Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu logu, pocitac je v hroznem stavu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#16 Příspěvek od jointsmouka »

prilis velke.. musel sem to dat do raru
Přílohy
Fixlog.rar
(35.91 KiB) Staženo 45 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#17 Příspěvek od altrok »

:arrow: Kouknete do fixlogu - ty filmy jste v PC opravdu mel a stale v puvodnim umisteni mate (nevim, jake je puvodni umisteni)?
namatkou:
C:\ProgramData\Microsoft\Secure\Icons\CachedIcons\data\fc8ba40bbfd1fb2fb6e6b36d11fec0df\The Boxtrolls 2014.avi
C:\ProgramData\Microsoft\Secure\Icons\CachedIcons\data\fafcce18001e24f35cd0b61f635c0c19\Strange Magic 2015.avi
C:\ProgramData\Microsoft\Secure\Icons\CachedIcons\data\faf4e4801646ed0ba2b5db57585204bc\The Hobbit The Battle of Five Armies 2014.avi

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Cleaning
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#18 Příspěvek od jointsmouka »

vsechny ty filmy muzou jit pryc... hobbita sem tam mel ale ty prvni dva o tech vubec nevim.. takze vsecko pryc..

# AdwCleaner v4.111 - Logfile created 24/02/2015 at 21:40:03
# Updated 18/02/2015 by Xplode
# Database : 2015-02-18.3 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x64)
# Username : jointsmouka - JOINTSMOUKA-PC
# Running from : C:\Users\jointsmouka\Desktop\adwcleaner_4.111.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : [x64] HKLM\SOFTWARE\Reimage
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17631


-\\ Mozilla Firefox v


-\\ Google Chrome v40.0.2214.115


-\\ Chrome Canary v


*************************

AdwCleaner[R0].txt - [12509 bytes] - [24/02/2015 21:33:40]
AdwCleaner[R1].txt - [2823 bytes] - [24/02/2015 21:38:06]
AdwCleaner[S0].txt - [9109 bytes] - [24/02/2015 21:37:04]
AdwCleaner[S1].txt - [2720 bytes] - [24/02/2015 21:40:03]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [2779 bytes] ##########

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#19 Příspěvek od altrok »

:arrow: Jen se ptam, zda virus filmy do techto slozek opravdu presunul a originaly mate nebo zda jen pouzil jejich nazvy.

:arrow: Pomalu by se melo pocitaci aspon zlehka ulehcovat...

:arrow: Dejte jeste log AdwCleaner[S0].txt

:arrow: Dejte log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#20 Příspěvek od jointsmouka »

virus se presunul urcite... ty filmy sem tam ani nemel.. jedineho hobita ale ten taky neodpovidal te path co jste mi poslal

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-02-2015
Ran by jointsmouka (administrator) on JOINTSMOUKA-PC on 24-02-2015 22:00:30
Running from C:\Users\jointsmouka\Desktop
Loaded Profiles: jointsmouka (Available profiles: jointsmouka & LogMeInRemoteUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Lavasoft) C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
(Anvisoft) D:\INSTALL\CSB\Cloud System Booster\CSBSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\ramaint.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
(Anvisoft) D:\INSTALL\CSB\Cloud System Booster\CloudSystemBooster.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Dropbox, Inc.) C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\Dropbox.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Lavasoft) C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\jointsmouka\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [57928 2012-11-29] (LogMeIn, Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.)
HKLM-x32\...\Run: [Ad-Watch] => C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe [506712 2009-01-18] (Lavasoft)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Logitech Vid] => C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [6129496 2011-01-13] (Logitech Inc.)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [2874048 2015-02-19] (Valve Corporation)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [CloudSystemBooster] => D:\INSTALL\CSB\Cloud System Booster\CloudSystemBooster.exe [527544 2014-05-29] (Anvisoft)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31087200 2015-01-23] (Skype Technologies S.A.)
Startup: C:\Users\jointsmouka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
BootExecute: autocheck autochk * lsdelete

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {BE0E22DF-7D17-4686-B73C-6DC95375082B} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_14875
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {C04B0473-4653-4FCA-8B5D-4B44A4B15F00} URL = http://www.mapy.cz/?query={searchTerms} ... arch_14875
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{878EC04A-E66B-447C-BB01-A651764F78C1}: [NameServer] 8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_269.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_269.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-883375831-3728679416-1811525376-1001: @tools.google.com/Google Update;version=3 -> C:\Users\jointsmouka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin HKU\S-1-5-21-883375831-3728679416-1811525376-1001: @tools.google.com/Google Update;version=9 -> C:\Users\jointsmouka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-21]
CHR Extension: (Google Docs) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-21]
CHR Extension: (Google Drive) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-21]
CHR Extension: (YouTube) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-21]
CHR Extension: (Google Search) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-21]
CHR Extension: (Google Sheets) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-21]
CHR Extension: (Skype Click to Call) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-07-31]
CHR Extension: (Google Wallet) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-24]
CHR Extension: (Gmail) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-21]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AnviCsbSvc; D:\INSTALL\CSB\Cloud System Booster\CSBSvc.exe [42680 2014-05-29] (Anvisoft)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-04] (NVIDIA Corporation)
R2 Lavasoft Ad-Aware Service; C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [921936 2009-01-18] (Lavasoft)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [377704 2015-01-16] (LogMeIn, Inc.)
R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226152 2015-01-16] (LogMeIn, Inc.)
R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2012-11-29] (LogMeIn, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-04] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-04] (NVIDIA Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5436176 2015-02-17] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-17] (Disc Soft Ltd)
R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-06-02] (LogMeIn, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-04] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz134; \??\C:\Users\JOINTS~1\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-24 22:00 - 2015-02-24 22:00 - 00017325 _____ () C:\Users\jointsmouka\Desktop\FRST.txt
2015-02-24 21:32 - 2015-02-24 21:40 - 00000000 ____D () C:\AdwCleaner
2015-02-24 21:30 - 2015-02-24 21:30 - 02126848 _____ () C:\Users\jointsmouka\Desktop\adwcleaner_4.111.exe
2015-02-24 21:14 - 2015-02-24 21:14 - 00036772 _____ () C:\Users\jointsmouka\Desktop\Fixlog.rar
2015-02-24 21:10 - 2015-02-24 21:41 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-24 21:10 - 2015-02-24 21:16 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-24 21:09 - 2015-02-24 21:41 - 00000496 _____ () C:\Windows\Tasks\Ad-Aware Update (Daily).job
2015-02-24 19:52 - 2015-02-24 19:52 - 00037638 _____ () C:\ComboFix.txt
2015-02-24 17:47 - 2015-02-24 19:40 - 01589248 _____ () C:\Users\jointsmouka\Downloads\autobazar_relace.accdb
2015-02-24 17:47 - 2015-02-24 17:47 - 00145408 _____ () C:\Users\jointsmouka\Downloads\db1-2 upr.ppt
2015-02-24 17:47 - 2015-02-24 17:47 - 00013820 _____ () C:\Users\jointsmouka\Downloads\Test tvorba tabulek a relace.xlsx
2015-02-24 16:54 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-02-24 16:54 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-02-24 16:54 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-02-24 16:53 - 2015-02-24 19:52 - 00000000 ____D () C:\Qoobox
2015-02-24 16:53 - 2015-02-24 19:40 - 00000000 ____D () C:\Windows\erdnt
2015-02-24 16:51 - 2015-02-24 16:52 - 05611903 ____R (Swearware) C:\Users\jointsmouka\Desktop\ComboFix.exe
2015-02-24 16:37 - 2015-02-24 16:39 - 00004084 _____ () C:\Users\jointsmouka\Desktop\Rkill.txt
2015-02-24 16:35 - 2015-02-24 16:35 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\jointsmouka\Desktop\rkill.exe
2015-02-24 16:24 - 2015-02-24 20:20 - 00007582 _____ () C:\Users\jointsmouka\Desktop\Addition.rar
2015-02-24 16:20 - 2015-02-24 22:00 - 00000000 ____D () C:\FRST
2015-02-24 16:19 - 2015-02-24 16:19 - 00112640 _____ (forum.viry.cz) C:\Users\jointsmouka\Desktop\FRSTLauncher.exe
2015-02-24 16:17 - 2015-02-24 16:17 - 02087424 _____ (Farbar) C:\Users\jointsmouka\Desktop\FRST64.exe
2015-02-24 15:38 - 2015-02-24 15:39 - 00000000 ____D () C:\Program Files\trend micro
2015-02-24 15:37 - 2015-02-24 15:37 - 01222144 _____ () C:\Users\jointsmouka\Downloads\RSITx64.exe
2015-02-24 15:16 - 2015-02-24 19:26 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\TeamViewer
2015-02-24 15:16 - 2015-02-24 15:16 - 00001049 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-02-24 15:15 - 2015-02-24 15:15 - 07826296 _____ (TeamViewer GmbH) C:\Users\jointsmouka\Downloads\TeamViewer_Setup_cs-iuu.exe
2015-02-24 10:27 - 2015-02-24 10:27 - 00284464 _____ () C:\Windows\Minidump\022415-28345-01.dmp
2015-02-24 10:25 - 2015-02-24 10:25 - 00000000 ____D () C:\Users\jointsmouka\AppData\Local\Steam
2015-02-24 10:11 - 2015-02-24 10:11 - 00290632 _____ () C:\Windows\Minidump\022415-22542-01.dmp
2015-02-24 09:01 - 2015-02-24 09:01 - 00427960 _____ () C:\Windows\Minidump\022415-19609-01.dmp
2015-02-24 08:59 - 2015-02-24 09:00 - 00290648 _____ () C:\Windows\Minidump\022415-25740-01.dmp
2015-02-23 22:30 - 2015-02-23 22:30 - 00000165 ____H () C:\Users\jointsmouka\Downloads\~$využití-radionuklidu.pptx
2015-02-23 22:29 - 2015-02-23 22:29 - 00088372 _____ () C:\Users\jointsmouka\Downloads\využití-radionuklidu.pptx
2015-02-23 15:41 - 2015-02-23 15:41 - 00004631 _____ () C:\Users\jointsmouka\Desktop\BRUŠTÍK DAVID.p12
2015-02-22 17:51 - 2015-02-24 10:27 - 474818582 _____ () C:\Windows\MEMORY.DMP
2015-02-22 17:51 - 2015-02-22 17:51 - 00446688 _____ () C:\Windows\Minidump\022215-28470-01.dmp
2015-02-21 17:08 - 2015-02-21 19:30 - 1276074610 _____ () C:\Users\jointsmouka\Downloads\Padesát-odstínů-šedi---Fifty-Shades-of-Grey-2015-[CAM.XviD]-tit.CZ-v-obraze.avi
2015-02-21 12:16 - 2015-02-23 02:39 - 00000000 ____D () C:\Users\jointsmouka\Desktop\New folder
2015-02-20 22:24 - 2015-02-20 22:25 - 288097593 _____ () C:\Users\jointsmouka\Desktop\MVI_0035.MOV
2015-02-20 21:40 - 2015-02-23 02:39 - 00000000 ____D () C:\Users\jointsmouka\Desktop\hovna
2015-02-20 21:38 - 2015-02-20 21:38 - 00696556 _____ () C:\Users\jointsmouka\Downloads\Vzorník (1).pptx
2015-02-15 15:33 - 2015-02-15 15:33 - 00230094 _____ () C:\Users\jointsmouka\Downloads\tam1.bmp
2015-02-12 14:10 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 14:10 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 14:10 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-12 14:10 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 14:35 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 14:35 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 14:35 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 14:35 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 14:35 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 14:35 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 14:35 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 14:35 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 14:35 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-02-11 14:35 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-02-11 14:35 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-11 14:35 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 14:35 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-02-11 14:35 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 14:35 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 14:35 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 14:35 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 14:35 - 2014-10-04 03:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-02-11 14:35 - 2014-10-04 02:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-02-11 14:35 - 2014-10-04 02:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-02-11 14:34 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 14:34 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-02-11 14:34 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 14:34 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-11 14:34 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-11 14:34 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-11 14:34 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 14:34 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-02-11 14:34 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-02-11 14:34 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-11 14:34 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 14:34 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 14:34 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 14:34 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 14:34 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 14:34 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 14:34 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 14:34 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 14:34 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 14:34 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 14:34 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 14:34 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 14:34 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 14:34 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-11 14:34 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 14:34 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 14:34 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 14:34 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-11 14:34 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 14:34 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 14:34 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 14:34 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-11 14:34 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-11 14:34 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-11 14:34 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-11 14:34 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 14:34 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 14:34 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 14:34 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 14:34 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 14:34 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 14:34 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 14:34 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-11 14:34 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-11 14:34 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-11 14:34 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 14:34 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 14:34 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 14:34 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-02-11 14:34 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 14:34 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 14:34 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 14:34 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 14:34 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 14:34 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-02-11 14:30 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-11 14:30 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-11 14:29 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 14:29 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 14:28 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 14:28 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 14:28 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-10 21:10 - 2015-02-10 21:10 - 00792942 _____ () C:\Users\jointsmouka\Downloads\Vzorník2.pptx
2015-02-09 14:06 - 2015-02-09 14:07 - 00014776 _____ () C:\Users\jointsmouka\Downloads\kalkulačka-Brusta.xlsm
2015-02-05 22:59 - 2015-02-05 23:00 - 00764401 _____ () C:\Users\jointsmouka\Downloads\Vzorník.pptx
2015-02-03 19:48 - 2015-02-03 19:48 - 00764401 _____ () C:\Users\jointsmouka\Desktop\Vzorník.pptx
2015-02-03 19:32 - 2015-02-03 19:32 - 00031720 _____ () C:\Users\jointsmouka\Downloads\2 Vzorce matematika.xlsx
2015-02-03 19:32 - 2015-02-03 19:32 - 00028672 _____ () C:\Users\jointsmouka\Downloads\1 A vzorce.xls
2015-02-03 19:32 - 2015-02-03 19:32 - 00019456 _____ () C:\Users\jointsmouka\Downloads\3 Funkce a grafy.xls
2015-02-03 19:32 - 2015-02-03 19:32 - 00014848 _____ () C:\Users\jointsmouka\Downloads\5 Data byty.xls
2015-02-03 19:31 - 2015-02-03 19:32 - 00026848 _____ () C:\Users\jointsmouka\Downloads\opakování.xlsm
2015-02-02 19:46 - 2015-02-02 19:46 - 00036559 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E13.720p.HDTV.X264-DIMENSION.torrent
2015-02-01 20:59 - 2015-02-02 13:28 - 00000000 ____D () C:\Users\jointsmouka\Desktop\maturitak
2015-02-01 13:17 - 2015-02-23 02:39 - 00000000 ____D () C:\Users\jointsmouka\Desktop\Facebook_files
2015-01-30 02:49 - 2015-01-30 02:50 - 00040395 _____ () C:\Users\jointsmouka\Downloads\The.Hobbit.2014.Battle.Of.The.Five.Armies.DVDScr.XVID.AC3.HQ.Hive-CM8.torrent
2015-01-27 22:28 - 2015-01-27 22:28 - 00063953 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S03.HDTV.XviD-TL.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-24 21:53 - 2013-06-11 19:06 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-02-24 21:49 - 2009-07-14 05:45 - 00035312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-24 21:49 - 2009-07-14 05:45 - 00035312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-24 21:45 - 2013-01-26 09:39 - 01422541 _____ () C:\Windows\WindowsUpdate.log
2015-02-24 21:42 - 2014-08-03 11:21 - 00000000 ___RD () C:\Users\jointsmouka\Dropbox
2015-02-24 21:42 - 2014-08-03 11:20 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Dropbox
2015-02-24 21:41 - 2015-01-10 07:00 - 00005820 _____ () C:\aaw7boot.log
2015-02-24 21:41 - 2014-12-29 07:00 - 00005676 _____ () C:\Windows\setupact.log
2015-02-24 21:41 - 2014-06-07 15:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-24 21:41 - 2014-01-28 12:42 - 00001010 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Client.lnk
2015-02-24 21:41 - 2014-01-28 12:42 - 00000994 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk
2015-02-24 21:41 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-24 21:37 - 2013-01-26 10:02 - 00000000 ____D () C:\Users\jointsmouka
2015-02-24 21:16 - 2014-12-21 17:04 - 00002189 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-02-24 21:10 - 2014-12-21 17:02 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-24 21:10 - 2014-12-21 17:02 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-24 21:09 - 2014-08-04 11:02 - 00003246 _____ () C:\Windows\System32\Tasks\Ad-Aware Update (Daily)
2015-02-24 21:08 - 2014-01-30 23:58 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-02-24 21:04 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-02-24 20:44 - 2013-01-26 18:13 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Skype
2015-02-24 19:53 - 2015-01-21 18:00 - 00000020 _____ () C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin
2015-02-24 19:43 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2015-02-24 19:42 - 2014-12-29 07:00 - 00009556 _____ () C:\Windows\PFRO.log
2015-02-24 19:41 - 2009-07-14 03:34 - 76668928 _____ () C:\Windows\system32\config\software.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 16252928 _____ () C:\Windows\system32\config\system.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 06434816 _____ () C:\Windows\system32\config\default.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 00028672 _____ () C:\Windows\system32\config\security.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 00028672 _____ () C:\Windows\system32\config\sam.bak
2015-02-24 18:02 - 2015-01-07 20:44 - 00006691 _____ () C:\Windows\system32\ScanResults.xml
2015-02-24 17:58 - 2015-01-07 20:41 - 00000464 _____ () C:\Windows\system32\ScannerSettings
2015-02-24 17:16 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2015-02-24 17:13 - 2009-07-14 06:13 - 00806776 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-24 17:11 - 2014-01-01 14:36 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Seznam.cz
2015-02-24 17:08 - 2014-07-18 04:33 - 00015899 _____ () C:\Users\jointsmouka\rgmnr
2015-02-24 17:05 - 2009-07-14 05:45 - 00417576 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-24 15:58 - 2014-08-30 09:04 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-02-24 10:27 - 2013-01-26 18:49 - 00000000 ____D () C:\Windows\Minidump
2015-02-24 09:06 - 2013-01-26 18:13 - 00000000 ____D () C:\ProgramData\Skype
2015-02-24 09:05 - 2013-01-26 18:13 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-02-24 09:02 - 2013-01-26 10:33 - 00000000 ____D () C:\ProgramData\LogMeIn
2015-02-23 02:39 - 2014-10-12 15:50 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-02-23 02:39 - 2013-01-26 18:12 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\vlc
2015-02-23 02:39 - 2011-04-12 09:28 - 00000000 ___RD () C:\Users\Public\Recorded TV
2015-02-23 02:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-02-23 02:38 - 2013-01-26 10:32 - 00000000 ____D () C:\Program Files (x86)\LogMeIn
2015-02-22 18:01 - 2014-08-03 11:21 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-20 21:41 - 2014-11-10 17:00 - 00000000 ____D () C:\Users\jointsmouka\Desktop\cestina
2015-02-16 17:59 - 2014-12-20 09:59 - 00000761 _____ () C:\Windows\system32\Drivers\etc\hosts.txt
2015-02-13 08:09 - 2014-04-10 02:55 - 00000000 ____D () C:\Windows\rescache
2015-02-12 14:21 - 2013-08-15 11:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 04:18 - 2014-12-11 13:15 - 00000000 ____D () C:\Windows\system32\appraiser
2015-02-12 04:18 - 2014-05-06 23:05 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-02-12 04:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-12 03:56 - 2013-03-13 20:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-12 03:45 - 2009-07-14 03:34 - 00000678 _____ () C:\Windows\win.ini
2015-02-12 03:10 - 2013-01-26 10:58 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-09 14:26 - 2014-09-14 16:26 - 00000000 ____D () C:\Users\jointsmouka\Desktop\programovani
2015-02-08 22:33 - 2013-02-11 11:41 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\BitTorrent

==================== Files in the root of some directories =======

2015-01-21 18:00 - 2015-02-24 19:53 - 0000020 _____ () C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin
2014-07-22 12:15 - 2014-07-22 12:15 - 0007644 _____ () C:\Users\jointsmouka\AppData\Local\Resmon.ResmonCfg

Some content of TEMP:
====================
C:\Users\jointsmouka\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwxfume.dll
C:\Users\jointsmouka\AppData\Local\Temp\Quarantine.exe
C:\Users\jointsmouka\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-23 00:18




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (system) (Fixed) (Total:150 GB) (Free:34.89 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (data) (Fixed) (Total:295.76 GB) (Free:10.42 GB) NTFS

Available physical RAM: 2101.18 MB
Total physical RAM: 4094.49 MB
Percentage of memory in use: 48%

==================== MBR and Partition Table ==================

TreeSize Professional V6.0.3 (64 bit) (HKLM\...\TreeSize Professional_is1) (Version: 6.0.3 - JAM Software)
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 95BB83A1)
Partition 2: (Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=295.8 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Ad-Aware Update (Daily).job => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\jointsmouka\Desktop" je 4258 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
AdwCleaner[S0].rar
(2.27 KiB) Staženo 32 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#21 Příspěvek od altrok »

:arrow: Velikost plochy by nemela presahovat 200 MB. Zpomaluje se pak start i samotny chod celeho PC.

:arrow: Odinstalujte :arrow: Nemate neinstalovany antivir - Windows Defender na sedmickach zastupuje jen funkci antispywaru... z free reseni doporucim napr. avast! Free nebo Aviru (ve free verzi anglicky), pripadne kouknete na srovnavaci testy antiviru http://forum.viry.cz/viewtopic.php?f=14 ... 3#p1377913


:arrow: Ulozte na plochu MBAR - http://www.bleepingcomputer.com/downloa ... i-rootkit/
  • Spuste dvojklikem a extrahujte na plochu
  • kliknete na Next
  • Aktualizujte virovou databazi klikem na Update a pokracujte na Next
  • Vsechny 3 moznosti nechte zaskrtnute a zvolte Scan (potrva cca 15 minut)
  • zatrhnete vsechny nalezy a take zkontrolujte zatrzitko u Create Restore Point
  • kliknete na Cleanup a souhlaste s restartem - Yes
  • obsah logu ulozene na plose v mbar\mbar-log-2015-mm-dd (hh-mm-ss).txt vlozte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#22 Příspěvek od jointsmouka »

Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org

Database version:
main: v2015.02.24.07
rootkit: v2015.02.22.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17633
jointsmouka :: JOINTSMOUKA-PC [administrator]

24.2.2015 22:47:55
mbar-log-2015-02-24 (22-47-55).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 463833
Time elapsed: 32 minute(s), 16 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 9
C:\Program Files (x86)\Need for Speed Carbon Crack\Need for Speed Carbon Crack.exe (Trojan.Bitcoin.SE) -> Delete on reboot. [b3948e94b6d4d0669310eb5c2ad7b749]
C:\Windows\SysWOW64\ebmunem.exe (Trojan.Agent.ED) -> Delete on reboot. [69deb072f59549ed9071d6365ba7af51]
C:\Windows\AutoKMS.exe (Riskware.Keygen) -> Delete on reboot. [a7a0a37f701ade58e91e8350c23e13ed]
C:\Windows\System32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}Gw64.sys (PUP.Optional.Sanbreel.A) -> Delete on reboot. [66c7742f2308e02aba264fa8265c812b]
C:\Windows\SysWOW64\msstp.vbe (Trojan.Agent.VBS) -> Delete on reboot. [fa4d63bff09a9c9abb0307d6df247a86]
C:\Windows\SysWOW64\mskpko.vbe (Trojan.Script) -> Delete on reboot. [6bdc7fa3fe8c7bbb21ae07ded62df010]
C:\Windows\SysWOW64\msphtov.vbe (Trojan.Script) -> Delete on reboot. [a1a60f13a4e682b466698f5618eba35d]
C:\Windows\SysWOW64\msstnj.vbe (Trojan.Script) -> Delete on reboot. [0a3db17199f177bff7d815d024df7a86]
C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w64.sys (PUP.Optional.Sanbreel.A) -> Delete on reboot. [bd137446d3aaca2315e00446e8d24aac]

Physical Sectors Detected: 0
(No malicious items detected)

(end)

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#23 Příspěvek od altrok »

Dejte aktualni log FRST.txt a Addition.txt
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#24 Příspěvek od jointsmouka »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-02-2015
Ran by jointsmouka (administrator) on JOINTSMOUKA-PC on 25-02-2015 12:02:34
Running from C:\Users\jointsmouka\Desktop
Loaded Profiles: jointsmouka (Available profiles: jointsmouka & LogMeInRemoteUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Anvisoft) D:\INSTALL\CSB\Cloud System Booster\CSBSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Anvisoft) D:\INSTALL\CSB\Cloud System Booster\CloudSystemBooster.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(forum.viry.cz) C:\Users\jointsmouka\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [57928 2012-11-29] (LogMeIn, Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Logitech Vid] => C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [6129496 2011-01-13] (Logitech Inc.)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [2874048 2015-02-19] (Valve Corporation)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [CloudSystemBooster] => D:\INSTALL\CSB\Cloud System Booster\CloudSystemBooster.exe [527544 2014-05-29] (Anvisoft)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31087200 2015-01-23] (Skype Technologies S.A.)
Startup: C:\Users\jointsmouka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {BE0E22DF-7D17-4686-B73C-6DC95375082B} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_14875
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {C04B0473-4653-4FCA-8B5D-4B44A4B15F00} URL = http://www.mapy.cz/?query={searchTerms} ... arch_14875
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{878EC04A-E66B-447C-BB01-A651764F78C1}: [NameServer] 8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_269.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_269.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-883375831-3728679416-1811525376-1001: @tools.google.com/Google Update;version=3 -> C:\Users\jointsmouka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin HKU\S-1-5-21-883375831-3728679416-1811525376-1001: @tools.google.com/Google Update;version=9 -> C:\Users\jointsmouka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-21]
CHR Extension: (Google Docs) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-21]
CHR Extension: (Google Drive) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-21]
CHR Extension: (YouTube) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-21]
CHR Extension: (Google Search) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-21]
CHR Extension: (Google Sheets) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-21]
CHR Extension: (Skype Click to Call) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-07-31]
CHR Extension: (Google Wallet) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-24]
CHR Extension: (Gmail) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-21]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AnviCsbSvc; D:\INSTALL\CSB\Cloud System Booster\CSBSvc.exe [42680 2014-05-29] (Anvisoft)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-04] (NVIDIA Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [377704 2015-01-16] (LogMeIn, Inc.)
S2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226152 2015-01-16] (LogMeIn, Inc.)
S2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2012-11-29] (LogMeIn, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-04] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-04] (NVIDIA Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5436176 2015-02-17] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-17] (Disc Soft Ltd)
S2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-06-02] (LogMeIn, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-04] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz134; \??\C:\Users\JOINTS~1\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-25 11:52 - 2015-02-25 11:53 - 00000168 _____ () C:\Windows\setupact.log
2015-02-25 11:52 - 2015-02-25 11:52 - 00000834 _____ () C:\Windows\PFRO.log
2015-02-25 11:52 - 2015-02-25 11:52 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-25 00:21 - 2015-02-25 00:21 - 00012177 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E09.HDTV.x264-LOL.torrent
2015-02-25 00:20 - 2015-02-25 00:20 - 00011130 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E08.HDTV.x264-LOL.torrent
2015-02-24 23:56 - 2015-02-24 23:56 - 00001730 _____ () C:\Users\Public\Desktop\Defraggler.lnk
2015-02-24 23:56 - 2015-02-24 23:56 - 00000000 ____D () C:\Program Files\Defraggler
2015-02-24 23:54 - 2015-02-24 23:55 - 04362512 _____ (Piriform Ltd) C:\Users\jointsmouka\Downloads\dfsetup218.exe
2015-02-24 23:17 - 2015-02-24 23:40 - 01224704 _____ () C:\Users\jointsmouka\Documents\Database1.accdb
2015-02-24 22:47 - 2015-02-25 11:52 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-02-24 22:46 - 2015-02-24 22:46 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-24 22:45 - 2015-02-24 22:46 - 16502728 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.09.1.1004.exe
2015-02-24 22:42 - 2015-02-24 23:40 - 00000000 ____D () C:\Users\jointsmouka\Desktop\mbar
2015-02-24 22:41 - 2015-02-24 22:42 - 16466552 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.08.3.1004.exe
2015-02-24 22:05 - 2015-02-24 21:37 - 00009109 _____ () C:\Users\jointsmouka\Desktop\AdwCleaner[S0].txt
2015-02-24 22:00 - 2015-02-25 12:02 - 00015593 _____ () C:\Users\jointsmouka\Desktop\FRST.txt
2015-02-24 21:32 - 2015-02-24 21:40 - 00000000 ____D () C:\AdwCleaner
2015-02-24 21:14 - 2015-02-24 21:14 - 00036772 _____ () C:\Users\jointsmouka\Desktop\Fixlog.rar
2015-02-24 21:10 - 2015-02-25 11:53 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-24 21:10 - 2015-02-25 11:15 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-24 21:09 - 2015-02-25 12:01 - 00000496 _____ () C:\Windows\Tasks\Ad-Aware Update (Daily).job
2015-02-24 19:52 - 2015-02-24 19:52 - 00037638 _____ () C:\ComboFix.txt
2015-02-24 17:47 - 2015-02-25 07:32 - 01605632 _____ () C:\Users\jointsmouka\Downloads\autobazar_relace.accdb
2015-02-24 17:47 - 2015-02-24 17:47 - 00145408 _____ () C:\Users\jointsmouka\Downloads\db1-2 upr.ppt
2015-02-24 17:47 - 2015-02-24 17:47 - 00013820 _____ () C:\Users\jointsmouka\Downloads\Test tvorba tabulek a relace.xlsx
2015-02-24 16:54 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-02-24 16:54 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-02-24 16:54 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-02-24 16:53 - 2015-02-24 19:52 - 00000000 ____D () C:\Qoobox
2015-02-24 16:53 - 2015-02-24 19:40 - 00000000 ____D () C:\Windows\erdnt
2015-02-24 16:51 - 2015-02-24 16:52 - 05611903 ____R (Swearware) C:\Users\jointsmouka\Desktop\ComboFix.exe
2015-02-24 16:37 - 2015-02-24 16:39 - 00004084 _____ () C:\Users\jointsmouka\Desktop\Rkill.txt
2015-02-24 16:35 - 2015-02-24 16:35 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\jointsmouka\Desktop\rkill.exe
2015-02-24 16:20 - 2015-02-25 12:02 - 00000000 ____D () C:\FRST
2015-02-24 16:19 - 2015-02-24 16:19 - 00112640 _____ (forum.viry.cz) C:\Users\jointsmouka\Desktop\FRSTLauncher.exe
2015-02-24 16:17 - 2015-02-24 16:17 - 02087424 _____ (Farbar) C:\Users\jointsmouka\Desktop\FRST64.exe
2015-02-24 15:38 - 2015-02-24 15:39 - 00000000 ____D () C:\Program Files\trend micro
2015-02-24 15:37 - 2015-02-24 15:37 - 01222144 _____ () C:\Users\jointsmouka\Downloads\RSITx64.exe
2015-02-24 15:16 - 2015-02-24 19:26 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\TeamViewer
2015-02-24 15:16 - 2015-02-24 15:16 - 00001049 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-02-24 15:15 - 2015-02-24 15:15 - 07826296 _____ (TeamViewer GmbH) C:\Users\jointsmouka\Downloads\TeamViewer_Setup_cs-iuu.exe
2015-02-24 10:27 - 2015-02-24 10:27 - 00284464 _____ () C:\Windows\Minidump\022415-28345-01.dmp
2015-02-24 10:25 - 2015-02-24 10:25 - 00000000 ____D () C:\Users\jointsmouka\AppData\Local\Steam
2015-02-24 10:11 - 2015-02-24 10:11 - 00290632 _____ () C:\Windows\Minidump\022415-22542-01.dmp
2015-02-24 09:01 - 2015-02-24 09:01 - 00427960 _____ () C:\Windows\Minidump\022415-19609-01.dmp
2015-02-24 08:59 - 2015-02-24 09:00 - 00290648 _____ () C:\Windows\Minidump\022415-25740-01.dmp
2015-02-23 22:30 - 2015-02-23 22:30 - 00000165 ____H () C:\Users\jointsmouka\Downloads\~$využití-radionuklidu.pptx
2015-02-23 22:29 - 2015-02-23 22:29 - 00088372 _____ () C:\Users\jointsmouka\Downloads\využití-radionuklidu.pptx
2015-02-22 17:51 - 2015-02-22 17:51 - 00446688 _____ () C:\Windows\Minidump\022215-28470-01.dmp
2015-02-21 17:08 - 2015-02-21 19:30 - 1276074610 _____ () C:\Users\jointsmouka\Downloads\Padesát-odstínů-šedi---Fifty-Shades-of-Grey-2015-[CAM.XviD]-tit.CZ-v-obraze.avi
2015-02-20 21:38 - 2015-02-20 21:38 - 00696556 _____ () C:\Users\jointsmouka\Downloads\Vzorník (1).pptx
2015-02-15 15:33 - 2015-02-15 15:33 - 00230094 _____ () C:\Users\jointsmouka\Downloads\tam1.bmp
2015-02-12 14:10 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 14:10 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 14:10 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-12 14:10 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 14:35 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 14:35 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 14:35 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 14:35 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 14:35 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 14:35 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 14:35 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 14:35 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 14:35 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-02-11 14:35 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-02-11 14:35 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-11 14:35 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 14:35 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-02-11 14:35 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 14:35 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 14:35 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 14:35 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 14:35 - 2014-10-04 03:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-02-11 14:35 - 2014-10-04 02:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-02-11 14:35 - 2014-10-04 02:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-02-11 14:34 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 14:34 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-02-11 14:34 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 14:34 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-11 14:34 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-11 14:34 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-11 14:34 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 14:34 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-02-11 14:34 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-02-11 14:34 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-11 14:34 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 14:34 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 14:34 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 14:34 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 14:34 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 14:34 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 14:34 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 14:34 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 14:34 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 14:34 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 14:34 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 14:34 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 14:34 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 14:34 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-11 14:34 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 14:34 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 14:34 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 14:34 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-11 14:34 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 14:34 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 14:34 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 14:34 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-11 14:34 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-11 14:34 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-11 14:34 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-11 14:34 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 14:34 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 14:34 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 14:34 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 14:34 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 14:34 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 14:34 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 14:34 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-11 14:34 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-11 14:34 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-11 14:34 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 14:34 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 14:34 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 14:34 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-02-11 14:34 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 14:34 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 14:34 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 14:34 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 14:34 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 14:34 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-02-11 14:30 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-11 14:30 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-11 14:29 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 14:29 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 14:28 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 14:28 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 14:28 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-10 21:10 - 2015-02-10 21:10 - 00792942 _____ () C:\Users\jointsmouka\Downloads\Vzorník2.pptx
2015-02-09 14:06 - 2015-02-09 14:07 - 00014776 _____ () C:\Users\jointsmouka\Downloads\kalkulačka-Brusta.xlsm
2015-02-05 22:59 - 2015-02-05 23:00 - 00764401 _____ () C:\Users\jointsmouka\Downloads\Vzorník.pptx
2015-02-03 19:32 - 2015-02-03 19:32 - 00031720 _____ () C:\Users\jointsmouka\Downloads\2 Vzorce matematika.xlsx
2015-02-03 19:32 - 2015-02-03 19:32 - 00028672 _____ () C:\Users\jointsmouka\Downloads\1 A vzorce.xls
2015-02-03 19:32 - 2015-02-03 19:32 - 00019456 _____ () C:\Users\jointsmouka\Downloads\3 Funkce a grafy.xls
2015-02-03 19:32 - 2015-02-03 19:32 - 00014848 _____ () C:\Users\jointsmouka\Downloads\5 Data byty.xls
2015-02-03 19:31 - 2015-02-03 19:32 - 00026848 _____ () C:\Users\jointsmouka\Downloads\opakování.xlsm
2015-02-02 19:46 - 2015-02-02 19:46 - 00036559 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E13.720p.HDTV.X264-DIMENSION.torrent
2015-01-30 02:49 - 2015-01-30 02:50 - 00040395 _____ () C:\Users\jointsmouka\Downloads\The.Hobbit.2014.Battle.Of.The.Five.Armies.DVDScr.XVID.AC3.HQ.Hive-CM8.torrent
2015-01-27 22:28 - 2015-01-27 22:28 - 00063953 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S03.HDTV.XviD-TL.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-25 12:01 - 2013-01-26 18:13 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-02-25 11:59 - 2014-08-03 11:21 - 00000000 ___RD () C:\Users\jointsmouka\Dropbox
2015-02-25 11:58 - 2013-06-11 19:06 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-02-25 11:58 - 2013-01-26 18:13 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Skype
2015-02-25 11:58 - 2013-01-26 09:39 - 01534591 _____ () C:\Windows\WindowsUpdate.log
2015-02-25 11:55 - 2014-08-03 11:20 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Dropbox
2015-02-25 11:53 - 2014-01-28 12:42 - 00001010 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Client.lnk
2015-02-25 11:53 - 2014-01-28 12:42 - 00000994 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk
2015-02-25 11:52 - 2014-06-07 15:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-25 11:52 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-25 11:50 - 2014-08-04 11:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2015-02-25 11:50 - 2014-08-04 11:01 - 00000000 ____D () C:\Program Files (x86)\Lavasoft
2015-02-25 11:47 - 2013-02-11 11:41 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\BitTorrent
2015-02-25 11:47 - 2013-01-26 10:33 - 00000000 ____D () C:\ProgramData\LogMeIn
2015-02-25 11:46 - 2013-01-27 03:33 - 00000000 ____D () C:\kb
2015-02-25 07:33 - 2013-01-26 18:12 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\vlc
2015-02-25 02:40 - 2015-01-05 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair
2015-02-25 00:20 - 2013-01-26 10:11 - 00109672 _____ () C:\Users\jointsmouka\AppData\Local\GDIPFONTCACHEV1.DAT
2015-02-24 23:53 - 2009-07-14 05:45 - 00035312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-24 23:53 - 2009-07-14 05:45 - 00035312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-24 23:42 - 2015-01-10 07:00 - 00006044 _____ () C:\aaw7boot.log
2015-02-24 23:40 - 2014-07-17 15:05 - 00000000 ____D () C:\Program Files (x86)\Need for Speed Carbon Crack
2015-02-24 23:30 - 2013-03-13 20:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-24 22:47 - 2014-05-01 08:55 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-24 22:47 - 2014-05-01 08:54 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-24 21:37 - 2013-01-26 10:02 - 00000000 ____D () C:\Users\jointsmouka
2015-02-24 21:10 - 2014-12-21 17:02 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-24 21:10 - 2014-12-21 17:02 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-24 21:09 - 2014-08-04 11:02 - 00003246 _____ () C:\Windows\System32\Tasks\Ad-Aware Update (Daily)
2015-02-24 21:08 - 2014-01-30 23:58 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-02-24 21:04 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-02-24 19:53 - 2015-01-21 18:00 - 00000020 _____ () C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin
2015-02-24 19:43 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2015-02-24 19:41 - 2009-07-14 03:34 - 76668928 _____ () C:\Windows\system32\config\software.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 16252928 _____ () C:\Windows\system32\config\system.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 06434816 _____ () C:\Windows\system32\config\default.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 00028672 _____ () C:\Windows\system32\config\security.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 00028672 _____ () C:\Windows\system32\config\sam.bak
2015-02-24 18:02 - 2015-01-07 20:44 - 00006691 _____ () C:\Windows\system32\ScanResults.xml
2015-02-24 17:58 - 2015-01-07 20:41 - 00000464 _____ () C:\Windows\system32\ScannerSettings
2015-02-24 17:16 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2015-02-24 17:13 - 2009-07-14 06:13 - 00806776 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-24 17:11 - 2014-01-01 14:36 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Seznam.cz
2015-02-24 17:08 - 2014-07-18 04:33 - 00015899 _____ () C:\Users\jointsmouka\rgmnr
2015-02-24 17:05 - 2009-07-14 05:45 - 00417576 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-24 15:58 - 2014-08-30 09:04 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-02-24 10:27 - 2013-01-26 18:49 - 00000000 ____D () C:\Windows\Minidump
2015-02-24 09:06 - 2013-01-26 18:13 - 00000000 ____D () C:\ProgramData\Skype
2015-02-23 02:39 - 2011-04-12 09:28 - 00000000 ___RD () C:\Users\Public\Recorded TV
2015-02-23 02:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-02-23 02:38 - 2013-01-26 10:32 - 00000000 ____D () C:\Program Files (x86)\LogMeIn
2015-02-22 18:01 - 2014-08-03 11:21 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-16 17:59 - 2014-12-20 09:59 - 00000761 _____ () C:\Windows\system32\Drivers\etc\hosts.txt
2015-02-13 08:09 - 2014-04-10 02:55 - 00000000 ____D () C:\Windows\rescache
2015-02-12 14:21 - 2013-08-15 11:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 04:18 - 2014-12-11 13:15 - 00000000 ____D () C:\Windows\system32\appraiser
2015-02-12 04:18 - 2014-05-06 23:05 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-02-12 04:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-12 03:45 - 2009-07-14 03:34 - 00000678 _____ () C:\Windows\win.ini
2015-02-12 03:10 - 2013-01-26 10:58 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Files in the root of some directories =======

2015-01-21 18:00 - 2015-02-24 19:53 - 0000020 _____ () C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin
2014-07-22 12:15 - 2014-07-22 12:15 - 0007644 _____ () C:\Users\jointsmouka\AppData\Local\Resmon.ResmonCfg

Some content of TEMP:
====================
C:\Users\jointsmouka\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmptlbqip.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-23 00:18




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (system) (Fixed) (Total:150 GB) (Free:44.26 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (data) (Fixed) (Total:295.76 GB) (Free:8.68 GB) NTFS

Available physical RAM: 2370.86 MB
Total physical RAM: 4094.49 MB
Percentage of memory in use: 42%

==================== MBR and Partition Table ==================

TreeSize Professional V6.0.3 (64 bit) (HKLM\...\TreeSize Professional_is1) (Version: 6.0.3 - JAM Software)
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 95BB83A1)
Partition 2: (Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=295.8 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Ad-Aware Update (Daily).job => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\jointsmouka\Desktop" je 40 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(6.29 KiB) Staženo 42 x

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#25 Příspěvek od jointsmouka »

hned potom co jsem poslal log jsem nainstaloval avast free antivirus

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#26 Příspěvek od altrok »

OK, ted vypada cisto... CCleanerem vycistete registry (udelejte zalohu, kterou Vam nabidne).

Jak se chova pocitac?
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#27 Příspěvek od jointsmouka »

vyskakuje na me docela velke mnozstvi reklam, napise to pod reklamou "ad by The AdBlocker" , nevite co s tim?
Přílohy
reklama.rar
(42.93 KiB) Staženo 41 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#28 Příspěvek od altrok »

:arrow: Ulozte na plochu zoek.exe http://hijackthis.nl/smeenk/zoek.htm
  • spustte jako spravce
  • do velkeho okna zkopirujte script uvedeny nize
  • kliknete na Run script
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\zoek-results.log) - vlozte mi jej do pristi odpovedi

    Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#29 Příspěvek od jointsmouka »

Zoek.exe v5.0.0.0 Updated 24-February-2015
Tool run by jointsmouka on st 25.02.2015 at 15:54:48,20.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\jointsmouka\Desktop\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-02-25-134743.log 2022 bytes

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\Users\jointsmouka\AppData\Local\LogitechR Webcam Software

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3ABDB7E-133E-481F-86D4-48D91BF46DC5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3B373BB-308A-40D8-A4A7-F138B5CCCA8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3BA43EB-85C2-418D-9D81-D4595BBC614} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3C234ED-1DED-43D8-9E37-4538B8DE23B9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3C2D54D-AC8-4AC4-BBCE-27371224E215} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3E778D5-6A76-47C1-AD7A-F63987998B1A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3FB64A1-14AE-48FA-854-49F555C0C38F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3FD8B6F-F5DB-409F-82F6-CA9AD1CA17} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4359982-3652-4CC0-B7F5-94FA8F99C1B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4406608-AF41-4E33-89DD-8B01921D367} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E45C9BAD-C8B9-4628-A2FE-F2C0EB8287DD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E48117E4-8AD6-4180-A588-EBF4D9B42874} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E49B325E-438E-4878-85A5-2EEAF584D9F8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4A16582-DD44-43B1-8B82-3C251919ECA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4B1089A-9197-4A4B-86CE-86B168974CB4} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4C5043A-8D32-40A2-A440-F2C61E1AAB2B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4D320F5-2DF6-43B7-85CB-D6946925A533} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4F2F85F-3FA6-49F0-817C-BBD1C9F8687E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4F9359D-2D8D-4CAC-B765-9FF493D99A35} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4FE0221-16F0-46A3-89F3-4BCBED32331F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E51BFED6-890D-46D3-9115-AA9A8AA1933A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5291CDE-B3E2-4064-BC89-A28F98C54BDB} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E52C805C-46EC-4A8A-816E-B79691508C5E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5525355-5F0C-4E9F-9811-C8EDCC3E2878} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E57AEBC0-EA11-41EF-AD8F-EA71822CC1BD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E59F809E-EAA9-4E0C-BD83-A5A351D8AFB} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5CF4873-967B-4F56-AEEF-99DCCA9F176} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5D4BE0A-79CA-44E1-9A47-E6BCBB7E502D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5E9BF6A-705F-4258-93A6-A95515DDE55D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6066B4B-B7F8-475B-97BF-9523B36F8A8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6228A81-F36D-488F-8BAE-CDB7AD312BA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E63356FC-A88C-4895-A45D-D7A5579546F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E63B0F7B-827B-4BBE-AC60-9FE3D332DDC7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6879C6B-5B11-483E-A8CC-6D4288C948E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E690F0F7-CC99-4C3C-BB45-706E3E2431D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E693324D-6D85-4490-A177-5C1160367F2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E696586E-CC09-4F29-8194-C7EC46E45AB} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E69BD031-1E9-482D-9498-8046493F84B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E69ECF53-8BAA-4485-89FA-B9236989DBC3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6ACD441-2BDE-46C3-A8D5-42234411439E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6D07E23-842C-465E-9088-993E39C0592D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6DBFAC0-A202-421D-A2C-4FAB56536BF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6DC80D2-2465-4B4D-A0CB-9A1F9986EB9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6DED5E4-7A84-4127-87F2-44D8AA3611B7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E703CD52-EE22-4A5A-BC9A-177441FD3D7B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E71BA40F-BAF7-442F-89A9-EF8D3ADD131} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7257743-38C4-481C-8B36-9659FD337DF2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E72A15D-4366-4EE7-880-73F99A9C2BD2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7694CC1-6929-4F05-9C13-7CF2AC75913} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7744FAA-2488-4CF9-BC3F-7365F275423} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7964B58-478F-45F3-B9E0-AB746FEAADC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7A22D8F-4E88-4F27-BDD9-EDE1677CD415} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7B47FD0-78F7-44A9-B154-1841278599BC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7BB2D70-7840-40E3-93B0-74EAC1F3BA2D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7CA761D-220C-4315-AD67-EFB096961DE6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7CCCF6E-F8EE-4240-8B30-1395A8B0040} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7E8034A-B1BD-4617-83D7-F3CE428A666} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7FDAE4F-AD4E-4AE7-9C68-7AF32BAA6EAB} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E800BBBD-65A6-4EBF-8734-66497BD5D64C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E80D36C1-E778-4B39-A71D-71AADF386D27} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E81203CD-BAFB-4331-B59F-8A5EBB1EC954} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8352B38-22D7-4965-A6D-2AFF2C68DA5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E83780E3-BAD0-4F2E-9C7A-D3861DD8F7C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E84D5B48-EF67-4DB1-B64E-4D7E4083A8EA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E863B25B-EF13-4374-81D-420BCCB76C9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E86BFB34-A980-4776-A3D2-B2F336A2ED5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E875D9B0-645B-433B-B74D-85CB31D459BE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E87F1609-F0FD-4F7D-B691-D930E1CDAE41} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E87F4F3F-881F-4B5B-82A4-346F721E1583} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E88DD249-F1CB-4BE7-AEC6-F7E865818249} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8941513-1740-4E71-A1AA-E2B3EEF3EE42} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8BDC29C-8B9E-46FD-AA23-E5DDD16CF16} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8C8E3A5-4EC7-4471-B934-5CA7961EC980} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8E7671C-C611-466F-86D1-B1ED8F267B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E908390C-4A5-4E66-8028-682A9AC29BA2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E908685E-CC1D-4C89-90D9-ECA9569F7FD1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E91FC322-D3FC-40B8-A3F0-A0BFFF63FBA6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E94302B9-15DA-4465-ACC2-788A91D1EB7F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E943C340-D54E-460C-8399-6A8C9766956C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E949F21-F543-42B7-9414-18B06C7EC17A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E990A0D6-7CD0-4488-9FFA-7788B5D20C0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E990DE05-9FEF-4A88-BCA1-CA3B83B2977} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E995CD40-4B4E-478B-A930-BA25BC5A2B53} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E99E5E6B-1AB-4BAC-A48B-1EFAE3D5D8CA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9B8A3A2-9F7E-4C64-B79B-3D7E291486CD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9C7969F-97CF-401D-86EA-D678A0EEF5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9C83534-6B3E-4B58-9CDC-A8AD971BADC4} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9CA18A0-9489-4F23-BAA1-89871C4F9D3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9E2A27C-E4AA-4384-997A-AEB4E723D139} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9EEE082-EB0A-4545-AFEF-B44CF8DE137} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA1C4D96-5A10-422B-A4FB-FC58B227DABA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA207C04-48A7-4B77-8215-7B343E8FAFB3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA259138-F7E0-4E0D-9B13-29D1695629DE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA34AFEF-75FF-4291-9073-4E9DE5E1039} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA3FB1C7-33A9-423F-882-43CFD7D3AB34} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA420847-6BAA-4C7D-83DE-7B878242C06D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA699203-A6DF-4011-ADA6-8A53F7F25192} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA7E1D23-7F44-46B0-9ED9-88909F3B9277} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA8289CF-C0B-481D-A746-E8ADD2CE3AB} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA9F3B27-33CD-4B9E-A3EE-D05559FA4845} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAA4B183-E070-4A4D-BDC8-97694F8D61E0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAC340D4-E247-46AF-92C7-A8CBCBF0E14} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAC9EFB9-58B-4714-829F-88D744EA9F20} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAD9DF5F-6B41-4050-903B-4F1CD52A3923} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EADFF845-D4E2-4632-8E87-CA1FA3549DEC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAE65F6F-D2B1-4EB1-8AB4-97B28E3665B7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB102142-2605-4BB5-A15A-95344D234BBC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB110649-BA1B-4FD5-9BE6-7585BB14BC8F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB151BC5-B79C-4A9F-ABA9-8E59B6C25D77} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB1E7EA6-403F-4873-82B9-9A2699173E8C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB58BC-25D5-49AF-A642-2E2A5FCD4DC9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB6B7D4E-4D6D-4D9D-8A89-EEF2C164939} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB87B6B6-132A-4697-928A-7BEE7B697C41} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB98ECD6-E2DA-403B-B6E8-65C17C673EF6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBAAC1F6-38E6-4CF8-8771-D4A43D803660} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBC023CD-C1D7-43DD-BF2B-89AC2F4B77A6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBC8572B-9347-4301-9EFF-62CCEBC5282} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBD50480-9075-4979-B7B9-F42C128ED3E6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBD72E39-D306-4F30-AD40-494601BB6E5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBE9BAA2-A831-43D8-8A4B-3F4545C4DCE9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBEB3941-C307-49EA-8A4C-23472DF77FA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBEF3B17-C6B0-44E8-BB6C-3E5B9347EF1C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBF6681D-A6C-4ED6-9B5E-F89855CED6C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBF8FF50-55A0-454C-BC2C-39F29868A50} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBFB5A9B-9A34-46F8-88F5-37A85E79D53F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC1A6AC8-403-4C8B-AB38-90CE4BD8832} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC37FE5F-E57E-4451-ABA9-1C7F4DCEAB4F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC69F4E6-4214-4467-93F9-A81B70E7D6C7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC6D69F1-3551-4D64-8B25-15E4FAC9A4CC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC702BD1-E069-430B-B879-54219AD25238} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC70ADEA-48D-4382-B12E-B74A57F5DD20} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC800A69-D108-45E9-8D7F-1249C4F52CDE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC802487-4031-47B8-8FA5-53607A2F29CF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC8908F6-9C59-4306-8D93-7871277C892} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECA54597-5252-4B72-AE50-F0E9FDEEDC9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECB3AA1-1B79-4777-820-78B1402AACF9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECB82175-C64B-4692-9628-AC672630A643} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECD55D5D-71A1-4C41-9913-315844A9B2C6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECD6EF4A-E2B2-4456-AB1C-CE40F9ECE9F5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECD8589A-2900-4491-9FB0-1E5C9E1BB2E0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECE77EB2-5FD-4B15-9DD2-9051348D421F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECF32B5C-8C4A-4D7D-82BF-6D158078E14} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED210715-D278-43EB-BB42-53B79AEBE3B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED237B66-F9CA-4508-998B-88D3394CF3C6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED34378B-CD8D-434A-8592-7827A1ADECD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED3A64A6-A3C0-4E21-8CFF-77D11652D446} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED468DB-B240-42D1-A5C-A7F54E1EA99} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED46B0E7-D447-481A-86AE-C16EAC887D96} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED49520E-85E9-4046-B9F1-E411B6AF5176} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED5A35E6-1B0C-4479-87F7-8F3992122769} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED5F42AF-F645-4D0D-825D-3037A9F6A252} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED64AA01-4648-490D-A396-C7E95E673773} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED85B46B-B4ED-4BEE-8C7F-E6721596DEE2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED9E0102-6040-4611-A149-C8E919D5D049} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDA44F0F-D2E3-4052-91A5-8EADEC81D951} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDAD8177-FFDB-49F1-9140-6545B9EF92F6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDD635AC-51C2-48BE-98C5-837858832CC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDF0CA72-CD91-45AB-97AA-E1EBE9275729} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE0BBC76-2655-48B7-89DE-7EE7D9D4F3BD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE0D3323-6477-4420-B31C-6BAC8160CAA6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE173D89-7B81-4A88-B547-3A122F5E5F99} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE255BDC-B478-4933-9772-B8A128432F56} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE281DE-57F3-4D13-81F5-DFC8585044A6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE508BC1-CD7E-418E-AE27-FECD44C06F1F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE5F1C5-3B7D-447E-9EF2-35EBFF2DC148} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE66FD8A-FF05-45DE-81B3-FA942F221284} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE91147F-C260-4DAA-A6FD-A3B6D26C8A2C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEA4F220-E263-4A7A-A149-691B8D4978F2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEA7C5DF-A090-4A0A-B6F5-206BFEC6B55} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEAD5D68-F58B-4009-909-629A3B162174} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEC7A2CC-F1FF-497A-94D7-7C405ECCACF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EED826E9-69E1-4FEA-BE1C-BCDDDA9C1AC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EED997BE-E3B2-42F2-8FB7-25B0C5E0DC9F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEFBC38B-CEB-462A-9C35-69FEA4E89E8C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEFE1512-F4EA-45EB-8252-59334D10D262} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEFEF052-6F41-4272-9240-EFE07B594EAC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF19ADD3-9132-4408-8BBA-4D9DBF722253} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF2672A4-9F30-4A94-86B0-40875E591E1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF288ED8-5D2F-4CB9-8CF8-601A788796FC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF50D39C-E10B-47D1-96A6-1E4DBE21DD8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF576572-96EB-4295-8AB5-5EF82F206841} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF76D501-B11A-4C10-BD72-D68B74D0B752} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF8C3A30-2AE-4C54-AE6C-119036B0AE14} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF94B648-FC-4343-A22A-AB7E59AB47D2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFAFFDA1-A9C7-449D-9DE1-9E11C6789F1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFC856C5-3798-4576-83AA-45264813A5F2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F012CE51-E715-4145-88E6-3495AB7B9A41} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F02B59CA-CFB3-4340-A5BC-7E3EA68E3393} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0353D53-FAAA-49CB-B6D5-CC4CF575E3DA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F042BCE5-5D84-4AB6-9DBE-3CAA90D55F3E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F04301EB-949B-436B-96B5-6AFEB8B7C63} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F055839-49AF-41B4-BA51-C36EC7CEB9E1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F074B439-EAF2-46A9-8662-89D1A0BBFB18} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0960479-5453-4180-83BC-F1D11217BCE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0A8371-D16E-4CD8-B6A6-AA4F53BE192D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0ADCE58-7FAC-4C82-BE8B-D7A0C03EB53E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0B41B61-5918-48B2-9BB4-C9FF62EBBD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0B940EE-4951-4E36-82D3-CD3E6430E421} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0C04281-3FF9-42B5-9A2-C29EC4566AF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0E6EC6A-3204-4F93-A236-BC9B81E9778F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F114304E-F703-4AB4-886D-C116DD2C55A2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1332CF-D877-4E14-9A43-69F46A5DC38A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1359352-8FED-4F47-BE8C-F3D14195ECD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F148E566-2F05-42A3-8AB5-E36A8B602539} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F15B7B22-FB9A-4DC3-838B-4A56892A9523} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F17B082B-26FF-4B9E-9E14-2ABBC51612F0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F182A0C7-A3C-45DD-8BC0-63149040D8B6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F187C5B-92BB-4227-A452-765D63551FF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F195AEDF-609F-403E-97DD-B3346F202163} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F19F4F21-5B49-4772-A7E2-5BCF5E7F49D8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1A1BDE7-58F0-40BE-B785-95ABFA55EA86} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1C7943C-BB28-4E07-8077-1C2F2FABFE7A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1CE5448-D52C-42CD-94B6-AD897803867} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1DC855-5051-4C63-8B95-712896A6E050} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F200B769-340E-426A-B6A8-59E99C4D298C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F23C220F-535D-4179-8C81-17E0977EEDF8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25721EF-19F6-4A34-A1A3-1BF2096597C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2622E63-1DFA-42A1-8A20-4049049D05D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F27F3C20-7618-48AD-A75D-60A991477DB4} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F29C455A-2494-4042-B0DF-A61CDF7DF9A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2A41F4A-94DD-4AAE-AEF-8D8F5B1FA27B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2B0B13B-F956-40B7-9C10-538F85FDD4DE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2F10596-3EB8-4A7A-8FDD-3A7FD8F70C9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3157B75-D552-468E-9A60-512B14ECBFA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F345E2C0-BD3C-461D-973C-D015412FE2B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F376B7-7A78-404A-B675-B61AE5D0F576} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F39A4761-BD8C-407B-A56E-95A1826FE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3A5DEE2-E79F-4FE3-BA17-3A7EA3526C90} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3C2EDA2-2D24-4891-A3D4-62151FC22FF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3D8E913-7CD4-4999-B4B9-AA8D28403D4A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3E329FE-73A7-4255-9A35-57AD1265554E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3F17DB2-6A4-4BB9-866B-1E28AD49BEC2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F40C91D8-F673-4E6D-994D-B527C2D03EF3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4495A2F-4CFF-4805-A34B-699D667F65E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F44EB485-BDC6-4E49-94C9-863C9C24B6F2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F475478F-D66A-43EA-A9DE-4CCD8B8B17F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F48C2260-B71A-4621-B432-F43D9964AC3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F49367B8-91B6-4A26-89E0-F0CD8618F667} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4973A1D-B8F-4F32-A4BA-665DCB25D35A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4AB6DC8-9F33-4C7A-989A-55B643BAF327} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4C851BE-A011-4E4B-B68B-C43D2C8C46CE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F53E1AC4-7909-4D23-A25B-34CF883988E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F549F700-B9AB-45B7-9E6A-7E2DDDC63B9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F54BE830-7465-42D0-9343-3281CEF92562} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5623F68-3F6C-4F55-902F-7F30E35D43C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5681CB6-A9D4-4C41-9C14-D670174A991A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F56CD7D0-60B-4940-9CAF-967ECBD697D8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F57082B3-7E47-4F30-82B2-F4A39CAC4CD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F57E0B0A-BDFB-4141-84F5-13EC6666B36} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5858EEB-D2BF-4413-8DCB-95ACE45C3F3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f585a701-a226-4877-9017-837f3e37a228} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5D0C661-109C-418B-A8CC-F720F7FA81D7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5D45CF5-A893-4955-A4E4-4959BFCF87EC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5EAE1B3-3C8B-4E51-B65A-96CBF2C6878F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5FE1ECC-D053-47B7-B66F-59A0BB8944C0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F60C8714-AA3F-40C4-9B70-C452BB586A2A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F61DF286-E83D-4E38-8564-8BAECAC96F5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F621EC72-E932-447D-9A2-2C2F80D8597A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F63989A2-F9A0-456C-85A5-934EF018486A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6528A1C-9B48-4535-B47C-F4213C2AA14} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F65920DC-14D1-48DA-B489-28CE986F34D7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F687CDB4-A29-4954-90E1-E3EC9953378B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F68A0B72-9A99-4ED7-86AE-FC92567AE199} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F68C1B25-7C75-4DE4-9495-F501D239F9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F68DF18B-A225-47EE-B591-98A2B8DCEFA1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6904041-24F7-4FC7-80C-E477C62A6A0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6B21538-D6EC-42EE-B066-2E66E39A4BC0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6B64584-5ACE-4B53-89BE-94D8772A1AD2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6B8FEC2-C4AA-464C-9023-44F7F2906CF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6FFC574-7D97-4C3F-B01E-174CACB5FDB1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7140986-ADA9-44CC-81CA-BDBC71CBE5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F72FC8FD-B1DB-4FF0-8845-4B99EF2B2838} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F730963B-A10C-4083-AD4-419C4D24FD2E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F75B5651-BD91-4A56-ABEF-1919B11815D0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F75DC2EC-9163-40BE-AF7C-85BF4349F862} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F76C7583-3B12-4BA7-B72A-3F81D1759C2B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F76D6A2F-8436-404C-922F-3D86A5A9DC5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F778E901-5CB6-42BB-B3A3-B12DFDB8B9BC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F778FB91-2AE8-4C67-B969-CAA11B6AD13D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7955900-15A7-496C-83CE-48DDBF633E22} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7D70CC-6090-414F-B692-EBA5EE468E25} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7D8E444-3744-4F44-AE52-7B45A9BE5E96} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7DC43A5-DEA-4578-BFB4-381409C9B2E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7DE6E0B-1EC0-4709-A6ED-5CBA2A74520} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7E6D0B5-C1CC-473B-9698-CC583A3A3C4C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7EC7F7F-F2CE-47B7-ADB2-9974362D8A55} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7EDA0A5-474B-41AF-90A1-386CE6DD91D0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F805666C-27AA-4C20-A91E-BDB57A45D0B7} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F80BDCBA-43E2-45A8-8DF0-1BE74A58378F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F80C82E9-EF10-45B9-A45B-D312AC5B2AF1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F81D995C-51B9-4CE2-886D-7BC2C150EF33} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F821DDAC-EF1E-456E-A9A2-3DBEF5541A8F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F833167E-45F3-4673-9192-CFC2FD28D4} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F852DC95-25DD-421A-BD57-84EEF2344537} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F861F91D-DA51-48F4-A551-DC3F86ADB78} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F883C5C0-2F06-4902-ACB5-C0EF43BD0E8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8927C85-7C84-4760-834A-BB51A67837DE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8961AF7-8250-4A41-A540-6CF84DCF180} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8B02033-7C26-42C6-B385-41DBC516D9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8B29272-B10B-4E1B-BA48-FFB5C9A8A5B0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8B38648-D192-4343-A995-DA97F3BBAAB1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8C4C174-62BD-4134-9E39-FE67A4301EF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8E70ACB-3B2C-48BC-88D-811E7ACC7B69} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9003FC3-7646-431C-B61A-F97AADAD72F0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F90A9445-A53D-4FD1-8BD7-376DB09C239F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F90C2D72-537A-4F56-9119-57594136BB39} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F93BA902-C326-4021-AD4F-527FBA7EB7BF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9434BC9-9169-4786-ABA1-3AA396CD2BF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F944EE67-44C2-438C-BD2F-56AF1670F9A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F95EF76B-BF51-44D3-8661-389447FE8E39} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F978DD04-C570-4DDF-A261-50E447AA3569} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F98252E-F243-4069-8F95-F6C6E3DD304} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9858501-E990-44FA-AC4C-9EC2C39A802B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F98FF275-93D0-486F-9A14-FC9C7C89D3A0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9937D1A-BD4D-4FAE-A061-5F684BA1BAD0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9970FE5-D77-4275-8427-14581C38DEA1} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9ABEE71-87FD-4D52-BA66-803BFAB2C49} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9C08E57-E7DC-4364-9C1C-57F02A2B36E6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9D11143-F49F-4AA7-B74B-E63BAE8EFC6A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9D8A5CD-5F5-48D1-8392-DF809EA46FCF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA03BCA9-7A36-4E4C-811-3AD28C65E95} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA0EF31D-F689-4A53-A418-D23C57EFB72} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA1D7478-2CE6-4151-ADD9-86DF747A6826} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA1E78F5-804-4B3F-A8D8-A3BF529D769} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA29E682-BE28-46FE-AFC-3BBFC54BA4E0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA56E61C-7174-4F7A-A361-2F657D1138} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA5FA4E8-82C6-49D5-A0E2-BEE63941529} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa83ca79-53ef-4d9d-b3a0-8724dc94fbae} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA8803F2-1F45-4C48-BFA7-A611E7DA5119} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAAC910E-9324-46E5-A4AB-69A282FEC788} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAB400D0-AA98-45A7-89B8-896FC77E60} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAB94092-9DA6-4977-B48F-AF533F88659} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAD775F7-936C-4FB3-B934-7717E5C4FF2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF1A2F5-61AE-4160-A2C7-3D8D6859F0D6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB1D46D3-B8BA-4355-A3C0-6B4398296B12} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB325D54-B1D5-41C0-83E9-7755D1CE539F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB36607F-484E-4F7C-9DB6-9CB8FD6FF211} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB39F424-D315-4D5C-AF9D-FAD097DDFF90} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB508941-7A75-404C-A1B2-718C5D286E4B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB54159E-34C7-416C-A14-2DE022509BBA} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB5465C4-5C9B-441C-9A7D-1BF365C9C8BF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB5499FF-F8A9-4370-809A-2E2960DA7DFC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB8A7BA3-483D-4294-BE19-10DC55D55A27} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB8BE13B-8669-4C47-B08A-4B8B8B4473E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBC2CBAA-9B8-46A3-89E6-56D4B58E380} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBDADD7F-3731-46F3-9379-D12842D329} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBEF82F5-8F61-45E8-BFE3-762FDF53AC26} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC1AAFF2-4A53-4498-99EF-6B5882667A4D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC1D7659-C83-4534-AEC1-D11FFBB2C380} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC36125-28E4-41D5-8516-A63CCBCBC9E6} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC433E23-92BA-4232-A9F2-43B0B620D836} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC464DE5-5F99-473E-886F-F845D9BCA23E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC4C98BD-2FE1-4C04-A388-C589DBBB83BB} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC51E16-C2F8-4EB7-A9E9-A25F810B03E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC616807-865D-4AB7-9CD9-626FCEA62C0} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC787E6D-368C-4D3D-9D11-DA1F93537AC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC8C059C-94DC-4977-9F67-1333568B5D34} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCA78071-63D0-46B9-9999-264A641BCAF2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCB2010C-C0E-4D48-85B9-8B42ACE77C5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCCDF626-5EAB-4078-8B8A-C86EB5B2B49E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCCFE338-3AD2-4F9B-B952-B84397DD8BAC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCD9DAF9-9AAF-4AB3-9227-6E521BC889CC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCED14D4-EAC-4AD1-A9E1-77414CF14BD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCF5784-B064-4710-8D95-A0DD18B1D116} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD20FF2A-4638-4DCD-93BA-D6ACB8DCBF90} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD2E3F05-C8E3-425F-895B-B2555BDDC2E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD3A7675-2D0-4B48-A840-A43F646F625C} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD45102C-5E9B-40AC-8779-733542A278DE} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD47720F-F4D1-4E94-9A19-5B95FBE89F5F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD4A9A6-9E2A-413F-B95-CD3721A1671A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD54FC8-D8F0-4D56-96B7-1050C5EC9BD5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD5BC1DA-7C5C-43F8-BEBA-A2D08FD36EBD} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD676FE2-4A84-4314-ADD7-8A3E4BF3FEE3} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD8A5B15-11A6-417F-A680-BF7A5839E06B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD8D9147-387-4F97-B251-9F1BDE32D1D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDA9AB8E-33FA-41E0-815-22C38DED152A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDAC2F0B-C180-40D0-A14A-97C9635D7459} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDC89A43-9075-48E6-BF39-1F87E1C63B63} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDD24015-A025-458F-ACA6-ED9AE12CDE7D} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDD59C97-CDD0-4F1B-B3F4-F4D0BD8AAC43} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDEFE80D-404F-417C-8650-AD8181B88B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE0560F5-7F14-4A10-B2E-73A2E15245B4} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE085EFE-CB3C-47F5-9C41-E8DCBA933812} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE11C9-2B4D-42B4-B39-856BEAEC205A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE185A0B-FB68-4B3D-A0BF-60CEEBC456A5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE2F7E31-748A-4D7E-93F-B14AA6E44725} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE3F956F-4947-4DE8-AF7-38DB635A9FB8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE59218D-370B-48AF-BCD1-6AF8971D3D2} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE5A23E5-15A0-4D1A-B8B1-D986CCABE91F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE65ACBB-D7A1-4454-A778-49697CA63E9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE7E1A0C-2677-44A1-929F-9CBB9DE53710} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE866B8A-8877-4888-A35B-BBA620981FC8} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEC5253D-BC86-4560-9012-93A581A1BE2B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEF69185-65ED-48E0-9CF-CE7DBAE25FD5} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF18E378-461D-4A1F-8CDF-C79C569217A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF1A070C-28E6-42CB-944F-85228B6CC5F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF232B1E-206A-4CAF-BE1-CACF2C50927} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF2F63C6-D6CE-47B5-9F41-1CCB6A32752} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF60F96-2FF8-47CA-89D4-893BB4792DC} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF68FEE0-7C61-4B8B-958-F8DAF24EDA12} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF8AA573-2980-4B02-9189-FBF5124A34FF} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF9160CB-1DEF-4108-B28F-59D5D23A39B} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF9213F9-914D-432E-A678-16133A7A9A} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFA92B6A-A7A7-4A3E-8C2-D88B6E3530B9} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFC88507-A6DB-44D3-A575-1B4ECF2F59F} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFD51B9B-CA6B-4508-BD81-E717241679E} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFDABD18-C700-432F-948B-A4B136622432} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFEA5A60-E52A-4BA1-9822-24ED4953AA77} deleted successfully
HKEY_USERS\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFF00D2E-7E14-49A3-9ED3-B8E12D4265FB} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f585a701-a226-4877-9017-837f3e37a228} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa83ca79-53ef-4d9d-b3a0-8724dc94fbae} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\JOINTS~1\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js:

Added to C:\Users\JOINTS~1\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Temp deleted
C:\Users\jointsmouka\AppData\LocalLow\{0E73A2A2-DBE3-A7B0-BDC7-15B6A17ECC7F} deleted
C:\Users\jointsmouka\AppData\LocalLow\{1919252C-68B3-3334-DE0E-C4D44F7E1FA6} deleted
C:\Users\jointsmouka\AppData\LocalLow\{25906A22-63B0-F65D-5C59-10D004E1A459} deleted
C:\Users\jointsmouka\AppData\LocalLow\{49518363-9C6C-727E-B099-D535941C9266} deleted
C:\Users\jointsmouka\AppData\LocalLow\{5D60961B-C1BC-8B08-7E8B-7E757C5298A4} deleted
C:\Users\jointsmouka\AppData\LocalLow\{7FC6F390-EABD-CEAE-A852-7A67E0F56E48} deleted
C:\Users\jointsmouka\AppData\LocalLow\{B23A44B3-B68B-8688-F95C-1DFEA9B48C09} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{0E73A2A2-DBE3-A7B0-BDC7-15B6A17ECC7F} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{25906A22-63B0-F65D-5C59-10D004E1A459} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{7FC6F390-EABD-CEAE-A852-7A67E0F56E48} deleted
C:\Users\jointsmouka\AppData\Local\Packages\windows_ie_ac_001\AC\{1919252C-68B3-3334-DE0E-C4D44F7E1FA6} deleted
C:\Users\jointsmouka\AppData\Local\Packages\windows_ie_ac_001\AC\{49518363-9C6C-727E-B099-D535941C9266} deleted
C:\Users\jointsmouka\AppData\Local\Packages\windows_ie_ac_001\AC\{5D60961B-C1BC-8B08-7E8B-7E757C5298A4} deleted
C:\Users\jointsmouka\AppData\Local\Packages\windows_ie_ac_001\AC\{B23A44B3-B68B-8688-F95C-1DFEA9B48C09} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{0E73A2A2-DBE3-A7B0-BDC7-15B6A17ECC7F} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{25906A22-63B0-F65D-5C59-10D004E1A459} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{7FC6F390-EABD-CEAE-A852-7A67E0F56E48} deleted
C:\Users\jointsmouka\AppData\Local\18502 deleted
C:\PROGRA~3\DivX deleted
C:\Users\jointsmouka\.android deleted
C:\PROGRA~2\COMMON~1\Config\uninstinethnfd.exe deleted
C:\PROGRA~2\COMMON~1\Config deleted
C:\found.000 deleted
C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin deleted
C:\Users\jointsmouka\AppData\Roaming\GetRightToGo deleted
C:\PROGRA~3\InstallMate deleted
C:\Users\jointsmouka\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair deleted
C:\rei deleted
C:\Users\jointsmouka\Downloads\ReimageRepair (1).exe deleted
C:\Users\jointsmouka\Downloads\ReimageRepair (2).exe deleted
C:\Users\jointsmouka\Downloads\ReimageRepair (3).exe deleted
C:\Users\jointsmouka\Downloads\ReimageRepair.exe deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\BS_Player_ControlBar_B deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\JOINTS~1\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [25.02.2015 15:48]

==== Firefox Extensions ======================

ExtDir: C:\Users\jointsmouka\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
- GoPhotoIt - %ExtDir%\gophoto@gophoto.it.xpi

==== Firefox Plugins ======================


==== Deleted Firefox Extensions ======================

C:\Users\jointsmouka\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\gophoto@gophoto.it.xpi deleted

==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Guest\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Guest\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Guest\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\jointsmouka\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\LogMeInRemoteUser\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\LogMeInRemoteUser\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\LogMeInRemoteUser\AppData\Local\Comodo\Dragon deleted

==== Chromium Look ======================

Google Chrome Version: 40.0.2214.115 (Up to date, latest Stable version: 40.0.2214.115)

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[25.02.2015 12:12]

Torntv V9.0 - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmnbobhffedhdhfpcjkjphcfpeeiocdn

==== Chromium Fix ======================

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmnbobhffedhdhfpcjkjphcfpeeiocdn deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{BE0E22DF-7D17-4686-B73C-6DC95375082B} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_14875"
{C04B0473-4653-4FCA-8B5D-4B44A4B15F00} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_14875"

==== Reset Google Chrome ======================

C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\jointsmouka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=236 folders=72 16354780 bytes)

==== Empty Temp Folders ======================

C:\Users\Administrator\AppData\Local\temp emptied successfully
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Guest\AppData\Local\temp emptied successfully
C:\Users\HomeGroupUser$\AppData\Local\temp emptied successfully
C:\Users\jointsmouka\AppData\Local\Temp will be emptied at reboot
C:\Users\LogMeInRemoteUser\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\JOINTS~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on st 25.02.2015 at 17:37:55,79 ======================

Pridal jsem jeste jeden obrazek, kde je videt vyskakujici reklama
Přílohy
picture2.rar
(126.88 KiB) Staženo 29 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#30 Příspěvek od altrok »

Problem pretrvava i po zoeku? Dejte jeste novy FRST log.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Odpovědět