Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Hohosearch a MPCprotectService

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#16 Příspěvek od Mirko »

Tak jsem je odstranil, provedl restart, ale nadále ve správci úloh jsou věci, které tam nemají co dělat a navíc zabírají dost místa :( př. GeekBuddy, MPC protect service, Appfocser, MPCTray a nově i jakýsi AteredomkefispCchservice nebo co, a další :( Navíc MPC nejde nijak smazat a navzdory tomu, že domovskou stránku mám Seznam, tak po spuštění netu jako první vyskočí stránka toho MPC, až když zmáčknu "homepage", vrátí m ito seznam, ale vypadá to, že to v pořádku není :roll:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hohosearch a MPCprotectService

#17 Příspěvek od Rudy »

Zkuste ještě tyto skeny:

1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#18 Příspěvek od Mirko »

Prosím, jak tak asi dlouho trvá ten zoek?? Musím za chvíli vypnout počítač...Zkusím zatím ten druhý krok.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hohosearch a MPCprotectService

#19 Příspěvek od Rudy »

Mirko píše:Prosím, jak tak asi dlouho trvá ten zoek?? Musím za chvíli vypnout počítač...Zkusím zatím ten druhý krok.
Obvykle několik minut. Záleží na tom, jak mnoho souborů se nachází v nastavení prohlížečů. Lze ho spustit i v nouz. režimu, tam by měl být sken rychlejší.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#20 Příspěvek od Mirko »

ZAčal přesně v 18:00 a stále jede.. Dodávám aspoň JRT :) Hezký večer. Mj. když to ukončím, zítra se celý ten ZOEK spustí odznovu, nebo bude pokračovat současným stavem?

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.6 (04.25.2016)
Operating System: Microsoft Windows XP x86
Ran by Mirek (Administrator) on so 04.06.2016 at 21:33:07,22
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 9

Failed to delete: C:\Program Files\mpc cleaner (Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\86GOGHQO (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\OKM0Q8LD (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\U8JB3IUD (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\VMIN4BZ1 (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\86GOGHQO (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\OKM0Q8LD (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\U8JB3IUD (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\VMIN4BZ1 (Temporary Internet Files Folder)



Registry: 7

Failed to delete: HKLM\SYSTEM\CurrentControlSet\services\MPCKpt (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\SearchAssistant (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 04.06.2016 at 21:52:42,09
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hohosearch a MPCprotectService

#21 Příspěvek od Rudy »

Pokud to přerušíte, pojede to pak znovu. Zítra bych tu měl také být.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#22 Příspěvek od Mirko »

Tak konečně :)


Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by Mirek on so 04.06.2016 at 17:56:35,81.
Systém Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\Mirek\Plocha\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2016-04-29-181214.log 25391 bytes

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Suspicious Entries Found ======================

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008"
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"
"139:TCP"="139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002"

==== Empty Folders Check ======================

C:\Program Files\Nimaiedchdsp deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\WinRAR deleted successfully
C:\Documents and Settings\Mirek\Local Settings\Data aplikací\WMTools Downloaded Files deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} deleted successfully
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} deleted successfully
HKEY_USERS\S-1-5-21-861567501-842925246-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\winzipersvc deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\winzipersvc deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\winzipersvc deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\winzipersvc deleted successfully

==== FireFox Fix ======================

Deleted from C:\Documents and Settings\Mirek\Data aplikací\Profiles\chqqafpp.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.seznam.cz/");
user_pref("browser.newtab.url", "about:newtab");
user_pref("browser.search.defaultenginename", "cloudfront");
user_pref("browser.search.defaultenginename.US", "data:text/plain,browser.search.defaultenginename.US=cloudfront");
user_pref("keyword.URL", "undefined://undefined/");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Documents and Settings\Mirek\Data aplikací\Profiles\chqqafpp.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Documents and Settings\Mirek\Data aplikací\Profiles\yzzfdyu4.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.seznam.cz/");
user_pref("browser.newtab.url", "about:newtab");
user_pref("browser.search.defaultenginename", "cloudfront");
user_pref("browser.search.defaultenginename.US", "data:text/plain,browser.search.defaultenginename.US=cloudfront");
user_pref("keyword.URL", "undefined://undefined/");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Documents and Settings\Mirek\Data aplikací\Profiles\yzzfdyu4.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default\prefs.js:
user_pref("browser.startup.homepage", "search.mpc.am");
user_pref("browser.newtab.url", "about:newtab");

Added to C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Profiles\chqqafpp.default

user.js not found
---- Lines WebSearch removed from prefs.js ----
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
user_pref("extensions.mywebsearch.prevKwdURL", "http://d2ucfwpxlh3zh3.cloudfront.net/ch ... f1&ts=AHEq
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "46.0");
user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,
user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a877d");
user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016053117");
user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1465050511270");
user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"p
user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "http://d2ucfwpxlh3zh3.cloudfront.net/ch ... 2A1509F167
user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"file
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
---- FireFox user.js and prefs.js backups ----

prefs_04.06.2016_2048_.backup

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Profiles\yzzfdyu4.default

user.js not found
---- Lines WebSearch removed from prefs.js ----
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
user_pref("extensions.mywebsearch.prevKwdURL", "http://d2ucfwpxlh3zh3.cloudfront.net/ch ... f1&ts=AHEq
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "46.0");
user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,
user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a877d");
user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016053117");
user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1464893226892");
user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"p
user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "http://d2ucfwpxlh3zh3.cloudfront.net/ch ... 2A1509F167
user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"file
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
---- FireFox user.js and prefs.js backups ----

prefs_04.06.2016_2048_.backup

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_04.06.2016_2048_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\Nimaiedchdsp not found
C:\DOCUME~1\ALLUSE~1\DATAAP~1\AppfocserTs deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\AppfocserT deleted
C:\Documents and Settings\Mirek\Data aplikací\quickclick deleted
C:\Documents and Settings\Mirek\Data aplikací\AlawarEntertainment deleted
C:\Documents and Settings\Mirek\Data aplikací\eCyber deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\AlawarEntertainment deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\AlawarWrapper deleted
C:\Documents and Settings\Mirek\Local Settings\Data aplikací\3810282D-6C19-47B0-8283-5C6C29A7E108 deleted
C:\Documents and Settings\All Users\Nabídka Start\Programy\MPC deleted
C:\WINDOWS\Tasks\Browser Updater Task(Core).job deleted
C:\Documents and Settings\Mirek\Data aplikací\Profiles\chqqafpp.default\YourGSearchFinder_br deleted
C:\Documents and Settings\Mirek\Data aplikací\Profiles\yzzfdyu4.default\YourGSearchFinder_br deleted
"C:\Program Files\WinZipper\wzShellctx.dll" deleted
"C:\Program Files\MPC Cleaner\AdbWinApi.dll" not deleted
"C:\Program Files\MPC Cleaner\AdbWinUsbApi.dll" not deleted
"C:\Program Files\MPC Cleaner\AdcManager.dll" not deleted
"C:\Program Files\MPC Cleaner\AndriodServer.dll" not deleted
"C:\Program Files\MPC Cleaner\BrowserPlugIn.dll" not deleted
"C:\Program Files\MPC Cleaner\CeBase.dll" not deleted
"C:\Program Files\MPC Cleaner\Cleaner.dll" not deleted
"C:\Program Files\MPC Cleaner\CrashReport.exe" not deleted
"C:\Program Files\MPC Cleaner\Database.dll" not deleted
"C:\Program Files\MPC Cleaner\dbgkpt.dll" not deleted
"C:\Program Files\MPC Cleaner\isafechlp.dll" not deleted
"C:\Program Files\MPC Cleaner\LogReport.dll" not deleted
"C:\Program Files\MPC Cleaner\LpcManager.dll" not deleted
"C:\Program Files\MPC Cleaner\MainFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT.manifest" not deleted
"C:\Program Files\MPC Cleaner\Monitor.dll" not deleted
"C:\Program Files\MPC Cleaner\MPC.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCAutoClean.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCBS.dll" not deleted
"C:\Program Files\MPC Cleaner\MPCNews.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCProtectService.exe" not deleted
"C:\Program Files\MPC Cleaner\MpcSafeDll.dll" not deleted
"C:\Program Files\MPC Cleaner\MpcSafeDll64.dll" not deleted
"C:\Program Files\MPC Cleaner\MPCSecurity.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCSetting.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCTray.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCTray64.exe" not deleted
"C:\Program Files\MPC Cleaner\msvcm90.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcp110.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcp90.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcr110.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcr90.dll" not deleted
"C:\Program Files\MPC Cleaner\nmlct" not deleted
"C:\Program Files\MPC Cleaner\Report.dll" not deleted
"C:\Program Files\MPC Cleaner\SafeNavi.dll" not deleted
"C:\Program Files\MPC Cleaner\SafeNavi64.dll" not deleted
"C:\Program Files\MPC Cleaner\SafeProtect.dll" not deleted
"C:\Program Files\MPC Cleaner\SetupFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\snh.dll" not deleted
"C:\Program Files\MPC Cleaner\Support.dll" not deleted
"C:\Program Files\MPC Cleaner\symsrv.dll" not deleted
"C:\Program Files\MPC Cleaner\symsrv.yes" not deleted
"C:\Program Files\MPC Cleaner\TrayFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\Uninstall.exe" not deleted
"C:\Program Files\MPC Cleaner\UninstallFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\UninstDelete.exe" not deleted
"C:\Program Files\MPC Cleaner\Update.dll" not deleted
"C:\Program Files\MPC Cleaner\UpdateHost.exe" not deleted
"C:\Program Files\MPC Cleaner\Upgrade.dll" not deleted
"C:\Program Files\MPC Cleaner\Utility.dll" not deleted
"C:\Program Files\MPC Cleaner\Web.dll" not deleted
"C:\Program Files\MPC Cleaner\wfhxte.dat" not deleted
"C:\Program Files\MPC Cleaner\WinService.dll" not deleted
"C:\Program Files\MPC Cleaner\xadb.exe" not deleted
"C:\Program Files\MPC Cleaner\XBus.dll" not deleted
"C:\Program Files\MPC Cleaner\XProcessBus.dll" not deleted
"C:\Program Files\MPC Cleaner\XSkin.dll" not deleted
"C:\Program Files\MPC Cleaner\Config\Clean.xf" not deleted
"C:\Program Files\MPC Cleaner\Config\PlugIn.xf" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCBase.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCBase_32.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt.inf" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt_vista_32.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt_vista_64.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt_xp_32.sys" not deleted
"C:\Program Files\MPC Cleaner\Exe\ADC_qd00000.exe" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_gray.png" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g9.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q9.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r9.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_gray.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y9.png" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\as.db" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\cf.db" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\run.db" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\st.db" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{ADC520A9-B4B3-791E-B149-845C11673CB0}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{CDA529A9-B1B3-793E-B449-845C11673CB5}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{EDA029A1-B5BA-793E-B649-875C18673CC5}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{FDA029A2-A5BA-797E-B689-875E18673FC2}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\toasts_waring.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\adcapp.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\adcweb.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\block.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\home.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\ie.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\search.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\AR_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\AR_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\AR_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\Bp_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\Bp_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\Bp_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SpeedUp_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SpeedUp_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SpeedUp_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SVC_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SVC_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SVC_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\TSK_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\TSK_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\TSK_red.png" not deleted
"C:\Program Files\MPC Cleaner\Skin\Cleaner\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Cleaner\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\CrashReport\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\CrashReport\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\News\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\News\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Tray\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Tray\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Uninstall\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Uninstall\Skin.xf" not deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~1\?pidla Data Processing, s.r.o" not deleted
"C:\Program Files\WinZipper" not deleted
"C:\Program Files\MPC Cleaner" not deleted
"C:\Program Files\MPC Cleaner\Config" not deleted
"C:\Program Files\MPC Cleaner\Drivers" not deleted
"C:\Program Files\MPC Cleaner\Exe" not deleted
"C:\Program Files\MPC Cleaner\Image" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT" not deleted
"C:\Program Files\MPC Cleaner\Skin" not deleted
"C:\Program Files\MPC Cleaner\Config\DB" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon" not deleted
"C:\Program Files\MPC Cleaner\Skin\Cleaner" not deleted
"C:\Program Files\MPC Cleaner\Skin\CrashReport" not deleted
"C:\Program Files\MPC Cleaner\Skin\News" not deleted
"C:\Program Files\MPC Cleaner\Skin\Tray" not deleted
"C:\Program Files\MPC Cleaner\Skin\Uninstall" not deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Profiles\chqqafpp.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Profiles\yzzfdyu4.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [17.04.2010 18:34]

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Profiles\chqqafpp.default
- Undetermined - C:\Documents and Settings\Mirek\Data aplikacĂ­\Profiles\chqqafpp.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Profiles\yzzfdyu4.default
- Undetermined - C:\Documents and Settings\Mirek\Data aplikacĂ­\Profiles\yzzfdyu4.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default
- Undetermined - C:\Documents and Settings\Mirek\Data aplikacĂ­\Mozilla\Firefox\Profiles\81hyhscl.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default
D33D39A318AEA70691CED7530E2D9DF9 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
CFBC726A1712BD8DC9914EA06DBCE20B - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
7E54D1EC87CE306CB1A26CE59AFE6E37 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
421CB2C1010522B3BF7C00725520B844 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
005EBE4A4E6E9C9A7967F6C3F413C1DF - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
52CE0DBFD9738AE528CF525A0367EBEB - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
8E9A08E2092B3E1ADFF3C46BC1A5124B - C:\WINDOWS\system32\TVUAx\npTVUAx.dll - TVU Web Player for FireFox
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
A9191AE22A8F1287B5E2DF33E3A57253 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U51
9B10927CFD0F7AD39E40C0E34005B1AD - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.510.13
5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa
0843C70733E8CA876475123A6601630D - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility
9B2C4444F8B9A5302EA03AB97FD090F6 - C:\WINDOWS\npapi.dll - Alawar NPAPI utils
258693279212838A6A879A69A17BE215 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll - Shockwave Flash


==== Fake Chromium Profiles Check ======================

Fake profile C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome deleted
Fake profile C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome SxS deleted
Fake profile C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Comodo\Dragon deleted
Fake profile C:\Documents and Settings\Administrator.MIRA\Local Settings\Data aplikací\Google\Chrome deleted
Fake profile C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Torch deleted
Fake profile C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome deleted
Fake profile C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome SxS deleted
Fake profile C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Comodo\Dragon deleted
Fake profile C:\Documents and Settings\Guest\Local Settings\Data aplikací\Torch deleted
Fake profile C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome deleted
Fake profile C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome SxS deleted
Fake profile C:\Documents and Settings\Guest\Local Settings\Data aplikací\Comodo\Dragon deleted
Fake profile C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Torch deleted
Fake profile C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome deleted
Fake profile C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS deleted
Fake profile C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon deleted
Fake profile C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome SxS deleted
Fake profile C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Torch deleted
Fake profile C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome deleted
Fake profile C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS deleted
Fake profile C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon deleted

==== Chromium Look ======================

Game BOX - Mirek\Local Settings\Data aplikací\Yandex\YandexBrowser\User Data\Default\Extensions\mibfbmhijjgpkmobcfdlelpccpeafoom
Game BOX - Mirek\Data aplikací\Opera Software\Opera Stable\Extensions\mibfbmhijjgpkmobcfdlelpccpeafoom

==== Chromium Fix ======================

C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Yandex\YandexBrowser\User Data\Default\Extensions\mibfbmhijjgpkmobcfdlelpccpeafoom deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Extensions\mibfbmhijjgpkmobcfdlelpccpeafoom deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\chrome-extension_knohfebhibeknbfioecpdmdkjkjdnjnl_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\chrome-extension_knohfebhibeknbfioecpdmdkjkjdnjnl_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\chrome-extension_mibfbmhijjgpkmobcfdlelpccpeafoom_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\chrome-extension_mibfbmhijjgpkmobcfdlelpccpeafoom_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\chrome_startpage_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\chrome_startpage_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_twitter.com_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_twitter.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.google.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.google.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.seznam.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.seznam.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_data.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_data.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_ekonomika.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_ekonomika.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_fotbal.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_fotbal.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_go.idnes.bbelements.com_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_go.idnes.bbelements.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_hledej.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_hledej.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_hokej.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_hokej.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_kultura.zpravy.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_kultura.zpravy.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_ostrava.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_ostrava.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_revue.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_revue.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_sport.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_sport.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_vary.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_vary.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_video.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_video.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_www.eurofotbal.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_www.eurofotbal.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_www.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_www.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_zpravy.idnes.cz_0.localstorage deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Storage\http_zpravy.idnes.cz_0.localstorage-journal deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_ekonomika.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_fotbal.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_go.idnes.bbelements.com_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_hledej.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_hokej.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_kultura.zpravy.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_ostrava.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_revue.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_sport.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_vary.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_video.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_www.eurofotbal.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_www.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\databases\http_zpravy.idnes.cz_0 deleted successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Local Extension Settings\mibfbmhijjgpkmobcfdlelpccpeafoom deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"CustomizeSearch"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{ielnksrch}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Use Search Asst"="no"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{ielnksrch}"
HKLM\SearchScopes\ielnksrch - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBP-OqRkK_4g5H3zXx0q0ODQbbtxupCcfzV4atOwQs79eeAOdbp-xs-TE0bXnT_vxYQBlKUASlpUkT05sMW37__9LtHZIell9GIN8S30PrHcWpgUYj-cuU97Wzn89UHrpmpl1nsHOAeCZDaP0S10Ma3KZffuZKH2GpshhJ-LzLeLuuYJHGUf-E,&q={searchTerms}
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchT ... urceid=ie7
HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchT ... {startPage}
HKCU\SearchScopes\{CCBDD7BB-8A0D-41C3-BD8C-53102FC40FF7} - http://www.google.com/search?q={searchT ... 1I7SKPT_cs

==== Reset Google Chrome ======================

C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO\Dragon\User Data\Default\Preferences was reset successfully
C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Yandex\YandexBrowser\User Data\Default\Preferences was reset successfully
C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Yandex\YandexBrowser\User Data\Default\Preferences.old was reset successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Preferences was reset successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Preferences.old was reset successfully
C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO\Dragon\User Data\Default\Web Data was reset successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Web Data was reset successfully
C:\Documents and Settings\Mirek\Data aplikací\Opera Software\Opera Stable\Web Data-journal was reset successfully

==== shortcuts on All Users Desktop ======================

C:\Documents and Settings\All Users\Plocha\Czech Soccer Manager.lnk - C:\Program Files\Czech Soccer Manager\CzechSoccerManager.exe
C:\Documents and Settings\All Users\Plocha\FIFA 99.lnk - C:\Program Files\EA SPORTS\FIFA 99\fifa99.exe
C:\Documents and Settings\All Users\Plocha\Flight Simulator 2002.lnk - C:\Program Files\Microsoft Games\FS2002\fs2002.exe
C:\Documents and Settings\All Users\Plocha\FS Repaint v2.lnk - C:\WINDOWS\Installer\{14282D93-6BD9-4681-8D7D-7677390A0425}\_6FC3E238C4C9_4577_A436_E45CD7DBFB9B.exe
C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Documents and Settings\All Users\Plocha\Zoo Tycoon.lnk - C:\Program Files\Microsoft Games\Zoo Tycoon\zoo.exe

==== shortcuts in Users Start Menu ======================

C:\Documents and Settings\Default User\Nabídka Start\Programy\Vzdálená pomoc.lnk - C:\WINDOWS\system32\rcimlby.exe -LaunchRA
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Poznámkový blok.lnk - C:\WINDOWS\system32\notepad.exe
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Průzkumník Windows.lnk - C:\WINDOWS\explorer.exe
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Příkazový řádek.lnk - C:\WINDOWS\system32\cmd.exe
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Synchronizovat.lnk - C:\WINDOWS\system32\mobsync.exe
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Usnadnění\Klávesnice na obrazovce.lnk - C:\WINDOWS\system32\osk.exe
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Usnadnění\Lupa.lnk - C:\WINDOWS\system32\magnify.exe
C:\Documents and Settings\Default User\Nabídka Start\Programy\Příslušenství\Usnadnění\Správce nástrojů.lnk - C:\WINDOWS\system32\utilman.exe /start
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe "http://trustedsurf.com/?ssid=1464708332 ... 878491fce4"
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Vzdálená pomoc.lnk - C:\WINDOWS\system32\rcimlby.exe -LaunchRA
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Hry.cz\Pozadí legend Tajemství Olympu.lnk - C:\Program Files\Hry.cz\Beyond the Legend Mysteries of Olympus\MysteriesofOlympus.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Hry.cz\V jednom městě.lnk - C:\Program Files\Hry.cz\Country Tales\ctales.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Průzkumník Windows.lnk - C:\WINDOWS\explorer.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Příkazový řádek.lnk - C:\WINDOWS\system32\cmd.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Synchronizovat.lnk - C:\WINDOWS\system32\mobsync.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (bez doplňků).lnk - C:\Program Files\Internet Explorer\iexplore.exe "http://trustedsurf.com/?ssid=1464708332 ... 878491fce4"
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (Žádné doplňky).lnk - C:\Program Files\Internet Explorer\iexplore.exe "http://trustedsurf.com/?ssid=1464708332 ... 878491fce4"
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Usnadnění\Lupa.lnk - C:\WINDOWS\system32\magnify.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Usnadnění\Správce nástrojů.lnk - C:\WINDOWS\system32\utilman.exe /start

==== shortcuts in All Users Start Menu ======================

C:\Documents and Settings\All Users\Nabídka Start\Přístup a výchozí nastavení programů.lnk - C:\WINDOWS\system32\control.exe appwiz.cpl,,3
C:\Documents and Settings\All Users\Nabídka Start\Programy\Opera.lnk - C:\Program Files\Opera\launcher.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Czech Soccer Manager.lnk - C:\Program Files\Czech Soccer Manager\CzechSoccerManager.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Odinstalovat Czech Soccer Manager.lnk - C:\Program Files\Czech Soccer Manager\Uninstal.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Prohlizec Karier.lnk - C:\Program Files\Czech Soccer Manager\ProhlizecKarier.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Editace Hry\Data Editor.lnk - C:\Program Files\Czech Soccer Manager\editor\DataEditor.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Editace Hry\Editacni manual.lnk - C:\Program Files\Czech Soccer Manager\editor\EditacniManual.pdf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Editace Hry\Editor Scenaru.lnk - C:\Program Files\Czech Soccer Manager\editor\EditorScenaru.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Editace Hry\League Compiler.lnk - C:\Program Files\Czech Soccer Manager\editor\LeagueCompiler.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Editace Hry\Manual Editace Scenaru.lnk - C:\Program Files\Czech Soccer Manager\editor\EditorScenaruNavod.pdf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Czech Soccer Manager\Editace Hry\Team Editor.lnk - C:\Program Files\Czech Soccer Manager\editor\TeamEditor.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hry\FreeCell.lnk - C:\WINDOWS\system32\freecell.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hry\Hledání min.lnk - C:\WINDOWS\system32\winmine.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hry\Solitaire.lnk - C:\WINDOWS\system32\sol.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hry\Spider Solitaire.lnk - C:\WINDOWS\system32\spider.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hry\Srdce.lnk - C:\WINDOWS\system32\mshearts.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware Help.lnk - C:\Program Files\Malwarebytes' Anti-Malware\mbam.chm
C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes' Anti-Malware\Odinstalovat aplikaci Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes' Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\chameleon.chm
C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Games\Zoo Tycoon\Uninstall.lnk - C:\Program Files\Microsoft Games\Zoo Tycoon\Uninstal.exe /runtemp
C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Games\Zoo Tycoon\Zoo Tycoon Readme.lnk - C:\Program Files\Microsoft Games\Zoo Tycoon\Readme.rtf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Games\Zoo Tycoon\Zoo Tycoon.lnk - C:\Program Files\Microsoft Games\Zoo Tycoon\zoo.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu\Datové zdroje (ODBC).lnk - C:\WINDOWS\system32\odbcad32.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu\Místní zásady zabezpečení.lnk - C:\WINDOWS\system32\secpol.msc /s
C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu\Prohlížeč událostí.lnk - C:\WINDOWS\system32\eventvwr.msc /s
C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu\Služby.lnk - C:\WINDOWS\system32\services.msc /s
C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu\Správa počítače.lnk - C:\WINDOWS\system32\compmgmt.msc /s
C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu\Výkon.lnk - C:\WINDOWS\system32\perfmon.msc /s
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Připojení ke vzdálené ploše.lnk - C:\WINDOWS\system32\mstsc.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Komunikace\Průvodce instalací bezdrátové sítě.lnk - C:\WINDOWS\system32\rundll32.exe shell32.dll,Control_RunDLL NetSetup.cpl,@0,WNSW
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Komunikace\Průvodce instalací sítě.lnk - C:\WINDOWS\system32\rundll32.exe hnetwiz.dll,HomeNetWizardRunDll
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Komunikace\Průvodce vytvořením připojení.lnk - C:\WINDOWS\system32\rundll32.exe netshell.dll,StartNCW
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Komunikace\Síťová připojení.lnk - C:\WINDOWS\explorer.exe ::{20D04FE0-3AEA-1069-A2D8-08002B30309D}\::{21EC2020-3AEA-1069-A2DD-08002B30309D}\::{7007acc7-3202-11d1-aad2-00805fc1270e}
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Centrum zabezpečení.lnk - C:\WINDOWS\system32\wscui.cpl
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Mapa znaků.lnk - C:\WINDOWS\system32\charmap.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Naplánované úlohy.lnk - C:\WINDOWS\explorer.exe ::{20D04FE0-3AEA-1069-A2D8-08002B30309D}\::{21EC2020-3AEA-1069-A2DD-08002B30309D}\::{D6277990-4C6A-11CF-8D87-00AA0060F5BF}
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Obnovení systému.lnk - C:\WINDOWS\system32\restore\rstrui.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Průvodce přenesením souborů a nastavení.lnk - C:\WINDOWS\system32\usmt\migwiz.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Zálohování.lnk - C:\WINDOWS\system32\ntbackup.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Usnadnění\Průvodce funkcemi usnadnění.lnk - C:\WINDOWS\system32\accwiz.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Zábava\Ovládání hlasitosti.lnk - C:\WINDOWS\system32\sndvol32.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Příslušenství\Zábava\Záznam zvuku.lnk - C:\WINDOWS\system32\sndrec32.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows PowerShell 1.0\Getting Started.lnk - C:\WINDOWS\system32\WindowsPowerShell\v1.0\gettingStarted.rtf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows PowerShell 1.0\Quick Reference.lnk - C:\WINDOWS\system32\WindowsPowerShell\v1.0\quadfold.rtf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows PowerShell 1.0\Release Notes.lnk - C:\WINDOWS\system32\WindowsPowerShell\v1.0\releaseNotes.rtf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows PowerShell 1.0\User Guide.lnk - C:\WINDOWS\system32\WindowsPowerShell\v1.0\userGuide.rtf
C:\Documents and Settings\All Users\Nabídka Start\Programy\Windows PowerShell 1.0\Windows PowerShell.lnk - C:\WINDOWS\system32\WindowsPowerShell\v1.0\powershell.exe
C:\Documents and Settings\All Users\Nabídka Start\Programy\WinZip\Uninstall.lnk - C:\Program Files\WinZipper\wzUninstall.exe

==== shortcuts in Quick Launch ======================

C:\Documents and Settings\Default User\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Default User\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Postranní panel systému Windows.lnk - C:\Program Files\Windows Sidebar\sidebar.exe
C:\Documents and Settings\Mirek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox (2).lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Mirek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Opera.lnk - C:\Program Files\Opera\launcher.exe "http://trustedsurf.com/?ssid=1464708332 ... 878491fce4"
C:\Documents and Settings\Mirek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Documents and Settings\Mirek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Zástupce - Realtek HD Sound Effect Manager.lnk -

==== shortcuts After Repair ======================

C:\Documents and Settings\Mirek\Nabídka Start\Programy\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (bez doplňků).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (Žádné doplňky).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Mirek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Opera.lnk - C:\Program Files\Opera\launcher.exe

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\a8cb78e8-a886-4df9-bc01-cdf648389977 deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Administrator.MIRA\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\Mirek\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default\cache2 emptied successfully
C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default\storage\default\https+++twitter.com\cache emptied successfully
C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\81hyhscl.default\storage\default\https+++www.amateri.com\cache emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Opera Software\Opera Stable\Cache emptied successfully
C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO\Dragon\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1271 folders=1187 237940083 bytes)

==== Empty Temp Folders ======================

C:\Documents and Settings\Administrator.MIRA\Local Settings\Temp emptied successfully
C:\Documents and Settings\Default User\Local Settings\Temp emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temp will be emptied at reboot
C:\Documents and Settings\Mirek\Local Settings\Temp will be emptied at reboot
C:\Documents and Settings\NetworkService\Local Settings\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\Mirek\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Program Files\MPC Cleaner\AdbWinApi.dll" not deleted
"C:\Program Files\MPC Cleaner\AdbWinUsbApi.dll" not deleted
"C:\Program Files\MPC Cleaner\AdcManager.dll" not deleted
"C:\Program Files\MPC Cleaner\AndriodServer.dll" not deleted
"C:\Program Files\MPC Cleaner\BrowserPlugIn.dll" not deleted
"C:\Program Files\MPC Cleaner\CeBase.dll" not deleted
"C:\Program Files\MPC Cleaner\Cleaner.dll" not deleted
"C:\Program Files\MPC Cleaner\CrashReport.exe" not deleted
"C:\Program Files\MPC Cleaner\Database.dll" not deleted
"C:\Program Files\MPC Cleaner\dbgkpt.dll" not deleted
"C:\Program Files\MPC Cleaner\isafechlp.dll" not deleted
"C:\Program Files\MPC Cleaner\LogReport.dll" not deleted
"C:\Program Files\MPC Cleaner\LpcManager.dll" not deleted
"C:\Program Files\MPC Cleaner\MainFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT.manifest" not deleted
"C:\Program Files\MPC Cleaner\Monitor.dll" not deleted
"C:\Program Files\MPC Cleaner\MPC.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCAutoClean.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCBS.dll" not deleted
"C:\Program Files\MPC Cleaner\MPCNews.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCProtectService.exe" not deleted
"C:\Program Files\MPC Cleaner\MpcSafeDll.dll" not deleted
"C:\Program Files\MPC Cleaner\MpcSafeDll64.dll" not deleted
"C:\Program Files\MPC Cleaner\MPCSecurity.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCSetting.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCTray.exe" not deleted
"C:\Program Files\MPC Cleaner\MPCTray64.exe" not deleted
"C:\Program Files\MPC Cleaner\msvcm90.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcp110.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcp90.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcr110.dll" not deleted
"C:\Program Files\MPC Cleaner\msvcr90.dll" not deleted
"C:\Program Files\MPC Cleaner\nmlct" not deleted
"C:\Program Files\MPC Cleaner\Report.dll" not deleted
"C:\Program Files\MPC Cleaner\SafeNavi.dll" not deleted
"C:\Program Files\MPC Cleaner\SafeNavi64.dll" not deleted
"C:\Program Files\MPC Cleaner\SafeProtect.dll" not deleted
"C:\Program Files\MPC Cleaner\SetupFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\snh.dll" not deleted
"C:\Program Files\MPC Cleaner\Support.dll" not deleted
"C:\Program Files\MPC Cleaner\symsrv.dll" not deleted
"C:\Program Files\MPC Cleaner\symsrv.yes" not deleted
"C:\Program Files\MPC Cleaner\TrayFrame.dll" deleted
"C:\Program Files\MPC Cleaner\Uninstall.exe" not deleted
"C:\Program Files\MPC Cleaner\UninstallFrame.dll" not deleted
"C:\Program Files\MPC Cleaner\UninstDelete.exe" not deleted
"C:\Program Files\MPC Cleaner\Update.dll" not deleted
"C:\Program Files\MPC Cleaner\UpdateHost.exe" not deleted
"C:\Program Files\MPC Cleaner\Upgrade.dll" not deleted
"C:\Program Files\MPC Cleaner\Utility.dll" not deleted
"C:\Program Files\MPC Cleaner\Web.dll" not deleted
"C:\Program Files\MPC Cleaner\wfhxte.dat" not deleted
"C:\Program Files\MPC Cleaner\WinService.dll" not deleted
"C:\Program Files\MPC Cleaner\xadb.exe" not deleted
"C:\Program Files\MPC Cleaner\XBus.dll" not deleted
"C:\Program Files\MPC Cleaner\XProcessBus.dll" not deleted
"C:\Program Files\MPC Cleaner\XSkin.dll" not deleted
"C:\Program Files\MPC Cleaner\Config\Clean.xf" not deleted
"C:\Program Files\MPC Cleaner\Config\PlugIn.xf" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCBase.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCBase_32.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt.inf" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt_vista_32.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt_vista_64.sys" not deleted
"C:\Program Files\MPC Cleaner\Drivers\MPCKpt_xp_32.sys" not deleted
"C:\Program Files\MPC Cleaner\Exe\ADC_qd00000.exe" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_gray.png" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\ad_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\g9.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\q9.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\r9.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_gray.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\sys_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y1.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y10.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y11.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y12.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y2.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y3.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y4.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y5.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y6.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y7.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y8.png" not deleted
"C:\Program Files\MPC Cleaner\Image\y9.png" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll" not deleted
"C:\Program Files\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\as.db" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\cf.db" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\run.db" not deleted
"C:\Program Files\MPC Cleaner\Config\DB\st.db" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{ADC520A9-B4B3-791E-B149-845C11673CB0}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{CDA529A9-B1B3-793E-B449-845C11673CB5}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{EDA029A1-B5BA-793E-B649-875C18673CC5}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\search_{FDA029A2-A5BA-797E-B689-875E18673FC2}.ico" not deleted
"C:\Program Files\MPC Cleaner\Image\SearchIcon\toasts_waring.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\adcapp.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\adcweb.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\block.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\home.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\ie.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SgIcon\search.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\AR_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\AR_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\AR_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\Bp_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\Bp_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\Bp_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SpeedUp_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SpeedUp_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SpeedUp_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SVC_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SVC_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\SVC_red.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\TSK_green.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\TSK_org.png" not deleted
"C:\Program Files\MPC Cleaner\Image\SoIcon\TSK_red.png" not deleted
"C:\Program Files\MPC Cleaner\Skin\Cleaner\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Cleaner\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\CrashReport\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\CrashReport\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\News\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\News\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Tray\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Tray\Skin.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Uninstall\Lang.xf" not deleted
"C:\Program Files\MPC Cleaner\Skin\Uninstall\Skin.xf" not deleted
"C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\Mirek\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\DOCUME~1\ALLUSE~1\DATAAP~1\?pidla Data Processing, s.r.o" not deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~1\?pidla Data Processing, s.r.o" not deleted
"C:\Program Files\WinZipper" not found
"C:\Program Files\MPC Cleaner" not deleted
"C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies" not found
"C:\Documents and Settings\LocalService\Local Settings\Temp\History" not found
"C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files" not found

==== EOF on so 04.06.2016 at 22:40:57,06 ======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hohosearch a MPCprotectService

#23 Příspěvek od Rudy »

OK. Jak to vypadá nyní?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#24 Příspěvek od Mirko »

Popravdě dost divně.. Přestalo mi to sice sam ood sebe házet na nevyžádané odkazy v novém panelu, ale při spuštění netu stále hohosearch, MPT stále v správci úloh a např. takové označení slova a klepnutí pravé myši mi to již nenabízí vyhledat googlem, ale pomocí "cloudfront" :cry:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hohosearch a MPCprotectService

#25 Příspěvek od Rudy »

Zkuste Start>spustit>(napsat) msconfig>OK. Podívejte se do záložek "Po spuštění" a "Služby" a odstraťe zatržítka. Nastavení uložte a restartujte. Ze všech logů vyplývá, že šmejd byl smazán.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#26 Příspěvek od Mirko »

Díky za tip. Mohu odškrtnout všechny??

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hohosearch a MPCprotectService

#27 Příspěvek od Rudy »

Jak všechny? Myslel jsem pouze Hohosearch a MPCprotectService. To ostatní ve většině případů běžet musí.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#28 Příspěvek od Mirko »

Dobrý den, já toho odfajfkoval více, ale s tím, se zdá, problém není. Dokonce je nabíhání windows rychlejší. Toho MPC se ne a ne zbavit, ale to taky ať vezme čert, ale při spuštění mozilly nadále první stránkou HOHOSEARCH, až poté, co zmáčknu domeček, tak mi to najede na seznam. A dost často když na něco kliknu, tak mě to automaticky hodí na nějakou pochybnou stránku :( redirect! M.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15797
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Hohosearch a MPCprotectService

#29 Příspěvek od JaRon »

zaskocim jednorazovo:
pouzi Avenger - jeho script:
Folders to delete:
C:\Program Files\MPC Cleaner
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Mirko
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 22 říj 2015 15:25

Re: Hohosearch a MPCprotectService

#30 Příspěvek od Mirko »

Zdravím vás...ale nejde to, píše to chybovou hlášku..
Přílohy
avengerscreen.JPG
avengerscreen.JPG (60.71 KiB) Zobrazeno 3092 x

Zamčeno