
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vyskakování nevyžádaných oken v Google chrome
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vyskakování nevyžádaných oken v Google chrome
Dobrý den.
Po jednom dni, co přítelkyně sledovala online filmy, začali v google chrome vyskakovat nevyžádaná okna. Hned mě napadlo, že jde o nějakou havěť. Provedl jsem test Avg a zobrazil 47 souborů, které přesměrovaly import. Nechal jsem je odstranit, pc restartoval, test Avg spustil znovu a opět nalezeno těch samých 47 souborů. Zde je výpis ze zprávy:
"";"pci.sys, přesměrovaný import ntoskrnl.exe IoDetachDevice -> spvc.sys +0x625DC, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"pci.sys, přesměrovaný import ntoskrnl.exe IoAttachDeviceToDeviceStack -> spvc.sys +0x62650, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_WRITE -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_SYSTEM_CONTROL -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_SHUTDOWN -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_READ -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_POWER -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_PNP -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_INTERNAL_DEVICE_CONTROL -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_FLUSH_BUFFERS -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_DEVICE_CONTROL -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_CREATE -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_CLEANUP -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_WRITE -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SHUTDOWN -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_VOLUME_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_SECURITY -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_QUOTA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_EA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_READ -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_VOLUME_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_SECURITY -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_QUOTA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_EA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_PNP -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_LOCK_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_FLUSH_BUFFERS -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_FILE_SYSTEM_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_DIRECTORY_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_DEVICE_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_CREATE -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_CLOSE -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_CLEANUP -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_SYSTEM_CONTROL -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_POWER -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_PNP -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_INTERNAL_DEVICE_CONTROL -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_DEVICE_CONTROL -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_CREATE -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_CLOSE -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"Inline hook ataport.SYS DllUnload -> spvc.sys +0x5E360, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortWritePortUchar -> spvc.sys +0x2DA24, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortWritePortBufferUshort -> spvc.sys +0x2DBA0, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortReadPortUchar -> spvc.sys +0x2D224, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortReadPortBufferUshort -> spvc.sys +0x2D35C, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
Tak jsem si nainstaloval Malwarebytes Anti-Malware a spustil scan. Našel 2 škodlivé soubory, které jsem nechal odstranit. Pc jsem restartoval, test opakoval a opět nalezeny stejný 2 škodlivý soubory. Zde je výpis ze zprávy:
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Datum skenování: 10.1.2017
Čas skenování: 19:06
Protokol: Malwarebytes Anti-Malware.txt
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2017.01.10.06
Databáze rootkitů: v2016.11.20.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Zeed
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 327805
Uplynulý čas: 9 min, 41 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 2
PUP.Optional.CrossRider, C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d19tqk5t6qcjac.cloudfront.net_0.localstorage, Do karantény, [89b5f5853a6e2610ae32177506fdab55],
PUP.Optional.CrossRider, C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d19tqk5t6qcjac.cloudfront.net_0.localstorage-journal, Do karantény, [8fafbfbbaafe57dfa13f91fb669d659b],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Prosím o pomoc, protože mám tušení, že jsem se té havěti stále nezbavil. Děkuji a níže zasílám log FRST.
Po jednom dni, co přítelkyně sledovala online filmy, začali v google chrome vyskakovat nevyžádaná okna. Hned mě napadlo, že jde o nějakou havěť. Provedl jsem test Avg a zobrazil 47 souborů, které přesměrovaly import. Nechal jsem je odstranit, pc restartoval, test Avg spustil znovu a opět nalezeno těch samých 47 souborů. Zde je výpis ze zprávy:
"";"pci.sys, přesměrovaný import ntoskrnl.exe IoDetachDevice -> spvc.sys +0x625DC, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"pci.sys, přesměrovaný import ntoskrnl.exe IoAttachDeviceToDeviceStack -> spvc.sys +0x62650, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_WRITE -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_SYSTEM_CONTROL -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_SHUTDOWN -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_READ -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_POWER -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_PNP -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_INTERNAL_DEVICE_CONTROL -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_FLUSH_BUFFERS -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_DEVICE_CONTROL -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_CREATE -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\volmgr.sys IRP_MJ_CLEANUP -> spvc.sys +0x40B00, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_WRITE -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SHUTDOWN -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_VOLUME_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_SECURITY -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_QUOTA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_SET_EA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_READ -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_VOLUME_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_SECURITY -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_QUOTA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_INFORMATION -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_QUERY_EA -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_PNP -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_LOCK_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_FLUSH_BUFFERS -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_FILE_SYSTEM_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_DIRECTORY_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_DEVICE_CONTROL -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_CREATE -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_CLOSE -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\System32\Drivers\Ntfs.sys IRP_MJ_CLEANUP -> spvc.sys +0x3FB68, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_SYSTEM_CONTROL -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_POWER -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_PNP -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_INTERNAL_DEVICE_CONTROL -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_DEVICE_CONTROL -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_CREATE -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"IRP hook, C:\Windows\system32\drivers\atapi.sys IRP_MJ_CLOSE -> spvc.sys +0x413C4, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"Inline hook ataport.SYS DllUnload -> spvc.sys +0x5E360, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortWritePortUchar -> spvc.sys +0x2DA24, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortWritePortBufferUshort -> spvc.sys +0x2DBA0, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortReadPortUchar -> spvc.sys +0x2D224, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
"";"atapi.sys, přesměrovaný import ataport.SYS AtaPortReadPortBufferUshort -> spvc.sys +0x2D35C, C:\Windows\System32\Drivers\spvc.sys";"Zabezpečeno"
Tak jsem si nainstaloval Malwarebytes Anti-Malware a spustil scan. Našel 2 škodlivé soubory, které jsem nechal odstranit. Pc jsem restartoval, test opakoval a opět nalezeny stejný 2 škodlivý soubory. Zde je výpis ze zprávy:
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Datum skenování: 10.1.2017
Čas skenování: 19:06
Protokol: Malwarebytes Anti-Malware.txt
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2017.01.10.06
Databáze rootkitů: v2016.11.20.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Zeed
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 327805
Uplynulý čas: 9 min, 41 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 2
PUP.Optional.CrossRider, C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d19tqk5t6qcjac.cloudfront.net_0.localstorage, Do karantény, [89b5f5853a6e2610ae32177506fdab55],
PUP.Optional.CrossRider, C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d19tqk5t6qcjac.cloudfront.net_0.localstorage-journal, Do karantény, [8fafbfbbaafe57dfa13f91fb669d659b],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Prosím o pomoc, protože mám tušení, že jsem se té havěti stále nezbavil. Děkuji a níže zasílám log FRST.
Re: Vyskakování nevyžádaných oken v Google chrome
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-01-2017
Ran by Zeed (administrator) on ZEED-PC (10-01-2017 20:48:19)
Running from C:\Users\Zeed\Desktop
Loaded Profiles: Zeed (Available Profiles: Zeed)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe
(© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe
() C:\Windows\SysWOW64\Codecs\TrayMenu.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
() C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Zeed\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1793736 2015-02-19] (NVIDIA Corporation)
HKLM\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [415680 2012-02-05] (Autodesk, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2180680 2016-09-18] ()
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2171904 2009-06-05] (VIA)
HKLM-x32\...\Run: [Codec Settings UAC Manager] => C:\Windows\SysWOW64\Codecs\CodecUACManager.exe [61728 2016-04-05] ()
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd)
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\Run: [Codec Pack Update Checker] => "C:\Windows\system32\Codecs\UpdateChecker.exe"
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\Policies\Explorer: []
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\MountPoints2: {88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} - G:\SETUP.EXE
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2012-02-07] (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [Správa překryvné ikony digitálních podpisů AutoCADu ] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2012-02-07] (Autodesk, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk [2016-07-24]
ShortcutTarget: CodecPackTrayMenu.lnk -> C:\Windows\SysWOW64\Codecs\TrayMenu.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{545555B3-1385-4357-B400-0C7AB73F92A1}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-08-05] (pdfforge GmbH)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.3.6.255\AVG Web TuneUp.dll [2016-09-18] (AVG)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-08-05] (pdfforge GmbH)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-11-06] [not signed]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-08-05] (pdfforge GmbH)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> mysearch.avg.com/?rvt=1
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR DefaultSearchURL: Default -> hxxps://mysearch.avg.com/search?rvt=1&sap=dsp&q={searchTerms}
CHR DefaultSearchKeyword: Default -> https://mysearch.avg.com
CHR DefaultSuggestURL: Default -> hxxps://toolbar.avg.com/acp?q={searchTerms}&o=1
CHR Profile: C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default [2017-01-10]
CHR Extension: (Prezentace Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-01]
CHR Extension: (Dokumenty Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-01]
CHR Extension: (Disk Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-24]
CHR Extension: (YouTube) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-04]
CHR Extension: (AVG Secure Search) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2016-01-28]
CHR Extension: (Vyhledávání Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-29]
CHR Extension: (Tabulky Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-01]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (FormApps Chrome Extension) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2016-08-18]
CHR Extension: (Copy clean Links) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccgphdljaoibmimmngmeehgdocpcajn [2017-01-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-01]
CHR Extension: (Chrome Media Router) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-16]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [19232 2012-01-31] (Autodesk, Inc.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [971160 2016-12-15] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5337600 2016-12-15] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [725976 2016-12-15] (AVG Technologies CZ, s.r.o.)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2438880 2016-08-05] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-08-05] (pdfforge GmbH)
R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-08-05] (pdfforge GmbH)
R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [972056 2016-05-18] (© pdfforge GmbH.)
R2 vToolbarUpdater40.3.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe [1349704 2016-09-18] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [980552 2016-09-18] ()
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [312576 2016-11-04] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [298240 2016-11-30] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [254208 2016-09-26] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
S3 HtcVCom32; C:\Windows\System32\DRIVERS\HtcVComV64.sys [121800 2010-03-09] (QUALCOMM Incorporated)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-05-14] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2016-03-06] () [File not signed]
U3 a1aiy7pg; C:\Windows\System32\Drivers\a1aiy7pg.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-10 20:48 - 2017-01-10 20:48 - 00015630 _____ C:\Users\Zeed\Desktop\FRST.txt
2017-01-10 20:47 - 2017-01-10 20:48 - 00000000 ____D C:\FRST
2017-01-10 20:43 - 2017-01-10 20:43 - 00112640 _____ (forum.viry.cz) C:\Users\Zeed\Desktop\FRSTLauncher.exe
2017-01-10 20:27 - 2017-01-10 20:27 - 02419200 _____ (Farbar) C:\Users\Zeed\Desktop\FRST64.exe
2017-01-10 20:17 - 2017-01-10 20:17 - 00001545 _____ C:\Users\Zeed\Desktop\Malwarebytes Anti-Malware.txt
2017-01-10 20:09 - 2017-01-10 20:13 - 00006800 _____ C:\Users\Zeed\Desktop\AVG.txt
2017-01-10 17:22 - 2017-01-10 20:13 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-01-10 17:21 - 2017-01-10 17:21 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2017-01-10 17:21 - 2017-01-10 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2017-01-10 17:21 - 2017-01-10 17:21 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-10 17:21 - 2017-01-10 17:21 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2017-01-10 17:21 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2017-01-10 17:21 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2017-01-10 17:21 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-01-10 17:18 - 2017-01-10 17:19 - 30303344 _____ C:\Users\Zeed\Downloads\mbam-setup-2.2.1.1043.exe
2017-01-10 17:08 - 2017-01-10 18:21 - 00004964 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Zeed-PC-Zeed Zeed-PC
2017-01-03 17:24 - 2017-01-07 00:17 - 00010932 _____ C:\Users\Zeed\Desktop\PC.xlsx
2017-01-01 19:12 - 2017-01-01 19:53 - 716111872 _____ C:\Users\Zeed\Downloads\Jak-ztratit-kluka-v-10-dnech-2003.avi
2016-12-29 21:38 - 2017-01-05 20:09 - 00000694 _____ C:\Users\Zeed\Desktop\PC.txt
2016-12-21 17:45 - 2016-12-21 17:45 - 00301489 _____ C:\Users\Zeed\Downloads\479874529.pdf
2016-12-15 18:00 - 2016-12-15 18:00 - 00000000 ____D C:\Users\Zeed\AppData\Local\ElevatedDiagnostics
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-10 18:08 - 2009-07-14 05:45 - 00020496 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-01-10 18:08 - 2009-07-14 05:45 - 00020496 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-01-10 18:00 - 2016-06-30 21:28 - 00000000 ____D C:\Users\Zeed\AppData\Local\HTC MediaHub
2017-01-10 18:00 - 2015-04-01 19:31 - 00000000 ____D C:\ProgramData\MFAData
2017-01-10 17:59 - 2015-04-08 22:46 - 00000000 ____D C:\ProgramData\NVIDIA
2017-01-10 17:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-09 19:21 - 2016-11-13 20:04 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2017-01-02 19:18 - 2015-04-01 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-12-22 20:01 - 2011-04-12 09:34 - 00668540 _____ C:\Windows\system32\perfh005.dat
2016-12-22 20:01 - 2011-04-12 09:34 - 00141200 _____ C:\Windows\system32\perfc005.dat
2016-12-22 20:01 - 2009-07-14 06:13 - 01583214 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-22 20:01 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\System32
2016-12-22 20:01 - 2009-07-14 03:36 - 00653928 _____ C:\Windows\system32\perfh009.dat
2016-12-22 20:01 - 2009-07-14 03:36 - 00121800 _____ C:\Windows\system32\perfc009.dat
2016-12-19 19:55 - 2015-04-01 19:28 - 00000000 ___SD C:\Users\Zeed\AppData\Roaming\Microsoft
2016-12-19 19:55 - 2015-04-01 19:28 - 00000000 ___HD C:\Users\Zeed\AppData
2016-12-17 00:07 - 2015-04-01 21:15 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-17 00:07 - 2015-04-01 21:15 - 00003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-17 00:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Tasks
2016-12-14 23:10 - 2015-04-01 21:17 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-14 22:35 - 2015-10-17 22:05 - 00000000 ____D C:\Users\Zeed\Desktop\At Jezisek neco si vybere a donese
2016-12-13 19:12 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\catroot2
2016-12-11 12:32 - 2015-11-21 16:53 - 00000105 _____ C:\Users\Zeed\Desktop\Filmy - ulozto.txt
==================== Files in the root of some directories =======
2016-12-07 21:56 - 2016-12-07 21:56 - 0007601 _____ () C:\Users\Zeed\AppData\Local\Resmon.ResmonCfg
2015-04-15 20:43 - 2015-04-15 20:43 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
Some files in TEMP:
====================
C:\Users\Zeed\AppData\Local\Temp\ose00000.exe
C:\Users\Zeed\AppData\Local\Temp\ose00001.exe
C:\Users\Zeed\AppData\Local\Temp\ose00002.exe
C:\Users\Zeed\AppData\Local\Temp\ose00003.exe
C:\Users\Zeed\AppData\Local\Temp\ose00004.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-01-03 20:55
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:152.04 GB) (Free:87.42 GB) NTFS
Drive d: (Data) (Fixed) (Total:145.95 GB) (Free:132.53 GB) NTFS
Available physical RAM: 770.36 MB
Total physical RAM: 2047.18 MB
Percentage of memory in use: 62%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 30273026)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=152 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=145.9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus Free Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Zeed\Desktop" je 6 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Ran by Zeed (administrator) on ZEED-PC (10-01-2017 20:48:19)
Running from C:\Users\Zeed\Desktop
Loaded Profiles: Zeed (Available Profiles: Zeed)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe
(© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe
() C:\Windows\SysWOW64\Codecs\TrayMenu.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
() C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Zeed\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1793736 2015-02-19] (NVIDIA Corporation)
HKLM\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [415680 2012-02-05] (Autodesk, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2180680 2016-09-18] ()
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2171904 2009-06-05] (VIA)
HKLM-x32\...\Run: [Codec Settings UAC Manager] => C:\Windows\SysWOW64\Codecs\CodecUACManager.exe [61728 2016-04-05] ()
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd)
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\Run: [Codec Pack Update Checker] => "C:\Windows\system32\Codecs\UpdateChecker.exe"
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\Policies\Explorer: []
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\MountPoints2: {88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} - G:\SETUP.EXE
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2012-02-07] (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [Správa překryvné ikony digitálních podpisů AutoCADu ] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2012-02-07] (Autodesk, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk [2016-07-24]
ShortcutTarget: CodecPackTrayMenu.lnk -> C:\Windows\SysWOW64\Codecs\TrayMenu.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{545555B3-1385-4357-B400-0C7AB73F92A1}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-08-05] (pdfforge GmbH)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.3.6.255\AVG Web TuneUp.dll [2016-09-18] (AVG)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-08-05] (pdfforge GmbH)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-11-06] [not signed]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-08-05] (pdfforge GmbH)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> mysearch.avg.com/?rvt=1
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR DefaultSearchURL: Default -> hxxps://mysearch.avg.com/search?rvt=1&sap=dsp&q={searchTerms}
CHR DefaultSearchKeyword: Default -> https://mysearch.avg.com
CHR DefaultSuggestURL: Default -> hxxps://toolbar.avg.com/acp?q={searchTerms}&o=1
CHR Profile: C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default [2017-01-10]
CHR Extension: (Prezentace Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-01]
CHR Extension: (Dokumenty Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-01]
CHR Extension: (Disk Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-24]
CHR Extension: (YouTube) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-04]
CHR Extension: (AVG Secure Search) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2016-01-28]
CHR Extension: (Vyhledávání Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-29]
CHR Extension: (Tabulky Google) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-01]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (FormApps Chrome Extension) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2016-08-18]
CHR Extension: (Copy clean Links) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccgphdljaoibmimmngmeehgdocpcajn [2017-01-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-01]
CHR Extension: (Chrome Media Router) - C:\Users\Zeed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-16]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [19232 2012-01-31] (Autodesk, Inc.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [971160 2016-12-15] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5337600 2016-12-15] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [725976 2016-12-15] (AVG Technologies CZ, s.r.o.)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2438880 2016-08-05] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-08-05] (pdfforge GmbH)
R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-08-05] (pdfforge GmbH)
R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [972056 2016-05-18] (© pdfforge GmbH.)
R2 vToolbarUpdater40.3.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe [1349704 2016-09-18] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [980552 2016-09-18] ()
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [312576 2016-11-04] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [298240 2016-11-30] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [254208 2016-09-26] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
S3 HtcVCom32; C:\Windows\System32\DRIVERS\HtcVComV64.sys [121800 2010-03-09] (QUALCOMM Incorporated)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-05-14] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2016-03-06] () [File not signed]
U3 a1aiy7pg; C:\Windows\System32\Drivers\a1aiy7pg.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-10 20:48 - 2017-01-10 20:48 - 00015630 _____ C:\Users\Zeed\Desktop\FRST.txt
2017-01-10 20:47 - 2017-01-10 20:48 - 00000000 ____D C:\FRST
2017-01-10 20:43 - 2017-01-10 20:43 - 00112640 _____ (forum.viry.cz) C:\Users\Zeed\Desktop\FRSTLauncher.exe
2017-01-10 20:27 - 2017-01-10 20:27 - 02419200 _____ (Farbar) C:\Users\Zeed\Desktop\FRST64.exe
2017-01-10 20:17 - 2017-01-10 20:17 - 00001545 _____ C:\Users\Zeed\Desktop\Malwarebytes Anti-Malware.txt
2017-01-10 20:09 - 2017-01-10 20:13 - 00006800 _____ C:\Users\Zeed\Desktop\AVG.txt
2017-01-10 17:22 - 2017-01-10 20:13 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-01-10 17:21 - 2017-01-10 17:21 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2017-01-10 17:21 - 2017-01-10 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2017-01-10 17:21 - 2017-01-10 17:21 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-10 17:21 - 2017-01-10 17:21 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2017-01-10 17:21 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2017-01-10 17:21 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2017-01-10 17:21 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-01-10 17:18 - 2017-01-10 17:19 - 30303344 _____ C:\Users\Zeed\Downloads\mbam-setup-2.2.1.1043.exe
2017-01-10 17:08 - 2017-01-10 18:21 - 00004964 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Zeed-PC-Zeed Zeed-PC
2017-01-03 17:24 - 2017-01-07 00:17 - 00010932 _____ C:\Users\Zeed\Desktop\PC.xlsx
2017-01-01 19:12 - 2017-01-01 19:53 - 716111872 _____ C:\Users\Zeed\Downloads\Jak-ztratit-kluka-v-10-dnech-2003.avi
2016-12-29 21:38 - 2017-01-05 20:09 - 00000694 _____ C:\Users\Zeed\Desktop\PC.txt
2016-12-21 17:45 - 2016-12-21 17:45 - 00301489 _____ C:\Users\Zeed\Downloads\479874529.pdf
2016-12-15 18:00 - 2016-12-15 18:00 - 00000000 ____D C:\Users\Zeed\AppData\Local\ElevatedDiagnostics
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-10 18:08 - 2009-07-14 05:45 - 00020496 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-01-10 18:08 - 2009-07-14 05:45 - 00020496 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-01-10 18:00 - 2016-06-30 21:28 - 00000000 ____D C:\Users\Zeed\AppData\Local\HTC MediaHub
2017-01-10 18:00 - 2015-04-01 19:31 - 00000000 ____D C:\ProgramData\MFAData
2017-01-10 17:59 - 2015-04-08 22:46 - 00000000 ____D C:\ProgramData\NVIDIA
2017-01-10 17:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-09 19:21 - 2016-11-13 20:04 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2017-01-02 19:18 - 2015-04-01 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-12-22 20:01 - 2011-04-12 09:34 - 00668540 _____ C:\Windows\system32\perfh005.dat
2016-12-22 20:01 - 2011-04-12 09:34 - 00141200 _____ C:\Windows\system32\perfc005.dat
2016-12-22 20:01 - 2009-07-14 06:13 - 01583214 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-22 20:01 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\System32
2016-12-22 20:01 - 2009-07-14 03:36 - 00653928 _____ C:\Windows\system32\perfh009.dat
2016-12-22 20:01 - 2009-07-14 03:36 - 00121800 _____ C:\Windows\system32\perfc009.dat
2016-12-19 19:55 - 2015-04-01 19:28 - 00000000 ___SD C:\Users\Zeed\AppData\Roaming\Microsoft
2016-12-19 19:55 - 2015-04-01 19:28 - 00000000 ___HD C:\Users\Zeed\AppData
2016-12-17 00:07 - 2015-04-01 21:15 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-17 00:07 - 2015-04-01 21:15 - 00003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-17 00:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Tasks
2016-12-14 23:10 - 2015-04-01 21:17 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-14 22:35 - 2015-10-17 22:05 - 00000000 ____D C:\Users\Zeed\Desktop\At Jezisek neco si vybere a donese
2016-12-13 19:12 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\catroot2
2016-12-11 12:32 - 2015-11-21 16:53 - 00000105 _____ C:\Users\Zeed\Desktop\Filmy - ulozto.txt
==================== Files in the root of some directories =======
2016-12-07 21:56 - 2016-12-07 21:56 - 0007601 _____ () C:\Users\Zeed\AppData\Local\Resmon.ResmonCfg
2015-04-15 20:43 - 2015-04-15 20:43 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
Some files in TEMP:
====================
C:\Users\Zeed\AppData\Local\Temp\ose00000.exe
C:\Users\Zeed\AppData\Local\Temp\ose00001.exe
C:\Users\Zeed\AppData\Local\Temp\ose00002.exe
C:\Users\Zeed\AppData\Local\Temp\ose00003.exe
C:\Users\Zeed\AppData\Local\Temp\ose00004.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-01-03 20:55
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:152.04 GB) (Free:87.42 GB) NTFS
Drive d: (Data) (Fixed) (Total:145.95 GB) (Free:132.53 GB) NTFS
Available physical RAM: 770.36 MB
Total physical RAM: 2047.18 MB
Percentage of memory in use: 62%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 30273026)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=152 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=145.9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus Free Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Zeed\Desktop" je 6 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (10.89 KiB) Staženo 63 x
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Vyskakování nevyžádaných oken v Google chrome
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\MountPoints2: {88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} - G:\SETUP.EXE
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
CHR HomePage: Default -> mysearch.avg.com/?rvt=1
CHR DefaultSearchURL: Default -> hxxps://mysearch.avg.com/search?rvt=1&sap=dsp&q={searchTerms}
CHR DefaultSearchKeyword: Default -> https://mysearch.avg.com
CHR DefaultSuggestURL: Default -> hxxps://toolbar.avg.com/acp?q={searchTerms}&o=1
U3 a1aiy7pg; C:\Windows\System32\Drivers\a1aiy7pg.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Zeed\AppData\Local\Temp
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CCustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File
ustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File
Task: {F362B1DB-4B3D-4558-A947-6E95D6F25287} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\AutoKMS\AutoKMS.exe
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Vyskakování nevyžádaných oken v Google chrome
Fix result of Farbar Recovery Scan Tool (x64) Version: 08-01-2017
Ran by Zeed (10-01-2017 22:43:46) Run:1
Running from C:\Users\Zeed\Desktop
Loaded Profiles: Zeed (Available Profiles: Zeed)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\MountPoints2: {88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} - G:\SETUP.EXE
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
CHR HomePage: Default -> mysearch.avg.com/?rvt=1
CHR DefaultSearchURL: Default -> hxxps://mysearch.avg.com/search?rvt=1&sap=dsp&q={searchTerms}
CHR DefaultSearchKeyword: Default -> https://mysearch.avg.com
CHR DefaultSuggestURL: Default -> hxxps://toolbar.avg.com/acp?q={searchTerms}&o=1
U3 a1aiy7pg; C:\Windows\System32\Drivers\a1aiy7pg.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Zeed\AppData\Local\Temp
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CCustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File
ustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File
Task: {F362B1DB-4B3D-4558-A947-6E95D6F25287} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\AutoKMS\AutoKMS.exe
EmptyTemp:
End
*****************
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} => key removed successfully
HKCR\CLSID\{88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} => key removed successfully
HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => key not found.
HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE => key removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin => key removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE => key removed successfully
Chrome HomePage => removed successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
Chrome DefaultSuggestURL => removed successfully
HKLM\System\CurrentControlSet\Services\a1aiy7pg => key removed successfully
a1aiy7pg => service removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"C:\Users\Zeed\AppData\Local\Temp" folder move:
Could not move "C:\Users\Zeed\AppData\Local\Temp" => Scheduled to move on reboot.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982} => key removed successfully
CHKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9} => could not remove key.: incorrect path.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8} => key removed successfully
ustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File => Error: No automatic fix found for this entry.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F362B1DB-4B3D-4558-A947-6E95D6F25287} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F362B1DB-4B3D-4558-A947-6E95D6F25287} => key removed successfully
C:\Windows\System32\Tasks\AutoKMS => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS => key removed successfully
"C:\Windows\AutoKMS\AutoKMS.exe" => not found.
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 15264909 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 3388579602 B
Edge => 0 B
Chrome => 456826374 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 58504173 B
systemprofile32 => 70356 B
LocalService => 66228 B
NetworkService => 0 B
Zeed => 31157983 B
TEMP => 0 B
RecycleBin => 2620464 B
EmptyTemp: => 3.7 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 10-01-2017 22:47:35)
"C:\Users\Zeed\AppData\Local\Temp" => Could not move
Result of scheduled keys to remove after reboot:
==== End of Fixlog 22:47:41 ====
Ran by Zeed (10-01-2017 22:43:46) Run:1
Running from C:\Users\Zeed\Desktop
Loaded Profiles: Zeed (Available Profiles: Zeed)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\...\MountPoints2: {88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} - G:\SETUP.EXE
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={E383EC08-458D-4DE3-8F27-8E6524214120}&mid=ae0d4617cea447cd9d2f3182083700d3-1399b97f9e19a0abbafaf708421ea1dfc7ed5137&lang=cs&ds=AVG&coid=avgtbavg&cmpid=0215pi&pr=fr&d=2015-04-01 21:06:14&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
CHR HomePage: Default -> mysearch.avg.com/?rvt=1
CHR DefaultSearchURL: Default -> hxxps://mysearch.avg.com/search?rvt=1&sap=dsp&q={searchTerms}
CHR DefaultSearchKeyword: Default -> https://mysearch.avg.com
CHR DefaultSuggestURL: Default -> hxxps://toolbar.avg.com/acp?q={searchTerms}&o=1
U3 a1aiy7pg; C:\Windows\System32\Drivers\a1aiy7pg.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Zeed\AppData\Local\Temp
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CCustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File
ustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File
CustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File
Task: {F362B1DB-4B3D-4558-A947-6E95D6F25287} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
C:\Windows\AutoKMS\AutoKMS.exe
EmptyTemp:
End
*****************
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} => key removed successfully
HKCR\CLSID\{88b24012-e3ab-11e5-bb6f-e0cb4ed3e920} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} => key removed successfully
HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => key not found.
HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE => key removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin => key removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE => key removed successfully
Chrome HomePage => removed successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
Chrome DefaultSuggestURL => removed successfully
HKLM\System\CurrentControlSet\Services\a1aiy7pg => key removed successfully
a1aiy7pg => service removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"C:\Users\Zeed\AppData\Local\Temp" folder move:
Could not move "C:\Users\Zeed\AppData\Local\Temp" => Scheduled to move on reboot.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982} => key removed successfully
CHKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9} => could not remove key.: incorrect path.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982} => key not found.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8} => key removed successfully
ustomCLSID: HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File => Error: No automatic fix found for this entry.
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220} => key removed successfully
HKU\S-1-5-21-4163548824-3770331177-3559057263-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F362B1DB-4B3D-4558-A947-6E95D6F25287} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F362B1DB-4B3D-4558-A947-6E95D6F25287} => key removed successfully
C:\Windows\System32\Tasks\AutoKMS => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS => key removed successfully
"C:\Windows\AutoKMS\AutoKMS.exe" => not found.
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 15264909 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 3388579602 B
Edge => 0 B
Chrome => 456826374 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 58504173 B
systemprofile32 => 70356 B
LocalService => 66228 B
NetworkService => 0 B
Zeed => 31157983 B
TEMP => 0 B
RecycleBin => 2620464 B
EmptyTemp: => 3.7 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 10-01-2017 22:47:35)
"C:\Users\Zeed\AppData\Local\Temp" => Could not move
Result of scheduled keys to remove after reboot:
==== End of Fixlog 22:47:41 ====
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Vyskakování nevyžádaných oken v Google chrome
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Vyskakování nevyžádaných oken v Google chrome
Zdá se mi, že Google chrome naběhl rychleji, zatím nevyskočilo žádné nevyžádané okno a pc běží klidněji. Nenačítá tolik, je vidět změna.
Moc Vám děkuji! Mohu se zeptat, co bylo za problém?
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Vyskakování nevyžádaných oken v Google chrome
Adware, zbytečnosti a nevyčištěné dočasné adresáře. Rádo se stalo! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Vyskakování nevyžádaných oken v Google chrome
A je to složité, abych si to mohl takhle vyčistit sám? Můžete mi něco doporučit?
Děkuji
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Vyskakování nevyžádaných oken v Google chrome
Právě jste se mohl přesvědčit, že k tomu je potřeby znát procesy, které v PC běží, abyste mohl označit a smazat ty, které tam nemají co dělat. Jako laik můžete použít k vyčštění prohlížeče ZOEK: http://hijackthis.nl/smeenk/ a JRT: http://thisisudax.org/downloads/JRT.exe . Ty maží automaticky podle databáze, kterou mají.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Vyskakování nevyžádaných oken v Google chrome
Díky moc a rozhodně podpořím fórum. 
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Vyskakování nevyžádaných oken v Google chrome
Rádo se stalo a za podporu děkujeme! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?