00097241 _____ () C:\zoek-results.log
2015-02-02 22:07 - 2015-02-02 22:54 - 00000000 ____D () C:\zoek_backup
2015-02-02 22:06 - 2015-02-02 22:06 - 01295360 _____ () C:\Users\Sára\Desktop\zoek.exe
2015-02-02 22:04 - 2015-02-02 22:04 - 00001238 _____ () C:\Users\Sára\Desktop\JRT.txt
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Downloads\JRT (1).exe
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Desktop\JRT (2).exe
2015-02-01 21:45 - 2015-02-01 21:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-01 21:43 - 2015-02-01 21:44 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Sára\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-01 19:16 - 2015-02-01 19:16 - 02194432 _____ () C:\Users\Sára\Desktop\adwcleaner_4.109 (1).exe
2015-02-01 18:39 - 2015-02-01 18:40 - 00000000 ____D () C:\rsit
2015-02-01 18:39 - 2015-02-01 18:40 - 00000000 ____D () C:\Program Files\trend micro
2015-02-01 18:39 - 2015-02-01 18:39 - 01222144 _____ () C:\Users\Sára\Downloads\RSITx64.exe
2015-02-01 17:37 - 2015-02-01 17:37 - 00000330 _____ () C:\WINDOWS\system32\2015-02-01-16-37-39.044-aswFe.exe-5732.log
2015-02-01 17:37 - 2015-02-01 17:37 - 00000197 _____ () C:\WINDOWS\system32\2015-02-01-16-37-36.059-AvastVBoxSVC.exe-700.log
2015-02-01 17:22 - 2015-02-01 17:22 - 00011594 _____ () C:\WINDOWS\system32\.crusader
2015-02-01 17:17 - 2015-02-01 17:17 - 00079431 _____ () C:\WINDOWS\system32\2015-02-01-16-17-21.032-aswFe.exe-3880.log
2015-02-01 17:17 - 2015-02-01 17:17 - 00000197 _____ () C:\WINDOWS\system32\2015-02-01-16-17-16.032-AvastVBoxSVC.exe-6064.log
2015-02-01 17:10 - 2015-02-01 17:22 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-02-01 17:10 - 2015-02-01 17:10 - 00001880 _____ () C:\Users\Public\Desktop\HitmanPro.lnk
2015-02-01 17:10 - 2015-02-01 17:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2015-02-01 17:10 - 2015-02-01 17:10 - 00000000 ____D () C:\Program Files\HitmanPro
2015-02-01 17:09 - 2015-02-01 17:10 - 11225840 _____ (SurfRight B.V.) C:\Users\Sára\Downloads\HitmanPro_x64.exe
2015-02-01 17:05 - 2015-02-01 17:05 - 00000330 _____ () C:\WINDOWS\system32\2015-02-01-16-05-35.051-aswFe.exe-2844.log
2015-02-01 17:04 - 2015-02-01 17:04 - 00000330 _____ () C:\WINDOWS\system32\2015-02-01-16-04-39.081-aswFe.exe-5548.log
2015-02-01 17:04 - 2015-02-01 17:04 - 00000197 _____ () C:\WINDOWS\system32\2015-02-01-16-04-36.068-AvastVBoxSVC.exe-4160.log
2015-02-01 16:57 - 2015-02-01 16:57 - 00000000 ____D () C:\WINDOWS\SysWOW64\vbox
2015-02-01 16:57 - 2015-02-01 16:57 - 00000000 ____D () C:\WINDOWS\system32\vbox
2015-02-01 16:52 - 2015-02-01 16:52 - 00000000 ____D () C:\WINDOWS\ERUNT
2015-02-01 16:51 - 2015-02-01 16:52 - 01707939 _____ (Thisisu) C:\Users\Sára\Downloads\JRT.exe
2015-02-01 16:41 - 2015-02-01 19:33 - 00000000 ____D () C:\AdwCleaner
2015-02-01 16:39 - 2015-02-01 16:39 - 02194432 _____ () C:\Users\Sára\Downloads\adwcleaner_4.109.exe
2015-01-29 13:04 - 2015-01-29 13:03 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-01-29 13:03 - 2015-01-29 13:03 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-01-21 14:42 - 2015-02-01 16:45 - 00000000 ____D () C:\WINDOWS\system32\log
2015-01-21 14:42 - 2015-01-03 09:57 - 00052392 _____ (Elex do Brasil Participações Ltda) C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys
2015-01-16 14:44 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-01-16 14:44 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-16 14:44 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-01-16 14:44 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-01-16 14:44 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-16 14:44 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-01-16 14:44 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-01-16 14:44 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-01-16 14:44 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-16 14:44 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2015-01-16 14:44 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2015-01-16 14:44 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-01-16 14:44 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-01-16 14:44 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2015-01-16 14:44 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2015-01-16 14:44 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2015-01-16 14:44 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2015-01-16 14:44 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-01-16 14:44 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-01-16 14:44 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2015-01-16 14:44 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2015-01-16 14:44 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2015-01-16 14:44 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2015-01-16 14:44 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-01-16 14:44 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-03 19:50 - 2013-10-29 01:53 - 02018140 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-03 19:21 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-03 18:08 - 2013-06-04 12:07 - 00000978 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-03 17:58 - 2013-02-07 17:43 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-02-03 12:28 - 2013-03-07 23:11 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-02-03 12:27 - 2013-06-04 12:07 - 00000974 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-03 12:26 - 2013-08-22 15:46 - 00366548 _____ () C:\WINDOWS\setupact.log
2015-02-03 12:26 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-03 01:01 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-02 23:36 - 2013-02-05 13:02 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1268638539-1286994899-3073911602-1004
2015-02-02 22:59 - 2013-09-29 20:01 - 00520006 _____ () C:\WINDOWS\PFRO.log
2015-02-02 21:09 - 2013-10-29 01:48 - 01745984 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-02 21:09 - 2013-09-30 04:56 - 00739924 _____ () C:\WINDOWS\system32\perfh005.dat
2015-02-02 21:09 - 2013-09-30 04:56 - 00151610 _____ () C:\WINDOWS\system32\perfc005.dat
2015-02-02 20:39 - 2013-03-25 17:32 - 00000000 ___HD () C:\Users\Sára\Desktop\.picasaoriginals
2015-02-02 10:27 - 2012-07-26 09:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2015-02-02 10:26 - 2013-02-07 18:40 - 00000000 ___RD () C:\Users\Sára\Desktop\Programy
2015-02-01 16:45 - 2013-10-29 12:03 - 00000950 _____ () C:\Users\Sára\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-01 16:45 - 2013-06-04 12:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-02-01 16:45 - 2013-02-05 13:51 - 00001088 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-01-29 13:04 - 2013-03-07 23:11 - 01050432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2015-01-29 13:03 - 2014-08-18 11:07 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-01-29 13:03 - 2014-02-08 14:12 - 00116728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-01-29 13:03 - 2013-03-07 23:11 - 00436624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2015-01-29 13:03 - 2013-03-07 23:11 - 00267632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-01-29 13:03 - 2013-03-07 23:11 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-01-29 13:03 - 2013-03-07 23:11 - 00083280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-01-29 13:03 - 2013-03-07 23:11 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-01-28 21:32 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-01-27 19:27 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-01-24 21:20 - 2014-09-17 11:10 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-01-24 21:20 - 2014-09-17 11:10 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-24 20:58 - 2013-02-07 17:43 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-01-23 22:52 - 2013-08-14 13:17 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-01-23 22:44 - 2013-02-06 22:12 - 113365784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-01-21 20:53 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-01-17 23:57 - 2013-05-06 22:18 - 00593920 ___SH () C:\Users\Sára\Downloads\Thumbs.db
2015-01-15 12:53 - 2013-02-18 12:27 - 02610176 ___SH () C:\Users\Sára\Desktop\Thumbs.db

==================== Files in the root of some directories =======

2013-02-05 12:55 - 2014-02-09 00:23 - 0088705 _____ () C:\Users\Sára\AppData\Roaming\AbsoluteReminder.xml
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\Sára\AppData\Roaming\FMMDNS
2014-09-01 09:18 - 2014-09-01 09:18 - 0002086 _____ () C:\Users\Sára\AppData\Roaming\FOGQBCT
2013-06-23 13:12 - 2014-02-06 15:06 - 0076976 _____ () C:\Users\Sára\AppData\Roaming\LoJackSetup.exe
2012-10-16 20:07 - 2012-10-16 20:07 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\FMMDNS.job => C:\Users\Sý˙ra\AppData\Roaming\FMMDNS.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\FOGQBCT.job => C:\Users\Sý˙ra\AppData\Roaming\FOGQBCT.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\S�ra\Desktop" je 47030 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu, děkuju

#13 Příspěvek od Márty84 »

:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

Start
CloseProcesses:
CreateRestorePoint:

HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-1268638539-1286994899-3073911602-1004 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
DPF: HKLM-x32 {4FF78044-96B4-4312-A5B7-FDA3CB328095}

FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [Not Found]
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com [Not Found]

S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2013-07-18 762192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-24 267440]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]

2015-02-02 23:04 - 2015-02-02 23:04 - 00097241 _____ () C:\Users\Sára\Desktop\zoek-results.txt
2015-02-02 22:58 - 2015-02-02 22:07 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-02-02 22:09 - 2015-02-02 23:01 - 00097241 _____ () C:\zoek-results.log
2015-02-02 22:07 - 2015-02-02 22:54 - 00000000 ____D () C:\zoek_backup
2015-02-02 22:06 - 2015-02-02 22:06 - 01295360 _____ () C:\Users\Sára\Desktop\zoek.exe
2015-02-02 22:04 - 2015-02-02 22:04 - 00001238 _____ () C:\Users\Sára\Desktop\JRT.txt
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Downloads\JRT (1).exe
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Desktop\JRT (2).exe
2015-02-01 21:45 - 2015-02-01 21:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-01 21:43 - 2015-02-01 21:44 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Sára\Downloads\mbam-setup-2.0.4.1028.exe

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\FMMDNS.job => C:\Users\Sý˙ra\AppData\Roaming\FMMDNS.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\FOGQBCT.job => C:\Users\Sý˙ra\AppData\Roaming\FOGQBCT.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Users\Sára\AppData\Roaming\FMMDNS.exe
C:\Users\Sára\AppData\Roaming\FOGQBCT.exe

Hosts:
EmptyTemp:
Reboot:
End
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#14 Příspěvek od sara.slaba »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-02-2015 01
Ran by Sára at 2015-02-05 16:11:55 Run:1
Running from C:\Users\Sára\Desktop
Loaded Profiles: Sára (Available profiles: Sandra & Sára)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\S-1-5-21-1268638539-1286994899-3073911602-1004 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
DPF: HKLM-x32 {4FF78044-96B4-4312-A5B7-FDA3CB328095}

FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [Not Found]
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com [Not Found]

S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2013-07-18 762192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-24 267440]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]

2015-02-02 23:04 - 2015-02-02 23:04 - 00097241 _____ () C:\Users\Sára\Desktop\zoek-results.txt
2015-02-02 22:58 - 2015-02-02 22:07 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-02-02 22:09 - 2015-02-02 23:01 - 00097241 _____ () C:\zoek-results.log
2015-02-02 22:07 - 2015-02-02 22:54 - 00000000 ____D () C:\zoek_backup
2015-02-02 22:06 - 2015-02-02 22:06 - 01295360 _____ () C:\Users\Sára\Desktop\zoek.exe
2015-02-02 22:04 - 2015-02-02 22:04 - 00001238 _____ () C:\Users\Sára\Desktop\JRT.txt
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Downloads\JRT (1).exe
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Desktop\JRT (2).exe
2015-02-01 21:45 - 2015-02-01 21:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-01 21:43 - 2015-02-01 21:44 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Sára\Downloads\mbam-setup-2.0.4.1028.exe

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\FMMDNS.job => C:\Users\Sý˙ra\AppData\Roaming\FMMDNS.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\FOGQBCT.job => C:\Users\Sý˙ra\AppData\Roaming\FOGQBCT.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Users\Sára\AppData\Roaming\FMMDNS.exe
C:\Users\Sára\AppData\Roaming\FOGQBCT.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => Key not found.
"HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" => Key deleted successfully.
HKCR\CLSID\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units\{4FF78044-96B4-4312-A5B7-FDA3CB328095}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{4FF78044-96B4-4312-A5B7-FDA3CB328095} => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@Nero.com/KM" => Key deleted successfully.
FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) not found.
C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} => Moved successfully.
C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com not found.
MBAMSwissArmy => Service deleted successfully.
AdobeARMservice => Service deleted successfully.
gupdate => Service deleted successfully.
NAUpdate => Service deleted successfully.
AdobeFlashPlayerUpdateSvc => Service deleted successfully.
gupdatem => Service deleted successfully.
gusvc => Service deleted successfully.
C:\Users\Sára\Desktop\zoek-results.txt => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Sára\Desktop\zoek.exe => Moved successfully.
C:\Users\Sára\Desktop\JRT.txt => Moved successfully.
C:\Users\Sára\Downloads\JRT (1).exe => Moved successfully.
C:\Users\Sára\Desktop\JRT (2).exe => Moved successfully.
C:\ProgramData\Malwarebytes => Moved successfully.
C:\Users\Sára\Downloads\mbam-setup-2.0.4.1028.exe => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\FMMDNS.job => Moved successfully.
C:\WINDOWS\Tasks\FOGQBCT.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
"C:\Users\Sára\AppData\Roaming\FMMDNS.exe" => File/Directory not found.
"C:\Users\Sára\AppData\Roaming\FOGQBCT.exe" => File/Directory not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 457.5 MB temporary data.


The system needed a reboot.

==== End of Fixlog 16:13:13 ====

sara.slaba
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 22 lis 2010 17:51

Re: Prosím o kontrolu, děkuju

#15 Příspěvek od sara.slaba »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-02-2015 01
Ran by Sára at 2015-02-05 16:11:55 Run:1
Running from C:\Users\Sára\Desktop
Loaded Profiles: Sára (Available profiles: Sandra & Sára)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\S-1-5-21-1268638539-1286994899-3073911602-1004 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
DPF: HKLM-x32 {4FF78044-96B4-4312-A5B7-FDA3CB328095}

FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [Not Found]
FF Extension: No Name - C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com [Not Found]

S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2013-07-18 762192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-24 267440]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-04 116648]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]

2015-02-02 23:04 - 2015-02-02 23:04 - 00097241 _____ () C:\Users\Sára\Desktop\zoek-results.txt
2015-02-02 22:58 - 2015-02-02 22:07 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-02-02 22:09 - 2015-02-02 23:01 - 00097241 _____ () C:\zoek-results.log
2015-02-02 22:07 - 2015-02-02 22:54 - 00000000 ____D () C:\zoek_backup
2015-02-02 22:06 - 2015-02-02 22:06 - 01295360 _____ () C:\Users\Sára\Desktop\zoek.exe
2015-02-02 22:04 - 2015-02-02 22:04 - 00001238 _____ () C:\Users\Sára\Desktop\JRT.txt
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Downloads\JRT (1).exe
2015-02-02 21:56 - 2015-02-02 21:56 - 01388274 _____ (Thisisu) C:\Users\Sára\Desktop\JRT (2).exe
2015-02-01 21:45 - 2015-02-01 21:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-01 21:43 - 2015-02-01 21:44 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Sára\Downloads\mbam-setup-2.0.4.1028.exe

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\FMMDNS.job => C:\Users\Sý˙ra\AppData\Roaming\FMMDNS.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\FOGQBCT.job => C:\Users\Sý˙ra\AppData\Roaming\FOGQBCT.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Users\Sára\AppData\Roaming\FMMDNS.exe
C:\Users\Sára\AppData\Roaming\FOGQBCT.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => Key not found.
"HKU\S-1-5-21-1268638539-1286994899-3073911602-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" => Key deleted successfully.
HKCR\CLSID\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units\{4FF78044-96B4-4312-A5B7-FDA3CB328095}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{4FF78044-96B4-4312-A5B7-FDA3CB328095} => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@Nero.com/KM" => Key deleted successfully.
FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) not found.
C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} => Moved successfully.
C:\Users\Sára\AppData\Roaming\Mozilla\Firefox\Profiles\t27v9mzs.default\extensions\718bc5a3-95e4-4d4c-b94b-2c916fcf5266@gmail.com not found.
MBAMSwissArmy => Service deleted successfully.
AdobeARMservice => Service deleted successfully.
gupdate => Service deleted successfully.
NAUpdate => Service deleted successfully.
AdobeFlashPlayerUpdateSvc => Service deleted successfully.
gupdatem => Service deleted successfully.
gusvc => Service deleted successfully.
C:\Users\Sára\Desktop\zoek-results.txt => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Sára\Desktop\zoek.exe => Moved successfully.
C:\Users\Sára\Desktop\JRT.txt => Moved successfully.
C:\Users\Sára\Downloads\JRT (1).exe => Moved successfully.
C:\Users\Sára\Desktop\JRT (2).exe => Moved successfully.
C:\ProgramData\Malwarebytes => Moved successfully.
C:\Users\Sára\Downloads\mbam-setup-2.0.4.1028.exe => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\FMMDNS.job => Moved successfully.
C:\WINDOWS\Tasks\FOGQBCT.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
"C:\Users\Sára\AppData\Roaming\FMMDNS.exe" => File/Directory not found.
"C:\Users\Sára\AppData\Roaming\FOGQBCT.exe" => File/Directory not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 457.5 MB temporary data.


The system needed a reboot.

==== End of Fixlog 16:13:13 ====

Zamčeno