Re: 100% využití procesoru
Napsal: 19 kvě 2014 20:40
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-05-2014
Ran by PC at 2014-05-19 21:33:53 Run:1
Running from C:\Users\PC\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [AllShare Play] => C:\Program Files\Samsung\AllShare Play\utils\AllShare Play Launcher.exe [407384 2013-01-24] (Samsung Electronics)
HKLM-x32\...\Run: [DivXUpdate] => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [309688 2012-10-11] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [QuickTime Task] => D:\quick time\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => "D:\cs6 efekty\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => "D:\cs6 efekty\Acrobat 10.0\Acrobat\Acrotray.exe"
HKLM-x32\...\Run: [YouTube Downloader_Helper] => C:\Program Files (x86)\YouTube Downloader\YouTube Downloader_Helper.exe [1434112 2012-11-06] ()
HKLM-x32\...\Run: [Maurus] => C:\Program Files (x86)\Genius\Maurus\mousehid.exe [300544 2011-11-14] ()
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [104088 2012-11-01] (VMware, Inc.)
HKLM-x32\...\Run: [tsnpstd3] => C:\Windows\tsnpstd3.exe [368640 2007-06-15] ()
HKLM-x32\...\Run: [Babakan] => cmd.exe /k if %date:~6,4%%date:~3,2%%date:~0,2% LEQ 20131027 (exit) else (start http://dinoraptzor.org && exit)
HKLM-x32\...\Run: [DApp] => C:\Program Files\PCDApp\start.vbs [178 2014-04-10] ()
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)
HKU\.DEFAULT\...\Run: [Exetender_298] => "C:\Program Files (x86)\Frag Games\GPlayer.exe" /runonstartup
HKU\S-1-5-19\...\Run: [Exetender_298] => "C:\Program Files (x86)\Frag Games\GPlayer.exe" /runonstartup
HKU\S-1-5-20\...\Run: [Exetender_298] => "C:\Program Files (x86)\Frag Games\GPlayer.exe" /runonstartup
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [Google Update] => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-03-27] (Google Inc.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\PC\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\PC\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [BitTorrent] => C:\Users\PC\AppData\Roaming\BitTorrent\BitTorrent.exe [1242704 2014-05-12] (BitTorrent Inc.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [Zoner Photo Studio Autoupdate] => D:\ZONER PHOTO STUDIO 15 PRO\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [774680 2013-06-07] (ZONER software)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [GoogleChromeAutoLaunch_73B90D4D0D4A45E4E1249D0D8EDB5EB0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [841032 2014-05-08] (Google Inc.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {0c72e62f-beec-11e2-9360-ac037121bffd} - G:\.autorun\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {144b7b0d-1e52-11e1-a388-6c626da95367} - G:\Setup.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {15628ea2-d2de-11e0-a08f-6c626da95367} - G:\setup.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {3422cb9c-64ff-11e0-bbc6-6c626da95367} - F:\AUTORUN.EXE
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {4af469b9-dc46-11e0-b910-6c626da95367} - H:\LaunchU3.exe -a
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {57a96814-8156-11e1-bcc4-6c626da95367} - G:\Setup.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {7e9790d5-e9c6-11e1-976e-6c626da95367} - H:\Startme.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {8b915dfc-bd4e-11e1-bfc0-6c626da95367} - G:\.autorun\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {9174d511-57c7-11e0-b14b-806e6f6e6963} - E:\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {adb407a4-e205-11e1-a6e2-6c626da95367} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {adb407da-e205-11e1-a6e2-6c626da95367} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {cef6c04b-55d4-11e3-b9b0-87deec21a0e4} - G:\.autorun\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {d216ab17-5dcb-11e0-af16-806e6f6e6963} - E:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://btsearch.name
URLSearchHook: HKLM-x32 - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM-x32 - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKCU - DefaultScope {8d492f70-ea37-453e-a0e4-9d709483a4cd} URL = http://btsearch.name/results.php?q={searchTerms}
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
SearchScopes: HKCU - {8d492f70-ea37-453e-a0e4-9d709483a4cd} URL = http://btsearch.name/results.php?q={searchTerms}
BHO: save nete - {5B976A35-4DB5-5E82-59B3-7C302B87EE17} - C:\Program Files (x86)\save nete\78V.x64.dll No File
BHO-x32: Media Buzz - {12ecac86-1726-475f-a23c-7fd3add3e6de} - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ie\MediaBuzzV1mode3485.dll ()
BHO-x32: Rich Media View - {ca5a84b5-a411-4248-bf6d-0d9b9306257c} - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ie\RichMediaViewV1release2525.dll ()
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaBuzzV1mode3485.net] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ff
FF Extension: Media Buzz - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ff [2014-04-25]
FF HKLM-x32\...\Firefox\Extensions: [ext@RichMediaViewV1release2525.net] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ff
FF Extension: Rich Media View - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ff [2014-05-14]
CHR Extension: (saint row IV) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\igkhecioimgppakiakbmimkjjdillhda [2014-05-19]
CHR HKLM-x32\...\Chrome\Extension: [kgoenfkniplliaojbkiplfcglldhbfmm] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ch\RichMediaViewV1release2525.crx [2014-05-13]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-04-11]
DisableService: c2cautoupdatesvc
DisableService: c2cpnrsvc
S2 BBSvc; C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.exe [X]
S2 d0e87c27; "C:\Windows\system32\rundll32.exe" "c:\progra~2\sw-boo~1\AssistantSvc.dll",service
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
S1 dhecwuae; \??\C:\Windows\system32\drivers\dhecwuae.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S1 fifymkoi; \??\C:\Windows\system32\drivers\fifymkoi.sys [X]
S3 MSICDSetup; \??\E:\CDriver64.sys [X]
S1 nrpzggvd; \??\C:\Windows\system32\drivers\nrpzggvd.sys [X]
S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [X]
S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X]
S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X]
C:\Program Files (x86)\RichMediaViewV1
C:\Program Files (x86)\MediaBuzzV1
2014-05-19 21:16 - 2014-05-19 21:15 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher (1).exe
2014-05-19 21:19 - 2014-05-19 21:20 - 00031855 _____ () C:\Users\PC\Desktop\FRST.txt
2014-05-19 20:45 - 2014-05-19 20:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-05-19 20:29 - 2014-05-19 20:48 - 00043907 _____ () C:\zoek-results.log
2014-05-19 20:26 - 2014-05-19 20:47 - 00000000 ____D () C:\zoek_backup
2014-05-19 20:26 - 2014-05-19 20:26 - 01285120 _____ () C:\Users\PC\Desktop\zoek.exe
2014-05-19 19:52 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-05-19 19:50 - 2014-05-19 19:50 - 01326389 _____ () C:\Users\PC\Desktop\adwcleaner_3.210 (1).exe
2014-05-19 17:36 - 2014-05-19 17:36 - 00068979 _____ () C:\Users\PC\Desktop\JRT.txt
2014-05-19 17:31 - 2014-05-19 20:03 - 00000000 ____D () C:\AdwCleaner
2014-05-19 17:30 - 2014-05-19 17:30 - 00000000 ____D () C:\Windows\ERUNT
2014-05-19 17:29 - 2014-05-19 17:28 - 01016261 _____ (Thisisu) C:\Users\PC\Desktop\JRT.exe
2014-05-19 16:41 - 2014-05-19 16:41 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-19 16:41 - 2014-05-19 16:41 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-19 16:40 - 2014-05-19 17:18 - 00000000 ____D () C:\Users\PC\Desktop\mbar
2014-05-19 16:40 - 2014-05-19 16:40 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-19 16:39 - 2014-05-19 16:39 - 12589848 _____ (Malwarebytes Corp.) C:\Users\PC\Desktop\mbar-1.07.0.1009.exe
2014-05-19 16:09 - 2014-05-19 16:09 - 00000000 ____D () C:\rsit
2014-05-19 16:09 - 2014-05-19 16:09 - 00000000 ____D () C:\Program Files\trend micro
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {05733CB6-75BD-44B5-A5B7-28F38B10FE39} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
Task: {074369D3-E7B8-43C4-A17E-818D45B122D7} - \YourFile Update No Task File <==== ATTENTION
Task: {55339F01-6F60-4783-B19E-BC3CBA7AEDCA} - \RunAsStdUser Task No Task File <==== ATTENTION
Task: {609B281B-AEEF-4E9F-8C99-C34AF2C02080} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION
Task: {61D46691-CABD-4F61-AA48-EB0F035E1A2A} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
Task: {72CCDAEE-2720-42DC-82F5-AEE5A9FD5A2C} - \DTReg No Task File <==== ATTENTION
Task: {78260C23-8272-4CC5-A383-DC9D1F700D89} - \SW-Booster-S-702149676 No Task File <==== ATTENTION
Task: {EEEB5A41-2872-4F3A-BAB6-C9D9FC819312} - \Express FilesUpdate No Task File <==== ATTENTION
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AllShare Play => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\YouTube Downloader_Helper => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Maurus => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\vmware-tray.exe => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\tsnpstd3 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Babakan => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DApp => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\LogMeIn Hamachi Ui => Value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\\Exetender_298 => Value deleted successfully.
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\Exetender_298 => Value deleted successfully.
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\Exetender_298 => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\BitTorrent => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Zoner Photo Studio Autoupdate => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_73B90D4D0D4A45E4E1249D0D8EDB5EB0 => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0c72e62f-beec-11e2-9360-ac037121bffd} => Key deleted successfully.
HKCR\CLSID\{0c72e62f-beec-11e2-9360-ac037121bffd} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{144b7b0d-1e52-11e1-a388-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{144b7b0d-1e52-11e1-a388-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{15628ea2-d2de-11e0-a08f-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{15628ea2-d2de-11e0-a08f-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3422cb9c-64ff-11e0-bbc6-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{3422cb9c-64ff-11e0-bbc6-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4af469b9-dc46-11e0-b910-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{4af469b9-dc46-11e0-b910-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{57a96814-8156-11e1-bcc4-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{57a96814-8156-11e1-bcc4-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7e9790d5-e9c6-11e1-976e-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{7e9790d5-e9c6-11e1-976e-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b915dfc-bd4e-11e1-bfc0-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{8b915dfc-bd4e-11e1-bfc0-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9174d511-57c7-11e0-b14b-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{9174d511-57c7-11e0-b14b-806e6f6e6963} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{adb407a4-e205-11e1-a6e2-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{adb407a4-e205-11e1-a6e2-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{adb407da-e205-11e1-a6e2-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{adb407da-e205-11e1-a6e2-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cef6c04b-55d4-11e3-b9b0-87deec21a0e4} => Key deleted successfully.
HKCR\CLSID\{cef6c04b-55d4-11e3-b9b0-87deec21a0e4} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d216ab17-5dcb-11e0-af16-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{d216ab17-5dcb-11e0-af16-806e6f6e6963} => Key not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk => Moved successfully.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{88c7f2aa-f93f-432c-8f0e-b7d85967a527} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\ToolbarSearchProviderProgress => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8d492f70-ea37-453e-a0e4-9d709483a4cd} => Key deleted successfully.
HKCR\CLSID\{8d492f70-ea37-453e-a0e4-9d709483a4cd} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5B976A35-4DB5-5E82-59B3-7C302B87EE17} => Key deleted successfully.
HKCR\CLSID\{5B976A35-4DB5-5E82-59B3-7C302B87EE17} => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{12ecac86-1726-475f-a23c-7fd3add3e6de} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{12ecac86-1726-475f-a23c-7fd3add3e6de} => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ca5a84b5-a411-4248-bf6d-0d9b9306257c} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{ca5a84b5-a411-4248-bf6d-0d9b9306257c} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Value deleted successfully.
HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Key not found.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\ext@MediaBuzzV1mode3485.net => Value deleted successfully.
C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ff => Moved successfully.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\ext@RichMediaViewV1release2525.net => Value deleted successfully.
C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ff => Moved successfully.
C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\igkhecioimgppakiakbmimkjjdillhda => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kgoenfkniplliaojbkiplfcglldhbfmm => Key deleted successfully.
C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ch\RichMediaViewV1release2525.crx => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx => Moved successfully.
c2cautoupdatesvc service was disabled
c2cpnrsvc service was disabled
BBSvc => Service deleted successfully.
d0e87c27 => Service deleted successfully.
cpuz136 => Service deleted successfully.
dhecwuae => Service deleted successfully.
EagleX64 => Service deleted successfully.
fifymkoi => Service deleted successfully.
MSICDSetup => Service deleted successfully.
nrpzggvd => Service deleted successfully.
X6va008 => Service deleted successfully.
X6va009 => Service deleted successfully.
X6va012 => Service deleted successfully.
C:\Program Files (x86)\RichMediaViewV1 => Moved successfully.
C:\Program Files (x86)\MediaBuzzV1 => Moved successfully.
C:\Users\PC\Desktop\FRSTLauncher (1).exe => Moved successfully.
C:\Users\PC\Desktop\FRST.txt => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\PC\Desktop\zoek.exe => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\Users\PC\Desktop\adwcleaner_3.210 (1).exe => Moved successfully.
C:\Users\PC\Desktop\JRT.txt => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\PC\Desktop\JRT.exe => Moved successfully.
C:\Windows\system32\Drivers\MBAMSwissArmy.sys => Moved successfully.
C:\ProgramData\Malwarebytes => Moved successfully.
C:\Users\PC\Desktop\mbar => Moved successfully.
C:\Windows\system32\Drivers\mbamchameleon.sys => Moved successfully.
C:\Users\PC\Desktop\mbar-1.07.0.1009.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{05733CB6-75BD-44B5-A5B7-28F38B10FE39} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{05733CB6-75BD-44B5-A5B7-28F38B10FE39} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{074369D3-E7B8-43C4-A17E-818D45B122D7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{074369D3-E7B8-43C4-A17E-818D45B122D7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFile Update => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{55339F01-6F60-4783-B19E-BC3CBA7AEDCA} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55339F01-6F60-4783-B19E-BC3CBA7AEDCA} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunAsStdUser Task => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{609B281B-AEEF-4E9F-8C99-C34AF2C02080} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{609B281B-AEEF-4E9F-8C99-C34AF2C02080} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{61D46691-CABD-4F61-AA48-EB0F035E1A2A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{61D46691-CABD-4F61-AA48-EB0F035E1A2A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate 2 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{72CCDAEE-2720-42DC-82F5-AEE5A9FD5A2C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72CCDAEE-2720-42DC-82F5-AEE5A9FD5A2C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTReg => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{78260C23-8272-4CC5-A383-DC9D1F700D89} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{78260C23-8272-4CC5-A383-DC9D1F700D89} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SW-Booster-S-702149676 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EEEB5A41-2872-4F3A-BAB6-C9D9FC819312} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EEEB5A41-2872-4F3A-BAB6-C9D9FC819312} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Express FilesUpdate => Key deleted successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Ran by PC at 2014-05-19 21:33:53 Run:1
Running from C:\Users\PC\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [AllShare Play] => C:\Program Files\Samsung\AllShare Play\utils\AllShare Play Launcher.exe [407384 2013-01-24] (Samsung Electronics)
HKLM-x32\...\Run: [DivXUpdate] => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [309688 2012-10-11] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [QuickTime Task] => D:\quick time\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => "D:\cs6 efekty\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => "D:\cs6 efekty\Acrobat 10.0\Acrobat\Acrotray.exe"
HKLM-x32\...\Run: [YouTube Downloader_Helper] => C:\Program Files (x86)\YouTube Downloader\YouTube Downloader_Helper.exe [1434112 2012-11-06] ()
HKLM-x32\...\Run: [Maurus] => C:\Program Files (x86)\Genius\Maurus\mousehid.exe [300544 2011-11-14] ()
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [104088 2012-11-01] (VMware, Inc.)
HKLM-x32\...\Run: [tsnpstd3] => C:\Windows\tsnpstd3.exe [368640 2007-06-15] ()
HKLM-x32\...\Run: [Babakan] => cmd.exe /k if %date:~6,4%%date:~3,2%%date:~0,2% LEQ 20131027 (exit) else (start http://dinoraptzor.org && exit)
HKLM-x32\...\Run: [DApp] => C:\Program Files\PCDApp\start.vbs [178 2014-04-10] ()
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)
HKU\.DEFAULT\...\Run: [Exetender_298] => "C:\Program Files (x86)\Frag Games\GPlayer.exe" /runonstartup
HKU\S-1-5-19\...\Run: [Exetender_298] => "C:\Program Files (x86)\Frag Games\GPlayer.exe" /runonstartup
HKU\S-1-5-20\...\Run: [Exetender_298] => "C:\Program Files (x86)\Frag Games\GPlayer.exe" /runonstartup
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [Google Update] => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-03-27] (Google Inc.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\PC\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\PC\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [BitTorrent] => C:\Users\PC\AppData\Roaming\BitTorrent\BitTorrent.exe [1242704 2014-05-12] (BitTorrent Inc.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [Zoner Photo Studio Autoupdate] => D:\ZONER PHOTO STUDIO 15 PRO\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [774680 2013-06-07] (ZONER software)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\Run: [GoogleChromeAutoLaunch_73B90D4D0D4A45E4E1249D0D8EDB5EB0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [841032 2014-05-08] (Google Inc.)
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {0c72e62f-beec-11e2-9360-ac037121bffd} - G:\.autorun\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {144b7b0d-1e52-11e1-a388-6c626da95367} - G:\Setup.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {15628ea2-d2de-11e0-a08f-6c626da95367} - G:\setup.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {3422cb9c-64ff-11e0-bbc6-6c626da95367} - F:\AUTORUN.EXE
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {4af469b9-dc46-11e0-b910-6c626da95367} - H:\LaunchU3.exe -a
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {57a96814-8156-11e1-bcc4-6c626da95367} - G:\Setup.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {7e9790d5-e9c6-11e1-976e-6c626da95367} - H:\Startme.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {8b915dfc-bd4e-11e1-bfc0-6c626da95367} - G:\.autorun\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {9174d511-57c7-11e0-b14b-806e6f6e6963} - E:\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {adb407a4-e205-11e1-a6e2-6c626da95367} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {adb407da-e205-11e1-a6e2-6c626da95367} - H:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {cef6c04b-55d4-11e3-b9b0-87deec21a0e4} - G:\.autorun\autorun.exe
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\...\MountPoints2: {d216ab17-5dcb-11e0-af16-806e6f6e6963} - E:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://btsearch.name
URLSearchHook: HKLM-x32 - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM-x32 - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKCU - DefaultScope {8d492f70-ea37-453e-a0e4-9d709483a4cd} URL = http://btsearch.name/results.php?q={searchTerms}
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
SearchScopes: HKCU - {8d492f70-ea37-453e-a0e4-9d709483a4cd} URL = http://btsearch.name/results.php?q={searchTerms}
BHO: save nete - {5B976A35-4DB5-5E82-59B3-7C302B87EE17} - C:\Program Files (x86)\save nete\78V.x64.dll No File
BHO-x32: Media Buzz - {12ecac86-1726-475f-a23c-7fd3add3e6de} - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ie\MediaBuzzV1mode3485.dll ()
BHO-x32: Rich Media View - {ca5a84b5-a411-4248-bf6d-0d9b9306257c} - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ie\RichMediaViewV1release2525.dll ()
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaBuzzV1mode3485.net] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ff
FF Extension: Media Buzz - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ff [2014-04-25]
FF HKLM-x32\...\Firefox\Extensions: [ext@RichMediaViewV1release2525.net] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ff
FF Extension: Rich Media View - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ff [2014-05-14]
CHR Extension: (saint row IV) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\igkhecioimgppakiakbmimkjjdillhda [2014-05-19]
CHR HKLM-x32\...\Chrome\Extension: [kgoenfkniplliaojbkiplfcglldhbfmm] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ch\RichMediaViewV1release2525.crx [2014-05-13]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-04-11]
DisableService: c2cautoupdatesvc
DisableService: c2cpnrsvc
S2 BBSvc; C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.exe [X]
S2 d0e87c27; "C:\Windows\system32\rundll32.exe" "c:\progra~2\sw-boo~1\AssistantSvc.dll",service
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
S1 dhecwuae; \??\C:\Windows\system32\drivers\dhecwuae.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S1 fifymkoi; \??\C:\Windows\system32\drivers\fifymkoi.sys [X]
S3 MSICDSetup; \??\E:\CDriver64.sys [X]
S1 nrpzggvd; \??\C:\Windows\system32\drivers\nrpzggvd.sys [X]
S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [X]
S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X]
S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X]
C:\Program Files (x86)\RichMediaViewV1
C:\Program Files (x86)\MediaBuzzV1
2014-05-19 21:16 - 2014-05-19 21:15 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher (1).exe
2014-05-19 21:19 - 2014-05-19 21:20 - 00031855 _____ () C:\Users\PC\Desktop\FRST.txt
2014-05-19 20:45 - 2014-05-19 20:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-05-19 20:29 - 2014-05-19 20:48 - 00043907 _____ () C:\zoek-results.log
2014-05-19 20:26 - 2014-05-19 20:47 - 00000000 ____D () C:\zoek_backup
2014-05-19 20:26 - 2014-05-19 20:26 - 01285120 _____ () C:\Users\PC\Desktop\zoek.exe
2014-05-19 19:52 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-05-19 19:50 - 2014-05-19 19:50 - 01326389 _____ () C:\Users\PC\Desktop\adwcleaner_3.210 (1).exe
2014-05-19 17:36 - 2014-05-19 17:36 - 00068979 _____ () C:\Users\PC\Desktop\JRT.txt
2014-05-19 17:31 - 2014-05-19 20:03 - 00000000 ____D () C:\AdwCleaner
2014-05-19 17:30 - 2014-05-19 17:30 - 00000000 ____D () C:\Windows\ERUNT
2014-05-19 17:29 - 2014-05-19 17:28 - 01016261 _____ (Thisisu) C:\Users\PC\Desktop\JRT.exe
2014-05-19 16:41 - 2014-05-19 16:41 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-19 16:41 - 2014-05-19 16:41 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-19 16:40 - 2014-05-19 17:18 - 00000000 ____D () C:\Users\PC\Desktop\mbar
2014-05-19 16:40 - 2014-05-19 16:40 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-19 16:39 - 2014-05-19 16:39 - 12589848 _____ (Malwarebytes Corp.) C:\Users\PC\Desktop\mbar-1.07.0.1009.exe
2014-05-19 16:09 - 2014-05-19 16:09 - 00000000 ____D () C:\rsit
2014-05-19 16:09 - 2014-05-19 16:09 - 00000000 ____D () C:\Program Files\trend micro
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {05733CB6-75BD-44B5-A5B7-28F38B10FE39} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
Task: {074369D3-E7B8-43C4-A17E-818D45B122D7} - \YourFile Update No Task File <==== ATTENTION
Task: {55339F01-6F60-4783-B19E-BC3CBA7AEDCA} - \RunAsStdUser Task No Task File <==== ATTENTION
Task: {609B281B-AEEF-4E9F-8C99-C34AF2C02080} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION
Task: {61D46691-CABD-4F61-AA48-EB0F035E1A2A} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
Task: {72CCDAEE-2720-42DC-82F5-AEE5A9FD5A2C} - \DTReg No Task File <==== ATTENTION
Task: {78260C23-8272-4CC5-A383-DC9D1F700D89} - \SW-Booster-S-702149676 No Task File <==== ATTENTION
Task: {EEEB5A41-2872-4F3A-BAB6-C9D9FC819312} - \Express FilesUpdate No Task File <==== ATTENTION
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AllShare Play => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\YouTube Downloader_Helper => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Maurus => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\vmware-tray.exe => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\tsnpstd3 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Babakan => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DApp => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\LogMeIn Hamachi Ui => Value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\\Exetender_298 => Value deleted successfully.
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\Exetender_298 => Value deleted successfully.
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\Exetender_298 => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\BitTorrent => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Zoner Photo Studio Autoupdate => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_73B90D4D0D4A45E4E1249D0D8EDB5EB0 => Value deleted successfully.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0c72e62f-beec-11e2-9360-ac037121bffd} => Key deleted successfully.
HKCR\CLSID\{0c72e62f-beec-11e2-9360-ac037121bffd} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{144b7b0d-1e52-11e1-a388-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{144b7b0d-1e52-11e1-a388-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{15628ea2-d2de-11e0-a08f-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{15628ea2-d2de-11e0-a08f-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3422cb9c-64ff-11e0-bbc6-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{3422cb9c-64ff-11e0-bbc6-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4af469b9-dc46-11e0-b910-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{4af469b9-dc46-11e0-b910-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{57a96814-8156-11e1-bcc4-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{57a96814-8156-11e1-bcc4-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7e9790d5-e9c6-11e1-976e-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{7e9790d5-e9c6-11e1-976e-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b915dfc-bd4e-11e1-bfc0-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{8b915dfc-bd4e-11e1-bfc0-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9174d511-57c7-11e0-b14b-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{9174d511-57c7-11e0-b14b-806e6f6e6963} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{adb407a4-e205-11e1-a6e2-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{adb407a4-e205-11e1-a6e2-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{adb407da-e205-11e1-a6e2-6c626da95367} => Key deleted successfully.
HKCR\CLSID\{adb407da-e205-11e1-a6e2-6c626da95367} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cef6c04b-55d4-11e3-b9b0-87deec21a0e4} => Key deleted successfully.
HKCR\CLSID\{cef6c04b-55d4-11e3-b9b0-87deec21a0e4} => Key not found.
HKU\S-1-5-21-2876342913-1738241564-3004853940-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d216ab17-5dcb-11e0-af16-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{d216ab17-5dcb-11e0-af16-806e6f6e6963} => Key not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk => Moved successfully.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{88c7f2aa-f93f-432c-8f0e-b7d85967a527} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\ToolbarSearchProviderProgress => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8d492f70-ea37-453e-a0e4-9d709483a4cd} => Key deleted successfully.
HKCR\CLSID\{8d492f70-ea37-453e-a0e4-9d709483a4cd} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5B976A35-4DB5-5E82-59B3-7C302B87EE17} => Key deleted successfully.
HKCR\CLSID\{5B976A35-4DB5-5E82-59B3-7C302B87EE17} => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{12ecac86-1726-475f-a23c-7fd3add3e6de} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{12ecac86-1726-475f-a23c-7fd3add3e6de} => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ca5a84b5-a411-4248-bf6d-0d9b9306257c} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{ca5a84b5-a411-4248-bf6d-0d9b9306257c} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Value deleted successfully.
HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Key not found.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\ext@MediaBuzzV1mode3485.net => Value deleted successfully.
C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3485\ff => Moved successfully.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\ext@RichMediaViewV1release2525.net => Value deleted successfully.
C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ff => Moved successfully.
C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\igkhecioimgppakiakbmimkjjdillhda => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kgoenfkniplliaojbkiplfcglldhbfmm => Key deleted successfully.
C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release2525\ch\RichMediaViewV1release2525.crx => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx => Moved successfully.
c2cautoupdatesvc service was disabled
c2cpnrsvc service was disabled
BBSvc => Service deleted successfully.
d0e87c27 => Service deleted successfully.
cpuz136 => Service deleted successfully.
dhecwuae => Service deleted successfully.
EagleX64 => Service deleted successfully.
fifymkoi => Service deleted successfully.
MSICDSetup => Service deleted successfully.
nrpzggvd => Service deleted successfully.
X6va008 => Service deleted successfully.
X6va009 => Service deleted successfully.
X6va012 => Service deleted successfully.
C:\Program Files (x86)\RichMediaViewV1 => Moved successfully.
C:\Program Files (x86)\MediaBuzzV1 => Moved successfully.
C:\Users\PC\Desktop\FRSTLauncher (1).exe => Moved successfully.
C:\Users\PC\Desktop\FRST.txt => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\PC\Desktop\zoek.exe => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\Users\PC\Desktop\adwcleaner_3.210 (1).exe => Moved successfully.
C:\Users\PC\Desktop\JRT.txt => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\PC\Desktop\JRT.exe => Moved successfully.
C:\Windows\system32\Drivers\MBAMSwissArmy.sys => Moved successfully.
C:\ProgramData\Malwarebytes => Moved successfully.
C:\Users\PC\Desktop\mbar => Moved successfully.
C:\Windows\system32\Drivers\mbamchameleon.sys => Moved successfully.
C:\Users\PC\Desktop\mbar-1.07.0.1009.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2876342913-1738241564-3004853940-1001UA.job => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{05733CB6-75BD-44B5-A5B7-28F38B10FE39} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{05733CB6-75BD-44B5-A5B7-28F38B10FE39} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{074369D3-E7B8-43C4-A17E-818D45B122D7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{074369D3-E7B8-43C4-A17E-818D45B122D7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFile Update => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{55339F01-6F60-4783-B19E-BC3CBA7AEDCA} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55339F01-6F60-4783-B19E-BC3CBA7AEDCA} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunAsStdUser Task => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{609B281B-AEEF-4E9F-8C99-C34AF2C02080} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{609B281B-AEEF-4E9F-8C99-C34AF2C02080} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{61D46691-CABD-4F61-AA48-EB0F035E1A2A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{61D46691-CABD-4F61-AA48-EB0F035E1A2A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate 2 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{72CCDAEE-2720-42DC-82F5-AEE5A9FD5A2C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72CCDAEE-2720-42DC-82F5-AEE5A9FD5A2C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTReg => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{78260C23-8272-4CC5-A383-DC9D1F700D89} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{78260C23-8272-4CC5-A383-DC9D1F700D89} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SW-Booster-S-702149676 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EEEB5A41-2872-4F3A-BAB6-C9D9FC819312} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EEEB5A41-2872-4F3A-BAB6-C9D9FC819312} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Express FilesUpdate => Key deleted successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====