Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Jen preventivní kontrola

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Jen preventivní kontrola

#1 Příspěvek od Fanouš »

Přeji pěkný večer. směl bych poprosit o zkontrolování RSIT ?

Logfile of random's system information tool 1.09 (written by random/random)
Run by Makyna at 2013-06-21 21:58:13
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 44 GB (44%) free of 100 GB
Total RAM: 1790 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:58:59, on 21.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal

Running processes:
C:\Program Files\Spyware Terminator\st_rsser.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Makyna\Downloads\RSIT.exe
C:\Program Files\trend micro\Makyna.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... SPV=IESB06
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: PC Tools Browser Guard - {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {124d001a-bdcb-472f-aa59-bbe7e4bc3204} - (no file)
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll
O2 - BHO: Browser Guard BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: BHO_TIMELINEREMOVE.Bho - {e7b9b609-19ad-40a4-a288-b300a3087465} - mscoree.dll (file missing)
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BMISR] C:\Program Files\KYE SYSTEMS CORP.\FaceCam 310\BM.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX130"
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler.com - C:\Program Files\Spyware Terminator\st_rsser.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe

--
End of file - 8273 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25, bkmrksync@nokia.com:1.0.0.740, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.6.0.8153, {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29, m3ffxtbr@mywebsearch.com:1.2, {800b5000-a755-47e1-992b-48a1c1357f07}:1.2.9, {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.3, cs@dictionaries.addons.mozilla.org:1.0.2, {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}:6.0.30, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... 63&UM=2&q="

"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"{cb84136f-9c44-433a-9048-c5cd9df1dc16}"=C:\Program Files\PC Tools\PC Tools Security\BDT\Firefox\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1167637.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.15.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin]
"Description"=McAfee Mss Plugin
"Path"=C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=15.0.1.13]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=15.0.1.13]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.1.13]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.1.13]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=15.0.1.13]
"Description"=15.0.1.13
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\components\
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsjsrealplayerplugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
NPOFFICE.DLL
nppdf32.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprjplug.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
babylon.xml
crawlersrch.xml
mall-cz.xml

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\
bbrs_002@blabbers.com
cs@dictionaries.addons.mozilla.org
m3ffxtbr@mywebsearch.com
{800b5000-a755-47e1-992b-48a1c1357f07}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\
askcom.xml
conduit.xml
icq-search.xml
icqplugin-1.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin.xml
mywebsearch.xml
SweetIM Search.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll [2013-02-05 94112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-05-08 1136568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578b9-7132-4a7a-80e4-30ee31099e03}]
uTorrentControl2 Toolbar - C:\Program Files\uTorrentControl2\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-02-25 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-02-25 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7b9b609-19ad-40a4-a288-b300a3087465}]
BHO_TIMELINEREMOVE.Bho - C:\Windows\system32\mscoree.dll [2010-11-05 297808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-05-08 1136568]
{687578b9-7132-4a7a-80e4-30ee31099e03} - uTorrentControl2 Toolbar - C:\Program Files\uTorrentControl2\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-04-06 8555040]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-09-30 98304]
"BMISR"=C:\Program Files\KYE SYSTEMS CORP.\FaceCam 310\BM.exe [2009-07-24 217088]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2010-08-30 979328]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-05-07 345312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sony PC Companion"=C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2013-03-18 448736]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE [2013-04-14 249440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CorelDRAW Graphics Suite 11b]
C:\Program Files\Corel\Corel Graphics 12\Languages\CZ\Programs\registration.exe /title=CorelDRAW Graphics Suite 12 /date=033113 serial=DR12CNC-8301292-WBN lang=CZ []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Makyna\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Makyna\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX130 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE [2013-04-14 249440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\Makyna\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-19 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSU_agent]
C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2013-01-14 2777736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2013-01-14 3674248]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSDMonitor]
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2010-08-05 104408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-12-12 4763008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\307523~1.318\SSSCHE~1.EXE [2013-02-05 272248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2013-05-22 204800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\backitup.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bm.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ccleaner.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\coverdes.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\discspeed.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drivespeed.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dspreadme.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\epquicker.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\excel.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\finder.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\googleearth.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\groove.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infopath.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infotool.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mip.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msaccess.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msoxmled.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mspub.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mstore.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nero.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroburnrights.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerohome.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neromediahome.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerorescueagent.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroscoutoptions.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerostartsmart.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerovision.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\offdiag.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ois.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\onenote.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\outlook.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pccompanion.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnap.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnapviewer.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\powerpnt.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\recode.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regmech.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\schdpl32.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setupx.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\shapecollector.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\showtime.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\skype.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\soundtrax.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tabtip.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\unbind.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\unins000.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\uninst.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\uninstall.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\waveedit.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\winword.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\yourfile.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave3"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-06-12 17:21:35 ----A---- C:\Windows\system32\urlmon.dll
2013-06-12 17:21:35 ----A---- C:\Windows\system32\ieui.dll
2013-06-12 17:21:34 ----A---- C:\Windows\system32\ieframe.dll
2013-06-12 17:21:33 ----A---- C:\Windows\system32\mshtml.dll
2013-06-12 17:21:33 ----A---- C:\Windows\system32\iertutil.dll
2013-06-12 17:17:11 ----A---- C:\Windows\system32\jscript.dll
2013-06-12 17:17:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-06-12 17:17:10 ----A---- C:\Windows\system32\jscript9.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-06-12 17:17:09 ----A---- C:\Windows\system32\msfeeds.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iesysprep.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iesetup.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iernonce.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\ie4uinit.exe
2013-06-12 17:17:07 ----A---- C:\Windows\system32\wininet.dll
2013-06-12 16:38:02 ----D---- C:\ProgramData\FarmFrenzy_Rome
2013-06-12 14:05:53 ----D---- C:\ProgramData\FarmFrenzy-PizzaParty
2013-06-12 13:57:02 ----D---- C:\ProgramData\FarmFrenzy2
2013-06-12 07:36:05 ----A---- C:\Windows\system32\d3d11.dll
2013-06-12 07:36:02 ----A---- C:\Windows\system32\cryptdlg.dll
2013-06-12 07:36:00 ----A---- C:\Windows\system32\win32spl.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\cryptsvc.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\cryptnet.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\crypt32.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\certutil.exe
2013-06-12 07:35:57 ----A---- C:\Windows\system32\certenc.dll
2013-06-12 07:35:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-06-12 07:35:49 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-06-12 07:35:48 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-06-12 07:35:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-06-04 18:56:34 ----D---- C:\Program Files\Common Files\PCSuite
2013-06-04 18:56:33 ----D---- C:\Program Files\Common Files\Nokia
2013-05-25 13:26:59 ----D---- C:\Users\Makyna\AppData\Roaming\vlc
2013-05-22 23:15:12 ----A---- C:\Windows\system32\wextract.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\vbscript.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\pngfilt.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\occache.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\msrating.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\msls31.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\mshtmled.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\mshta.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\inseng.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\imgutil.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\iexpress.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\ieUnatt.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\iepeers.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\elshyph.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\webcheck.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\url.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-05-22 23:15:11 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\mshtmler.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-05-22 23:15:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\licmgr10.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\iedkcs32.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\ieapfltr.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\ieapfltr.dat
2013-05-22 23:15:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\icardie.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\dxtrans.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\dxtmsft.dll
2013-05-22 14:19:41 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2013-06-21 21:58:25 ----D---- C:\Windows\Prefetch
2013-06-21 21:58:18 ----D---- C:\Windows\temp
2013-06-21 21:58:15 ----D---- C:\Program Files\trend micro
2013-06-21 19:21:41 ----D---- C:\Windows\tracing
2013-06-21 12:47:06 ----D---- C:\Windows\system32\FxsTmp
2013-06-21 12:04:58 ----D---- C:\Windows\system32\config
2013-06-21 10:55:54 ----AD---- C:\ProgramData\TEMP
2013-06-21 10:55:50 ----D---- C:\Windows
2013-06-21 10:50:48 ----SHD---- C:\System Volume Information
2013-06-17 10:59:34 ----D---- C:\ProgramData\AlawarWrapper
2013-06-17 10:59:32 ----D---- C:\ProgramData
2013-06-14 22:56:41 ----D---- C:\Users\Makyna\AppData\Roaming\Skype
2013-06-14 10:50:06 ----SHD---- C:\Windows\Installer
2013-06-14 10:49:32 ----D---- C:\ProgramData\Skype
2013-06-14 10:49:24 ----RD---- C:\Program Files\Skype
2013-06-13 18:58:10 ----D---- C:\Windows\rescache
2013-06-12 21:00:19 ----D---- C:\Windows\System32
2013-06-12 21:00:15 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-06-12 17:55:14 ----HD---- C:\Program Files\InstallShield Installation Information
2013-06-12 17:55:05 ----RSD---- C:\Windows\assembly
2013-06-12 17:48:31 ----D---- C:\Windows\winsxs
2013-06-12 17:25:01 ----D---- C:\Windows\system32\cs-CZ
2013-06-12 17:25:01 ----D---- C:\Program Files\Internet Explorer
2013-06-12 17:24:59 ----D---- C:\Windows\system32\drivers
2013-06-12 17:22:54 ----D---- C:\ProgramData\Microsoft Help
2013-06-12 17:21:41 ----D---- C:\Windows\system32\catroot2
2013-06-12 17:21:41 ----D---- C:\Windows\system32\catroot
2013-06-12 17:17:48 ----D---- C:\Windows\debug
2013-06-12 17:17:46 ----A---- C:\Windows\system32\MRT.exe
2013-06-12 17:15:27 ----D---- C:\Users\Makyna\AppData\Roaming\uTorrent
2013-06-12 17:07:55 ----D---- C:\Program Files\Microsoft Games
2013-06-12 16:56:31 ----D---- C:\Users\Makyna\AppData\Roaming\DAEMON Tools Lite
2013-06-10 12:58:20 ----D---- C:\Windows\inf
2013-06-10 12:58:20 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-04 19:04:28 ----D---- C:\Windows\system32\DriverStore
2013-06-04 18:58:58 ----D---- C:\Users\Makyna\AppData\Roaming\Nokia
2013-06-04 18:56:34 ----D---- C:\Program Files\Common Files
2013-06-04 18:56:33 ----D---- C:\Program Files\Nokia
2013-06-04 18:56:05 ----D---- C:\ProgramData\Nokia
2013-06-04 13:33:33 ----D---- C:\Program Files\Sony
2013-06-03 20:34:49 ----D---- C:\Users\Makyna\AppData\Roaming\OpenCandy
2013-06-03 20:33:32 ----D---- C:\Users\Makyna\AppData\Roaming\Real
2013-05-31 16:48:04 ----D---- C:\Windows\system32\Tasks
2013-05-31 16:48:03 ----D---- C:\Windows\Tasks
2013-05-27 22:14:47 ----D---- C:\ProgramData\Sony Ericsson
2013-05-27 22:14:38 ----D---- C:\Program Files\Sony Ericsson
2013-05-23 16:44:27 ----D---- C:\Windows\Panther
2013-05-23 16:43:31 ----D---- C:\Windows\system32\migration
2013-05-23 16:43:31 ----D---- C:\Windows\PolicyDefinitions
2013-05-23 16:43:30 ----D---- C:\Windows\system32\en-US
2013-05-23 16:43:25 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-05-22 23:17:36 ----D---- C:\Windows\Logs
2013-05-22 19:30:43 ----RD---- C:\Program Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-11-16 428088]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2010-04-27 19496]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-03-28 135136]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-03-28 37352]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-12-24 239168]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2011-06-21 32768]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2012-08-27 28520]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-03-28 84744]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-09-29 6472192]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-09-29 228352]
R3 busenum;Synology Virtual USB Hub; C:\Windows\system32\DRIVERS\busenum.sys [2011-02-18 46304]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2013-06-21 17488]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-04-06 3066912]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2010-01-27 183584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2010-03-22 278560]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [2012-09-19 10088]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 a1l6lrqb;a1l6lrqb; C:\Windows\system32\drivers\a1l6lrqb.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 AVerBDA6x;AVerBDA6x service; C:\Windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 AVerEth;AVerMedia Ethernet Adapter for MPE Service; C:\Windows\system32\DRIVERS\AVerEth.sys [2009-04-22 19584]
S3 AVerIR;AVerMedia Infrared Receiver; C:\Windows\system32\DRIVERS\AVerIR.sys [2008-09-08 87552]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2010-06-14 36608]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2012-03-05 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2012-03-05 25512]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2013-05-19 40776]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 PCTBD;PC Tools Browser Defender Driver; C:\Windows\System32\Drivers\PCTBD.sys [2012-05-08 70736]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8192su.sys [2010-11-25 603240]
S3 rtlss;Service for enabling selective suspend to RTL device; C:\Windows\System32\Drivers\rtlss.sys [2010-06-21 23144]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-11-02 116608]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-09-29 176128]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-03-28 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-03-28 86752]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe [2012-05-08 575416]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2013-01-14 587912]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [2013-01-31 1724192]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-06-28 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-06-28 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe [2013-02-05 235216]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-22 117144]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-11-19 1343400]
S4 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [2013-04-14 142432]
S4 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
S4 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-02-28 529704]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2010-08-05 583640]
S4 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S4 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000]
S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-03 162408]
S4 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]

-----------------EOF-----------------






dÍKY fAanouš

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Jen preventivní kontrola

#2 Příspěvek od Rudy »

Zdravím!
V systému je několik zbytečností. Chcete ho vyčistit?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#3 Příspěvek od Fanouš »

# AdwCleaner v2.303 - Log vytvooen 21/06/2013 v 22:03:43
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (32 bits)
# Uživatel : Makyna - BROUKA-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Makyna\Downloads\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\Program Files\Ask.com
Složka Nalezeno : C:\Program Files\Common Files\AVG Secure Search
Složka Nalezeno : C:\Program Files\Conduit
Složka Nalezeno : C:\Program Files\ICQ6Toolbar
Složka Nalezeno : C:\Program Files\registry mechanic
Složka Nalezeno : C:\Program Files\uTorrentControl2
Složka Nalezeno : C:\Program Files\yourfiledownloader
Složka Nalezeno : C:\ProgramData\Ask
Složka Nalezeno : C:\ProgramData\ICQ\ICQToolbar
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\registry mechanic
Složka Nalezeno : C:\Users\Makyna\AppData\Local\APN
Složka Nalezeno : C:\Users\Makyna\AppData\Local\Conduit
Složka Nalezeno : C:\Users\Makyna\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Složka Nalezeno : C:\Users\Makyna\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Složka Nalezeno : C:\Users\Makyna\AppData\Local\PackageAware
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\bbrs_002.tb
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\Conduit
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\FunWebProducts
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\MyWebSearch
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\PriceGong
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\Softonic
Složka Nalezeno : C:\Users\Makyna\AppData\LocalLow\uTorrentControl2
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\ConduitCommon
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\CT2786678
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\bbrs_002@blabbers.com
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\m3ffxtbr@mywebsearch.com
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\m3ffxtbr@mywebsearch.com
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\jetpack
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\Smartbar
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\SweetIMToolbarData
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\OpenCandy
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\registry mechanic
Složka Nalezeno : C:\Users\Makyna\AppData\Roaming\yourfiledownloader
Soubor Nalezeno : C:\END
Soubor Nalezeno : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
Soubor Nalezeno : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
Soubor Nalezeno : C:\Program Files\Mozilla Firefox\searchplugins\crawlersrch.xml
Soubor Nalezeno : C:\user.js
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\Askcom.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\Conduit.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-1.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-2.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-3.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-4.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-5.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-6.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\mywebsearch.xml
Soubor Nalezeno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\SweetIM Search.xml
Soubor Nalezeno : C:\Users\Public\Desktop\YourFile Downloader.lnk

***** [Registry] *****

Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Klíe Nalezeno : HKCU\Software\APN PIP
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\Conduit
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\Fun Web Products
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\MyWebSearch
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\PriceGong
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\SmartBar
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\uTorrentControl2
Klíe Nalezeno : HKCU\Software\AppDataLow\Toolbar
Klíe Nalezeno : HKCU\Software\Blabbers
Klíe Nalezeno : HKCU\Software\BrowserCompanion
Klíe Nalezeno : HKCU\Software\Conduit
Klíe Nalezeno : HKCU\Software\Google\Chrome\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Klíe Nalezeno : HKCU\Software\Google\Chrome\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Klíe Nalezeno : HKCU\Software\IGearSettings
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\YourFileDownloader
Klíe Nalezeno : HKCU\Software\PIP
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\tdataprotocol.DLL
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Klíe Nalezeno : HKLM\Software\Classes\Installer\Features\FA20CB7A821113A4CB8FA1E38E303D3B
Klíe Nalezeno : HKLM\Software\Classes\Installer\Products\FA20CB7A821113A4CB8FA1E38E303D3B
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Prod.cap
Klíe Nalezeno : HKLM\SOFTWARE\Classes\sim-packages
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Toolbar.CT3072253
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Klíe Nalezeno : HKLM\Software\Conduit
Klíe Nalezeno : HKLM\SOFTWARE\Google\Chrome\Extensions\clbfjfbnelcflpgpklppgplejolacbej
Klíe Nalezeno : HKLM\SOFTWARE\Google\Chrome\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Klíe Nalezeno : HKLM\SOFTWARE\Google\Chrome\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70DA10F7-690D-46C1-92E7-D2812328EF99}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F994E0D9-8335-48F1-99C2-A712C21F8D5F}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF47D4C5-3929-48A3-ABEA-A3D1CA92510B}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D0E499F53381f84992C7A212CF1D8F5
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Klíe Nalezeno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FA20CB7A821113A4CB8FA1E38E303D3B
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A7BC02AF-1128-4A31-BCF8-1A3EE803D3B3}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl2 Toolbar
Klíe Nalezeno : HKLM\Software\PIP
Klíe Nalezeno : HKLM\SOFTWARE\Software
Klíe Nalezeno : HKLM\Software\uTorrentControl2
Klíe Nalezeno : HKLM\Software\YourFileDownloader
Klíe Nalezeno : HKU\S-1-5-21-1792373975-745772757-864007972-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Klíe Nalezeno : HKU\S-1-5-21-1792373975-745772757-864007972-1003\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Nalezeno : HKU\S-1-5-21-1792373975-745772757-864007972-1003\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Nalezeno : HKU\S-1-5-21-1792373975-745772757-864007972-1003\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16611

[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.conduit.com?SearchSource=10&ctid=CT2481032&SSPV=IESB06
[HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd

-\\ Mozilla Firefox v21.0 (cs)

Soubor : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\prefs.js

Nalezeno : user_pref("CT2481032.1000082.isPlayDisplay", "true");
Nalezeno : user_pref("CT2481032.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description[...]
Nalezeno : user_pref("CT2481032.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Nalezeno : user_pref("CT2481032.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]
Nalezeno : user_pref("CT2481032.FirstTime", "true");
Nalezeno : user_pref("CT2481032.FirstTimeFF3", "true");
Nalezeno : user_pref("CT2481032.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT248[...]
Nalezeno : user_pref("CT2481032.UserID", "UN71875317373812798");
Nalezeno : user_pref("CT2481032.addressBarTakeOverEnabledInHidden", "true");
Nalezeno : user_pref("CT2481032.autoDisableScopes", -1);
Nalezeno : user_pref("CT2481032.browser.search.defaultthis.engineName", true);
Nalezeno : user_pref("CT2481032.cbcountry_001", "CZ");
Nalezeno : user_pref("CT2481032.cbfirsttime", "Tue Oct 02 2012 20:25:46 GMT+0200");
Nalezeno : user_pref("CT2481032.defaultSearch", "true");
Nalezeno : user_pref("CT2481032.embeddedsData", "[{\"appId\":\"129058858240125318\",\"apiPermissions\":{\"cross[...]
Nalezeno : user_pref("CT2481032.enableAlerts", "false");
Nalezeno : user_pref("CT2481032.enableSearchFromAddressBar", "true");
Nalezeno : user_pref("CT2481032.firstTimeDialogOpened", "true");
Nalezeno : user_pref("CT2481032.fixPageNotFoundError", "true");
Nalezeno : user_pref("CT2481032.fixPageNotFoundErrorInHidden", "true");
Nalezeno : user_pref("CT2481032.fixUrls", true);
Nalezeno : user_pref("CT2481032.installId", "ConduitNSISIntegration");
Nalezeno : user_pref("CT2481032.installType", "ConduitNSISIntegration");
Nalezeno : user_pref("CT2481032.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Nalezeno : user_pref("CT2481032.isNewTabEnabled", true);
Nalezeno : user_pref("CT2481032.isPerformedSmartBarTransition", "true");
Nalezeno : user_pref("CT2481032.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Nalezeno : user_pref("CT2481032.keyword", true);
Nalezeno : user_pref("CT2481032.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.seznam.cz%2F[...]
Nalezeno : user_pref("CT2481032.openThankYouPage", "false");
Nalezeno : user_pref("CT2481032.openUninstallPage", "false");
Nalezeno : user_pref("CT2481032.search.searchAppId", "129058858240125318");
Nalezeno : user_pref("CT2481032.search.searchCount", "0");
Nalezeno : user_pref("CT2481032.searchInNewTabEnabledInHidden", "true");
Nalezeno : user_pref("CT2481032.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Nalezeno : user_pref("CT2481032.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]
Nalezeno : user_pref("CT2481032.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"2\[...]
Nalezeno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]
Nalezeno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]
Nalezeno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]
Nalezeno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-cnet_lastUpdate", "1349202352002");
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-cnnbrk_lastUpdate", "1349202351891");
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-computeractive_lastUpdate", "13492023520[...]
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-dailymirror_lastUpdate", "1349202352100"[...]
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-google_lastUpdate", "1349202351901");
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-techcrunch_lastUpdate", "1349202351877")[...]
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-thesun_news_lastUpdate", "1349202352083"[...]
Nalezeno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-wired_lastUpdate", "1349202352137");
Nalezeno : user_pref("CT2481032.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1349202335038");
Nalezeno : user_pref("CT2481032.serviceLayer_services_appsMetadata_lastUpdate", "1349202334569");
Nalezeno : user_pref("CT2481032.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1349202337162");
Nalezeno : user_pref("CT2481032.serviceLayer_services_login_10.10.27.6_lastUpdate", "1349202355171");
Nalezeno : user_pref("CT2481032.serviceLayer_services_optimizer_lastUpdate", "1349202337090");
Nalezeno : user_pref("CT2481032.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1349202337356");
Nalezeno : user_pref("CT2481032.serviceLayer_services_searchAPI_lastUpdate", "1349202333610");
Nalezeno : user_pref("CT2481032.serviceLayer_services_serviceMap_lastUpdate", "1349202333125");
Nalezeno : user_pref("CT2481032.serviceLayer_services_toolbarContextMenu_lastUpdate", "1349202337314");
Nalezeno : user_pref("CT2481032.serviceLayer_services_toolbarSettings_lastUpdate", "1349202333808");
Nalezeno : user_pref("CT2481032.serviceLayer_services_translation_lastUpdate", "1349202335288");
Nalezeno : user_pref("CT2481032.settingsINI", true);
Nalezeno : user_pref("CT2481032.shouldFirstTimeDialog", "false");
Nalezeno : user_pref("CT2481032.smartbar.CTID", "CT2481032");
Nalezeno : user_pref("CT2481032.smartbar.Uninstall", "0");
Nalezeno : user_pref("CT2481032.smartbar.homepage", true);
Nalezeno : user_pref("CT2481032.smartbar.toolbarName", "Ashampoo US ");
Nalezeno : user_pref("CT2481032.toolbarBornServerTime", "2-10-2012");
Nalezeno : user_pref("CT2481032.toolbarCurrentServerTime", "2-10-2012");
Nalezeno : user_pref("CT2481032.url_history0001", "hxxp://www.novinky.cz/zahranicni/svet/280382-tunisti-policis[...]
Nalezeno : user_pref("CT2786678..clientLogIsEnabled", true);
Nalezeno : user_pref("CT2786678..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Nalezeno : user_pref("CT2786678..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Nalezeno : user_pref("CT2786678.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Nalezeno : user_pref("CT2786678.AppTrackingLastCheckTime", "Tue Dec 13 2011 20:18:23 GMT+0100");
Nalezeno : user_pref("CT2786678.BrowserCompStateIsOpen_129579220236217502", true);
Nalezeno : user_pref("CT2786678.CTID", "CT2786678");
Nalezeno : user_pref("CT2786678.CurrentServerDate", "13-12-2011");
Nalezeno : user_pref("CT2786678.DialogsAlignMode", "LTR");
Nalezeno : user_pref("CT2786678.DialogsGetterLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.DownloadReferralCookieData", "");
Nalezeno : user_pref("CT2786678.EMailNotifierPollDate", "Tue Dec 13 2011 20:23:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedLastCount5690698542593514850", 384);
Nalezeno : user_pref("CT2786678.FeedPollDate2429156812186649977", "Tue Dec 13 2011 20:18:13 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813040823546", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813130095866", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813224203613", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813230837251", "Tue Dec 13 2011 20:18:13 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813454291735", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813729834876", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156813860870021", "Tue Dec 13 2011 20:18:13 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156814264681793", "Tue Dec 13 2011 20:18:13 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156814863075366", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedPollDate2429156815257761081", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.FeedTTL2429156813040823546", 15);
Nalezeno : user_pref("CT2786678.FeedTTL2429156813130095866", 10);
Nalezeno : user_pref("CT2786678.FeedTTL2429156813454291735", 5);
Nalezeno : user_pref("CT2786678.FeedTTL2429156814264681793", 5);
Nalezeno : user_pref("CT2786678.FirstServerDate", "26-9-2011");
Nalezeno : user_pref("CT2786678.FirstTime", true);
Nalezeno : user_pref("CT2786678.FirstTimeFF3", true);
Nalezeno : user_pref("CT2786678.FixPageNotFoundErrors", false);
Nalezeno : user_pref("CT2786678.GroupingServerCheckInterval", 1440);
Nalezeno : user_pref("CT2786678.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Nalezeno : user_pref("CT2786678.HasUserGlobalKeys", true);
Nalezeno : user_pref("CT2786678.HomePageProtectorEnabled", false);
Nalezeno : user_pref("CT2786678.Initialize", true);
Nalezeno : user_pref("CT2786678.InitializeCommonPrefs", true);
Nalezeno : user_pref("CT2786678.InstallationAndCookieDataSentCount", 3);
Nalezeno : user_pref("CT2786678.InstallationType", "UnknownIntegration");
Nalezeno : user_pref("CT2786678.InstalledDate", "Sun Sep 25 2011 23:28:51 GMT+0200");
Nalezeno : user_pref("CT2786678.IsAlertDBUpdated", true);
Nalezeno : user_pref("CT2786678.IsGrouping", false);
Nalezeno : user_pref("CT2786678.IsInitSetupIni", true);
Nalezeno : user_pref("CT2786678.IsMulticommunity", false);
Nalezeno : user_pref("CT2786678.IsOpenThankYouPage", true);
Nalezeno : user_pref("CT2786678.IsOpenUninstallPage", false);
Nalezeno : user_pref("CT2786678.IsProtectorsInit", true);
Nalezeno : user_pref("CT2786678.LanguagePackLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.LanguagePackReloadIntervalMM", 1440);
Nalezeno : user_pref("CT2786678.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Nalezeno : user_pref("CT2786678.LastLogin_3.6.0.10", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.LatestVersion", "3.8.1.0");
Nalezeno : user_pref("CT2786678.Locale", "en");
Nalezeno : user_pref("CT2786678.MCDetectTooltipHeight", "83");
Nalezeno : user_pref("CT2786678.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Nalezeno : user_pref("CT2786678.MCDetectTooltipWidth", "295");
Nalezeno : user_pref("CT2786678.MyStuffEnabledAtInstallation", true);
Nalezeno : user_pref("CT2786678.OriginalFirstVersion", "3.6.0.10");
Nalezeno : user_pref("CT2786678.SavedHomepage", "resource:/browserconfig.properties");
Nalezeno : user_pref("CT2786678.SearchEngineBeforeUnload", "SweetIM Search");
Nalezeno : user_pref("CT2786678.SearchFromAddressBarIsInit", true);
Nalezeno : user_pref("CT2786678.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT278[...]
Nalezeno : user_pref("CT2786678.SearchInNewTabEnabled", true);
Nalezeno : user_pref("CT2786678.SearchInNewTabIntervalMM", 1440);
Nalezeno : user_pref("CT2786678.SearchInNewTabLastCheckTime", "Tue Dec 13 2011 20:18:11 GMT+0100");
Nalezeno : user_pref("CT2786678.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Nalezeno : user_pref("CT2786678.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usa[...]
Nalezeno : user_pref("CT2786678.SearchProtectorEnabled", false);
Nalezeno : user_pref("CT2786678.SearchProtectorToolbarDisabled", false);
Nalezeno : user_pref("CT2786678.ServiceMapLastCheckTime", "Tue Dec 13 2011 20:18:11 GMT+0100");
Nalezeno : user_pref("CT2786678.SettingsLastCheckTime", "Tue Dec 13 2011 20:18:11 GMT+0100");
Nalezeno : user_pref("CT2786678.SettingsLastUpdate", "1321973052");
Nalezeno : user_pref("CT2786678.ThirdPartyComponentsInterval", 504);
Nalezeno : user_pref("CT2786678.ThirdPartyComponentsLastCheck", "Mon Dec 05 2011 09:53:38 GMT+0100");
Nalezeno : user_pref("CT2786678.ThirdPartyComponentsLastUpdate", "1312887586");
Nalezeno : user_pref("CT2786678.ToolbarShrinkedFromSetup", false);
Nalezeno : user_pref("CT2786678.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2786678");
Nalezeno : user_pref("CT2786678.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]
Nalezeno : user_pref("CT2786678.UserID", "UN82541115558074105");
Nalezeno : user_pref("CT2786678.WeatherNetwork", "");
Nalezeno : user_pref("CT2786678.WeatherPollDate", "Tue Dec 13 2011 20:18:13 GMT+0100");
Nalezeno : user_pref("CT2786678.WeatherUnit", "C");
Nalezeno : user_pref("CT2786678.alertChannelId", "1178763");
Nalezeno : user_pref("CT2786678.backendstorage.cb_firstuse0100", "31");
Nalezeno : user_pref("CT2786678.backendstorage.cbfirsttime", "4D6F6E2044656320303520323031312030393A35333A35322[...]
Nalezeno : user_pref("CT2786678.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...]
Nalezeno : user_pref("CT2786678.globalFirstTimeInfoLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.homepageProtectorEnableByLogin", true);
Nalezeno : user_pref("CT2786678.initDone", true);
Nalezeno : user_pref("CT2786678.isAppTrackingManagerOn", true);
Nalezeno : user_pref("CT2786678.myStuffEnabled", true);
Nalezeno : user_pref("CT2786678.myStuffPublihserMinWidth", 400);
Nalezeno : user_pref("CT2786678.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Nalezeno : user_pref("CT2786678.myStuffServiceIntervalMM", 1440);
Nalezeno : user_pref("CT2786678.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Nalezeno : user_pref("CT2786678.oldAppsList", "129295695672325902,129295695672325903,1000234,129295698017012804[...]
Nalezeno : user_pref("CT2786678.searchProtectorDialogDelayInSec", 10);
Nalezeno : user_pref("CT2786678.searchProtectorEnableByLogin", true);
Nalezeno : user_pref("CT2786678.testingCtid", "");
Nalezeno : user_pref("CT2786678.toolbarAppMetaDataLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CT2786678.toolbarContextMenuLastCheckTime", "Mon Dec 05 2011 09:53:42 GMT+0100");
Nalezeno : user_pref("CT2786678.usagesFlag", 1);
Nalezeno : user_pref("CT3282722_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
Nalezeno : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2786678&Search[...]
Nalezeno : user_pref("CommunityToolbar.ConduitSearchList", " ");
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2786678/CT2786678[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1178763/1174448/CZ", "\"0\"[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1463702/1459356/CZ", "\"0\"[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2786678", [...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", [...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.6.[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2786678",[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253",[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT2786678&octid=[...]
Nalezeno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"75b[...]
Nalezeno : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Makyna\\AppData\\Roaming\\Mozilla\\[...]
Nalezeno : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.15.1.0");
Nalezeno : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.pr[...]
Nalezeno : user_pref("CommunityToolbar.ToolbarsList", "CT2786678");
Nalezeno : user_pref("CommunityToolbar.ToolbarsList2", "CT2786678");
Nalezeno : user_pref("CommunityToolbar.ToolbarsList4", "CT2786678");
Nalezeno : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Nalezeno : user_pref("CommunityToolbar.globalUserId", "4db15d1a-b4f2-4f7f-bc5c-0df791440491");
Nalezeno : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Nalezeno : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Nalezeno : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3072253");
Nalezeno : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Fri Sep 21 2012 17:52:5[...]
Nalezeno : user_pref("CommunityToolbar.notifications.alertEnabled", false);
Nalezeno : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
Nalezeno : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sun Jul 08 2012 20:26:16 GMT+020[...]
Nalezeno : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Nalezeno : user_pref("CommunityToolbar.notifications.locale", "en");
Nalezeno : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
Nalezeno : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Sep 27 2012 20:39:04 GMT+0200");
Nalezeno : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
Nalezeno : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Nalezeno : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Nalezeno : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Nalezeno : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Nalezeno : user_pref("CommunityToolbar.notifications.userId", "56afaae4-506d-4e74-8bbe-edb7d8129baa");
Nalezeno : user_pref("CommunityToolbar.originalHomepage", "hxxp://www.seznam.cz/");
Nalezeno : user_pref("CommunityToolbar.originalSearchEngine", "Google");
Nalezeno : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2481032&SearchSource=1[...]
Nalezeno : user_pref("Smartbar.ConduitSearchEngineList", "Ashampoo US Customized Web Search");
Nalezeno : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2481032[...]
Nalezeno : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
Nalezeno : user_pref("Smartbar.keywordURLSelectedCTID", "CT2481032");
Nalezeno : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Nalezeno : user_pref("browser.search.defaultengine", "Ask.com");
Nalezeno : user_pref("browser.search.defaulturl", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_v[...]
Nalezeno : user_pref("browser.search.order.1", "Ask.com");
Nalezeno : user_pref("extensions.BabylonToolbar.admin", false);
Nalezeno : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Nalezeno : user_pref("extensions.BabylonToolbar.babExt", "");
Nalezeno : user_pref("extensions.BabylonToolbar.babTrack", "affID=112061&tt=100512_3_");
Nalezeno : user_pref("extensions.BabylonToolbar.bbDpng", 20);
Nalezeno : user_pref("extensions.BabylonToolbar.dfltSrch", false);
Nalezeno : user_pref("extensions.BabylonToolbar.hmpg", false);
Nalezeno : user_pref("extensions.BabylonToolbar.id", "5835c7e50000000000001c6f65463f2e");
Nalezeno : user_pref("extensions.BabylonToolbar.instlDay", "15479");
Nalezeno : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Nalezeno : user_pref("extensions.BabylonToolbar.lastDP", 20);
Nalezeno : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.170:18:12");
Nalezeno : user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "12.0");
Nalezeno : user_pref("extensions.BabylonToolbar.newTab", true);
Nalezeno : user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?babsrc=NT_bb");
Nalezeno : user_pref("extensions.BabylonToolbar.noFFXTlbr", false);
Nalezeno : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Nalezeno : user_pref("extensions.BabylonToolbar.propectorlck", 76028171);
Nalezeno : user_pref("extensions.BabylonToolbar.prtkDS", 1);
Nalezeno : user_pref("extensions.BabylonToolbar.prtkHmpg", 1);
Nalezeno : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Nalezeno : user_pref("extensions.BabylonToolbar.ptch_0717", true);
Nalezeno : user_pref("extensions.BabylonToolbar.smplGrp", "none");
Nalezeno : user_pref("extensions.BabylonToolbar.srcExt", "ss");
Nalezeno : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Nalezeno : user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17");
Nalezeno : user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.170:18:12");
Nalezeno : user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17");
Nalezeno : user_pref("extensions.BabylonToolbar_i.aflt", "babsst");
Nalezeno : user_pref("extensions.BabylonToolbar_i.babExt", "");
Nalezeno : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=112061&tt=100512_3_");
Nalezeno : user_pref("extensions.BabylonToolbar_i.hardId", "5835c7e50000000000001c6f65463f2e");
Nalezeno : user_pref("extensions.BabylonToolbar_i.id", "5835c7e50000000000001c6f65463f2e");
Nalezeno : user_pref("extensions.BabylonToolbar_i.instlDay", "15479");
Nalezeno : user_pref("extensions.BabylonToolbar_i.instlRef", "sst");
Nalezeno : user_pref("extensions.BabylonToolbar_i.newTab", true);
Nalezeno : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=112061&tt=10051[...]
Nalezeno : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
Nalezeno : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
Nalezeno : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Nalezeno : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
Nalezeno : user_pref("extensions.BabylonToolbar_i.tlbrId", "base");
Nalezeno : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
Nalezeno : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.170:18:12");
Nalezeno : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
Nalezeno : user_pref("extensions.Softonic.admin", false);
Nalezeno : user_pref("extensions.Softonic.aflt", "SD");
Nalezeno : user_pref("extensions.Softonic.autoRvrt", "false");
Nalezeno : user_pref("extensions.Softonic.cntry", "CZ");
Nalezeno : user_pref("extensions.Softonic.cv", "cv5");
Nalezeno : user_pref("extensions.Softonic.dfltLng", "");
Nalezeno : user_pref("extensions.Softonic.envrmnt", "production");
Nalezeno : user_pref("extensions.Softonic.excTlbr", false);
Nalezeno : user_pref("extensions.Softonic.hdrMd5", "E51BE9DB5DD56548CCB2540A2E881829");
Nalezeno : user_pref("extensions.Softonic.hmpg", false);
Nalezeno : user_pref("extensions.Softonic.id", "5835c7e50000000000001c6f65463f2e");
Nalezeno : user_pref("extensions.Softonic.instlDay", "15503");
Nalezeno : user_pref("extensions.Softonic.instlRef", "MON00006");
Nalezeno : user_pref("extensions.Softonic.isdcmntcmplt", true);
Nalezeno : user_pref("extensions.Softonic.lastVrsnTs", "1.5.24.323:31:05");
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_irrelevant", 57);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_new", 0);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_not_supported", 0);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_supported", 1);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_history", 0);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_pop", 0);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_related", 0);
Nalezeno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_typed", 0);
Nalezeno : user_pref("extensions.Softonic.mntrvrsn", "1.3.0");
Nalezeno : user_pref("extensions.Softonic.newTab", false);
Nalezeno : user_pref("extensions.Softonic.prdct", "Softonic");
Nalezeno : user_pref("extensions.Softonic.prtnrId", "softonic");
Nalezeno : user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search set[...]
Nalezeno : user_pref("extensions.Softonic.sg", "az");
Nalezeno : user_pref("extensions.Softonic.smplGrp", "none");
Nalezeno : user_pref("extensions.Softonic.tlbrId", "base");
Nalezeno : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/MON00006/tb_v1?SearchSource[...]
Nalezeno : user_pref("extensions.Softonic.vrsn", "1.5.24.3");
Nalezeno : user_pref("extensions.Softonic.vrsnTs", "1.5.24.323:31:05");
Nalezeno : user_pref("extensions.Softonic.vrsni", "1.5.24.3");
Nalezeno : user_pref("extensions.Softonic_i.newTab", false);
Nalezeno : user_pref("extensions.Softonic_i.smplGrp", "none");
Nalezeno : user_pref("extensions.Softonic_i.vrsnTs", "1.5.24.323:31:05");
Nalezeno : user_pref("extensions.mywebsearch.openSearchURL", "hxxp://search.mywebsearch.com/mywebsearch/opensea[...]
Nalezeno : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
Nalezeno : user_pref("extensions.mywebsearch.prevKwdURL", "chrome://browser-region/locale/region.properties");
Nalezeno : user_pref("icqtoolbar.allowSendURL", false);
Nalezeno : user_pref("icqtoolbar.defSearchChange", true);
Nalezeno : user_pref("icqtoolbar.engineVerified", true);
Nalezeno : user_pref("icqtoolbar.geolastmodified", 1337156056);
Nalezeno : user_pref("icqtoolbar.hiddenElements", "itb_options");
Nalezeno : user_pref("icqtoolbar.history", "cetelem||euro%20money%20czech%20a.s.||Euro%20Money%20CZECH%20a.s.||[...]
Nalezeno : user_pref("icqtoolbar.hpChange", true);
Nalezeno : user_pref("icqtoolbar.icqgeo", 42);
Nalezeno : user_pref("icqtoolbar.installTime", "1333119963");
Nalezeno : user_pref("icqtoolbar.newtab_most_visited_state", "1");
Nalezeno : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
Nalezeno : user_pref("icqtoolbar.newtab_state", "1");
Nalezeno : user_pref("icqtoolbar.numberOfSearches", 0);
Nalezeno : user_pref("icqtoolbar.previousFFVersion", "12.0");
Nalezeno : user_pref("icqtoolbar.showPc", true);
Nalezeno : user_pref("icqtoolbar.skip_default_search", "yes");
Nalezeno : user_pref("icqtoolbar.suggestions", false);
Nalezeno : user_pref("icqtoolbar.uniqueID", "110313342916862291521323075215368");
Nalezeno : user_pref("icqtoolbar.usageStatstTimestamp", 1337459542);
Nalezeno : user_pref("icqtoolbar.userEngineApproved", true);
Nalezeno : user_pref("icqtoolbar.userHpApproved", true);
Nalezeno : user_pref("icqtoolbar.version", "1.4.7");
Nalezeno : user_pref("icqtoolbar.voucherHideClicks", 0);
Nalezeno : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
Nalezeno : user_pref("icqtoolbar.voucherRedeemClicks", 0);
Nalezeno : user_pref("icqtoolbar.voucherWasShown", 0);
Nalezeno : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
Nalezeno : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Nalezeno : user_pref("icqtoolbar.xmlLanguage", "cs");
Nalezeno : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3282722&SearchSource=2&CU[...]
Nalezeno : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...]
Nalezeno : user_pref("smartbar.machineId", "ZSY8O3RJV0PBSE/DZ6NM49IG6PLG2ZTG6INWTDN3FC8+8WBAETUSW48G8LYN/D3A0NV[...]
Nalezeno : user_pref("smartbar.originalSearchAddressUrl", "");
Nalezeno : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
Nalezeno : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
Nalezeno : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
Nalezeno : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
Nalezeno : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
Nalezeno : user_pref("sweetim.toolbar.mode.debug", "false");
Nalezeno : user_pref("sweetim.toolbar.previous.browser.search.defaulturl", "");
Nalezeno : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "ICQ Search");
Nalezeno : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://start.icq.com/");
Nalezeno : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_i[...]
Nalezeno : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engin[...]
Nalezeno : user_pref("sweetim.toolbar.search.history.capacity", "10");
Nalezeno : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "1");
Nalezeno : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "1");
Nalezeno : user_pref("sweetim.toolbar.searchguard.enable", "true");
Nalezeno : user_pref("sweetim.toolbar.simapp_id", "{9FE0B854-53A6-4AED-AC6C-5046DBBABA85}");
Nalezeno : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com/?barid={9FE0B854-53A6-4AED-AC6C-[...]
Nalezeno : user_pref("sweetim.toolbar.version", "1.3.0.1");

-\\ Google Chrome v27.0.1453.94

Soubor : C:\Users\Makyna\AppData\Local\Google\Chrome\User Data\Default\Preferences

Nalezeno [l.4308] : urls_to_restore_on_startup = [ "hxxp://search.conduit.com/?ctid=CT2481032&SearchSource=48", "hxxp://www.seznam.cz/" ]

*************************

AdwCleaner[R1].txt - [45135 octets] - [21/06/2013 22:03:43]

########## EOF - C:\AdwCleaner[R1].txt - [45196 octets] ##########

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#4 Příspěvek od Fanouš »

Zdravím Rudy . to byla rychlost :) určitě ano. díky

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Jen preventivní kontrola

#5 Příspěvek od Rudy »

Spusťte znovu ADWCleaner a klikněte na >Delete< (smazat). Vložte nový log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#6 Příspěvek od Fanouš »

nevím co vše to smazalo, google chrome musím znovu celý nastavit. ale to je jen prkotina...

# AdwCleaner v2.303 - Log vytvooen 21/06/2013 v 22:10:31
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (32 bits)
# Uživatel : Makyna - BROUKA-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Makyna\Downloads\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Vymazáno : C:\Program Files\Ask.com
Složka Vymazáno : C:\Program Files\Common Files\AVG Secure Search
Složka Vymazáno : C:\Program Files\Conduit
Složka Vymazáno : C:\Program Files\ICQ6Toolbar
Složka Vymazáno : C:\Program Files\registry mechanic
Složka Vymazáno : C:\Program Files\uTorrentControl2
Složka Vymazáno : C:\Program Files\yourfiledownloader
Složka Vymazáno : C:\ProgramData\Ask
Složka Vymazáno : C:\ProgramData\ICQ\ICQToolbar
Složka Vymazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\registry mechanic
Složka Vymazáno : C:\Users\Makyna\AppData\Local\APN
Složka Vymazáno : C:\Users\Makyna\AppData\Local\Conduit
Složka Vymazáno : C:\Users\Makyna\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Složka Vymazáno : C:\Users\Makyna\AppData\Local\PackageAware
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\bbrs_002.tb
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\Conduit
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\FunWebProducts
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\MyWebSearch
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\PriceGong
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\Softonic
Složka Vymazáno : C:\Users\Makyna\AppData\LocalLow\uTorrentControl2
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\ConduitCommon
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\CT2786678
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\bbrs_002@blabbers.com
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\m3ffxtbr@mywebsearch.com
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\jetpack
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\Smartbar
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\SweetIMToolbarData
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\OpenCandy
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\registry mechanic
Složka Vymazáno : C:\Users\Makyna\AppData\Roaming\yourfiledownloader
Soubor Vymazáno : C:\END
Soubor Vymazáno : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
Soubor Vymazáno : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
Soubor Vymazáno : C:\Program Files\Mozilla Firefox\searchplugins\crawlersrch.xml
Soubor Vymazáno : C:\user.js
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\Askcom.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\Conduit.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-1.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-2.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-3.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-4.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-5.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\icqplugin-6.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\mywebsearch.xml
Soubor Vymazáno : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\SweetIM Search.xml
Soubor Vymazáno : C:\Users\Public\Desktop\YourFile Downloader.lnk
Vymazáno poi restartu : C:\Users\Makyna\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec

***** [Registry] *****

Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Klíe Vymazáno : HKCU\Software\APN PIP
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\Conduit
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\Fun Web Products
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\MyWebSearch
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\PriceGong
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\SmartBar
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\uTorrentControl2
Klíe Vymazáno : HKCU\Software\AppDataLow\Toolbar
Klíe Vymazáno : HKCU\Software\Blabbers
Klíe Vymazáno : HKCU\Software\BrowserCompanion
Klíe Vymazáno : HKCU\Software\Conduit
Klíe Vymazáno : HKCU\Software\Google\Chrome\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Klíe Vymazáno : HKCU\Software\IGearSettings
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\YourFileDownloader
Klíe Vymazáno : HKCU\Software\PIP
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\tdataprotocol.DLL
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Klíe Vymazáno : HKLM\Software\Classes\Installer\Features\FA20CB7A821113A4CB8FA1E38E303D3B
Klíe Vymazáno : HKLM\Software\Classes\Installer\Products\FA20CB7A821113A4CB8FA1E38E303D3B
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Prod.cap
Klíe Vymazáno : HKLM\SOFTWARE\Classes\sim-packages
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Toolbar.CT3072253
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Klíe Vymazáno : HKLM\Software\Conduit
Klíe Vymazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\clbfjfbnelcflpgpklppgplejolacbej
Klíe Vymazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\ggagiiobgjmfpdadhecbofeoelcpidec
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70DA10F7-690D-46C1-92E7-D2812328EF99}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F994E0D9-8335-48F1-99C2-A712C21F8D5F}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF47D4C5-3929-48A3-ABEA-A3D1CA92510B}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578B9-7132-4A7A-80E4-30EE31099E03}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D0E499F53381f84992C7A212CF1D8F5
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Klíe Vymazáno : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FA20CB7A821113A4CB8FA1E38E303D3B
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A7BC02AF-1128-4A31-BCF8-1A3EE803D3B3}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl2 Toolbar
Klíe Vymazáno : HKLM\Software\PIP
Klíe Vymazáno : HKLM\SOFTWARE\Software
Klíe Vymazáno : HKLM\Software\uTorrentControl2
Klíe Vymazáno : HKLM\Software\YourFileDownloader

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16611

Zaminino : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.conduit.com?SearchSource=10&ctid=CT2481032&SSPV=IESB06 --> hxxp://www.google.com
Zaminino : [HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd --> hxxp://www.google.com

-\\ Mozilla Firefox v21.0 (cs)

Soubor : C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\prefs.js

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\user.js ... Vymazáno !

Vymazáno : user_pref("CT2481032.1000082.isPlayDisplay", "true");
Vymazáno : user_pref("CT2481032.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description[...]
Vymazáno : user_pref("CT2481032.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Vymazáno : user_pref("CT2481032.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]
Vymazáno : user_pref("CT2481032.FirstTime", "true");
Vymazáno : user_pref("CT2481032.FirstTimeFF3", "true");
Vymazáno : user_pref("CT2481032.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT248[...]
Vymazáno : user_pref("CT2481032.UserID", "UN71875317373812798");
Vymazáno : user_pref("CT2481032.addressBarTakeOverEnabledInHidden", "true");
Vymazáno : user_pref("CT2481032.autoDisableScopes", -1);
Vymazáno : user_pref("CT2481032.browser.search.defaultthis.engineName", true);
Vymazáno : user_pref("CT2481032.cbcountry_001", "CZ");
Vymazáno : user_pref("CT2481032.cbfirsttime", "Tue Oct 02 2012 20:25:46 GMT+0200");
Vymazáno : user_pref("CT2481032.defaultSearch", "true");
Vymazáno : user_pref("CT2481032.embeddedsData", "[{\"appId\":\"129058858240125318\",\"apiPermissions\":{\"cross[...]
Vymazáno : user_pref("CT2481032.enableAlerts", "false");
Vymazáno : user_pref("CT2481032.enableSearchFromAddressBar", "true");
Vymazáno : user_pref("CT2481032.firstTimeDialogOpened", "true");
Vymazáno : user_pref("CT2481032.fixPageNotFoundError", "true");
Vymazáno : user_pref("CT2481032.fixPageNotFoundErrorInHidden", "true");
Vymazáno : user_pref("CT2481032.fixUrls", true);
Vymazáno : user_pref("CT2481032.installId", "ConduitNSISIntegration");
Vymazáno : user_pref("CT2481032.installType", "ConduitNSISIntegration");
Vymazáno : user_pref("CT2481032.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Vymazáno : user_pref("CT2481032.isNewTabEnabled", true);
Vymazáno : user_pref("CT2481032.isPerformedSmartBarTransition", "true");
Vymazáno : user_pref("CT2481032.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Vymazáno : user_pref("CT2481032.keyword", true);
Vymazáno : user_pref("CT2481032.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.seznam.cz%2F[...]
Vymazáno : user_pref("CT2481032.openThankYouPage", "false");
Vymazáno : user_pref("CT2481032.openUninstallPage", "false");
Vymazáno : user_pref("CT2481032.search.searchAppId", "129058858240125318");
Vymazáno : user_pref("CT2481032.search.searchCount", "0");
Vymazáno : user_pref("CT2481032.searchInNewTabEnabledInHidden", "true");
Vymazáno : user_pref("CT2481032.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Vymazáno : user_pref("CT2481032.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]
Vymazáno : user_pref("CT2481032.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"2\[...]
Vymazáno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]
Vymazáno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]
Vymazáno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]
Vymazáno : user_pref("CT2481032.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-cnet_lastUpdate", "1349202352002");
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-cnnbrk_lastUpdate", "1349202351891");
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-computeractive_lastUpdate", "13492023520[...]
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-dailymirror_lastUpdate", "1349202352100"[...]
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-google_lastUpdate", "1349202351901");
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-techcrunch_lastUpdate", "1349202351877")[...]
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-thesun_news_lastUpdate", "1349202352083"[...]
Vymazáno : user_pref("CT2481032.serviceLayer_services_app.twitter.user-wired_lastUpdate", "1349202352137");
Vymazáno : user_pref("CT2481032.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1349202335038");
Vymazáno : user_pref("CT2481032.serviceLayer_services_appsMetadata_lastUpdate", "1349202334569");
Vymazáno : user_pref("CT2481032.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1349202337162");
Vymazáno : user_pref("CT2481032.serviceLayer_services_login_10.10.27.6_lastUpdate", "1349202355171");
Vymazáno : user_pref("CT2481032.serviceLayer_services_optimizer_lastUpdate", "1349202337090");
Vymazáno : user_pref("CT2481032.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1349202337356");
Vymazáno : user_pref("CT2481032.serviceLayer_services_searchAPI_lastUpdate", "1349202333610");
Vymazáno : user_pref("CT2481032.serviceLayer_services_serviceMap_lastUpdate", "1349202333125");
Vymazáno : user_pref("CT2481032.serviceLayer_services_toolbarContextMenu_lastUpdate", "1349202337314");
Vymazáno : user_pref("CT2481032.serviceLayer_services_toolbarSettings_lastUpdate", "1349202333808");
Vymazáno : user_pref("CT2481032.serviceLayer_services_translation_lastUpdate", "1349202335288");
Vymazáno : user_pref("CT2481032.settingsINI", true);
Vymazáno : user_pref("CT2481032.shouldFirstTimeDialog", "false");
Vymazáno : user_pref("CT2481032.smartbar.CTID", "CT2481032");
Vymazáno : user_pref("CT2481032.smartbar.Uninstall", "0");
Vymazáno : user_pref("CT2481032.smartbar.homepage", true);
Vymazáno : user_pref("CT2481032.smartbar.toolbarName", "Ashampoo US ");
Vymazáno : user_pref("CT2481032.toolbarBornServerTime", "2-10-2012");
Vymazáno : user_pref("CT2481032.toolbarCurrentServerTime", "2-10-2012");
Vymazáno : user_pref("CT2481032.url_history0001", "hxxp://www.novinky.cz/zahranicni/svet/280382-tunisti-policis[...]
Vymazáno : user_pref("CT2786678..clientLogIsEnabled", true);
Vymazáno : user_pref("CT2786678..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Vymazáno : user_pref("CT2786678..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Vymazáno : user_pref("CT2786678.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Vymazáno : user_pref("CT2786678.AppTrackingLastCheckTime", "Tue Dec 13 2011 20:18:23 GMT+0100");
Vymazáno : user_pref("CT2786678.BrowserCompStateIsOpen_129579220236217502", true);
Vymazáno : user_pref("CT2786678.CTID", "CT2786678");
Vymazáno : user_pref("CT2786678.CurrentServerDate", "13-12-2011");
Vymazáno : user_pref("CT2786678.DialogsAlignMode", "LTR");
Vymazáno : user_pref("CT2786678.DialogsGetterLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.DownloadReferralCookieData", "");
Vymazáno : user_pref("CT2786678.EMailNotifierPollDate", "Tue Dec 13 2011 20:23:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedLastCount5690698542593514850", 384);
Vymazáno : user_pref("CT2786678.FeedPollDate2429156812186649977", "Tue Dec 13 2011 20:18:13 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813040823546", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813130095866", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813224203613", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813230837251", "Tue Dec 13 2011 20:18:13 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813454291735", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813729834876", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156813860870021", "Tue Dec 13 2011 20:18:13 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156814264681793", "Tue Dec 13 2011 20:18:13 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156814863075366", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedPollDate2429156815257761081", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.FeedTTL2429156813040823546", 15);
Vymazáno : user_pref("CT2786678.FeedTTL2429156813130095866", 10);
Vymazáno : user_pref("CT2786678.FeedTTL2429156813454291735", 5);
Vymazáno : user_pref("CT2786678.FeedTTL2429156814264681793", 5);
Vymazáno : user_pref("CT2786678.FirstServerDate", "26-9-2011");
Vymazáno : user_pref("CT2786678.FirstTime", true);
Vymazáno : user_pref("CT2786678.FirstTimeFF3", true);
Vymazáno : user_pref("CT2786678.FixPageNotFoundErrors", false);
Vymazáno : user_pref("CT2786678.GroupingServerCheckInterval", 1440);
Vymazáno : user_pref("CT2786678.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Vymazáno : user_pref("CT2786678.HasUserGlobalKeys", true);
Vymazáno : user_pref("CT2786678.HomePageProtectorEnabled", false);
Vymazáno : user_pref("CT2786678.Initialize", true);
Vymazáno : user_pref("CT2786678.InitializeCommonPrefs", true);
Vymazáno : user_pref("CT2786678.InstallationAndCookieDataSentCount", 3);
Vymazáno : user_pref("CT2786678.InstallationType", "UnknownIntegration");
Vymazáno : user_pref("CT2786678.InstalledDate", "Sun Sep 25 2011 23:28:51 GMT+0200");
Vymazáno : user_pref("CT2786678.IsAlertDBUpdated", true);
Vymazáno : user_pref("CT2786678.IsGrouping", false);
Vymazáno : user_pref("CT2786678.IsInitSetupIni", true);
Vymazáno : user_pref("CT2786678.IsMulticommunity", false);
Vymazáno : user_pref("CT2786678.IsOpenThankYouPage", true);
Vymazáno : user_pref("CT2786678.IsOpenUninstallPage", false);
Vymazáno : user_pref("CT2786678.IsProtectorsInit", true);
Vymazáno : user_pref("CT2786678.LanguagePackLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.LanguagePackReloadIntervalMM", 1440);
Vymazáno : user_pref("CT2786678.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Vymazáno : user_pref("CT2786678.LastLogin_3.6.0.10", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.LatestVersion", "3.8.1.0");
Vymazáno : user_pref("CT2786678.Locale", "en");
Vymazáno : user_pref("CT2786678.MCDetectTooltipHeight", "83");
Vymazáno : user_pref("CT2786678.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Vymazáno : user_pref("CT2786678.MCDetectTooltipWidth", "295");
Vymazáno : user_pref("CT2786678.MyStuffEnabledAtInstallation", true);
Vymazáno : user_pref("CT2786678.OriginalFirstVersion", "3.6.0.10");
Vymazáno : user_pref("CT2786678.SavedHomepage", "resource:/browserconfig.properties");
Vymazáno : user_pref("CT2786678.SearchEngineBeforeUnload", "SweetIM Search");
Vymazáno : user_pref("CT2786678.SearchFromAddressBarIsInit", true);
Vymazáno : user_pref("CT2786678.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT278[...]
Vymazáno : user_pref("CT2786678.SearchInNewTabEnabled", true);
Vymazáno : user_pref("CT2786678.SearchInNewTabIntervalMM", 1440);
Vymazáno : user_pref("CT2786678.SearchInNewTabLastCheckTime", "Tue Dec 13 2011 20:18:11 GMT+0100");
Vymazáno : user_pref("CT2786678.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Vymazáno : user_pref("CT2786678.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usa[...]
Vymazáno : user_pref("CT2786678.SearchProtectorEnabled", false);
Vymazáno : user_pref("CT2786678.SearchProtectorToolbarDisabled", false);
Vymazáno : user_pref("CT2786678.ServiceMapLastCheckTime", "Tue Dec 13 2011 20:18:11 GMT+0100");
Vymazáno : user_pref("CT2786678.SettingsLastCheckTime", "Tue Dec 13 2011 20:18:11 GMT+0100");
Vymazáno : user_pref("CT2786678.SettingsLastUpdate", "1321973052");
Vymazáno : user_pref("CT2786678.ThirdPartyComponentsInterval", 504);
Vymazáno : user_pref("CT2786678.ThirdPartyComponentsLastCheck", "Mon Dec 05 2011 09:53:38 GMT+0100");
Vymazáno : user_pref("CT2786678.ThirdPartyComponentsLastUpdate", "1312887586");
Vymazáno : user_pref("CT2786678.ToolbarShrinkedFromSetup", false);
Vymazáno : user_pref("CT2786678.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2786678");
Vymazáno : user_pref("CT2786678.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]
Vymazáno : user_pref("CT2786678.UserID", "UN82541115558074105");
Vymazáno : user_pref("CT2786678.WeatherNetwork", "");
Vymazáno : user_pref("CT2786678.WeatherPollDate", "Tue Dec 13 2011 20:18:13 GMT+0100");
Vymazáno : user_pref("CT2786678.WeatherUnit", "C");
Vymazáno : user_pref("CT2786678.alertChannelId", "1178763");
Vymazáno : user_pref("CT2786678.backendstorage.cb_firstuse0100", "31");
Vymazáno : user_pref("CT2786678.backendstorage.cbfirsttime", "4D6F6E2044656320303520323031312030393A35333A35322[...]
Vymazáno : user_pref("CT2786678.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...]
Vymazáno : user_pref("CT2786678.globalFirstTimeInfoLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.homepageProtectorEnableByLogin", true);
Vymazáno : user_pref("CT2786678.initDone", true);
Vymazáno : user_pref("CT2786678.isAppTrackingManagerOn", true);
Vymazáno : user_pref("CT2786678.myStuffEnabled", true);
Vymazáno : user_pref("CT2786678.myStuffPublihserMinWidth", 400);
Vymazáno : user_pref("CT2786678.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Vymazáno : user_pref("CT2786678.myStuffServiceIntervalMM", 1440);
Vymazáno : user_pref("CT2786678.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Vymazáno : user_pref("CT2786678.oldAppsList", "129295695672325902,129295695672325903,1000234,129295698017012804[...]
Vymazáno : user_pref("CT2786678.searchProtectorDialogDelayInSec", 10);
Vymazáno : user_pref("CT2786678.searchProtectorEnableByLogin", true);
Vymazáno : user_pref("CT2786678.testingCtid", "");
Vymazáno : user_pref("CT2786678.toolbarAppMetaDataLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CT2786678.toolbarContextMenuLastCheckTime", "Mon Dec 05 2011 09:53:42 GMT+0100");
Vymazáno : user_pref("CT2786678.usagesFlag", 1);
Vymazáno : user_pref("CT3282722_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
Vymazáno : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2786678&Search[...]
Vymazáno : user_pref("CommunityToolbar.ConduitSearchList", " ");
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2786678/CT2786678[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1178763/1174448/CZ", "\"0\"[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1463702/1459356/CZ", "\"0\"[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2786678", [...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", [...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.6.[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2786678",[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253",[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT2786678&octid=[...]
Vymazáno : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"75b[...]
Vymazáno : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Makyna\\AppData\\Roaming\\Mozilla\\[...]
Vymazáno : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.15.1.0");
Vymazáno : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.pr[...]
Vymazáno : user_pref("CommunityToolbar.ToolbarsList", "CT2786678");
Vymazáno : user_pref("CommunityToolbar.ToolbarsList2", "CT2786678");
Vymazáno : user_pref("CommunityToolbar.ToolbarsList4", "CT2786678");
Vymazáno : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Tue Dec 13 2011 20:18:12 GMT+0100");
Vymazáno : user_pref("CommunityToolbar.globalUserId", "4db15d1a-b4f2-4f7f-bc5c-0df791440491");
Vymazáno : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Vymazáno : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Vymazáno : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3072253");
Vymazáno : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Fri Sep 21 2012 17:52:5[...]
Vymazáno : user_pref("CommunityToolbar.notifications.alertEnabled", false);
Vymazáno : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
Vymazáno : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sun Jul 08 2012 20:26:16 GMT+020[...]
Vymazáno : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Vymazáno : user_pref("CommunityToolbar.notifications.locale", "en");
Vymazáno : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
Vymazáno : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Sep 27 2012 20:39:04 GMT+0200");
Vymazáno : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
Vymazáno : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Vymazáno : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Vymazáno : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Vymazáno : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Vymazáno : user_pref("CommunityToolbar.notifications.userId", "56afaae4-506d-4e74-8bbe-edb7d8129baa");
Vymazáno : user_pref("CommunityToolbar.originalHomepage", "hxxp://www.seznam.cz/");
Vymazáno : user_pref("CommunityToolbar.originalSearchEngine", "Google");
Vymazáno : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2481032&SearchSource=1[...]
Vymazáno : user_pref("Smartbar.ConduitSearchEngineList", "Ashampoo US Customized Web Search");
Vymazáno : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2481032[...]
Vymazáno : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
Vymazáno : user_pref("Smartbar.keywordURLSelectedCTID", "CT2481032");
Vymazáno : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Vymazáno : user_pref("browser.search.defaultengine", "Ask.com");
Vymazáno : user_pref("browser.search.defaulturl", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_v[...]
Vymazáno : user_pref("browser.search.order.1", "Ask.com");
Vymazáno : user_pref("extensions.BabylonToolbar.admin", false);
Vymazáno : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Vymazáno : user_pref("extensions.BabylonToolbar.babExt", "");
Vymazáno : user_pref("extensions.BabylonToolbar.babTrack", "affID=112061&tt=100512_3_");
Vymazáno : user_pref("extensions.BabylonToolbar.bbDpng", 20);
Vymazáno : user_pref("extensions.BabylonToolbar.dfltSrch", false);
Vymazáno : user_pref("extensions.BabylonToolbar.hmpg", false);
Vymazáno : user_pref("extensions.BabylonToolbar.id", "5835c7e50000000000001c6f65463f2e");
Vymazáno : user_pref("extensions.BabylonToolbar.instlDay", "15479");
Vymazáno : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Vymazáno : user_pref("extensions.BabylonToolbar.lastDP", 20);
Vymazáno : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.170:18:12");
Vymazáno : user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "12.0");
Vymazáno : user_pref("extensions.BabylonToolbar.newTab", true);
Vymazáno : user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?babsrc=NT_bb");
Vymazáno : user_pref("extensions.BabylonToolbar.noFFXTlbr", false);
Vymazáno : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Vymazáno : user_pref("extensions.BabylonToolbar.propectorlck", 76028171);
Vymazáno : user_pref("extensions.BabylonToolbar.prtkDS", 1);
Vymazáno : user_pref("extensions.BabylonToolbar.prtkHmpg", 1);
Vymazáno : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Vymazáno : user_pref("extensions.BabylonToolbar.ptch_0717", true);
Vymazáno : user_pref("extensions.BabylonToolbar.smplGrp", "none");
Vymazáno : user_pref("extensions.BabylonToolbar.srcExt", "ss");
Vymazáno : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Vymazáno : user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17");
Vymazáno : user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.170:18:12");
Vymazáno : user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17");
Vymazáno : user_pref("extensions.BabylonToolbar_i.aflt", "babsst");
Vymazáno : user_pref("extensions.BabylonToolbar_i.babExt", "");
Vymazáno : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=112061&tt=100512_3_");
Vymazáno : user_pref("extensions.BabylonToolbar_i.hardId", "5835c7e50000000000001c6f65463f2e");
Vymazáno : user_pref("extensions.BabylonToolbar_i.id", "5835c7e50000000000001c6f65463f2e");
Vymazáno : user_pref("extensions.BabylonToolbar_i.instlDay", "15479");
Vymazáno : user_pref("extensions.BabylonToolbar_i.instlRef", "sst");
Vymazáno : user_pref("extensions.BabylonToolbar_i.newTab", true);
Vymazáno : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=112061&tt=10051[...]
Vymazáno : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
Vymazáno : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
Vymazáno : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Vymazáno : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
Vymazáno : user_pref("extensions.BabylonToolbar_i.tlbrId", "base");
Vymazáno : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
Vymazáno : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.170:18:12");
Vymazáno : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
Vymazáno : user_pref("extensions.Softonic.admin", false);
Vymazáno : user_pref("extensions.Softonic.aflt", "SD");
Vymazáno : user_pref("extensions.Softonic.autoRvrt", "false");
Vymazáno : user_pref("extensions.Softonic.cntry", "CZ");
Vymazáno : user_pref("extensions.Softonic.cv", "cv5");
Vymazáno : user_pref("extensions.Softonic.dfltLng", "");
Vymazáno : user_pref("extensions.Softonic.envrmnt", "production");
Vymazáno : user_pref("extensions.Softonic.excTlbr", false);
Vymazáno : user_pref("extensions.Softonic.hdrMd5", "E51BE9DB5DD56548CCB2540A2E881829");
Vymazáno : user_pref("extensions.Softonic.hmpg", false);
Vymazáno : user_pref("extensions.Softonic.id", "5835c7e50000000000001c6f65463f2e");
Vymazáno : user_pref("extensions.Softonic.instlDay", "15503");
Vymazáno : user_pref("extensions.Softonic.instlRef", "MON00006");
Vymazáno : user_pref("extensions.Softonic.isdcmntcmplt", true);
Vymazáno : user_pref("extensions.Softonic.lastVrsnTs", "1.5.24.323:31:05");
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_irrelevant", 57);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_new", 0);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_not_supported", 0);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_site_supported", 1);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_history", 0);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_pop", 0);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_related", 0);
Vymazáno : user_pref("extensions.Softonic.local_cookie_stats_stats_use_typed", 0);
Vymazáno : user_pref("extensions.Softonic.mntrvrsn", "1.3.0");
Vymazáno : user_pref("extensions.Softonic.newTab", false);
Vymazáno : user_pref("extensions.Softonic.prdct", "Softonic");
Vymazáno : user_pref("extensions.Softonic.prtnrId", "softonic");
Vymazáno : user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search set[...]
Vymazáno : user_pref("extensions.Softonic.sg", "az");
Vymazáno : user_pref("extensions.Softonic.smplGrp", "none");
Vymazáno : user_pref("extensions.Softonic.tlbrId", "base");
Vymazáno : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/MON00006/tb_v1?SearchSource[...]
Vymazáno : user_pref("extensions.Softonic.vrsn", "1.5.24.3");
Vymazáno : user_pref("extensions.Softonic.vrsnTs", "1.5.24.323:31:05");
Vymazáno : user_pref("extensions.Softonic.vrsni", "1.5.24.3");
Vymazáno : user_pref("extensions.Softonic_i.newTab", false);
Vymazáno : user_pref("extensions.Softonic_i.smplGrp", "none");
Vymazáno : user_pref("extensions.Softonic_i.vrsnTs", "1.5.24.323:31:05");
Vymazáno : user_pref("extensions.mywebsearch.openSearchURL", "hxxp://search.mywebsearch.com/mywebsearch/opensea[...]
Vymazáno : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
Vymazáno : user_pref("extensions.mywebsearch.prevKwdURL", "chrome://browser-region/locale/region.properties");
Vymazáno : user_pref("icqtoolbar.allowSendURL", false);
Vymazáno : user_pref("icqtoolbar.defSearchChange", true);
Vymazáno : user_pref("icqtoolbar.engineVerified", true);
Vymazáno : user_pref("icqtoolbar.geolastmodified", 1337156056);
Vymazáno : user_pref("icqtoolbar.hiddenElements", "itb_options");
Vymazáno : user_pref("icqtoolbar.history", "cetelem||euro%20money%20czech%20a.s.||Euro%20Money%20CZECH%20a.s.||[...]
Vymazáno : user_pref("icqtoolbar.hpChange", true);
Vymazáno : user_pref("icqtoolbar.icqgeo", 42);
Vymazáno : user_pref("icqtoolbar.installTime", "1333119963");
Vymazáno : user_pref("icqtoolbar.newtab_most_visited_state", "1");
Vymazáno : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
Vymazáno : user_pref("icqtoolbar.newtab_state", "1");
Vymazáno : user_pref("icqtoolbar.numberOfSearches", 0);
Vymazáno : user_pref("icqtoolbar.previousFFVersion", "12.0");
Vymazáno : user_pref("icqtoolbar.showPc", true);
Vymazáno : user_pref("icqtoolbar.skip_default_search", "yes");
Vymazáno : user_pref("icqtoolbar.suggestions", false);
Vymazáno : user_pref("icqtoolbar.uniqueID", "110313342916862291521323075215368");
Vymazáno : user_pref("icqtoolbar.usageStatstTimestamp", 1337459542);
Vymazáno : user_pref("icqtoolbar.userEngineApproved", true);
Vymazáno : user_pref("icqtoolbar.userHpApproved", true);
Vymazáno : user_pref("icqtoolbar.version", "1.4.7");
Vymazáno : user_pref("icqtoolbar.voucherHideClicks", 0);
Vymazáno : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
Vymazáno : user_pref("icqtoolbar.voucherRedeemClicks", 0);
Vymazáno : user_pref("icqtoolbar.voucherWasShown", 0);
Vymazáno : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
Vymazáno : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Vymazáno : user_pref("icqtoolbar.xmlLanguage", "cs");
Vymazáno : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3282722&SearchSource=2&CU[...]
Vymazáno : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...]
Vymazáno : user_pref("smartbar.machineId", "ZSY8O3RJV0PBSE/DZ6NM49IG6PLG2ZTG6INWTDN3FC8+8WBAETUSW48G8LYN/D3A0NV[...]
Vymazáno : user_pref("smartbar.originalSearchAddressUrl", "");
Vymazáno : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
Vymazáno : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
Vymazáno : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
Vymazáno : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
Vymazáno : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
Vymazáno : user_pref("sweetim.toolbar.mode.debug", "false");
Vymazáno : user_pref("sweetim.toolbar.previous.browser.search.defaulturl", "");
Vymazáno : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "ICQ Search");
Vymazáno : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://start.icq.com/");
Vymazáno : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_i[...]
Vymazáno : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engin[...]
Vymazáno : user_pref("sweetim.toolbar.search.history.capacity", "10");
Vymazáno : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "1");
Vymazáno : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "1");
Vymazáno : user_pref("sweetim.toolbar.searchguard.enable", "true");
Vymazáno : user_pref("sweetim.toolbar.simapp_id", "{9FE0B854-53A6-4AED-AC6C-5046DBBABA85}");
Vymazáno : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com/?barid={9FE0B854-53A6-4AED-AC6C-[...]
Vymazáno : user_pref("sweetim.toolbar.version", "1.3.0.1");

-\\ Google Chrome v27.0.1453.94

Soubor : C:\Users\Makyna\AppData\Local\Google\Chrome\User Data\Default\Preferences

Vymazáno [l.4308] : urls_to_restore_on_startup = [ "hxxp://search.conduit.com/?ctid=CT2481032&SearchSource=48", "[...]

*************************

AdwCleaner[R1].txt - [45266 octets] - [21/06/2013 22:10:22]
AdwCleaner[S1].txt - [44428 octets] - [21/06/2013 22:10:31]

########## EOF - C:\AdwCleaner[S1].txt - [44489 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Jen preventivní kontrola

#7 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#8 Příspěvek od Fanouš »

PC je evidentně rychlejší....

Logfile of random's system information tool 1.09 (written by random/random)
Run by Makyna at 2013-06-21 22:46:38
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 44 GB (44%) free of 100 GB
Total RAM: 1790 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:47:35, on 21.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal

Running processes:
C:\Program Files\Spyware Terminator\st_rsser.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Makyna\Downloads\RSIT.exe
C:\Program Files\trend micro\Makyna.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: PC Tools Browser Guard - {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {124d001a-bdcb-472f-aa59-bbe7e4bc3204} - (no file)
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll
O2 - BHO: Browser Guard BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: BHO_TIMELINEREMOVE.Bho - {e7b9b609-19ad-40a4-a288-b300a3087465} - mscoree.dll (file missing)
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BMISR] C:\Program Files\KYE SYSTEMS CORP.\FaceCam 310\BM.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX130"
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler.com - C:\Program Files\Spyware Terminator\st_rsser.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe

--
End of file - 8172 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25, bkmrksync@nokia.com:1.0.0.740, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.6.0.8153, {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29, m3ffxtbr@mywebsearch.com:1.2, {800b5000-a755-47e1-992b-48a1c1357f07}:1.2.9, {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.3, cs@dictionaries.addons.mozilla.org:1.0.2, {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}:6.0.30, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"

"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"{cb84136f-9c44-433a-9048-c5cd9df1dc16}"=C:\Program Files\PC Tools\PC Tools Security\BDT\Firefox\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1167637.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.15.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin]
"Description"=McAfee Mss Plugin
"Path"=C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=15.0.1.13]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=15.0.1.13]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.1.13]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.1.13]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=15.0.1.13]
"Description"=15.0.1.13
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\components\
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsjsrealplayerplugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
NPOFFICE.DLL
nppdf32.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprjplug.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
mall-cz.xml

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\
cs@dictionaries.addons.mozilla.org

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\
icq-search.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll [2013-02-05 94112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-05-08 1136568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-02-25 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-02-25 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7b9b609-19ad-40a4-a288-b300a3087465}]
BHO_TIMELINEREMOVE.Bho - C:\Windows\system32\mscoree.dll [2010-11-05 297808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-05-08 1136568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-04-06 8555040]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-09-30 98304]
"BMISR"=C:\Program Files\KYE SYSTEMS CORP.\FaceCam 310\BM.exe [2009-07-24 217088]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2010-08-30 979328]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-05-07 345312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sony PC Companion"=C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2013-03-18 448736]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE [2013-04-14 249440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CorelDRAW Graphics Suite 11b]
C:\Program Files\Corel\Corel Graphics 12\Languages\CZ\Programs\registration.exe /title=CorelDRAW Graphics Suite 12 /date=033113 serial=DR12CNC-8301292-WBN lang=CZ []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Makyna\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Makyna\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX130 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE [2013-04-14 249440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\Makyna\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-19 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSU_agent]
C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2013-01-14 2777736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2013-01-14 3674248]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSDMonitor]
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2010-08-05 104408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-12-12 4763008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\307523~1.318\SSSCHE~1.EXE [2013-02-05 272248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2013-05-22 204800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave3"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-06-21 22:10:55 ----A---- C:\Windows\DeleteOnReboot.bat
2013-06-21 22:10:31 ----A---- C:\AdwCleaner[S1].txt
2013-06-21 22:10:22 ----A---- C:\AdwCleaner[R1].txt
2013-06-12 17:21:35 ----A---- C:\Windows\system32\urlmon.dll
2013-06-12 17:21:35 ----A---- C:\Windows\system32\ieui.dll
2013-06-12 17:21:34 ----A---- C:\Windows\system32\ieframe.dll
2013-06-12 17:21:33 ----A---- C:\Windows\system32\mshtml.dll
2013-06-12 17:21:33 ----A---- C:\Windows\system32\iertutil.dll
2013-06-12 17:17:11 ----A---- C:\Windows\system32\jscript.dll
2013-06-12 17:17:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-06-12 17:17:10 ----A---- C:\Windows\system32\jscript9.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-06-12 17:17:09 ----A---- C:\Windows\system32\msfeeds.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iesysprep.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iesetup.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iernonce.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\ie4uinit.exe
2013-06-12 17:17:07 ----A---- C:\Windows\system32\wininet.dll
2013-06-12 16:38:02 ----D---- C:\ProgramData\FarmFrenzy_Rome
2013-06-12 14:05:53 ----D---- C:\ProgramData\FarmFrenzy-PizzaParty
2013-06-12 13:57:02 ----D---- C:\ProgramData\FarmFrenzy2
2013-06-12 07:36:05 ----A---- C:\Windows\system32\d3d11.dll
2013-06-12 07:36:02 ----A---- C:\Windows\system32\cryptdlg.dll
2013-06-12 07:36:00 ----A---- C:\Windows\system32\win32spl.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\cryptsvc.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\cryptnet.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\crypt32.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\certutil.exe
2013-06-12 07:35:57 ----A---- C:\Windows\system32\certenc.dll
2013-06-12 07:35:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-06-12 07:35:49 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-06-12 07:35:48 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-06-12 07:35:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-06-04 18:56:34 ----D---- C:\Program Files\Common Files\PCSuite
2013-06-04 18:56:33 ----D---- C:\Program Files\Common Files\Nokia
2013-05-25 13:26:59 ----D---- C:\Users\Makyna\AppData\Roaming\vlc
2013-05-22 23:15:12 ----A---- C:\Windows\system32\wextract.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\vbscript.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\pngfilt.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\occache.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\msrating.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\msls31.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\mshtmled.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\mshta.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\inseng.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\imgutil.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\iexpress.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\ieUnatt.exe
2013-05-22 23:15:12 ----A---- C:\Windows\system32\iepeers.dll
2013-05-22 23:15:12 ----A---- C:\Windows\system32\elshyph.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\webcheck.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\url.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-05-22 23:15:11 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\mshtmler.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-05-22 23:15:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\licmgr10.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\iedkcs32.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\ieapfltr.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\ieapfltr.dat
2013-05-22 23:15:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\icardie.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\dxtrans.dll
2013-05-22 23:15:11 ----A---- C:\Windows\system32\dxtmsft.dll
2013-05-22 14:19:41 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2013-06-21 22:46:42 ----D---- C:\Windows\temp
2013-06-21 22:46:42 ----D---- C:\Program Files\trend micro
2013-06-21 22:42:34 ----D---- C:\Windows\system32\drivers\etc
2013-06-21 22:34:04 ----D---- C:\Windows\Prefetch
2013-06-21 22:29:05 ----D---- C:\Windows\tracing
2013-06-21 22:27:55 ----D---- C:\Windows\system32\config
2013-06-21 22:23:29 ----AD---- C:\ProgramData\TEMP
2013-06-21 22:23:24 ----D---- C:\Windows
2013-06-21 22:10:57 ----RD---- C:\Program Files
2013-06-21 22:10:57 ----D---- C:\Program Files\Common Files
2013-06-21 22:10:55 ----D---- C:\ProgramData
2013-06-21 12:47:06 ----D---- C:\Windows\system32\FxsTmp
2013-06-21 10:50:48 ----SHD---- C:\System Volume Information
2013-06-17 10:59:34 ----D---- C:\ProgramData\AlawarWrapper
2013-06-14 22:56:41 ----D---- C:\Users\Makyna\AppData\Roaming\Skype
2013-06-14 10:50:06 ----SHD---- C:\Windows\Installer
2013-06-14 10:49:32 ----D---- C:\ProgramData\Skype
2013-06-14 10:49:24 ----RD---- C:\Program Files\Skype
2013-06-13 18:58:10 ----D---- C:\Windows\rescache
2013-06-12 21:00:19 ----D---- C:\Windows\System32
2013-06-12 21:00:15 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-06-12 17:55:14 ----HD---- C:\Program Files\InstallShield Installation Information
2013-06-12 17:55:05 ----RSD---- C:\Windows\assembly
2013-06-12 17:48:31 ----D---- C:\Windows\winsxs
2013-06-12 17:25:01 ----D---- C:\Windows\system32\cs-CZ
2013-06-12 17:25:01 ----D---- C:\Program Files\Internet Explorer
2013-06-12 17:24:59 ----D---- C:\Windows\system32\drivers
2013-06-12 17:22:54 ----D---- C:\ProgramData\Microsoft Help
2013-06-12 17:21:41 ----D---- C:\Windows\system32\catroot2
2013-06-12 17:21:41 ----D---- C:\Windows\system32\catroot
2013-06-12 17:17:48 ----D---- C:\Windows\debug
2013-06-12 17:17:46 ----A---- C:\Windows\system32\MRT.exe
2013-06-12 17:15:27 ----D---- C:\Users\Makyna\AppData\Roaming\uTorrent
2013-06-12 17:07:55 ----D---- C:\Program Files\Microsoft Games
2013-06-12 16:56:31 ----D---- C:\Users\Makyna\AppData\Roaming\DAEMON Tools Lite
2013-06-10 12:58:20 ----D---- C:\Windows\inf
2013-06-10 12:58:20 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-04 19:04:28 ----D---- C:\Windows\system32\DriverStore
2013-06-04 18:58:58 ----D---- C:\Users\Makyna\AppData\Roaming\Nokia
2013-06-04 18:56:33 ----D---- C:\Program Files\Nokia
2013-06-04 18:56:05 ----D---- C:\ProgramData\Nokia
2013-06-04 13:33:33 ----D---- C:\Program Files\Sony
2013-06-03 20:33:32 ----D---- C:\Users\Makyna\AppData\Roaming\Real
2013-05-31 16:48:04 ----D---- C:\Windows\system32\Tasks
2013-05-31 16:48:03 ----D---- C:\Windows\Tasks
2013-05-27 22:14:47 ----D---- C:\ProgramData\Sony Ericsson
2013-05-27 22:14:38 ----D---- C:\Program Files\Sony Ericsson
2013-05-23 16:44:27 ----D---- C:\Windows\Panther
2013-05-23 16:43:31 ----D---- C:\Windows\system32\migration
2013-05-23 16:43:31 ----D---- C:\Windows\PolicyDefinitions
2013-05-23 16:43:30 ----D---- C:\Windows\system32\en-US
2013-05-23 16:43:25 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-05-22 23:17:36 ----D---- C:\Windows\Logs

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-11-16 428088]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2010-04-27 19496]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-03-28 135136]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-03-28 37352]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-12-24 239168]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2011-06-21 32768]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2012-08-27 28520]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-03-28 84744]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-09-29 6472192]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-09-29 228352]
R3 busenum;Synology Virtual USB Hub; C:\Windows\system32\DRIVERS\busenum.sys [2011-02-18 46304]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2013-06-21 17488]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-04-06 3066912]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2010-01-27 183584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2010-03-22 278560]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [2012-09-19 10088]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aazr1hj0;aazr1hj0; C:\Windows\system32\drivers\aazr1hj0.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 AVerBDA6x;AVerBDA6x service; C:\Windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 AVerEth;AVerMedia Ethernet Adapter for MPE Service; C:\Windows\system32\DRIVERS\AVerEth.sys [2009-04-22 19584]
S3 AVerIR;AVerMedia Infrared Receiver; C:\Windows\system32\DRIVERS\AVerIR.sys [2008-09-08 87552]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2010-06-14 36608]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2012-03-05 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2012-03-05 25512]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2013-05-19 40776]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 PCTBD;PC Tools Browser Defender Driver; C:\Windows\System32\Drivers\PCTBD.sys [2012-05-08 70736]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8192su.sys [2010-11-25 603240]
S3 rtlss;Service for enabling selective suspend to RTL device; C:\Windows\System32\Drivers\rtlss.sys [2010-06-21 23144]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-11-02 116608]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-09-29 176128]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-03-28 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-03-28 86752]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe [2012-05-08 575416]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [2013-04-14 142432]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2013-01-14 587912]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [2013-01-31 1724192]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-02-28 529704]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-06-28 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-03 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-06-28 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe [2013-02-05 235216]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-22 117144]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-11-19 1343400]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2010-08-05 583640]
S4 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000]

-----------------EOF-----------------

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#9 Příspěvek od Fanouš »

Jen ještě malá odbočka. svého času byl MWAV - slovy Vašeho kolegy byl úchylně pomalý, ale našel. jak je tomu dnes ? našel jsem jejich stránky http://www.escanav.com/english/content/ ... pcode=MWAV a zdá se, že spol funguje dál ... narozdíl třeba od Mcafee... ty mají svoje nejlepší léta za s sebou ....

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Jen preventivní kontrola

#10 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\Skype\Toolbars
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1792373975-745772757-864007972-1003UA.job
C:\Program Files\McAfee Security Scan

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]

:services
Skype C2C Service

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#11 Příspěvek od Fanouš »

Omlovám se, dostal jsem se k tomu až teď. vše provedeno

Logfile of random's system information tool 1.09 (written by random/random)
Run by Makyna at 2013-06-22 20:45:57
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 44 GB (44%) free of 100 GB
Total RAM: 1790 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:46:40, on 22.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Spyware Terminator\st_rsser.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\KYE SYSTEMS CORP\FaceCam 310\BM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Users\Makyna\Downloads\RSIT.exe
C:\Program Files\trend micro\Makyna.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: PC Tools Browser Guard - {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {124d001a-bdcb-472f-aa59-bbe7e4bc3204} - (no file)
O2 - BHO: Browser Guard BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: BHO_TIMELINEREMOVE.Bho - {e7b9b609-19ad-40a4-a288-b300a3087465} - mscoree.dll (file missing)
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BMISR] C:\Program Files\KYE SYSTEMS CORP.\FaceCam 310\BM.exe
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX130"
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - Unknown owner - C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler.com - C:\Program Files\Spyware Terminator\st_rsser.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe

--
End of file - 8006 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25, bkmrksync@nokia.com:1.0.0.740, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.6.0.8153, {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29, m3ffxtbr@mywebsearch.com:1.2, {800b5000-a755-47e1-992b-48a1c1357f07}:1.2.9, {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.3, cs@dictionaries.addons.mozilla.org:1.0.2, {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}:6.0.30, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"

"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"{cb84136f-9c44-433a-9048-c5cd9df1dc16}"=C:\Program Files\PC Tools\PC Tools Security\BDT\Firefox\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1167637.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin]
"Description"=McAfee Mss Plugin
"Path"=C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=15.0.1.13]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=15.0.1.13]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.1.13]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.1.13]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=15.0.1.13]
"Description"=15.0.1.13
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\components\
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsjsrealplayerplugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
NPOFFICE.DLL
nppdf32.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprjplug.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
mall-cz.xml

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\extensions\
cs@dictionaries.addons.mozilla.org

C:\Users\Makyna\AppData\Roaming\Mozilla\Firefox\Profiles\j0bx9e83.default\searchplugins\
icq-search.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-05-08 1136568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-21 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-21 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7b9b609-19ad-40a4-a288-b300a3087465}]
BHO_TIMELINEREMOVE.Bho - C:\Windows\system32\mscoree.dll [2010-11-05 297808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30 266240]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-05-08 1136568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-04-06 8555040]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-09-30 98304]
"BMISR"=C:\Program Files\KYE SYSTEMS CORP.\FaceCam 310\BM.exe [2009-07-24 217088]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2010-08-30 979328]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-05-07 345312]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE [2013-04-14 249440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CorelDRAW Graphics Suite 11b]
C:\Program Files\Corel\Corel Graphics 12\Languages\CZ\Programs\registration.exe /title=CorelDRAW Graphics Suite 12 /date=033113 serial=DR12CNC-8301292-WBN lang=CZ []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Makyna\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Makyna\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX130 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJE.EXE [2013-04-14 249440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSU_agent]
C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion]
C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2013-03-18 448736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2013-01-14 2777736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2013-01-14 3674248]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSDMonitor]
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2010-08-05 104408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-12-12 4763008]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2013-05-22 204800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave3"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-06-22 20:34:21 ----D---- C:\_OTM
2013-06-21 23:04:35 ----D---- C:\Users\Makyna\AppData\Roaming\Download Manager
2013-06-21 23:03:45 ----D---- C:\Program Files\Common Files\Java
2013-06-21 23:03:29 ----A---- C:\Windows\system32\javaws.exe
2013-06-21 23:03:23 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-06-21 23:03:23 ----A---- C:\Windows\system32\javaw.exe
2013-06-21 23:03:23 ----A---- C:\Windows\system32\java.exe
2013-06-21 22:10:55 ----A---- C:\Windows\DeleteOnReboot.bat
2013-06-21 22:10:31 ----A---- C:\AdwCleaner[S1].txt
2013-06-21 22:10:22 ----A---- C:\AdwCleaner[R1].txt
2013-06-12 17:21:35 ----A---- C:\Windows\system32\urlmon.dll
2013-06-12 17:21:35 ----A---- C:\Windows\system32\ieui.dll
2013-06-12 17:21:34 ----A---- C:\Windows\system32\ieframe.dll
2013-06-12 17:21:33 ----A---- C:\Windows\system32\mshtml.dll
2013-06-12 17:21:33 ----A---- C:\Windows\system32\iertutil.dll
2013-06-12 17:17:11 ----A---- C:\Windows\system32\jscript.dll
2013-06-12 17:17:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-06-12 17:17:10 ----A---- C:\Windows\system32\jscript9.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-06-12 17:17:09 ----A---- C:\Windows\system32\msfeeds.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iesysprep.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iesetup.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\iernonce.dll
2013-06-12 17:17:09 ----A---- C:\Windows\system32\ie4uinit.exe
2013-06-12 17:17:07 ----A---- C:\Windows\system32\wininet.dll
2013-06-12 16:38:02 ----D---- C:\ProgramData\FarmFrenzy_Rome
2013-06-12 14:05:53 ----D---- C:\ProgramData\FarmFrenzy-PizzaParty
2013-06-12 13:57:02 ----D---- C:\ProgramData\FarmFrenzy2
2013-06-12 07:36:05 ----A---- C:\Windows\system32\d3d11.dll
2013-06-12 07:36:02 ----A---- C:\Windows\system32\cryptdlg.dll
2013-06-12 07:36:00 ----A---- C:\Windows\system32\win32spl.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\cryptsvc.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\cryptnet.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\crypt32.dll
2013-06-12 07:35:57 ----A---- C:\Windows\system32\certutil.exe
2013-06-12 07:35:57 ----A---- C:\Windows\system32\certenc.dll
2013-06-12 07:35:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-06-12 07:35:49 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-06-12 07:35:48 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-06-12 07:35:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-06-04 18:56:34 ----D---- C:\Program Files\Common Files\PCSuite
2013-06-04 18:56:33 ----D---- C:\Program Files\Common Files\Nokia
2013-05-25 13:26:59 ----D---- C:\Users\Makyna\AppData\Roaming\vlc

======List of files/folders modified in the last 1 month======

2013-06-22 20:46:16 ----AD---- C:\ProgramData\TEMP
2013-06-22 20:46:14 ----D---- C:\Windows
2013-06-22 20:46:02 ----D---- C:\Windows\temp
2013-06-22 20:45:59 ----D---- C:\Program Files\trend micro
2013-06-22 20:45:41 ----D---- C:\Windows\tracing
2013-06-22 20:45:41 ----D---- C:\Windows\Prefetch
2013-06-22 20:35:25 ----D---- C:\Windows\system32\config
2013-06-22 20:34:22 ----RD---- C:\Program Files\Skype
2013-06-22 20:34:22 ----RD---- C:\Program Files
2013-06-22 20:34:22 ----D---- C:\Windows\Tasks
2013-06-22 18:22:01 ----D---- C:\Windows\inf
2013-06-22 13:12:02 ----D---- C:\Windows\system32\FxsTmp
2013-06-21 23:03:45 ----SHD---- C:\Windows\Installer
2013-06-21 23:03:45 ----D---- C:\Program Files\Common Files
2013-06-21 23:03:29 ----D---- C:\Windows\System32
2013-06-21 23:03:17 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-06-21 23:03:17 ----A---- C:\Windows\system32\deployJava1.dll
2013-06-21 23:02:21 ----SHD---- C:\System Volume Information
2013-06-21 22:51:48 ----D---- C:\Users\Makyna\AppData\Roaming\uTorrent
2013-06-21 22:51:48 ----D---- C:\Users\Makyna\AppData\Roaming\DAEMON Tools Lite
2013-06-21 22:51:47 ----D---- C:\Windows\Panther
2013-06-21 22:51:46 ----D---- C:\Windows\Logs
2013-06-21 22:51:46 ----D---- C:\Windows\debug
2013-06-21 22:42:34 ----D---- C:\Windows\system32\drivers\etc
2013-06-21 22:10:55 ----D---- C:\ProgramData
2013-06-17 10:59:34 ----D---- C:\ProgramData\AlawarWrapper
2013-06-14 22:56:41 ----D---- C:\Users\Makyna\AppData\Roaming\Skype
2013-06-14 10:49:32 ----D---- C:\ProgramData\Skype
2013-06-13 18:58:10 ----D---- C:\Windows\rescache
2013-06-12 21:00:15 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-06-12 17:55:14 ----HD---- C:\Program Files\InstallShield Installation Information
2013-06-12 17:55:05 ----RSD---- C:\Windows\assembly
2013-06-12 17:48:31 ----D---- C:\Windows\winsxs
2013-06-12 17:25:01 ----D---- C:\Windows\system32\cs-CZ
2013-06-12 17:25:01 ----D---- C:\Program Files\Internet Explorer
2013-06-12 17:24:59 ----D---- C:\Windows\system32\drivers
2013-06-12 17:22:54 ----D---- C:\ProgramData\Microsoft Help
2013-06-12 17:21:41 ----D---- C:\Windows\system32\catroot2
2013-06-12 17:21:41 ----D---- C:\Windows\system32\catroot
2013-06-12 17:17:46 ----A---- C:\Windows\system32\MRT.exe
2013-06-12 17:07:55 ----D---- C:\Program Files\Microsoft Games
2013-06-10 12:58:20 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-04 19:04:28 ----D---- C:\Windows\system32\DriverStore
2013-06-04 18:58:58 ----D---- C:\Users\Makyna\AppData\Roaming\Nokia
2013-06-04 18:56:33 ----D---- C:\Program Files\Nokia
2013-06-04 18:56:05 ----D---- C:\ProgramData\Nokia
2013-06-04 13:33:33 ----D---- C:\Program Files\Sony
2013-06-03 20:33:32 ----D---- C:\Users\Makyna\AppData\Roaming\Real
2013-05-31 16:48:04 ----D---- C:\Windows\system32\Tasks
2013-05-27 22:14:47 ----D---- C:\ProgramData\Sony Ericsson
2013-05-27 22:14:38 ----D---- C:\Program Files\Sony Ericsson
2013-05-23 16:43:31 ----D---- C:\Windows\system32\migration
2013-05-23 16:43:31 ----D---- C:\Windows\PolicyDefinitions
2013-05-23 16:43:30 ----D---- C:\Windows\system32\en-US
2013-05-23 16:43:25 ----D---- C:\Program Files\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-11-16 428088]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2010-04-27 19496]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-03-28 135136]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-03-28 37352]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-12-24 239168]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2011-06-21 32768]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2012-08-27 28520]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-03-28 84744]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-09-29 6472192]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-09-29 228352]
R3 busenum;Synology Virtual USB Hub; C:\Windows\system32\DRIVERS\busenum.sys [2011-02-18 46304]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2013-06-22 17488]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-04-06 3066912]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2010-01-27 183584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2010-03-22 278560]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [2012-09-19 10088]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 atca6xm2;atca6xm2; C:\Windows\system32\drivers\atca6xm2.sys []
S3 AVerBDA6x;AVerBDA6x service; C:\Windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 AVerEth;AVerMedia Ethernet Adapter for MPE Service; C:\Windows\system32\DRIVERS\AVerEth.sys [2009-04-22 19584]
S3 AVerIR;AVerMedia Infrared Receiver; C:\Windows\system32\DRIVERS\AVerIR.sys [2008-09-08 87552]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2010-06-14 36608]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2012-03-05 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2012-03-05 25512]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2013-05-19 40776]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 PCTBD;PC Tools Browser Defender Driver; C:\Windows\System32\Drivers\PCTBD.sys [2012-05-08 70736]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8192su.sys [2010-11-25 603240]
S3 rtlss;Service for enabling selective suspend to RTL device; C:\Windows\System32\Drivers\rtlss.sys [2010-06-21 23144]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-11-02 116608]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-09-29 176128]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-03-28 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-03-28 86752]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe [2012-05-08 575416]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [2013-04-14 142432]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2013-01-14 587912]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [2013-01-31 1724192]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-06-28 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-03 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-06-28 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe []
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-22 117144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-02-28 529704]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-11-19 1343400]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2010-08-05 583640]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Jen preventivní kontrola

#12 Příspěvek od Rudy »

Dvouklikem na soubor C:\Program Files\trend micro\Makyna.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {124d001a-bdcb-472f-aa59-bbe7e4bc3204} - (no file)
O2 - BHO: BHO_TIMELINEREMOVE.Bho - {e7b9b609-19ad-40a4-a288-b300a3087465} - mscoree.dll (file missing)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Fanouš
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 13 srp 2006 10:51

Re: Jen preventivní kontrola

#13 Příspěvek od Fanouš »

hotovo. už jen restart... děkuji za pomoc :-)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Jen preventivní kontrola

#14 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno