
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
spomalenie pc blokovanie ip adries esetom
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
spomalenie pc blokovanie ip adries esetom
chcel by som vas poprosit o kontrolu logu popis chyby:niekedy na nom nic nerobym a aj tak počitač pracuje ked zapnem mozilu ta eset my zacne blokovat nejake ipečky tu je log :
Logfile of random's system information tool 1.09 (written by random/random)
Run by Tomáš at 2013-08-27 09:52:33
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 812 GB (86%) free of 946 GB
Total RAM: 3319 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:52:57, on 27.08.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe
C:\Program Files\FinePixViewerS\QuickDCF2.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Steam\steam.exe
C:\Users\Tomáš\Downloads\RSIT.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll
R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: Claro LTD Helper Object - {000F18F2-09EB-4A59-82B2-5AE4184C39C3} - C:\Program Files\Claro LTD\claro\1.6.4.1\bh\claro.dll
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - (no file)
O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: DVDVideoSoftTB - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\ADVANC~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - (no file)
O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O3 - Toolbar: Claro LTD Toolbar - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - C:\Program Files\Claro LTD\claro\1.6.4.1\claroTlbr.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [FileOpenBroker] C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Advanced SystemCare 6] "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Exif Launcher S.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Tomáš\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://90.182.35.27
O16 - DPF: {26E1BEAF-C1A1-482B-8714-08844F1BCF7F} (GTileContainerCtl Class) - http://90.182.35.27/webviewer.cab
O16 - DPF: {62789780-B744-11D0-986B-00609731A21D} (Autodesk MapGuide ActiveX Control) - http://195.28.70.134/kapor2/lib/mgaxctrl.cab
O16 - DPF: {BF776FD3-69B4-4151-AC97-3A2A64753E18} (GVersionManager Class) - http://90.182.35.27/GVersionMan.cab
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} (Battlefield Play4Free Updater) - https://battlefield.play4free.com/stati ... 0.80.2.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: AffinegyService - Affinegy, Inc. - C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: FileOpen Manager Service (FileOpenManagerSvc) - FileOpen Systems Inc. - C:\Program Files\FileOpen\Services\FileOpenManagerSvc32.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Unknown owner - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 11437 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default
prefs.js - "browser.startup.homepage" - "http://start.funmoods.com"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... ource=2&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll
npwachk.dll
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
babylon.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\extensions\
ascsurfingprotection@iobit.com
battlefieldplay4free@ea.com
ffxtlbr@babylon.com
ffxtlbr@funmoods.com
OneClickDownload@OneClickDownload.com
{687578b9-7132-4a7a-80e4-30ee31099e03}
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\searchplugins\
funmoods.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}]
Claro LTD Helper Object - C:\Program Files\Claro LTD\claro\1.6.4.1\bh\claro.dll [2012-07-09 263272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578b9-7132-4a7a-80e4-30ee31099e03}]
uTorrentControl2 Toolbar - C:\Program Files\uTorrentControl2\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-08-13 463272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-21 192592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-08-14 4533120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~1\IObit\ADVANC~1\BROWER~1\ASCPLU~1.DLL [2013-04-24 659264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-08-13 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{872b5b88-9db5-4310-bdd0-ac189557e5f5} - DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll [2011-05-09 176936]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
{687578b9-7132-4a7a-80e4-30ee31099e03} - uTorrentControl2 Toolbar - C:\Program Files\uTorrentControl2\prxtbuTor.dll [2011-05-09 176936]
{9E131A93-EED7-4BEB-B015-A0ADB30B5646} - Claro LTD Toolbar - C:\Program Files\Claro LTD\claro\1.6.4.1\claroTlbr.dll [2012-07-09 287848]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-21 192592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"FileOpenBroker"=C:\Program Files\FileOpen\Services\FileOpenBroker32.exe [2012-04-30 836480]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2013-03-21 5078504]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2011-09-28 39408]
"Steam"=C:\Program Files\Steam\steam.exe [2013-02-14 1597864]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"Advanced SystemCare 6"=C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe [2013-04-18 491840]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Exif Launcher S.lnk - C:\Program Files\FinePixViewerS\QuickDCF2.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=157
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.iv41"=ir41_32.ax
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.XVID"=xvidvfw.dll
"msacm.iac2"=iac25_32.ax
"vidc.iv50"=ir50_32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-08-27 09:52:33 ----D---- C:\rsit
2013-08-27 09:52:33 ----D---- C:\Program Files\trend micro
2013-08-26 15:13:23 ----D---- C:\Program Files\Microchip
2013-08-22 21:10:09 ----D---- C:\Users\Tomáš\AppData\Roaming\PyScripter
2013-08-22 21:10:08 ----D---- C:\Program Files\PyScripter
2013-08-22 10:57:06 ----D---- C:\Python27
2013-08-21 10:26:28 ----D---- C:\ProgramData\Blizzard Entertainment
2013-08-14 11:36:50 ----D---- C:\Windows\system32\MRT
2013-08-14 11:33:44 ----A---- C:\Windows\system32\jscript.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\jscript9.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\ieui.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\iesetup.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\urlmon.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-14 11:33:42 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\iertutil.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\iernonce.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-14 11:33:41 ----A---- C:\Windows\system32\wininet.dll
2013-08-14 11:33:39 ----A---- C:\Windows\system32\ieframe.dll
2013-08-14 11:33:38 ----A---- C:\Windows\system32\mshtml.dll
2013-08-14 09:21:11 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\wintrust.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\crypt32.dll
2013-08-14 09:21:06 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-08-14 09:21:06 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-08-14 09:21:06 ----A---- C:\Windows\system32\ntdll.dll
2013-08-14 09:21:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-08-14 09:21:05 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-14 09:21:00 ----A---- C:\Windows\system32\tzres.dll
2013-08-14 09:20:59 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-13 10:17:27 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-08-13 10:09:14 ----D---- C:\Program Files\Common Files\Java
2013-08-13 10:09:07 ----A---- C:\Windows\system32\javaws.exe
2013-08-13 10:08:55 ----A---- C:\Windows\system32\javaw.exe
2013-08-13 10:08:55 ----A---- C:\Windows\system32\java.exe
2013-07-30 11:47:36 ----D---- C:\ProgramData\TrackMania
2013-07-30 11:43:44 ----D---- C:\Program Files\TmNationsForever
======List of files/folders modified in the last 1 month======
2013-08-27 09:52:45 ----D---- C:\Windows\Prefetch
2013-08-27 09:52:35 ----D---- C:\Windows\Temp
2013-08-27 09:52:33 ----RD---- C:\Program Files
2013-08-27 09:31:28 ----D---- C:\Program Files\Steam
2013-08-27 09:30:05 ----D---- C:\Windows\system32\config
2013-08-27 09:29:57 ----D---- C:\Windows\system32\catroot2
2013-08-27 09:28:08 ----D---- C:\ProgramData\NVIDIA
2013-08-26 15:15:57 ----SHD---- C:\Windows\Installer
2013-08-26 15:15:57 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-26 15:15:26 ----D---- C:\Windows\System32
2013-08-26 15:12:34 ----SHD---- C:\System Volume Information
2013-08-24 09:32:44 ----D---- C:\ProgramData\Skype
2013-08-24 09:32:43 ----RD---- C:\Program Files\Skype
2013-08-22 10:58:56 ----D---- C:\Users\Tomáš\AppData\Roaming\Winamp
2013-08-22 10:23:23 ----D---- C:\Users\Tomáš\AppData\Roaming\.minecraft
2013-08-22 09:15:33 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-08-21 10:27:19 ----D---- C:\Counter-Strike 1.6
2013-08-21 10:27:02 ----D---- C:\Program Files\World of Warcraft Wotlk
2013-08-21 10:26:28 ----HD---- C:\ProgramData
2013-08-20 22:41:26 ----A---- C:\Users\Tomáš\AppData\Roaming\burnaware.ini
2013-08-20 19:05:19 ----D---- C:\Windows\rescache
2013-08-20 15:59:34 ----D---- C:\Windows\inf
2013-08-20 15:59:34 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-20 12:38:34 ----D---- C:\Windows\system32\NDF
2013-08-18 16:39:34 ----D---- C:\Users\Tomáš\AppData\Roaming\EL-Revize
2013-08-16 13:00:39 ----D---- C:\Windows\Microsoft.NET
2013-08-16 13:00:38 ----RSD---- C:\Windows\assembly
2013-08-14 18:45:42 ----D---- C:\Windows\winsxs
2013-08-14 18:44:08 ----D---- C:\Windows\system32\sk-SK
2013-08-14 18:44:08 ----D---- C:\Windows\system32\drivers
2013-08-14 18:44:07 ----D---- C:\Program Files\Internet Explorer
2013-08-14 11:36:47 ----A---- C:\Windows\system32\MRT.exe
2013-08-14 11:33:52 ----D---- C:\Windows\system32\catroot
2013-08-13 10:17:19 ----A---- C:\Windows\system32\npdeployJava1.dll
2013-08-13 10:17:19 ----A---- C:\Windows\system32\deployJava1.dll
2013-08-13 10:17:18 ----D---- C:\Program Files\Java
2013-08-13 10:09:14 ----D---- C:\Program Files\Common Files
2013-08-09 18:05:03 ----D---- C:\ALFA
2013-07-30 11:45:37 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2013-02-14 47568]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2010-11-06 354840]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-01-25 466008]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-03-16 242240]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-02-14 171680]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-01-10 122240]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2013-01-10 46056]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2009-09-23 55040]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2009-09-23 294912]
R2 Angelnt;Angelnt; C:\Windows\System32\Drivers\ANGELNT.SYS [2011-09-28 51072]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2013-01-10 150080]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2009-10-28 5120]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2011-03-03 139368]
R3 PAC7302;CANYON USB PC CAMERA; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-11-08 458752]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 579944]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 194408]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 21864]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 19304]
R3 vpcbus;Virtual PC Host Bus Service; C:\Windows\system32\DRIVERS\vpchbus.sys [2009-09-23 165376]
R3 vpcusb;USB Virtualization Connector Service; C:\Windows\system32\DRIVERS\vpcusb.sys [2009-09-23 78336]
S2 DgiVecp;DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys []
S3 a3s6ah2c;a3s6ah2c; C:\Windows\system32\drivers\a3s6ah2c.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 ALSysIO;ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys []
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena Classic\safedrv.sys []
S3 MEI;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECI.sys [2010-10-19 41088]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-01-17 14848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-01-17 49664]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-01-17 27136]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe [2013-04-18 574272]
R2 AffinegyService;AffinegyService; C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe [2010-07-28 569752]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2013-03-21 1341664]
R2 FileOpenManagerSvc;FileOpen Manager Service; C:\Program Files\FileOpen\Services\FileOpenManagerSvc32.exe [2012-04-30 213888]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-07-07 76888]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe [2013-07-23 240288]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
R3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2013-02-14 543144]
S2 BBSvc;BingBar Service; C:\Program Files\Microsoft\BingBar\7.2.241.0\BBSvc.exe [2013-07-23 193696]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-09-28 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-26 1260320]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-03 160944]
S2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22 257416]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-06-10 31064]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-09-28 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-25 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Tomáš at 2013-08-27 09:52:33
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 812 GB (86%) free of 946 GB
Total RAM: 3319 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:52:57, on 27.08.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe
C:\Program Files\FinePixViewerS\QuickDCF2.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Steam\steam.exe
C:\Users\Tomáš\Downloads\RSIT.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll
R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: Claro LTD Helper Object - {000F18F2-09EB-4A59-82B2-5AE4184C39C3} - C:\Program Files\Claro LTD\claro\1.6.4.1\bh\claro.dll
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - (no file)
O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: DVDVideoSoftTB - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\ADVANC~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - (no file)
O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O3 - Toolbar: Claro LTD Toolbar - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - C:\Program Files\Claro LTD\claro\1.6.4.1\claroTlbr.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [FileOpenBroker] C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Advanced SystemCare 6] "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Exif Launcher S.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Tomáš\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://90.182.35.27
O16 - DPF: {26E1BEAF-C1A1-482B-8714-08844F1BCF7F} (GTileContainerCtl Class) - http://90.182.35.27/webviewer.cab
O16 - DPF: {62789780-B744-11D0-986B-00609731A21D} (Autodesk MapGuide ActiveX Control) - http://195.28.70.134/kapor2/lib/mgaxctrl.cab
O16 - DPF: {BF776FD3-69B4-4151-AC97-3A2A64753E18} (GVersionManager Class) - http://90.182.35.27/GVersionMan.cab
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} (Battlefield Play4Free Updater) - https://battlefield.play4free.com/stati ... 0.80.2.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: AffinegyService - Affinegy, Inc. - C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: FileOpen Manager Service (FileOpenManagerSvc) - FileOpen Systems Inc. - C:\Program Files\FileOpen\Services\FileOpenManagerSvc32.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Unknown owner - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 11437 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default
prefs.js - "browser.startup.homepage" - "http://start.funmoods.com"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... ource=2&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll
npwachk.dll
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
babylon.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\extensions\
ascsurfingprotection@iobit.com
battlefieldplay4free@ea.com
ffxtlbr@babylon.com
ffxtlbr@funmoods.com
OneClickDownload@OneClickDownload.com
{687578b9-7132-4a7a-80e4-30ee31099e03}
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\searchplugins\
funmoods.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}]
Claro LTD Helper Object - C:\Program Files\Claro LTD\claro\1.6.4.1\bh\claro.dll [2012-07-09 263272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578b9-7132-4a7a-80e4-30ee31099e03}]
uTorrentControl2 Toolbar - C:\Program Files\uTorrentControl2\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-08-13 463272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-21 192592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-08-14 4533120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~1\IObit\ADVANC~1\BROWER~1\ASCPLU~1.DLL [2013-04-24 659264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-08-13 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{872b5b88-9db5-4310-bdd0-ac189557e5f5} - DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll [2011-05-09 176936]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
{687578b9-7132-4a7a-80e4-30ee31099e03} - uTorrentControl2 Toolbar - C:\Program Files\uTorrentControl2\prxtbuTor.dll [2011-05-09 176936]
{9E131A93-EED7-4BEB-B015-A0ADB30B5646} - Claro LTD Toolbar - C:\Program Files\Claro LTD\claro\1.6.4.1\claroTlbr.dll [2012-07-09 287848]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-21 192592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"FileOpenBroker"=C:\Program Files\FileOpen\Services\FileOpenBroker32.exe [2012-04-30 836480]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2013-03-21 5078504]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2011-09-28 39408]
"Steam"=C:\Program Files\Steam\steam.exe [2013-02-14 1597864]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"Advanced SystemCare 6"=C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe [2013-04-18 491840]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Exif Launcher S.lnk - C:\Program Files\FinePixViewerS\QuickDCF2.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=157
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.iv41"=ir41_32.ax
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.XVID"=xvidvfw.dll
"msacm.iac2"=iac25_32.ax
"vidc.iv50"=ir50_32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-08-27 09:52:33 ----D---- C:\rsit
2013-08-27 09:52:33 ----D---- C:\Program Files\trend micro
2013-08-26 15:13:23 ----D---- C:\Program Files\Microchip
2013-08-22 21:10:09 ----D---- C:\Users\Tomáš\AppData\Roaming\PyScripter
2013-08-22 21:10:08 ----D---- C:\Program Files\PyScripter
2013-08-22 10:57:06 ----D---- C:\Python27
2013-08-21 10:26:28 ----D---- C:\ProgramData\Blizzard Entertainment
2013-08-14 11:36:50 ----D---- C:\Windows\system32\MRT
2013-08-14 11:33:44 ----A---- C:\Windows\system32\jscript.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\jscript9.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\ieui.dll
2013-08-14 11:33:43 ----A---- C:\Windows\system32\iesetup.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\urlmon.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-14 11:33:42 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\iertutil.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\iernonce.dll
2013-08-14 11:33:42 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-14 11:33:41 ----A---- C:\Windows\system32\wininet.dll
2013-08-14 11:33:39 ----A---- C:\Windows\system32\ieframe.dll
2013-08-14 11:33:38 ----A---- C:\Windows\system32\mshtml.dll
2013-08-14 09:21:11 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\wintrust.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-14 09:21:10 ----A---- C:\Windows\system32\crypt32.dll
2013-08-14 09:21:06 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-08-14 09:21:06 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-08-14 09:21:06 ----A---- C:\Windows\system32\ntdll.dll
2013-08-14 09:21:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-08-14 09:21:05 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-14 09:21:00 ----A---- C:\Windows\system32\tzres.dll
2013-08-14 09:20:59 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-13 10:17:27 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-08-13 10:09:14 ----D---- C:\Program Files\Common Files\Java
2013-08-13 10:09:07 ----A---- C:\Windows\system32\javaws.exe
2013-08-13 10:08:55 ----A---- C:\Windows\system32\javaw.exe
2013-08-13 10:08:55 ----A---- C:\Windows\system32\java.exe
2013-07-30 11:47:36 ----D---- C:\ProgramData\TrackMania
2013-07-30 11:43:44 ----D---- C:\Program Files\TmNationsForever
======List of files/folders modified in the last 1 month======
2013-08-27 09:52:45 ----D---- C:\Windows\Prefetch
2013-08-27 09:52:35 ----D---- C:\Windows\Temp
2013-08-27 09:52:33 ----RD---- C:\Program Files
2013-08-27 09:31:28 ----D---- C:\Program Files\Steam
2013-08-27 09:30:05 ----D---- C:\Windows\system32\config
2013-08-27 09:29:57 ----D---- C:\Windows\system32\catroot2
2013-08-27 09:28:08 ----D---- C:\ProgramData\NVIDIA
2013-08-26 15:15:57 ----SHD---- C:\Windows\Installer
2013-08-26 15:15:57 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-26 15:15:26 ----D---- C:\Windows\System32
2013-08-26 15:12:34 ----SHD---- C:\System Volume Information
2013-08-24 09:32:44 ----D---- C:\ProgramData\Skype
2013-08-24 09:32:43 ----RD---- C:\Program Files\Skype
2013-08-22 10:58:56 ----D---- C:\Users\Tomáš\AppData\Roaming\Winamp
2013-08-22 10:23:23 ----D---- C:\Users\Tomáš\AppData\Roaming\.minecraft
2013-08-22 09:15:33 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-08-21 10:27:19 ----D---- C:\Counter-Strike 1.6
2013-08-21 10:27:02 ----D---- C:\Program Files\World of Warcraft Wotlk
2013-08-21 10:26:28 ----HD---- C:\ProgramData
2013-08-20 22:41:26 ----A---- C:\Users\Tomáš\AppData\Roaming\burnaware.ini
2013-08-20 19:05:19 ----D---- C:\Windows\rescache
2013-08-20 15:59:34 ----D---- C:\Windows\inf
2013-08-20 15:59:34 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-20 12:38:34 ----D---- C:\Windows\system32\NDF
2013-08-18 16:39:34 ----D---- C:\Users\Tomáš\AppData\Roaming\EL-Revize
2013-08-16 13:00:39 ----D---- C:\Windows\Microsoft.NET
2013-08-16 13:00:38 ----RSD---- C:\Windows\assembly
2013-08-14 18:45:42 ----D---- C:\Windows\winsxs
2013-08-14 18:44:08 ----D---- C:\Windows\system32\sk-SK
2013-08-14 18:44:08 ----D---- C:\Windows\system32\drivers
2013-08-14 18:44:07 ----D---- C:\Program Files\Internet Explorer
2013-08-14 11:36:47 ----A---- C:\Windows\system32\MRT.exe
2013-08-14 11:33:52 ----D---- C:\Windows\system32\catroot
2013-08-13 10:17:19 ----A---- C:\Windows\system32\npdeployJava1.dll
2013-08-13 10:17:19 ----A---- C:\Windows\system32\deployJava1.dll
2013-08-13 10:17:18 ----D---- C:\Program Files\Java
2013-08-13 10:09:14 ----D---- C:\Program Files\Common Files
2013-08-09 18:05:03 ----D---- C:\ALFA
2013-07-30 11:45:37 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2013-02-14 47568]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2010-11-06 354840]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-01-25 466008]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-03-16 242240]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-02-14 171680]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-01-10 122240]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2013-01-10 46056]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2009-09-23 55040]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2009-09-23 294912]
R2 Angelnt;Angelnt; C:\Windows\System32\Drivers\ANGELNT.SYS [2011-09-28 51072]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2013-01-10 150080]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2009-10-28 5120]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2011-03-03 139368]
R3 PAC7302;CANYON USB PC CAMERA; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-11-08 458752]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 579944]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 194408]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 21864]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 19304]
R3 vpcbus;Virtual PC Host Bus Service; C:\Windows\system32\DRIVERS\vpchbus.sys [2009-09-23 165376]
R3 vpcusb;USB Virtualization Connector Service; C:\Windows\system32\DRIVERS\vpcusb.sys [2009-09-23 78336]
S2 DgiVecp;DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys []
S3 a3s6ah2c;a3s6ah2c; C:\Windows\system32\drivers\a3s6ah2c.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 ALSysIO;ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys []
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena Classic\safedrv.sys []
S3 MEI;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECI.sys [2010-10-19 41088]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-01-17 14848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-01-17 49664]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-01-17 27136]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe [2013-04-18 574272]
R2 AffinegyService;AffinegyService; C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe [2010-07-28 569752]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2013-03-21 1341664]
R2 FileOpenManagerSvc;FileOpen Manager Service; C:\Program Files\FileOpen\Services\FileOpenManagerSvc32.exe [2012-04-30 213888]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-07-07 76888]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe [2013-07-23 240288]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
R3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2013-02-14 543144]
S2 BBSvc;BingBar Service; C:\Program Files\Microsoft\BingBar\7.2.241.0\BBSvc.exe [2013-07-23 193696]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-09-28 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-26 1260320]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-03 160944]
S2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22 257416]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-06-10 31064]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-09-28 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-25 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Re: spomalenie pc blokovanie ip adries esetom
Zdravim 
Poprosim i o druhy log z RSIT s nazvem info.txt, je ulozen v c:\rsit
Predpokladam, ze ten ESET jak ma byt = zakoupena licence



Re: spomalenie pc blokovanie ip adries esetom
ano eset je kupeny som zastanca kupovanych licencii lebo programovanie nieje sranda a urcite ty ludia si zasluzia tych 40 eur ci kolko stal ten eset tu je log :
info.txt logfile of random's system information tool 1.09 2013-08-27 09:52:59
======Uninstall list======
-->C:\Program Files\InstallShield Installation Information\{DF25EB82-67A7-43B1-AA9B-531DF6E61CC6}\setup.exe -runfromtemp -l0x0009 -removeonly
-->MsiExec /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe Flash Player 11 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_Plugin.exe -maintain plugin
Adobe Reader X (10.1.7) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
Advanced SystemCare 6-->"C:\Program Files\IObit\Advanced SystemCare 6\unins000.exe"
Aktualizácie NVIDIA 1.11.3-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{612E2F5E-62D3-4541-AD84-04E6C1032E12}\NVI2.DLL",UninstallPackage Display.Update
ALFA 18.01.00-->MsiExec.exe /I{69E369F1-6A92-47B5-86D5-474A7E06B3DC}
Ask Toolbar-->MsiExec.exe /X{86D4B82A-ABED-442A-BE86-96357B70F4FE}
ATF-->C:\Windows\UIA200.exe "C:\Program Files\All Ten Fingers\DelList.lst"
AVI To MP3 Converter 1.00-->"C:\Program Files\Crystal Software\AVI To MP3 Converter\unins000.exe"
Axium Adventures-->C:\PROGRA~1\Solsoft\Axium\UNWISE.EXE C:\PROGRA~1\Solsoft\Axium\INSTALL.LOG
Babylon toolbar -->"C:\Program Files\BabylonToolbar\BabylonToolbar\1.8.11.10\uninstall.exe"
Belkin Setup and Router Monitor-->"C:\Program Files\Belkin\Router Setup and Monitor\unins000.exe"
Bing Bar-->MsiExec.exe /X{D322A9E3-758B-4D60-A7C4-65C88FD378D0}
Bundled software uninstaller-->"C:\Users\Tomáš\Local Settings\Application Data\Bundled software uninstaller\bi_client.exe" /initurl http://bi.bisrv.com/:affid:/:sid:/:uid:? /affid uninstall /id uninstall /name "Bundled software uninstaller"
BurnAware Free 3.1.3-->"C:\Program Files\BurnAware Free\unins000.exe"
CANYON USB PC CAMERA-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A59AB961-BE82-41E0-B0FB-648DFA6DDEA4}\setup.exe" -l0x9 -removeonly
Claro LTD toolbar on IE-->"C:\Program Files\Claro LTD\claro\1.6.4.1\uninstall.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}\Setup.exe" -l0x19
CW DecoderXP-->C:\Windows\uninst.exe -f"C:\Program Files\None\CW DecoderXP\DeIsL1.isu" -c"C:\Program Files\None\CW DecoderXP\_ISREG32.DLL"
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A3AD381D-848C-4478-80DC-228E37309308}" "1051" "0"
Dev-C++ 5 beta 9 release (4.9.9.2)-->"C:\Dev-Cpp\uninstall.exe"
DigiPan 2.0-->"C:\Program Files\DigiPan\unins000.exe"
Doplnok programu Messenger-->MsiExec.exe /I{6D2F0A26-ECEA-49CE-833C-9A6125F3D5E8}
Dota 2-->"C:\Program Files\Steam\steam.exe" steam://uninstall/570
DVDVideoSoftTB Toolbar-->C:\Program Files\DVDVideoSoftTB\uninstall.exe toolbar
Elcomm-->"C:\Program Files\Elcom\Elcomm\Elcomm_uninstaller.exe"
EL-Revize 7.16-->C:\Program Files\EL-Revize\EL-Revize.exe /uninstall
Equalify v2.2.1 (Stable)-->MsiExec.exe /X{FF890228-5396-4BB0-B500-6E2843D7DD63}
FileOpen Client-->MsiExec.exe /X{76A64A33-D197-4525-85EE-255D6E5F3604}
Free YouTube Download version 3.0.20.1228-->C:\Program Files\Common Files\DVDVideoSoft\Uninstall.exe
FUJIFILM FinePixViewer S Ver.2.1-->C:\Program Files\InstallShield Installation Information\{88B32652-CAE0-4909-A463-5840D2689D93}\setup.exe -runfromtemp -l0x0009 -removeonly
G4FON Koch Method Morse Trainer-->C:\Program Files\G4FON Software\Koch Morse Trainer\Uninstal.exe
Google Earth Plug-in-->MsiExec.exe /X{79361740-EAE3-11E2-9911-B8AC6F98CCE3}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\29.0.1547.57\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_714BFB3B4B0991F6.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
GTA San Andreas-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}\setup.exe" -l0x9 -removeonly
HDSDR 2.15-->"C:\Program Files\HDSDR\unins000.exe"
Indeo® Software-->C:\Windows\IsUninst.exe -f"C:\Program Files\Ligos\Indeo\Uninst.isu" -c"C:\Program Files\Ligos\Indeo\Indeo System Files\indounin.dll"
InfraRecorder-->"C:\Program Files\InfraRecorder\uninstall.exe"
Java 7 Update 25-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217025FF}
Java(TM) 6 Update 33-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216033FF}
Junk Mail filter update-->MsiExec.exe /I{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
League of Legends-->"C:\Program Files\InstallShield Installation Information\{918A9082-6287-4D25-9002-5E5D5E4971CB}\setup.exe" -runfromtemp -l0x0409 -removeonly
League of Legends-->"C:\Program Files\InstallShield Installation Information\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\setup.exe" -runfromtemp -l0x0409 -removeonly
Malwarebytes Anti-Malware verzia 1.75.0.1300-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Mesh Runtime-->MsiExec.exe /I{8C6D6116-B724-4810-8F2D-D047E6B7D68E}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft Antimalware Service SK-SK Language Pack-->MsiExec.exe /X{0FB871A9-C617-4415-BB5D-619A8D946115}
Microsoft Office 2010 pre študentov a domácnosti-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall SINGLEIMAGE /dll OSETUP.DLL
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0015-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0019-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{2304F942-79D2-46F7-A512-269A7F5B7EFC}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{99ACCA38-6DD3-48A8-96AE-A283C9759279}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-040E-0000-0000000FF1CE}" "{71431694-851E-4BC7-92A9-4BB9D196E24F}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-041B-0000-0000000FF1CE}" "{A162C5E6-7778-4D5B-9F0A-38F0122DD859}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002C-041B-0000-0000000FF1CE}" "{93F2D01D-F7E6-46E5-9A7C-316262461F9F}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{047B0968-E622-4FAA-9B4B-121FA109EDDE}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-041B-0000-0000000FF1CE}" "{56405E5D-9583-4644-B183-AFB3E19D80B3}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office Access MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0015-041B-0000-0000000FF1CE}
Microsoft Office Excel MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0016-041B-0000-0000000FF1CE}
Microsoft Office Klikni a spusti 2010-->"C:\PROGRA~1\COMMON~1\MICROS~1\VIRTUA~1\CVHBS.EXE" /removeall
Microsoft Office Klikni a spusti 2010-->MsiExec.exe /I{90140000-006D-041B-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Slovak) 2010-->MsiExec.exe /X{90140000-00A1-041B-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Slovak) 2010-->MsiExec.exe /X{90140000-001A-041B-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0018-041B-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2010-->MsiExec.exe /X{90140000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Hungarian) 2010-->MsiExec.exe /X{90140000-001F-040E-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2010-->MsiExec.exe /X{90140000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Slovak) 2010-->MsiExec.exe /X{90140000-002C-041B-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0019-041B-0000-0000000FF1CE}
Microsoft Office Shared MUI (Slovak) 2010-->MsiExec.exe /X{90140000-006E-041B-0000-0000000FF1CE}
Microsoft Office Single Image 2010-->MsiExec.exe /X{90140000-003D-0000-0000-0000000FF1CE}
Microsoft Office Word MUI (Slovak) 2010-->MsiExec.exe /X{90140000-001B-041B-0000-0000000FF1CE}
Microsoft Security Client SK-SK Language Pack-->MsiExec.exe /I{50779A29-834E-4E36-BBEB-B7CABC67A825}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Mozilla Firefox 10.0.2 (x86 sk)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MPLAB Tools v8.92-->"C:\Program Files\InstallShield Installation Information\{EFF70ABE-9F88-41B4-A0DF-BE0A803209CF}\setup.exe" -runfromtemp -l0x0409 -removeonly
MPLAB Tools v8.92-->MsiExec.exe /I{EFF70ABE-9F88-41B4-A0DF-BE0A803209CF}
MRP40 Morse Decoder V64-->C:\Program Files\HamRadioSoftware\MRP40 Morse Decoder V64\Uninstall.exe
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
NVIDIA Grafický ovládač 311.06-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{612E2F5E-62D3-4541-AD84-04E6C1032E12}\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA Ovládač 3D Vision 311.06-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{612E2F5E-62D3-4541-AD84-04E6C1032E12}\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA PhysX-->MsiExec.exe /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
NVIDIA Softvér systému s podporou technológie PhysX 9.10.0514-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.PhysX
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia-->MsiExec.exe /I{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
PCStitch 10-->"C:\Program Files\InstallShield Installation Information\{7D389358-56D0-4988-BAAC-5ACE907CCEBD}\setup.exe" -runfromtemp -l0x0409 ANYTHING -removeonly
Programming Editor-->MsiExec.exe /X{049D8D25-3346-4859-A3FF-94F77482C133}
PunkBuster Services-->C:\Program Files\EA Games\Battlefield Play4Free\pbsvc_p4f.exe -u
PyScripter 2.5.3-->"C:\Program Files\PyScripter\unins000.exe"
Python 2.7.5-->MsiExec.exe /I{DBDD570E-0952-475F-9453-AB88F3DD5659}
Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd.exe -r -m -nrg2709
sah sigtools_1r11b display name-->"c:\apps\sigtools_1r11b\uninstall.exe"
Samsung SCX-3200 Series-->"C:\Program Files\Samsung\Samsung SCX-3200 Series\Setup\Setup.exe" /R
Scan Assistant-->C:\Program Files\InstallShield Installation Information\{BF6CF460-40C3-49BA-800A-4B934B6498B1}\setup.exe -runfromtemp -l0x0009 /uninst -l0009 -removeonly
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7E97AB83-C1FE-38DE-B848-877E0A4BD81E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DB31DEDD-BF95-31E7-A9B7-5480561CEFF3} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {67A5F99B-5EBA-3812-8D2E-BC251490DD3F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8DDEFC7E-0C61-3D11-AFC6-5414F2DAFD01} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {9EC88EA8-4ABE-393C-87BD-90EABB1C4C9B} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {86BB5A25-8CC3-33CE-A393-CF28901682B2} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {16EEC04A-B924-37E0-97CF-422DCEFC1B63} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {C4D978AA-2668-3404-96DE-96E2AFC62FD7} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {CD6D9B8A-BBC4-3FA7-B24D-D74CE90630CF} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {ECBEE23D-AB7E-3DAA-B66B-CD52003198F1} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {788818B1-B191-3217-A210-7ACFDE19CE4A} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {B7C20E16-9A3A-3F05-A6B5-E15AA09200E0} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {CF581973-77E0-3093-A1AC-A03130DE990F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {576C07F8-777C-3981-B8BF-063A6B57254E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {90EA7C4E-7F03-31FD-BE27-B1A9B4AE56BD} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {1E88AFAE-CEF7-3540-8FF6-6D00877B2767} /parameterfolder Client
Security Update for Microsoft Excel 2010 (KB2597126) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{73CC972E-6ABF-456B-9E1E-BADC0E65B57A}" "1051" "0"
Security Update for Microsoft Filter Pack 2.0 (KB2553501) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{F0CF1EB7-3E57-4F85-843F-B3C79088510D}" "1051" "0"
Security Update for Microsoft InfoPath 2010 (KB2760406) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{89F78B33-4282-4698-844D-E306D4260C02}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553091)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553096)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{10802A6D-EDBF-4383-BCBD-9D5B32F56D35}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553371) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{CCC48FE2-175F-4CDE-82DF-F7BC4672C1A3}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553447) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{CC39BA1F-7A25-440C-86A7-77E35D8CC88C}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2598243) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B5489515-6DD4-47A5-AE4E-64751D15F10E}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2687276) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{294CFDA0-FFD3-4C74-A26C-F4AE246783D6}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2687501) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{9FF4E0C9-11BB-4B32-AC5E-EAB896CB4216}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2687510) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A5E549EB-FDD3-4CD1-8163-50D429A36516}" "1051" "0"
Security Update for Microsoft OneNote 2010 (KB2760600) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{280E2D43-11CC-4ADE-A171-9286CCB5412B}" "1051" "0"
Security Update for Microsoft Publisher 2010 (KB2553147) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{77AA05C3-6499-49F2-801D-55BD0E587579}" "1051" "0"
Security Update for Microsoft Visio 2010 (KB2810068) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BC3AD7F4-A075-4C9E-A33A-0FA4F8EBCA96}" "1051" "0"
Security Update for Microsoft Visio Viewer 2010 (KB2687505) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{0690E5CB-319C-4FA5-8513-2E255BBB29B9}" "1051" "0"
Security Update for Microsoft Word 2010 (KB2760410) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{F8243081-3FB0-4EE8-9B2A-6F7D70AF5269}" "1051" "0"
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.10-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
Spelling Dictionaries Support For Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
The Sims™ 3 High-End Loft Stuff-->"C:\Program Files\InstallShield Installation Information\{71828142-5A24-4BD0-97E7-976DA08CE6CF}\Sims3SP01Setup.exe" -runfromtemp -l0x0009 -removeonly
The Sims™ 3-->"C:\Program Files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\setup.exe" -runfromtemp -l0x0005 -removeonly
TmNationsForever-->"C:\Program Files\TmNationsForever\unins000.exe"
Turbo Pascal 7.0-->C:\Windows\uninst.exe -f"C:\Program Files\TP\DeIsL1.isu" -c"C:\Program Files\TP\_ISREG32.DLL"
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5D9961AC-7C99-36A2-9EF0-34678AED5384} /parameterfolder Client
Update for Microsoft Office 2010 (KB2553065)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A8686D24-1E89-43A1-973E-05A258D2B3F8}" "1051" "0"
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}" "1051" "0"
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{18B3CF2A-73F7-4716-B1AE-86D68726D408}" "1051" "0"
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{2AB2E0DF-DF6F-4051-895B-A09FA08AD387}" "1051" "0"
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-041B-0000-0000000FF1CE}" "{45BC4A6A-9337-4276-AF51-6481A747BB32}" "1051" "0"
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{14B7142F-D7E2-4FB0-9E3B-7CAA8D7FFC56}" "1051" "0"
Update for Microsoft Office 2010 (KB2566458)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{EFB525A0-E1C0-4E32-9968-FE401BC87363}" "1051" "0"
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}" "1051" "0"
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{007CC0F3-15DE-426D-95B5-B019FCEF58CE}" "1051" "0"
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{C4F26A9B-B121-4135-8084-A0D9C780C7C8}" "1051" "0"
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B1FA5E8C-2342-45AF-8A62-5E860042F8DF}" "1051" "0"
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{1CBEDB37-C438-473F-8BA0-2535B0D237E2}" "1051" "0"
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{35698CB7-AAA2-4577-B505-DBFF504AEF23}" "1051" "0"
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{9CFD026D-EB1C-48C2-9DD2-8E8875F251B2}" "1051" "0"
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-041B-0000-0000000FF1CE}" "{B4E15135-5272-4194-9724-5FA19F72296D}" "1051" "0"
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{F1CBE095-403D-466D-BB13-B185A5F33231}" "1051" "0"
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-041B-0000-0000000FF1CE}" "{B1F5ED4F-08EE-4487-89EA-69406127A951}" "1051" "0"
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-041B-0000-0000000FF1CE}" "{939C62F7-4741-43AF-A29F-5ED0BF0D318A}" "1051" "0"
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}" "1051" "0"
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{6B6DDDCE-B456-4FE1-9A07-DBC1708E4158}" "1051" "0"
uTorrentControl2 Toolbar-->C:\Program Files\uTorrentControl2\uninstall.exe toolbar
VirtualDJ Home FREE-->MsiExec.exe /I{5E1375CB-6792-4464-8715-CC3EC83D48FA}
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Live Communications Platform-->MsiExec.exe /I{D45240D3-B6B3-4FF9-B243-54ECE3E10066}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}
Windows Live Family Safety-->MsiExec.exe /I{25BD99C3-F0C8-436F-AC2F-4F1B00A518AC}
Windows Live Family Safety-->MsiExec.exe /X{2D6E3D97-1FDF-4993-AC75-72F59EC445C5}
Windows Live Fotogaléria-->MsiExec.exe /X{97F77D62-5110-4FA3-A2D3-410B92D31199}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}
Windows Live Installer-->MsiExec.exe /I{0B0F231F-CE6A-483D-AA23-77B364F75917}
Windows Live Mail-->MsiExec.exe /I{9D56775A-93F3-44A3-8092-840E3826DE30}
Windows Live Mail-->MsiExec.exe /I{FA6CF94F-DACF-4FE7-959D-55C421B91B17}
Windows Live Mesh-->MsiExec.exe /I{AD001A69-88CC-4766-B2DB-3C1DFAB9AC72}
Windows Live Mesh-->MsiExec.exe /I{DECDCB7C-58CC-4865-91AF-627F9798FE48}
Windows Live Messenger Companion Core-->MsiExec.exe /I{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}
Windows Live Messenger-->MsiExec.exe /X{A3389C72-1782-4BB4-BBAA-33345DE52E3F}
Windows Live Messenger-->MsiExec.exe /X{E5B21F11-6933-4E0B-A25C-7963E3C07D11}
Windows Live MIME IFilter-->MsiExec.exe /I{AF844339-2F8A-4593-81B3-9F4C54038C4E}
Windows Live Movie Maker-->MsiExec.exe /X{92EA4134-10D1-418A-91E1-5A0453131A38}
Windows Live Movie Maker-->MsiExec.exe /X{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}
Windows Live Photo Common-->MsiExec.exe /X{6F37D92B-41AA-44B7-80D2-457ABDE11896}
Windows Live Photo Common-->MsiExec.exe /X{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
Windows Live Photo Gallery-->MsiExec.exe /X{3336F667-9049-4D46-98B6-4C743EEBC5B1}
Windows Live PIMT Platform-->MsiExec.exe /I{83C292B7-38A5-440B-A731-07070E81A64F}
Windows Live Remote Client Resources-->MsiExec.exe /I{E1629C45-9CEF-498E-83CD-D6A09CADA176}
Windows Live Remote Client-->MsiExec.exe /I{19A4A990-5343-4FF7-B3B5-6F046C091EDF}
Windows Live Remote Service Resources-->MsiExec.exe /I{41E4FA4B-9376-4C32-AA46-65FCC0087CD5}
Windows Live Remote Service-->MsiExec.exe /I{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}
Windows Live SOXE Definitions-->MsiExec.exe /I{200FEC62-3C34-4D60-9CE8-EC372E01C08F}
Windows Live SOXE-->MsiExec.exe /I{682B3E4F-696A-42DE-A41C-4C07EA1678B4}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{5E627606-53B9-42D1-97E1-D03F6229E248}
Windows Live UX Platform-->MsiExec.exe /I{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
Windows Live Writer Resources-->MsiExec.exe /X{7CB529B2-6C74-4878-9C3F-C29C3C3BBDC6}
Windows Live Writer-->MsiExec.exe /X{11778DA1-0495-4ED9-972F-F9E0B0367CD5}
Windows Live Writer-->MsiExec.exe /X{A726AE06-AAA3-43D1-87E3-70F510314F04}
Windows Live Writer-->MsiExec.exe /X{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
WinRAR 4.01 (32-bit)-->C:\Program Files\WinRAR\uninstall.exe
Xvid Video Codec-->C:\Program Files\Xvid\uninstall.exe
Yontoo 1.10.02-->C:\PROGRA~2\TARMAI~1\{889DF~1\Setup.exe /remove /q0
======System event log======
Computer Name: Tomáš-PC
Event Code: 7038
Message: Službe nvUpdatusService sa nepodarilo s aktuálne nakonfigurovaným heslom prihlásiť ako .\UpdatusUser kvôli nasledujúcej chybe:
Prihlásenie zlyhalo: Doba platnosti hesla pre zadané konto už uplynula.
Ak chcete zabezpečiť správne nakonfigurovanie služby, použite modul Služby konzoly MMC (Microsoft Management Console).
Record Number: 232989
Source Name: Service Control Manager
Time Written: 20130219151157.683270-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 219
Message: The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_GENERIC-&PROD_COMPACT_FLASH&REV_1.01#058F63626476&1#.
Record Number: 232952
Source Name: Microsoft-Windows-Kernel-PnP
Time Written: 20130219150957.082637-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM
Computer Name: Tomáš-PC
Event Code: 7000
Message: Spustenie služby StarWind AE Service zlyhalo kvôli nasledujúcej chybe:
Systém nemôže nájsť zadaný súbor.
Record Number: 232933
Source Name: Service Control Manager
Time Written: 20130219150953.827629-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 7000
Message: Spustenie služby DgiVecp zlyhalo kvôli nasledujúcej chybe:
Systém nemôže nájsť zadaný súbor.
Record Number: 232924
Source Name: Service Control Manager
Time Written: 20130219150952.957628-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 4001
Message: Služba automatickej konfigurácie siete WLAN sa úspešne zastavila.
Record Number: 232871
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20130218213942.502136-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM
=====Application event log=====
Computer Name: Tomáš-PC
Event Code: 1130
Message: .NET Runtime Optimization Service (2.0.50727.5466) - Version or flavor did not match with repository: ehiProxy
Record Number: 63530
Source Name: .NET Runtime Optimization Service
Time Written: 20130110094237.000000-000
Event Type: Warning
User:
Computer Name: Tomáš-PC
Event Code: 1130
Message: .NET Runtime Optimization Service (2.0.50727.5466) - Version or flavor did not match with repository: ehCIR
Record Number: 63529
Source Name: .NET Runtime Optimization Service
Time Written: 20130110094237.000000-000
Event Type: Warning
User:
Computer Name: Tomáš-PC
Event Code: 1130
Message: .NET Runtime Optimization Service (2.0.50727.5466) - Version or flavor did not match with repository: BDATunePIA
Record Number: 63528
Source Name: .NET Runtime Optimization Service
Time Written: 20130110094208.000000-000
Event Type: Warning
User:
Computer Name: Tomáš-PC
Event Code: 1000
Message: Názov chybovej aplikácie: wmpnetwk.exe, verzia: 12.0.7601.17514, časová značka: 0x4ce7a4a7
Názov chybového modulu: KERNELBASE.dll, verzia: 6.1.7601.18015, časová značka: 0x50b83b16
Kód výnimky: 0x0000046b
Odstup chyby: 0x0000812f
Identifikácia chybného procesu: 0x1040
Čas spustenia chybnej aplikácie: 0x01cdef0d16c3262c
Cesta chybnej aplikácie: C:\Program Files\Windows Media Player\wmpnetwk.exe
Cesta chybného modulu: C:\Windows\system32\KERNELBASE.dll
Identifikácia hlásenia: d0ed6fcf-5b08-11e2-96bb-50e549222367
Record Number: 63525
Source Name: Application Error
Time Written: 20130110093340.000000-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 1002
Message: The program wmplayer.exe version 12.0.7601.17514 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: a98
Start Time: 01cdef1572a289ad
Termination Time: 15
Application Path: C:\Program Files\Windows Media Player\wmplayer.exe
Report Id: b581b5c8-5b08-11e2-96bb-50e549222367
Record Number: 63524
Source Name: Application Hang
Time Written: 20130110093317.000000-000
Event Type: Error
User:
=====Security event log=====
Computer Name: Tomáš-PC
Event Code: 5061
Message: Cryptographic operation.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Cryptographic Parameters:
Provider Name: Microsoft Software Key Storage Provider
Algorithm Name: RSA
Key Name: {0348B602-EAB3-4D9E-BB55-90E38F66427D}
Key Type: Machine key.
Cryptographic Operation:
Operation: Open Key.
Return Code: 0x0
Record Number: 58237
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.443937-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 5058
Message: Key file operation.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Cryptographic Parameters:
Provider Name: Microsoft Software Key Storage Provider
Algorithm Name: Not Available.
Key Name: {0348B602-EAB3-4D9E-BB55-90E38F66427D}
Key Type: Machine key.
Key File Operation Information:
File Path: C:\ProgramData\Microsoft\Crypto\Keys\5ee2b01e5b9cf75a8df190edb0606ce8_08f10069-7d24-4a30-805a-4847fee734fc
Operation: Read persisted key from file.
Return Code: 0x0
Record Number: 58236
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.443937-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 4733
Message: A member was removed from a security-enabled local group.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Member:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1005
Account Name: -
Group:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1002
Group Name: HomeUsers
Group Domain: Tomáš-PC
Additional Information:
Privileges: -
Record Number: 58235
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.435936-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 4732
Message: A member was added to a security-enabled local group.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Member:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1005
Account Name: -
Group:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1002
Group Name: HomeUsers
Group Domain: Tomáš-PC
Additional Information:
Privileges: -
Record Number: 58234
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.435936-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 5061
Message: Cryptographic operation.
Subject:
Security ID: S-1-5-19
Account Name: LOCAL SERVICE
Account Domain: NT AUTHORITY
Logon ID: 0x3e5
Cryptographic Parameters:
Provider Name: Microsoft Software Key Storage Provider
Algorithm Name: RSA
Key Name: 849b0ace-50b6-49f3-99c7-42c9552c4dc5
Key Type: Machine key.
Cryptographic Operation:
Operation: Open Key.
Return Code: 0x0
Record Number: 58233
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193144.282584-000
Event Type: Audit Success
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Windows Live\Shared;C:\Program Files\Microchip\MPLAB C32 Suite\bin
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=2a07
"windows_tracing_logfile"=C:\BVTBin\Tests\installpackage\csilogfile.log
"windows_tracing_flags"=3
"SERINUMB"=DC108488
"WBSET"=Done
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.09 2013-08-27 09:52:59
======Uninstall list======
-->C:\Program Files\InstallShield Installation Information\{DF25EB82-67A7-43B1-AA9B-531DF6E61CC6}\setup.exe -runfromtemp -l0x0009 -removeonly
-->MsiExec /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe Flash Player 11 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_Plugin.exe -maintain plugin
Adobe Reader X (10.1.7) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
Advanced SystemCare 6-->"C:\Program Files\IObit\Advanced SystemCare 6\unins000.exe"
Aktualizácie NVIDIA 1.11.3-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{612E2F5E-62D3-4541-AD84-04E6C1032E12}\NVI2.DLL",UninstallPackage Display.Update
ALFA 18.01.00-->MsiExec.exe /I{69E369F1-6A92-47B5-86D5-474A7E06B3DC}
Ask Toolbar-->MsiExec.exe /X{86D4B82A-ABED-442A-BE86-96357B70F4FE}
ATF-->C:\Windows\UIA200.exe "C:\Program Files\All Ten Fingers\DelList.lst"
AVI To MP3 Converter 1.00-->"C:\Program Files\Crystal Software\AVI To MP3 Converter\unins000.exe"
Axium Adventures-->C:\PROGRA~1\Solsoft\Axium\UNWISE.EXE C:\PROGRA~1\Solsoft\Axium\INSTALL.LOG
Babylon toolbar -->"C:\Program Files\BabylonToolbar\BabylonToolbar\1.8.11.10\uninstall.exe"
Belkin Setup and Router Monitor-->"C:\Program Files\Belkin\Router Setup and Monitor\unins000.exe"
Bing Bar-->MsiExec.exe /X{D322A9E3-758B-4D60-A7C4-65C88FD378D0}
Bundled software uninstaller-->"C:\Users\Tomáš\Local Settings\Application Data\Bundled software uninstaller\bi_client.exe" /initurl http://bi.bisrv.com/:affid:/:sid:/:uid:? /affid uninstall /id uninstall /name "Bundled software uninstaller"
BurnAware Free 3.1.3-->"C:\Program Files\BurnAware Free\unins000.exe"
CANYON USB PC CAMERA-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A59AB961-BE82-41E0-B0FB-648DFA6DDEA4}\setup.exe" -l0x9 -removeonly
Claro LTD toolbar on IE-->"C:\Program Files\Claro LTD\claro\1.6.4.1\uninstall.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}\Setup.exe" -l0x19
CW DecoderXP-->C:\Windows\uninst.exe -f"C:\Program Files\None\CW DecoderXP\DeIsL1.isu" -c"C:\Program Files\None\CW DecoderXP\_ISREG32.DLL"
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A3AD381D-848C-4478-80DC-228E37309308}" "1051" "0"
Dev-C++ 5 beta 9 release (4.9.9.2)-->"C:\Dev-Cpp\uninstall.exe"
DigiPan 2.0-->"C:\Program Files\DigiPan\unins000.exe"
Doplnok programu Messenger-->MsiExec.exe /I{6D2F0A26-ECEA-49CE-833C-9A6125F3D5E8}
Dota 2-->"C:\Program Files\Steam\steam.exe" steam://uninstall/570
DVDVideoSoftTB Toolbar-->C:\Program Files\DVDVideoSoftTB\uninstall.exe toolbar
Elcomm-->"C:\Program Files\Elcom\Elcomm\Elcomm_uninstaller.exe"
EL-Revize 7.16-->C:\Program Files\EL-Revize\EL-Revize.exe /uninstall
Equalify v2.2.1 (Stable)-->MsiExec.exe /X{FF890228-5396-4BB0-B500-6E2843D7DD63}
FileOpen Client-->MsiExec.exe /X{76A64A33-D197-4525-85EE-255D6E5F3604}
Free YouTube Download version 3.0.20.1228-->C:\Program Files\Common Files\DVDVideoSoft\Uninstall.exe
FUJIFILM FinePixViewer S Ver.2.1-->C:\Program Files\InstallShield Installation Information\{88B32652-CAE0-4909-A463-5840D2689D93}\setup.exe -runfromtemp -l0x0009 -removeonly
G4FON Koch Method Morse Trainer-->C:\Program Files\G4FON Software\Koch Morse Trainer\Uninstal.exe
Google Earth Plug-in-->MsiExec.exe /X{79361740-EAE3-11E2-9911-B8AC6F98CCE3}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\29.0.1547.57\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_714BFB3B4B0991F6.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
GTA San Andreas-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}\setup.exe" -l0x9 -removeonly
HDSDR 2.15-->"C:\Program Files\HDSDR\unins000.exe"
Indeo® Software-->C:\Windows\IsUninst.exe -f"C:\Program Files\Ligos\Indeo\Uninst.isu" -c"C:\Program Files\Ligos\Indeo\Indeo System Files\indounin.dll"
InfraRecorder-->"C:\Program Files\InfraRecorder\uninstall.exe"
Java 7 Update 25-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217025FF}
Java(TM) 6 Update 33-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216033FF}
Junk Mail filter update-->MsiExec.exe /I{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
League of Legends-->"C:\Program Files\InstallShield Installation Information\{918A9082-6287-4D25-9002-5E5D5E4971CB}\setup.exe" -runfromtemp -l0x0409 -removeonly
League of Legends-->"C:\Program Files\InstallShield Installation Information\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\setup.exe" -runfromtemp -l0x0409 -removeonly
Malwarebytes Anti-Malware verzia 1.75.0.1300-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Mesh Runtime-->MsiExec.exe /I{8C6D6116-B724-4810-8F2D-D047E6B7D68E}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft Antimalware Service SK-SK Language Pack-->MsiExec.exe /X{0FB871A9-C617-4415-BB5D-619A8D946115}
Microsoft Office 2010 pre študentov a domácnosti-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall SINGLEIMAGE /dll OSETUP.DLL
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0015-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0019-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{2304F942-79D2-46F7-A512-269A7F5B7EFC}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{99ACCA38-6DD3-48A8-96AE-A283C9759279}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-040E-0000-0000000FF1CE}" "{71431694-851E-4BC7-92A9-4BB9D196E24F}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-041B-0000-0000000FF1CE}" "{A162C5E6-7778-4D5B-9F0A-38F0122DD859}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002C-041B-0000-0000000FF1CE}" "{93F2D01D-F7E6-46E5-9A7C-316262461F9F}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{047B0968-E622-4FAA-9B4B-121FA109EDDE}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-041B-0000-0000000FF1CE}" "{56405E5D-9583-4644-B183-AFB3E19D80B3}" "1051" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-041B-0000-0000000FF1CE}" "{9C5E0700-7189-470B-A02E-7FFE75C8BD43}" "1051" "0"
Microsoft Office Access MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0015-041B-0000-0000000FF1CE}
Microsoft Office Excel MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0016-041B-0000-0000000FF1CE}
Microsoft Office Klikni a spusti 2010-->"C:\PROGRA~1\COMMON~1\MICROS~1\VIRTUA~1\CVHBS.EXE" /removeall
Microsoft Office Klikni a spusti 2010-->MsiExec.exe /I{90140000-006D-041B-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Slovak) 2010-->MsiExec.exe /X{90140000-00A1-041B-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Slovak) 2010-->MsiExec.exe /X{90140000-001A-041B-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0018-041B-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2010-->MsiExec.exe /X{90140000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Hungarian) 2010-->MsiExec.exe /X{90140000-001F-040E-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2010-->MsiExec.exe /X{90140000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Slovak) 2010-->MsiExec.exe /X{90140000-002C-041B-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Slovak) 2010-->MsiExec.exe /X{90140000-0019-041B-0000-0000000FF1CE}
Microsoft Office Shared MUI (Slovak) 2010-->MsiExec.exe /X{90140000-006E-041B-0000-0000000FF1CE}
Microsoft Office Single Image 2010-->MsiExec.exe /X{90140000-003D-0000-0000-0000000FF1CE}
Microsoft Office Word MUI (Slovak) 2010-->MsiExec.exe /X{90140000-001B-041B-0000-0000000FF1CE}
Microsoft Security Client SK-SK Language Pack-->MsiExec.exe /I{50779A29-834E-4E36-BBEB-B7CABC67A825}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Mozilla Firefox 10.0.2 (x86 sk)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MPLAB Tools v8.92-->"C:\Program Files\InstallShield Installation Information\{EFF70ABE-9F88-41B4-A0DF-BE0A803209CF}\setup.exe" -runfromtemp -l0x0409 -removeonly
MPLAB Tools v8.92-->MsiExec.exe /I{EFF70ABE-9F88-41B4-A0DF-BE0A803209CF}
MRP40 Morse Decoder V64-->C:\Program Files\HamRadioSoftware\MRP40 Morse Decoder V64\Uninstall.exe
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
NVIDIA Grafický ovládač 311.06-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{612E2F5E-62D3-4541-AD84-04E6C1032E12}\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA Ovládač 3D Vision 311.06-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{612E2F5E-62D3-4541-AD84-04E6C1032E12}\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA PhysX-->MsiExec.exe /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
NVIDIA Softvér systému s podporou technológie PhysX 9.10.0514-->"C:\Windows\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.PhysX
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia-->MsiExec.exe /I{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
PCStitch 10-->"C:\Program Files\InstallShield Installation Information\{7D389358-56D0-4988-BAAC-5ACE907CCEBD}\setup.exe" -runfromtemp -l0x0409 ANYTHING -removeonly
Programming Editor-->MsiExec.exe /X{049D8D25-3346-4859-A3FF-94F77482C133}
PunkBuster Services-->C:\Program Files\EA Games\Battlefield Play4Free\pbsvc_p4f.exe -u
PyScripter 2.5.3-->"C:\Program Files\PyScripter\unins000.exe"
Python 2.7.5-->MsiExec.exe /I{DBDD570E-0952-475F-9453-AB88F3DD5659}
Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd.exe -r -m -nrg2709
sah sigtools_1r11b display name-->"c:\apps\sigtools_1r11b\uninstall.exe"
Samsung SCX-3200 Series-->"C:\Program Files\Samsung\Samsung SCX-3200 Series\Setup\Setup.exe" /R
Scan Assistant-->C:\Program Files\InstallShield Installation Information\{BF6CF460-40C3-49BA-800A-4B934B6498B1}\setup.exe -runfromtemp -l0x0009 /uninst -l0009 -removeonly
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7E97AB83-C1FE-38DE-B848-877E0A4BD81E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DB31DEDD-BF95-31E7-A9B7-5480561CEFF3} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {67A5F99B-5EBA-3812-8D2E-BC251490DD3F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8DDEFC7E-0C61-3D11-AFC6-5414F2DAFD01} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {9EC88EA8-4ABE-393C-87BD-90EABB1C4C9B} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {86BB5A25-8CC3-33CE-A393-CF28901682B2} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {16EEC04A-B924-37E0-97CF-422DCEFC1B63} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {C4D978AA-2668-3404-96DE-96E2AFC62FD7} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {CD6D9B8A-BBC4-3FA7-B24D-D74CE90630CF} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {ECBEE23D-AB7E-3DAA-B66B-CD52003198F1} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {788818B1-B191-3217-A210-7ACFDE19CE4A} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {B7C20E16-9A3A-3F05-A6B5-E15AA09200E0} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {CF581973-77E0-3093-A1AC-A03130DE990F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {576C07F8-777C-3981-B8BF-063A6B57254E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {90EA7C4E-7F03-31FD-BE27-B1A9B4AE56BD} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {1E88AFAE-CEF7-3540-8FF6-6D00877B2767} /parameterfolder Client
Security Update for Microsoft Excel 2010 (KB2597126) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{73CC972E-6ABF-456B-9E1E-BADC0E65B57A}" "1051" "0"
Security Update for Microsoft Filter Pack 2.0 (KB2553501) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{F0CF1EB7-3E57-4F85-843F-B3C79088510D}" "1051" "0"
Security Update for Microsoft InfoPath 2010 (KB2760406) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{89F78B33-4282-4698-844D-E306D4260C02}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553091)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553096)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{10802A6D-EDBF-4383-BCBD-9D5B32F56D35}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553371) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{CCC48FE2-175F-4CDE-82DF-F7BC4672C1A3}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2553447) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{CC39BA1F-7A25-440C-86A7-77E35D8CC88C}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2598243) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B5489515-6DD4-47A5-AE4E-64751D15F10E}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2687276) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{294CFDA0-FFD3-4C74-A26C-F4AE246783D6}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2687501) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{9FF4E0C9-11BB-4B32-AC5E-EAB896CB4216}" "1051" "0"
Security Update for Microsoft Office 2010 (KB2687510) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A5E549EB-FDD3-4CD1-8163-50D429A36516}" "1051" "0"
Security Update for Microsoft OneNote 2010 (KB2760600) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{280E2D43-11CC-4ADE-A171-9286CCB5412B}" "1051" "0"
Security Update for Microsoft Publisher 2010 (KB2553147) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{77AA05C3-6499-49F2-801D-55BD0E587579}" "1051" "0"
Security Update for Microsoft Visio 2010 (KB2810068) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BC3AD7F4-A075-4C9E-A33A-0FA4F8EBCA96}" "1051" "0"
Security Update for Microsoft Visio Viewer 2010 (KB2687505) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{0690E5CB-319C-4FA5-8513-2E255BBB29B9}" "1051" "0"
Security Update for Microsoft Word 2010 (KB2760410) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{F8243081-3FB0-4EE8-9B2A-6F7D70AF5269}" "1051" "0"
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.10-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
Spelling Dictionaries Support For Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
The Sims™ 3 High-End Loft Stuff-->"C:\Program Files\InstallShield Installation Information\{71828142-5A24-4BD0-97E7-976DA08CE6CF}\Sims3SP01Setup.exe" -runfromtemp -l0x0009 -removeonly
The Sims™ 3-->"C:\Program Files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\setup.exe" -runfromtemp -l0x0005 -removeonly
TmNationsForever-->"C:\Program Files\TmNationsForever\unins000.exe"
Turbo Pascal 7.0-->C:\Windows\uninst.exe -f"C:\Program Files\TP\DeIsL1.isu" -c"C:\Program Files\TP\_ISREG32.DLL"
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5D9961AC-7C99-36A2-9EF0-34678AED5384} /parameterfolder Client
Update for Microsoft Office 2010 (KB2553065)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A8686D24-1E89-43A1-973E-05A258D2B3F8}" "1051" "0"
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}" "1051" "0"
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{18B3CF2A-73F7-4716-B1AE-86D68726D408}" "1051" "0"
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{2AB2E0DF-DF6F-4051-895B-A09FA08AD387}" "1051" "0"
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-041B-0000-0000000FF1CE}" "{45BC4A6A-9337-4276-AF51-6481A747BB32}" "1051" "0"
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{14B7142F-D7E2-4FB0-9E3B-7CAA8D7FFC56}" "1051" "0"
Update for Microsoft Office 2010 (KB2566458)-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{EFB525A0-E1C0-4E32-9968-FE401BC87363}" "1051" "0"
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}" "1051" "0"
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{007CC0F3-15DE-426D-95B5-B019FCEF58CE}" "1051" "0"
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{C4F26A9B-B121-4135-8084-A0D9C780C7C8}" "1051" "0"
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B1FA5E8C-2342-45AF-8A62-5E860042F8DF}" "1051" "0"
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{1CBEDB37-C438-473F-8BA0-2535B0D237E2}" "1051" "0"
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{35698CB7-AAA2-4577-B505-DBFF504AEF23}" "1051" "0"
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{9CFD026D-EB1C-48C2-9DD2-8E8875F251B2}" "1051" "0"
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-041B-0000-0000000FF1CE}" "{B4E15135-5272-4194-9724-5FA19F72296D}" "1051" "0"
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{F1CBE095-403D-466D-BB13-B185A5F33231}" "1051" "0"
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-041B-0000-0000000FF1CE}" "{B1F5ED4F-08EE-4487-89EA-69406127A951}" "1051" "0"
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-041B-0000-0000000FF1CE}" "{939C62F7-4741-43AF-A29F-5ED0BF0D318A}" "1051" "0"
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}" "1051" "0"
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{6B6DDDCE-B456-4FE1-9A07-DBC1708E4158}" "1051" "0"
uTorrentControl2 Toolbar-->C:\Program Files\uTorrentControl2\uninstall.exe toolbar
VirtualDJ Home FREE-->MsiExec.exe /I{5E1375CB-6792-4464-8715-CC3EC83D48FA}
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Live Communications Platform-->MsiExec.exe /I{D45240D3-B6B3-4FF9-B243-54ECE3E10066}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}
Windows Live Family Safety-->MsiExec.exe /I{25BD99C3-F0C8-436F-AC2F-4F1B00A518AC}
Windows Live Family Safety-->MsiExec.exe /X{2D6E3D97-1FDF-4993-AC75-72F59EC445C5}
Windows Live Fotogaléria-->MsiExec.exe /X{97F77D62-5110-4FA3-A2D3-410B92D31199}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}
Windows Live Installer-->MsiExec.exe /I{0B0F231F-CE6A-483D-AA23-77B364F75917}
Windows Live Mail-->MsiExec.exe /I{9D56775A-93F3-44A3-8092-840E3826DE30}
Windows Live Mail-->MsiExec.exe /I{FA6CF94F-DACF-4FE7-959D-55C421B91B17}
Windows Live Mesh-->MsiExec.exe /I{AD001A69-88CC-4766-B2DB-3C1DFAB9AC72}
Windows Live Mesh-->MsiExec.exe /I{DECDCB7C-58CC-4865-91AF-627F9798FE48}
Windows Live Messenger Companion Core-->MsiExec.exe /I{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}
Windows Live Messenger-->MsiExec.exe /X{A3389C72-1782-4BB4-BBAA-33345DE52E3F}
Windows Live Messenger-->MsiExec.exe /X{E5B21F11-6933-4E0B-A25C-7963E3C07D11}
Windows Live MIME IFilter-->MsiExec.exe /I{AF844339-2F8A-4593-81B3-9F4C54038C4E}
Windows Live Movie Maker-->MsiExec.exe /X{92EA4134-10D1-418A-91E1-5A0453131A38}
Windows Live Movie Maker-->MsiExec.exe /X{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}
Windows Live Photo Common-->MsiExec.exe /X{6F37D92B-41AA-44B7-80D2-457ABDE11896}
Windows Live Photo Common-->MsiExec.exe /X{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
Windows Live Photo Gallery-->MsiExec.exe /X{3336F667-9049-4D46-98B6-4C743EEBC5B1}
Windows Live PIMT Platform-->MsiExec.exe /I{83C292B7-38A5-440B-A731-07070E81A64F}
Windows Live Remote Client Resources-->MsiExec.exe /I{E1629C45-9CEF-498E-83CD-D6A09CADA176}
Windows Live Remote Client-->MsiExec.exe /I{19A4A990-5343-4FF7-B3B5-6F046C091EDF}
Windows Live Remote Service Resources-->MsiExec.exe /I{41E4FA4B-9376-4C32-AA46-65FCC0087CD5}
Windows Live Remote Service-->MsiExec.exe /I{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}
Windows Live SOXE Definitions-->MsiExec.exe /I{200FEC62-3C34-4D60-9CE8-EC372E01C08F}
Windows Live SOXE-->MsiExec.exe /I{682B3E4F-696A-42DE-A41C-4C07EA1678B4}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{5E627606-53B9-42D1-97E1-D03F6229E248}
Windows Live UX Platform-->MsiExec.exe /I{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
Windows Live Writer Resources-->MsiExec.exe /X{7CB529B2-6C74-4878-9C3F-C29C3C3BBDC6}
Windows Live Writer-->MsiExec.exe /X{11778DA1-0495-4ED9-972F-F9E0B0367CD5}
Windows Live Writer-->MsiExec.exe /X{A726AE06-AAA3-43D1-87E3-70F510314F04}
Windows Live Writer-->MsiExec.exe /X{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
WinRAR 4.01 (32-bit)-->C:\Program Files\WinRAR\uninstall.exe
Xvid Video Codec-->C:\Program Files\Xvid\uninstall.exe
Yontoo 1.10.02-->C:\PROGRA~2\TARMAI~1\{889DF~1\Setup.exe /remove /q0
======System event log======
Computer Name: Tomáš-PC
Event Code: 7038
Message: Službe nvUpdatusService sa nepodarilo s aktuálne nakonfigurovaným heslom prihlásiť ako .\UpdatusUser kvôli nasledujúcej chybe:
Prihlásenie zlyhalo: Doba platnosti hesla pre zadané konto už uplynula.
Ak chcete zabezpečiť správne nakonfigurovanie služby, použite modul Služby konzoly MMC (Microsoft Management Console).
Record Number: 232989
Source Name: Service Control Manager
Time Written: 20130219151157.683270-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 219
Message: The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_GENERIC-&PROD_COMPACT_FLASH&REV_1.01#058F63626476&1#.
Record Number: 232952
Source Name: Microsoft-Windows-Kernel-PnP
Time Written: 20130219150957.082637-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM
Computer Name: Tomáš-PC
Event Code: 7000
Message: Spustenie služby StarWind AE Service zlyhalo kvôli nasledujúcej chybe:
Systém nemôže nájsť zadaný súbor.
Record Number: 232933
Source Name: Service Control Manager
Time Written: 20130219150953.827629-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 7000
Message: Spustenie služby DgiVecp zlyhalo kvôli nasledujúcej chybe:
Systém nemôže nájsť zadaný súbor.
Record Number: 232924
Source Name: Service Control Manager
Time Written: 20130219150952.957628-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 4001
Message: Služba automatickej konfigurácie siete WLAN sa úspešne zastavila.
Record Number: 232871
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20130218213942.502136-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM
=====Application event log=====
Computer Name: Tomáš-PC
Event Code: 1130
Message: .NET Runtime Optimization Service (2.0.50727.5466) - Version or flavor did not match with repository: ehiProxy
Record Number: 63530
Source Name: .NET Runtime Optimization Service
Time Written: 20130110094237.000000-000
Event Type: Warning
User:
Computer Name: Tomáš-PC
Event Code: 1130
Message: .NET Runtime Optimization Service (2.0.50727.5466) - Version or flavor did not match with repository: ehCIR
Record Number: 63529
Source Name: .NET Runtime Optimization Service
Time Written: 20130110094237.000000-000
Event Type: Warning
User:
Computer Name: Tomáš-PC
Event Code: 1130
Message: .NET Runtime Optimization Service (2.0.50727.5466) - Version or flavor did not match with repository: BDATunePIA
Record Number: 63528
Source Name: .NET Runtime Optimization Service
Time Written: 20130110094208.000000-000
Event Type: Warning
User:
Computer Name: Tomáš-PC
Event Code: 1000
Message: Názov chybovej aplikácie: wmpnetwk.exe, verzia: 12.0.7601.17514, časová značka: 0x4ce7a4a7
Názov chybového modulu: KERNELBASE.dll, verzia: 6.1.7601.18015, časová značka: 0x50b83b16
Kód výnimky: 0x0000046b
Odstup chyby: 0x0000812f
Identifikácia chybného procesu: 0x1040
Čas spustenia chybnej aplikácie: 0x01cdef0d16c3262c
Cesta chybnej aplikácie: C:\Program Files\Windows Media Player\wmpnetwk.exe
Cesta chybného modulu: C:\Windows\system32\KERNELBASE.dll
Identifikácia hlásenia: d0ed6fcf-5b08-11e2-96bb-50e549222367
Record Number: 63525
Source Name: Application Error
Time Written: 20130110093340.000000-000
Event Type: Error
User:
Computer Name: Tomáš-PC
Event Code: 1002
Message: The program wmplayer.exe version 12.0.7601.17514 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: a98
Start Time: 01cdef1572a289ad
Termination Time: 15
Application Path: C:\Program Files\Windows Media Player\wmplayer.exe
Report Id: b581b5c8-5b08-11e2-96bb-50e549222367
Record Number: 63524
Source Name: Application Hang
Time Written: 20130110093317.000000-000
Event Type: Error
User:
=====Security event log=====
Computer Name: Tomáš-PC
Event Code: 5061
Message: Cryptographic operation.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Cryptographic Parameters:
Provider Name: Microsoft Software Key Storage Provider
Algorithm Name: RSA
Key Name: {0348B602-EAB3-4D9E-BB55-90E38F66427D}
Key Type: Machine key.
Cryptographic Operation:
Operation: Open Key.
Return Code: 0x0
Record Number: 58237
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.443937-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 5058
Message: Key file operation.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Cryptographic Parameters:
Provider Name: Microsoft Software Key Storage Provider
Algorithm Name: Not Available.
Key Name: {0348B602-EAB3-4D9E-BB55-90E38F66427D}
Key Type: Machine key.
Key File Operation Information:
File Path: C:\ProgramData\Microsoft\Crypto\Keys\5ee2b01e5b9cf75a8df190edb0606ce8_08f10069-7d24-4a30-805a-4847fee734fc
Operation: Read persisted key from file.
Return Code: 0x0
Record Number: 58236
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.443937-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 4733
Message: A member was removed from a security-enabled local group.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Member:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1005
Account Name: -
Group:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1002
Group Name: HomeUsers
Group Domain: Tomáš-PC
Additional Information:
Privileges: -
Record Number: 58235
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.435936-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 4732
Message: A member was added to a security-enabled local group.
Subject:
Security ID: S-1-5-18
Account Name: TOMÁŠ-PC$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Member:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1005
Account Name: -
Group:
Security ID: S-1-5-21-1248684661-3381587278-1203708299-1002
Group Name: HomeUsers
Group Domain: Tomáš-PC
Additional Information:
Privileges: -
Record Number: 58234
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193150.435936-000
Event Type: Audit Success
User:
Computer Name: Tomáš-PC
Event Code: 5061
Message: Cryptographic operation.
Subject:
Security ID: S-1-5-19
Account Name: LOCAL SERVICE
Account Domain: NT AUTHORITY
Logon ID: 0x3e5
Cryptographic Parameters:
Provider Name: Microsoft Software Key Storage Provider
Algorithm Name: RSA
Key Name: 849b0ace-50b6-49f3-99c7-42c9552c4dc5
Key Type: Machine key.
Cryptographic Operation:
Operation: Open Key.
Return Code: 0x0
Record Number: 58233
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121107193144.282584-000
Event Type: Audit Success
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Windows Live\Shared;C:\Program Files\Microchip\MPLAB C32 Suite\bin
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=2a07
"windows_tracing_logfile"=C:\BVTBin\Tests\installpackage\csilogfile.log
"windows_tracing_flags"=3
"SERINUMB"=DC108488
"WBSET"=Done
-----------------EOF-----------------
Re: spomalenie pc blokovanie ip adries esetom



- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: spomalenie pc blokovanie ip adries esetom
A čo mam použivat potom mesto toho advanced system ?? toolbary som uz odinštalovat
tu je z junkware:Junkware Removal Tool (JRT) by Thisisu
Version: 5.5.4 (08.22.2013:1)
OS: Windows 7 Home Premium x86
Ran by Tom ç on 27.08.2013 at 10:33:34,04
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortapp.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortlbr.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\tdataprotocol.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\updatebho.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\wit4ie.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\yontooieclient.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\blabbers
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\browsercompanion
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\cr_installer
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\igearsettings
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\startsearch
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduitsearchscopes
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\pricegong
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\browsercompanion
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\funmoods
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\iminent
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\tarma installer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\uniblue
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dvdvideosofttbtoolbarhelper_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dvdvideosofttbtoolbarhelper_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_1_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_1_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver-internalinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver-internalinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2269050
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT3072253
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_hwmonitor_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_hwmonitor_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_utorrent_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_utorrent_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\tarma installer"
Successfully deleted: [Folder] "C:\Users\Tom ç\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Tom ç\AppData\Roaming\dvdvideosoftiehelpers"
Successfully deleted: [Folder] "C:\Users\Tom ç\AppData\Roaming\funmoods"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\local\conduit"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\local\tempdir"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\dvdvideosofttb"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\pricegong"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\toolbar4"
Successfully deleted: [Folder] "C:\Program Files\claro ltd"
Successfully deleted: [Folder] "C:\Program Files\conduit"
Successfully deleted: [Folder] "C:\Program Files\dvdvideosofttb"
Successfully deleted: [Folder] "C:\Program Files\optimizer pro"
Successfully deleted: [Folder] "C:\Program Files\yontoo"
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{00879BC6-756E-47BE-A6FB-5C6C1745D566}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{055F7F63-5E18-472B-A809-42EBA6626277}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{0D55553A-FF7E-4D4C-BAF2-89B3A7C41784}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{0F7D83A1-135A-4344-B80C-011291FE932D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{11CC5B82-F74A-464F-8881-9BB351BF4CAF}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{181B0D18-4DCE-478C-9C7E-D2E919EE4DBA}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{181C52E8-DB3A-435E-A812-FBABE75935A1}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{1FD9DB35-A363-453D-9DBE-447AB2516855}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{22D69419-2E39-476A-93F6-E07D49619EEA}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{2994271F-883E-4802-B0ED-6F548FD17B17}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{2B1B3CFA-E755-4965-A7EB-D7DF73C1E346}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{2F7E3E20-DD08-4602-B4D4-44B71CCE472D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{33A0193F-BE48-402E-8896-99D1C1CF1B04}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{34ACF7A2-E6F3-47A0-AED2-410C9499C616}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{3577CC7A-57E1-42C8-99C6-E8BDF7A49469}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{3DB728EA-C853-49AB-99B1-A81C00893E5D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{502F3760-93E5-45B5-A76C-4918E47F2653}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{53FA1762-6DE7-4E8D-9537-9EDC19511BAD}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{58E7F0C2-53F3-40B6-A8D6-87B539A0F13D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{5D68CC59-450B-4E0E-99C9-874C502A58DD}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{6152A800-4F94-4B90-B892-5CF63B21BBA3}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{6AE007A5-2125-4330-9998-5FCF501F2213}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{6CCDEE2B-7FAA-4CC3-9E8B-80A6E670D6B9}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{7FB75E85-7E9E-4CAF-A7AD-B6F7104DBD90}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{863F432B-C609-4004-9006-DD48EE0719B1}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{86CFBAF8-51C5-402F-8CF3-BE9244DD58D6}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{8886C39F-3E12-4257-B597-FC726FFA236B}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{8E43E12D-D875-410C-8F29-86BA6471F540}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{908C66E2-F5ED-4F79-A9BE-A60197CC0B33}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{9338E680-5500-4AA6-AF57-375E9F72A305}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{9E8D094D-6697-402F-B3F8-C60D4AD69188}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{9F9F5D1D-BD2D-4DAB-91BD-EB39B5C085AB}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{A34377A9-445E-4153-86DE-DC2C1611D158}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{A840C151-4349-47A4-BF7C-B966E36AC6EE}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{ACC1D763-4186-4552-B51F-3102245A7EB8}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{AF3BBE57-EC62-451B-8F77-44FA605C5F69}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B20BED46-3700-4211-BBE2-2D64BE1719F2}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B46D3B3D-2568-4FD7-8159-111A2A179E56}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B4B0B11A-315D-47D4-81E1-44DCE298336F}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B4B6832B-EDC4-4C3F-A22E-EA39735987C7}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{BBBE2A33-BADE-4B61-89B6-2A0AC9143B6E}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{BC420D85-AF51-4DBF-8CDA-98108C89D7C2}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C3428A12-C3EE-4309-BBC5-564196EACE4E}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C71A6126-64A3-4B03-BFA3-AAB670494858}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C74D187F-9AC6-4DF0-9F51-11FBDA97D00A}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C8FBCC62-3DD1-4EDF-8A7B-FEE5F8112827}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{CEBC67D6-5B11-4B37-A0FD-603344268F20}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{D063DE92-60EE-441C-811B-5D5AF4F913C6}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{D83F4ABA-9EBE-4162-9647-7D6BD8DC71D8}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{D893EF12-A050-46F9-A777-61820CD9C11C}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DA507C72-4D15-40C0-A91E-9CB34324CA36}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DC14BC82-20DC-4CB4-BD1B-4A04805C44E6}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DC57BD41-C1C9-4F0A-9992-BDF876939FF8}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DFDFD404-486B-4A84-AE32-19B93FBACD64}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{E1A9E2E1-554D-4176-9B4E-B1DC38731D0E}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{E4092BC7-8588-4E78-8C19-7D43DF360978}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{E40B7D14-12BC-4104-9340-8E854B762FB1}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{EBA24671-CED2-425D-8AB8-4CB928D4E712}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F0DA32A7-0786-4B2A-886D-A8D0DE1C3D0F}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F4881C15-092F-46A2-BA14-438CD437B766}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F53996D9-DE23-43D2-8CA0-7F3423AAC131}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F5A6081C-4600-4675-8A1A-FF5290991BF9}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FC436CA5-F1EB-49C5-B54D-2036CA1B08E5}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FC481B04-C9B4-4861-80C1-EB0E8D785A63}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FF96E22D-DF53-4428-AFE3-D0324B2CAACB}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FFF3B890-3E50-4B60-9131-C93536AB985D}
~~~ FireFox
Successfully deleted: [File] C:\user.js
Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml"
Successfully deleted: [File] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\user.js
Successfully deleted: [File] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\searchplugins\funmoods.xml
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\conduitcommon
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\ffxtlbr@babylon.com
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\ffxtlbr@funmoods.com
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\oneclickdownload@oneclickdownload.com
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\{687578B9-7132-4A7A-80E4-30EE31099E03}
Successfully deleted the following from C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\prefs.js
user_pref("CT3072253..clientLogIsEnabled", false);
user_pref("CT3072253..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
user_pref("CT3072253..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
user_pref("CT3072253.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
user_pref("CT3072253.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
user_pref("CT3072253.AppTrackingLastCheckTime", "Thu Nov 15 2012 13:32:30 GMT+0100");
user_pref("CT3072253.BrowserCompStateIsOpen_129573915102477663", true);
user_pref("CT3072253.BrowserCompStateIsOpen_129749445530228833", true);
user_pref("CT3072253.BrowserCompStateIsOpen_129749445881800338", true);
user_pref("CT3072253.BrowserCompStateIsOpen_129805375651312503", true);
user_pref("CT3072253.BrowserCompStateIsOpen_130067979083742856", true);
user_pref("CT3072253.BrowserCompStateIsOpen_1359634299000", true);
user_pref("CT3072253.CTID", "CT3072253");
user_pref("CT3072253.CurrentServerDate", "24-8-2013");
user_pref("CT3072253.DSInstall", false);
user_pref("CT3072253.DialogsAlignMode", "LTR");
user_pref("CT3072253.DialogsGetterLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.DownloadReferralCookieData", "");
user_pref("CT3072253.FirstServerDate", "11-3-2012");
user_pref("CT3072253.FirstTime", true);
user_pref("CT3072253.FirstTimeFF3", true);
user_pref("CT3072253.FixPageNotFoundErrors", true);
user_pref("CT3072253.GroupingServerCheckInterval", 1440);
user_pref("CT3072253.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
user_pref("CT3072253.HPInstall", false);
user_pref("CT3072253.HasUserGlobalKeys", true);
user_pref("CT3072253.HomePageProtectorEnabled", false);
user_pref("CT3072253.HomepageBeforeUnload", "chrome://branding/locale/browserconfig.properties");
user_pref("CT3072253.Initialize", true);
user_pref("CT3072253.InitializeCommonPrefs", true);
user_pref("CT3072253.InstallationAndCookieDataSentCount", 3);
user_pref("CT3072253.InstallationId", "ConduitXPEIntegration");
user_pref("CT3072253.InstallationType", "ConduitXPEIntegration");
user_pref("CT3072253.InstalledDate", "Sun Mar 11 2012 12:26:21 GMT+0100");
user_pref("CT3072253.IsAlertDBUpdated", true);
user_pref("CT3072253.IsGrouping", false);
user_pref("CT3072253.IsInitSetupIni", true);
user_pref("CT3072253.IsMulticommunity", false);
user_pref("CT3072253.IsOpenThankYouPage", true);
user_pref("CT3072253.IsOpenUninstallPage", false);
user_pref("CT3072253.LanguagePackLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.LanguagePackReloadIntervalMM", 1440);
user_pref("CT3072253.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
user_pref("CT3072253.LastLogin_3.13.0.6", "Sat Aug 04 2012 18:32:37 GMT+0200");
user_pref("CT3072253.LastLogin_3.14.1.0", "Tue Aug 28 2012 22:08:22 GMT+0200");
user_pref("CT3072253.LastLogin_3.15.1.0", "Thu Nov 15 2012 13:32:19 GMT+0100");
user_pref("CT3072253.LastLogin_3.16.0.3", "Sat Feb 16 2013 11:13:33 GMT+0100");
user_pref("CT3072253.LastLogin_3.18.0.7", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.LastLogin_3.9.0.3", "Sat Jun 09 2012 09:56:39 GMT+0200");
user_pref("CT3072253.LatestVersion", "3.18.0.7");
user_pref("CT3072253.Locale", "en");
user_pref("CT3072253.MCDetectTooltipHeight", "83");
user_pref("CT3072253.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
user_pref("CT3072253.MCDetectTooltipWidth", "295");
user_pref("CT3072253.MyStuffEnabledAtInstallation", true);
user_pref("CT3072253.OriginalFirstVersion", "3.9.0.3");
user_pref("CT3072253.SHRINK_TOOLBAR", 1);
user_pref("CT3072253.SearchCaption", "uTorrentControl2 Customized Web Search");
user_pref("CT3072253.SearchEngineBeforeUnload", "chrome://browser-region/locale/region.properties");
user_pref("CT3072253.SearchFromAddressBarIsInit", true);
user_pref("CT3072253.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=");
user_pref("CT3072253.SearchInNewTabEnabled", true);
user_pref("CT3072253.SearchInNewTabIntervalMM", 1440);
user_pref("CT3072253.SearchInNewTabLastCheckTime", "Sat Aug 24 2013 10:50:21 GMT+0200");
user_pref("CT3072253.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
user_pref("CT3072253.SearchProtectorEnabled", false);
user_pref("CT3072253.SearchProtectorToolbarDisabled", false);
user_pref("CT3072253.SendProtectorDataViaLogin", true);
user_pref("CT3072253.ServiceMapLastCheckTime", "Sat Aug 24 2013 10:50:22 GMT+0200");
user_pref("CT3072253.SettingsLastCheckTime", "Sat Aug 24 2013 10:50:21 GMT+0200");
user_pref("CT3072253.SettingsLastUpdate", "1377331952");
user_pref("CT3072253.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT3072253&SearchSource=13");
user_pref("CT3072253.ThirdPartyComponentsInterval", 504);
user_pref("CT3072253.ThirdPartyComponentsLastCheck", "Sat Aug 24 2013 10:50:20 GMT+0200");
user_pref("CT3072253.ThirdPartyComponentsLastUpdate", "1331805997");
user_pref("CT3072253.ToolbarShrinkedFromSetup", false);
user_pref("CT3072253.TrusteLinkUrl", "hxxp://trust.conduit.com/CT3072253");
user_pref("CT3072253.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com
user_pref("CT3072253.UserID", "UN01678177443550954");
user_pref("CT3072253.ValidationData_Search", 0);
user_pref("CT3072253.ValidationData_Toolbar", 2);
user_pref("CT3072253.alertChannelId", "1463702");
user_pref("CT3072253.autoDisableScopes", -1);
user_pref("CT3072253.backendstorage./9b+7e+x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e,x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e-x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e.:2z527", "2423");
user_pref("CT3072253.backendstorage./9b+7e.x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e/x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e06cg5el8:", "6E6D6B706F7274746F71");
user_pref("CT3072253.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A7473717675787A7A7577242F4B49474F42357D5D5C3D");
user_pref("CT3072253.backendstorage./9b+7e0x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e1x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e2x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e3x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e4x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e5x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e6x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e7x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e8x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e9x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e:x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e;x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e<x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e=x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e>x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e?x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e@x305", "2423");
user_pref("CT3072253.backendstorage./9b+7eax305", "2423");
user_pref("CT3072253.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D337D56545138505C");
user_pref("CT3072253.backendstorage./9b+7ebx305", "2423");
user_pref("CT3072253.backendstorage./9b+7ecx305", "2423");
user_pref("CT3072253.backendstorage./9b+7edx305", "2423");
user_pref("CT3072253.backendstorage./9b+7etx305", "2423");
user_pref("CT3072253.backendstorage./9b-0?3g>d", "696D696E6A6F6F407A7079717B204A4D4C7C25515251232A535358565659595B2F5B292C");
user_pref("CT3072253.backendstorage./9b-0?3g@6:5;", "");
user_pref("CT3072253.backendstorage./9b-0?3gfa7ef", "2B2E2C3D");
user_pref("CT3072253.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A232E333E58604F6456604F6852645858635E604E376B7167617059");
user_pref("CT3072253.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6E6A68707374757677");
user_pref("CT3072253.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484777213F3E484F4E4D4648502B564B4E2E5959595F4C564F3764535750");
user_pref("CT3072253.backendstorage./9b5ba==9cjag", "666A6871726E70417A7445754949767B7D78787E4E");
user_pref("CT3072253.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6B696A6B6C716F70717278");
user_pref("CT3072253.backendstorage./9b9643g3/9e", "6A");
user_pref("CT3072253.backendstorage./9b;45>:bi9i7ie", "2B2E2C3D");
user_pref("CT3072253.backendstorage./9b<:222h64<", "393F352F3E");
user_pref("CT3072253.backendstorage./9b<:222h64<l8daj", "6D70706F7674727977742A7973727B7D757E7A");
user_pref("CT3072253.backendstorage./9b=+03eh8h8j?:", "4443");
user_pref("CT3072253.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
user_pref("CT3072253.backendstorage./9b?b0d:8aj62<h", "6D");
user_pref("CT3072253.backendstorage./9ba@0<0bi6a7gn:6@l?", "6E6B");
user_pref("CT3072253.backendstorage.bt_stats", "7B226C6173745F6C6F67223A313336393939393537382C2275756964223A34323630333737383239323537342C227365715F6964223A33332C22737362223A3
user_pref("CT3072253.backendstorage.bt_usage", "7B2275756964223A34323630333737383239323537342C227365715F6964223A317D");
user_pref("CT3072253.backendstorage.cb_experience_000", "313436");
user_pref("CT3072253.backendstorage.cb_firstuse0100", "31");
user_pref("CT3072253.backendstorage.cb_user_id_000", "43423733303135383638343634385F46697265666F78");
user_pref("CT3072253.backendstorage.cbcountry_000", "534B");
user_pref("CT3072253.backendstorage.cbcountry_001", "534B");
user_pref("CT3072253.backendstorage.cbfirsttime", "53756E204D617220313120323031322031323A32363A323420474D542B30313030");
user_pref("CT3072253.backendstorage.cbopenmamsettings", "30");
user_pref("CT3072253.backendstorage.facebook_ctid_connect_send_new", "73656E646564");
user_pref("CT3072253.backendstorage.facebook_mode", "32");
user_pref("CT3072253.backendstorage.facebook_user_locale", "656E");
user_pref("CT3072253.backendstorage.mam_gk_appsdata", "7B2261707073223A5B7B226964223A225072696365476F6E67222C2275726C223A22687474703A2F2F7072696365676F6E672E636F6E647569746170
user_pref("CT3072253.backendstorage.mam_gk_appsdefaultenabled", "6E756C6C");
user_pref("CT3072253.backendstorage.mam_gk_appstate_couponbuddy", "6F6E");
user_pref("CT3072253.backendstorage.mam_gk_appstate_pricegong", "6F6E");
user_pref("CT3072253.backendstorage.mam_gk_appstatereporttime", "31333639393939353831393733");
user_pref("CT3072253.backendstorage.mam_gk_configuration", "7B22636F6E66696775726174696F6E223A5B7B226964223A225072696365476F6E67222C22637269746572696173223A5B7B226372697465726
user_pref("CT3072253.backendstorage.mam_gk_currentversion", "312E362E302E31");
user_pref("CT3072253.backendstorage.mam_gk_first_time", "31");
user_pref("CT3072253.backendstorage.mam_gk_lastlogintime", "31333639393939353738343433");
user_pref("CT3072253.backendstorage.mam_gk_localization", "7B22676164676574436F6E74656E74506F6C696379223A7B2254657874223A22436F6E74656E7420506F6C696379227D2C226761646765744465
user_pref("CT3072253.backendstorage.mam_gk_settings1.4.3.1", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315
user_pref("CT3072253.backendstorage.mam_gk_settings1.4.3.2", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315
user_pref("CT3072253.backendstorage.mam_gk_settings1.4.4.6", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2232313
user_pref("CT3072253.backendstorage.mam_gk_settings1.6.0.1", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2232313
user_pref("CT3072253.backendstorage.mam_gk_showclosebutton", "74727565");
user_pref("CT3072253.backendstorage.mam_gk_showwelcomegadget", "66616C7365");
user_pref("CT3072253.backendstorage.mam_gk_userid", "63366661306135392D343435372D343534632D383263642D313332326331636461336636");
user_pref("CT3072253.backendstorage.pg_enable", "74727565");
user_pref("CT3072253.backendstorage.searchappstate", "33");
user_pref("CT3072253.backendstorage.searchapptracking", "73656E74");
user_pref("CT3072253.backendstorage.url_history0001", "687474703A2F2F7777772E6861796E6565646C652E636F6D2F70726F647563742F63656C657374726F6E6E65787374617236736574656C6573636F70
user_pref("CT3072253.components.1000080", true);
user_pref("CT3072253.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlP
user_pref("CT3072253.globalFirstTimeInfoLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.homepageProtectorEnableByLogin", true);
user_pref("CT3072253.initDone", true);
user_pref("CT3072253.isAppTrackingManagerOn", false);
user_pref("CT3072253.myStuffEnabled", true);
user_pref("CT3072253.myStuffPublihserMinWidth", 400);
user_pref("CT3072253.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
user_pref("CT3072253.myStuffServiceIntervalMM", 1440);
user_pref("CT3072253.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
user_pref("CT3072253.oldAppsList", "129295695672325902,129571859753931591,111,129593762370823811,129805375651312503,129749445881800338,129573915102477663,1000080,1000515,1000,
user_pref("CT3072253.revertSettingsEnabled", true);
user_pref("CT3072253.searchProtectorDialogDelayInSec", 10);
user_pref("CT3072253.searchProtectorEnableByLogin", true);
user_pref("CT3072253.testingCtid", "");
user_pref("CT3072253.toolbarAppMetaDataLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.toolbarContextMenuLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.usagesFlag", 2);
user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253", "\"3eee29e3205298ed9bf06eef24db7b173\"");
user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", "\"1362324308\"");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "G9mW7heT/8xIX1frcduu0A==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en&ctid=CT3072253", "GNmdGrr6syWWiO5HPrW6Kg==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "2E1/v7EfCEDbv3VaBQMELg==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en&ctid=CT3072253", "inm6N6Ad2DrQKGUsOGzkLg==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "UgzXjW7BIkfdx+x39Ruv3w==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en&ctid=CT3072253", "6nU8AIjBECdJeC23UVuipQ==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "4BgM4MhF/sOgPsDNmIs3Yw==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en&ctid=CT3072253", "Y3Dtc1pIAMMkuUpvgoTeaw==");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"80b45d28468cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"2a1a0d7b586ce1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.0.3", "\"4ead38b3e6bcd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253", "\"9971ee9815a5fc569766cf6ddcaaca8e\"");
user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"6baeae0141d4ee4e4989c3c4f54d6d97\"");
user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Tomáa\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qighht39.default\\conduitCommon\\modules\\3.18.0.7");
user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.18.0.7");
user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "");
user_pref("CommunityToolbar.ToolbarsList", "CT3072253");
user_pref("CommunityToolbar.ToolbarsList2", "CT3072253");
user_pref("CommunityToolbar.ToolbarsList4", "CT3072253");
user_pref("CommunityToolbar.globalUserId", "59c0a1a3-585d-4717-a756-9ec044c5a98f");
user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3072253");
user_pref("CommunityToolbar.originalHomepage", "chrome://branding/locale/browserconfig.properties");
user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties");
user_pref("browser.babylon.HPOnNewTab", "isearch.claro-search.com");
user_pref("browser.newtab.url", "hxxp://isearch.babylon.com/?affID=119816&babsrc=NT_ss&mntrId=C0BE50E549222367");
user_pref("browser.search.order.1", "Claro Search");
user_pref("browser.search.selectedEngine", "Search the web (Babylon)");
user_pref("browser.startup.homepage", "hxxp://start.funmoods.com");
user_pref("extensions.BabylonToolbar.admin", false);
user_pref("extensions.BabylonToolbar.aflt", "babsst");
user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
user_pref("extensions.BabylonToolbar.autoRvrt", "false");
user_pref("extensions.BabylonToolbar.dfltLng", "en");
user_pref("extensions.BabylonToolbar.excTlbr", false);
user_pref("extensions.BabylonToolbar.ffxUnstlRst", true);
user_pref("extensions.BabylonToolbar.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.BabylonToolbar.instlDay", "15780");
user_pref("extensions.BabylonToolbar.instlRef", "sst");
user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.8.11.1013:10:49");
user_pref("extensions.BabylonToolbar.newTab", false);
user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
user_pref("extensions.BabylonToolbar.rvrt", "false");
user_pref("extensions.BabylonToolbar.smplGrp", "none");
user_pref("extensions.BabylonToolbar.tlbrId", "base");
user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=c0bece9a00000000000050e549222367&q=");
user_pref("extensions.BabylonToolbar.vrsn", "1.8.11.10");
user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.11.1013:10:49");
user_pref("extensions.BabylonToolbar.vrsni", "1.8.11.10");
user_pref("extensions.BabylonToolbar_i.babExt", "");
user_pref("extensions.BabylonToolbar_i.babTrack", ""quot;&affID=119816");
user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://isearch.claro-search.com/?affID=114162&tt=3012_7&babsrc=NT_iclro&mntrId=c0bece9a00000000000050e549222367");
user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
user_pref("extensions.claro.admin", false);
user_pref("extensions.claro.aflt", "babsst");
user_pref("extensions.claro.dfltLng", "en");
user_pref("extensions.claro.excTlbr", false);
user_pref("extensions.claro.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.claro.instlDay", "15545");
user_pref("extensions.claro.instlRef", "sst");
user_pref("extensions.claro.prdct", "claro");
user_pref("extensions.claro.prtnrId", "claro");
user_pref("extensions.claro.tlbrId", "iclaro");
user_pref("extensions.claro.vrsn", "1.6.4.1");
user_pref("extensions.claro.vrsni", "1.6.4.1");
user_pref("extensions.claro_i.smplGrp", "none");
user_pref("extensions.claro_i.vrsnTs", "1.6.4.114:34:15");
user_pref("extensions.crossrider.bic", "13b3bb3447fa6197782d40dd47ac0ba8");
user_pref("extensions.funmoods.SimilarSitesStorage-pid2", "6c57c30ca087a3a7");
user_pref("extensions.funmoods.admin", false);
user_pref("extensions.funmoods.aflt", "ironto");
user_pref("extensions.funmoods.brwsrsrc", "ietlbr");
user_pref("extensions.funmoods.cntry", "IL");
user_pref("extensions.funmoods.cv", "cv5");
user_pref("extensions.funmoods.dfltLng", "");
user_pref("extensions.funmoods.dfltSrch", true);
user_pref("extensions.funmoods.dfltlng", "en");
user_pref("extensions.funmoods.dfltsrch", true);
user_pref("extensions.funmoods.excTlbr", false);
user_pref("extensions.funmoods.fmupdtFirst", false);
user_pref("extensions.funmoods.hdrMd5", "653250319BBCAE935789C2F11DFDCF61");
user_pref("extensions.funmoods.hmpg", true);
user_pref("extensions.funmoods.hrdid", "c0bece9a00000000000050e549222367");
user_pref("extensions.funmoods.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.funmoods.instlDay", "15581");
user_pref("extensions.funmoods.instlRef", "");
user_pref("extensions.funmoods.instlday", "15546");
user_pref("extensions.funmoods.instlref", "");
user_pref("extensions.funmoods.isDcmntCmplt", true);
user_pref("extensions.funmoods.keywordurl", "");
user_pref("extensions.funmoods.lastVrsnTs", "1.5.11.1615:22:01");
user_pref("extensions.funmoods.newTab", true);
user_pref("extensions.funmoods.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods.newtab", true);
user_pref("extensions.funmoods.newtaburl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods.noFFXTlbr", false);
user_pref("extensions.funmoods.prdct", "funmoods");
user_pref("extensions.funmoods.prtnrId", "funmoods");
user_pref("extensions.funmoods.prtnrid", "funmoods");
user_pref("extensions.funmoods.sg", "none");
user_pref("extensions.funmoods.smplGrp", "none");
user_pref("extensions.funmoods.smplgrp", "none");
user_pref("extensions.funmoods.srch", "");
user_pref("extensions.funmoods.srchPrvdr", "Search");
user_pref("extensions.funmoods.srchprvdr", "Search");
user_pref("extensions.funmoods.tlbrId", "base");
user_pref("extensions.funmoods.tlbrSrchUrl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods.tlbrid", "base");
user_pref("extensions.funmoods.tlbrsrchurl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods.vrsn", "1.5.11.16");
user_pref("extensions.funmoods.vrsnTs", "1.5.11.1615:22:01");
user_pref("extensions.funmoods.vrsni", "1.5.11.16");
user_pref("extensions.funmoods.vrsnts", "1.5.11.1611:04:38");
user_pref("extensions.funmoods_i.aflt", "ironto");
user_pref("extensions.funmoods_i.dfltLng", "");
user_pref("extensions.funmoods_i.dfltSrch", true);
user_pref("extensions.funmoods_i.dnsErr", true);
user_pref("extensions.funmoods_i.excTlbr", false);
user_pref("extensions.funmoods_i.hmpg", true);
user_pref("extensions.funmoods_i.hmpgUrl", "hxxp://start.funmoods.com/?f=1&a=ironto");
user_pref("extensions.funmoods_i.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.funmoods_i.instlDay", "15581");
user_pref("extensions.funmoods_i.instlRef", "");
user_pref("extensions.funmoods_i.newTab", true);
user_pref("extensions.funmoods_i.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods_i.prdct", "funmoods");
user_pref("extensions.funmoods_i.prtnrId", "funmoods");
user_pref("extensions.funmoods_i.smplGrp", "none");
user_pref("extensions.funmoods_i.srchPrvdr", "Search");
user_pref("extensions.funmoods_i.tlbrId", "base");
user_pref("extensions.funmoods_i.tlbrSrchUrl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods_i.vrsn", "1.5.11.16");
user_pref("extensions.funmoods_i.vrsnTs", "1.5.11.1615:22:01");
user_pref("extensions.funmoods_i.vrsni", "1.5.11.16");
user_pref("extentions.y2layers.defaultEnableAppsList", "bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube");
user_pref("extentions.y2layers.installId", "5d33fb18-231e-443c-a9a8-e9205a6c749f");
user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=");
Emptied folder: C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\minidumps [137 files]
~~~ Chrome
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\clbfjfbnelcflpgpklppgplejolacbej
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27.08.2013 at 10:35:25,73
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
tu je z junkware:Junkware Removal Tool (JRT) by Thisisu
Version: 5.5.4 (08.22.2013:1)
OS: Windows 7 Home Premium x86
Ran by Tom ç on 27.08.2013 at 10:33:34,04
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortapp.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortlbr.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\tdataprotocol.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\updatebho.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\wit4ie.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\yontooieclient.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\blabbers
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\browsercompanion
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\cr_installer
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\igearsettings
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\startsearch
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduitsearchscopes
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\pricegong
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\browsercompanion
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\funmoods
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\iminent
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\tarma installer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\uniblue
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dvdvideosofttbtoolbarhelper_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dvdvideosofttbtoolbarhelper_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_1_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_1_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver-internalinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver-internalinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2269050
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT3072253
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_hwmonitor_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_hwmonitor_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_utorrent_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_utorrent_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\tarma installer"
Successfully deleted: [Folder] "C:\Users\Tom ç\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Tom ç\AppData\Roaming\dvdvideosoftiehelpers"
Successfully deleted: [Folder] "C:\Users\Tom ç\AppData\Roaming\funmoods"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\local\conduit"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\local\tempdir"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\dvdvideosofttb"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\pricegong"
Successfully deleted: [Folder] "C:\Users\Tom ç\appdata\locallow\toolbar4"
Successfully deleted: [Folder] "C:\Program Files\claro ltd"
Successfully deleted: [Folder] "C:\Program Files\conduit"
Successfully deleted: [Folder] "C:\Program Files\dvdvideosofttb"
Successfully deleted: [Folder] "C:\Program Files\optimizer pro"
Successfully deleted: [Folder] "C:\Program Files\yontoo"
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{00879BC6-756E-47BE-A6FB-5C6C1745D566}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{055F7F63-5E18-472B-A809-42EBA6626277}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{0D55553A-FF7E-4D4C-BAF2-89B3A7C41784}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{0F7D83A1-135A-4344-B80C-011291FE932D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{11CC5B82-F74A-464F-8881-9BB351BF4CAF}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{181B0D18-4DCE-478C-9C7E-D2E919EE4DBA}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{181C52E8-DB3A-435E-A812-FBABE75935A1}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{1FD9DB35-A363-453D-9DBE-447AB2516855}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{22D69419-2E39-476A-93F6-E07D49619EEA}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{2994271F-883E-4802-B0ED-6F548FD17B17}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{2B1B3CFA-E755-4965-A7EB-D7DF73C1E346}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{2F7E3E20-DD08-4602-B4D4-44B71CCE472D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{33A0193F-BE48-402E-8896-99D1C1CF1B04}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{34ACF7A2-E6F3-47A0-AED2-410C9499C616}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{3577CC7A-57E1-42C8-99C6-E8BDF7A49469}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{3DB728EA-C853-49AB-99B1-A81C00893E5D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{502F3760-93E5-45B5-A76C-4918E47F2653}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{53FA1762-6DE7-4E8D-9537-9EDC19511BAD}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{58E7F0C2-53F3-40B6-A8D6-87B539A0F13D}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{5D68CC59-450B-4E0E-99C9-874C502A58DD}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{6152A800-4F94-4B90-B892-5CF63B21BBA3}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{6AE007A5-2125-4330-9998-5FCF501F2213}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{6CCDEE2B-7FAA-4CC3-9E8B-80A6E670D6B9}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{7FB75E85-7E9E-4CAF-A7AD-B6F7104DBD90}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{863F432B-C609-4004-9006-DD48EE0719B1}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{86CFBAF8-51C5-402F-8CF3-BE9244DD58D6}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{8886C39F-3E12-4257-B597-FC726FFA236B}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{8E43E12D-D875-410C-8F29-86BA6471F540}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{908C66E2-F5ED-4F79-A9BE-A60197CC0B33}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{9338E680-5500-4AA6-AF57-375E9F72A305}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{9E8D094D-6697-402F-B3F8-C60D4AD69188}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{9F9F5D1D-BD2D-4DAB-91BD-EB39B5C085AB}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{A34377A9-445E-4153-86DE-DC2C1611D158}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{A840C151-4349-47A4-BF7C-B966E36AC6EE}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{ACC1D763-4186-4552-B51F-3102245A7EB8}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{AF3BBE57-EC62-451B-8F77-44FA605C5F69}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B20BED46-3700-4211-BBE2-2D64BE1719F2}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B46D3B3D-2568-4FD7-8159-111A2A179E56}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B4B0B11A-315D-47D4-81E1-44DCE298336F}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{B4B6832B-EDC4-4C3F-A22E-EA39735987C7}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{BBBE2A33-BADE-4B61-89B6-2A0AC9143B6E}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{BC420D85-AF51-4DBF-8CDA-98108C89D7C2}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C3428A12-C3EE-4309-BBC5-564196EACE4E}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C71A6126-64A3-4B03-BFA3-AAB670494858}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C74D187F-9AC6-4DF0-9F51-11FBDA97D00A}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{C8FBCC62-3DD1-4EDF-8A7B-FEE5F8112827}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{CEBC67D6-5B11-4B37-A0FD-603344268F20}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{D063DE92-60EE-441C-811B-5D5AF4F913C6}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{D83F4ABA-9EBE-4162-9647-7D6BD8DC71D8}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{D893EF12-A050-46F9-A777-61820CD9C11C}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DA507C72-4D15-40C0-A91E-9CB34324CA36}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DC14BC82-20DC-4CB4-BD1B-4A04805C44E6}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DC57BD41-C1C9-4F0A-9992-BDF876939FF8}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{DFDFD404-486B-4A84-AE32-19B93FBACD64}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{E1A9E2E1-554D-4176-9B4E-B1DC38731D0E}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{E4092BC7-8588-4E78-8C19-7D43DF360978}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{E40B7D14-12BC-4104-9340-8E854B762FB1}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{EBA24671-CED2-425D-8AB8-4CB928D4E712}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F0DA32A7-0786-4B2A-886D-A8D0DE1C3D0F}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F4881C15-092F-46A2-BA14-438CD437B766}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F53996D9-DE23-43D2-8CA0-7F3423AAC131}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{F5A6081C-4600-4675-8A1A-FF5290991BF9}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FC436CA5-F1EB-49C5-B54D-2036CA1B08E5}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FC481B04-C9B4-4861-80C1-EB0E8D785A63}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FF96E22D-DF53-4428-AFE3-D0324B2CAACB}
Successfully deleted: [Empty Folder] C:\Users\Tom ç\appdata\local\{FFF3B890-3E50-4B60-9131-C93536AB985D}
~~~ FireFox
Successfully deleted: [File] C:\user.js
Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml"
Successfully deleted: [File] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\user.js
Successfully deleted: [File] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\searchplugins\funmoods.xml
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\conduitcommon
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\ffxtlbr@babylon.com
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\ffxtlbr@funmoods.com
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\oneclickdownload@oneclickdownload.com
Successfully deleted: [Folder] C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\extensions\{687578B9-7132-4A7A-80E4-30EE31099E03}
Successfully deleted the following from C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\prefs.js
user_pref("CT3072253..clientLogIsEnabled", false);
user_pref("CT3072253..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
user_pref("CT3072253..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
user_pref("CT3072253.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
user_pref("CT3072253.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
user_pref("CT3072253.AppTrackingLastCheckTime", "Thu Nov 15 2012 13:32:30 GMT+0100");
user_pref("CT3072253.BrowserCompStateIsOpen_129573915102477663", true);
user_pref("CT3072253.BrowserCompStateIsOpen_129749445530228833", true);
user_pref("CT3072253.BrowserCompStateIsOpen_129749445881800338", true);
user_pref("CT3072253.BrowserCompStateIsOpen_129805375651312503", true);
user_pref("CT3072253.BrowserCompStateIsOpen_130067979083742856", true);
user_pref("CT3072253.BrowserCompStateIsOpen_1359634299000", true);
user_pref("CT3072253.CTID", "CT3072253");
user_pref("CT3072253.CurrentServerDate", "24-8-2013");
user_pref("CT3072253.DSInstall", false);
user_pref("CT3072253.DialogsAlignMode", "LTR");
user_pref("CT3072253.DialogsGetterLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.DownloadReferralCookieData", "");
user_pref("CT3072253.FirstServerDate", "11-3-2012");
user_pref("CT3072253.FirstTime", true);
user_pref("CT3072253.FirstTimeFF3", true);
user_pref("CT3072253.FixPageNotFoundErrors", true);
user_pref("CT3072253.GroupingServerCheckInterval", 1440);
user_pref("CT3072253.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
user_pref("CT3072253.HPInstall", false);
user_pref("CT3072253.HasUserGlobalKeys", true);
user_pref("CT3072253.HomePageProtectorEnabled", false);
user_pref("CT3072253.HomepageBeforeUnload", "chrome://branding/locale/browserconfig.properties");
user_pref("CT3072253.Initialize", true);
user_pref("CT3072253.InitializeCommonPrefs", true);
user_pref("CT3072253.InstallationAndCookieDataSentCount", 3);
user_pref("CT3072253.InstallationId", "ConduitXPEIntegration");
user_pref("CT3072253.InstallationType", "ConduitXPEIntegration");
user_pref("CT3072253.InstalledDate", "Sun Mar 11 2012 12:26:21 GMT+0100");
user_pref("CT3072253.IsAlertDBUpdated", true);
user_pref("CT3072253.IsGrouping", false);
user_pref("CT3072253.IsInitSetupIni", true);
user_pref("CT3072253.IsMulticommunity", false);
user_pref("CT3072253.IsOpenThankYouPage", true);
user_pref("CT3072253.IsOpenUninstallPage", false);
user_pref("CT3072253.LanguagePackLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.LanguagePackReloadIntervalMM", 1440);
user_pref("CT3072253.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
user_pref("CT3072253.LastLogin_3.13.0.6", "Sat Aug 04 2012 18:32:37 GMT+0200");
user_pref("CT3072253.LastLogin_3.14.1.0", "Tue Aug 28 2012 22:08:22 GMT+0200");
user_pref("CT3072253.LastLogin_3.15.1.0", "Thu Nov 15 2012 13:32:19 GMT+0100");
user_pref("CT3072253.LastLogin_3.16.0.3", "Sat Feb 16 2013 11:13:33 GMT+0100");
user_pref("CT3072253.LastLogin_3.18.0.7", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.LastLogin_3.9.0.3", "Sat Jun 09 2012 09:56:39 GMT+0200");
user_pref("CT3072253.LatestVersion", "3.18.0.7");
user_pref("CT3072253.Locale", "en");
user_pref("CT3072253.MCDetectTooltipHeight", "83");
user_pref("CT3072253.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
user_pref("CT3072253.MCDetectTooltipWidth", "295");
user_pref("CT3072253.MyStuffEnabledAtInstallation", true);
user_pref("CT3072253.OriginalFirstVersion", "3.9.0.3");
user_pref("CT3072253.SHRINK_TOOLBAR", 1);
user_pref("CT3072253.SearchCaption", "uTorrentControl2 Customized Web Search");
user_pref("CT3072253.SearchEngineBeforeUnload", "chrome://browser-region/locale/region.properties");
user_pref("CT3072253.SearchFromAddressBarIsInit", true);
user_pref("CT3072253.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=");
user_pref("CT3072253.SearchInNewTabEnabled", true);
user_pref("CT3072253.SearchInNewTabIntervalMM", 1440);
user_pref("CT3072253.SearchInNewTabLastCheckTime", "Sat Aug 24 2013 10:50:21 GMT+0200");
user_pref("CT3072253.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
user_pref("CT3072253.SearchProtectorEnabled", false);
user_pref("CT3072253.SearchProtectorToolbarDisabled", false);
user_pref("CT3072253.SendProtectorDataViaLogin", true);
user_pref("CT3072253.ServiceMapLastCheckTime", "Sat Aug 24 2013 10:50:22 GMT+0200");
user_pref("CT3072253.SettingsLastCheckTime", "Sat Aug 24 2013 10:50:21 GMT+0200");
user_pref("CT3072253.SettingsLastUpdate", "1377331952");
user_pref("CT3072253.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT3072253&SearchSource=13");
user_pref("CT3072253.ThirdPartyComponentsInterval", 504);
user_pref("CT3072253.ThirdPartyComponentsLastCheck", "Sat Aug 24 2013 10:50:20 GMT+0200");
user_pref("CT3072253.ThirdPartyComponentsLastUpdate", "1331805997");
user_pref("CT3072253.ToolbarShrinkedFromSetup", false);
user_pref("CT3072253.TrusteLinkUrl", "hxxp://trust.conduit.com/CT3072253");
user_pref("CT3072253.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com
user_pref("CT3072253.UserID", "UN01678177443550954");
user_pref("CT3072253.ValidationData_Search", 0);
user_pref("CT3072253.ValidationData_Toolbar", 2);
user_pref("CT3072253.alertChannelId", "1463702");
user_pref("CT3072253.autoDisableScopes", -1);
user_pref("CT3072253.backendstorage./9b+7e+x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e,x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e-x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e.:2z527", "2423");
user_pref("CT3072253.backendstorage./9b+7e.x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e/x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e06cg5el8:", "6E6D6B706F7274746F71");
user_pref("CT3072253.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A7473717675787A7A7577242F4B49474F42357D5D5C3D");
user_pref("CT3072253.backendstorage./9b+7e0x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e1x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e2x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e3x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e4x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e5x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e6x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e7x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e8x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e9x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e:x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e;x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e<x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e=x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e>x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e?x305", "2423");
user_pref("CT3072253.backendstorage./9b+7e@x305", "2423");
user_pref("CT3072253.backendstorage./9b+7eax305", "2423");
user_pref("CT3072253.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D337D56545138505C");
user_pref("CT3072253.backendstorage./9b+7ebx305", "2423");
user_pref("CT3072253.backendstorage./9b+7ecx305", "2423");
user_pref("CT3072253.backendstorage./9b+7edx305", "2423");
user_pref("CT3072253.backendstorage./9b+7etx305", "2423");
user_pref("CT3072253.backendstorage./9b-0?3g>d", "696D696E6A6F6F407A7079717B204A4D4C7C25515251232A535358565659595B2F5B292C");
user_pref("CT3072253.backendstorage./9b-0?3g@6:5;", "");
user_pref("CT3072253.backendstorage./9b-0?3gfa7ef", "2B2E2C3D");
user_pref("CT3072253.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A232E333E58604F6456604F6852645858635E604E376B7167617059");
user_pref("CT3072253.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6E6A68707374757677");
user_pref("CT3072253.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484777213F3E484F4E4D4648502B564B4E2E5959595F4C564F3764535750");
user_pref("CT3072253.backendstorage./9b5ba==9cjag", "666A6871726E70417A7445754949767B7D78787E4E");
user_pref("CT3072253.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6B696A6B6C716F70717278");
user_pref("CT3072253.backendstorage./9b9643g3/9e", "6A");
user_pref("CT3072253.backendstorage./9b;45>:bi9i7ie", "2B2E2C3D");
user_pref("CT3072253.backendstorage./9b<:222h64<", "393F352F3E");
user_pref("CT3072253.backendstorage./9b<:222h64<l8daj", "6D70706F7674727977742A7973727B7D757E7A");
user_pref("CT3072253.backendstorage./9b=+03eh8h8j?:", "4443");
user_pref("CT3072253.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
user_pref("CT3072253.backendstorage./9b?b0d:8aj62<h", "6D");
user_pref("CT3072253.backendstorage./9ba@0<0bi6a7gn:6@l?", "6E6B");
user_pref("CT3072253.backendstorage.bt_stats", "7B226C6173745F6C6F67223A313336393939393537382C2275756964223A34323630333737383239323537342C227365715F6964223A33332C22737362223A3
user_pref("CT3072253.backendstorage.bt_usage", "7B2275756964223A34323630333737383239323537342C227365715F6964223A317D");
user_pref("CT3072253.backendstorage.cb_experience_000", "313436");
user_pref("CT3072253.backendstorage.cb_firstuse0100", "31");
user_pref("CT3072253.backendstorage.cb_user_id_000", "43423733303135383638343634385F46697265666F78");
user_pref("CT3072253.backendstorage.cbcountry_000", "534B");
user_pref("CT3072253.backendstorage.cbcountry_001", "534B");
user_pref("CT3072253.backendstorage.cbfirsttime", "53756E204D617220313120323031322031323A32363A323420474D542B30313030");
user_pref("CT3072253.backendstorage.cbopenmamsettings", "30");
user_pref("CT3072253.backendstorage.facebook_ctid_connect_send_new", "73656E646564");
user_pref("CT3072253.backendstorage.facebook_mode", "32");
user_pref("CT3072253.backendstorage.facebook_user_locale", "656E");
user_pref("CT3072253.backendstorage.mam_gk_appsdata", "7B2261707073223A5B7B226964223A225072696365476F6E67222C2275726C223A22687474703A2F2F7072696365676F6E672E636F6E647569746170
user_pref("CT3072253.backendstorage.mam_gk_appsdefaultenabled", "6E756C6C");
user_pref("CT3072253.backendstorage.mam_gk_appstate_couponbuddy", "6F6E");
user_pref("CT3072253.backendstorage.mam_gk_appstate_pricegong", "6F6E");
user_pref("CT3072253.backendstorage.mam_gk_appstatereporttime", "31333639393939353831393733");
user_pref("CT3072253.backendstorage.mam_gk_configuration", "7B22636F6E66696775726174696F6E223A5B7B226964223A225072696365476F6E67222C22637269746572696173223A5B7B226372697465726
user_pref("CT3072253.backendstorage.mam_gk_currentversion", "312E362E302E31");
user_pref("CT3072253.backendstorage.mam_gk_first_time", "31");
user_pref("CT3072253.backendstorage.mam_gk_lastlogintime", "31333639393939353738343433");
user_pref("CT3072253.backendstorage.mam_gk_localization", "7B22676164676574436F6E74656E74506F6C696379223A7B2254657874223A22436F6E74656E7420506F6C696379227D2C226761646765744465
user_pref("CT3072253.backendstorage.mam_gk_settings1.4.3.1", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315
user_pref("CT3072253.backendstorage.mam_gk_settings1.4.3.2", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2236315
user_pref("CT3072253.backendstorage.mam_gk_settings1.4.4.6", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2232313
user_pref("CT3072253.backendstorage.mam_gk_settings1.6.0.1", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74657276616C223A3234302C227374616D70223A2232313
user_pref("CT3072253.backendstorage.mam_gk_showclosebutton", "74727565");
user_pref("CT3072253.backendstorage.mam_gk_showwelcomegadget", "66616C7365");
user_pref("CT3072253.backendstorage.mam_gk_userid", "63366661306135392D343435372D343534632D383263642D313332326331636461336636");
user_pref("CT3072253.backendstorage.pg_enable", "74727565");
user_pref("CT3072253.backendstorage.searchappstate", "33");
user_pref("CT3072253.backendstorage.searchapptracking", "73656E74");
user_pref("CT3072253.backendstorage.url_history0001", "687474703A2F2F7777772E6861796E6565646C652E636F6D2F70726F647563742F63656C657374726F6E6E65787374617236736574656C6573636F70
user_pref("CT3072253.components.1000080", true);
user_pref("CT3072253.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlP
user_pref("CT3072253.globalFirstTimeInfoLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.homepageProtectorEnableByLogin", true);
user_pref("CT3072253.initDone", true);
user_pref("CT3072253.isAppTrackingManagerOn", false);
user_pref("CT3072253.myStuffEnabled", true);
user_pref("CT3072253.myStuffPublihserMinWidth", 400);
user_pref("CT3072253.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
user_pref("CT3072253.myStuffServiceIntervalMM", 1440);
user_pref("CT3072253.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
user_pref("CT3072253.oldAppsList", "129295695672325902,129571859753931591,111,129593762370823811,129805375651312503,129749445881800338,129573915102477663,1000080,1000515,1000,
user_pref("CT3072253.revertSettingsEnabled", true);
user_pref("CT3072253.searchProtectorDialogDelayInSec", 10);
user_pref("CT3072253.searchProtectorEnableByLogin", true);
user_pref("CT3072253.testingCtid", "");
user_pref("CT3072253.toolbarAppMetaDataLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.toolbarContextMenuLastCheckTime", "Sat Aug 24 2013 10:50:23 GMT+0200");
user_pref("CT3072253.usagesFlag", 2);
user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253", "\"3eee29e3205298ed9bf06eef24db7b173\"");
user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", "\"1362324308\"");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "G9mW7heT/8xIX1frcduu0A==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en&ctid=CT3072253", "GNmdGrr6syWWiO5HPrW6Kg==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "2E1/v7EfCEDbv3VaBQMELg==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en&ctid=CT3072253", "inm6N6Ad2DrQKGUsOGzkLg==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "UgzXjW7BIkfdx+x39Ruv3w==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en&ctid=CT3072253", "6nU8AIjBECdJeC23UVuipQ==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "4BgM4MhF/sOgPsDNmIs3Yw==");
user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en&ctid=CT3072253", "Y3Dtc1pIAMMkuUpvgoTeaw==");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"80b45d28468cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"2a1a0d7b586ce1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.0.3", "\"4ead38b3e6bcd1:0\"");
user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253", "\"9971ee9815a5fc569766cf6ddcaaca8e\"");
user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"6baeae0141d4ee4e4989c3c4f54d6d97\"");
user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Tomáa\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qighht39.default\\conduitCommon\\modules\\3.18.0.7");
user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.18.0.7");
user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "");
user_pref("CommunityToolbar.ToolbarsList", "CT3072253");
user_pref("CommunityToolbar.ToolbarsList2", "CT3072253");
user_pref("CommunityToolbar.ToolbarsList4", "CT3072253");
user_pref("CommunityToolbar.globalUserId", "59c0a1a3-585d-4717-a756-9ec044c5a98f");
user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3072253");
user_pref("CommunityToolbar.originalHomepage", "chrome://branding/locale/browserconfig.properties");
user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties");
user_pref("browser.babylon.HPOnNewTab", "isearch.claro-search.com");
user_pref("browser.newtab.url", "hxxp://isearch.babylon.com/?affID=119816&babsrc=NT_ss&mntrId=C0BE50E549222367");
user_pref("browser.search.order.1", "Claro Search");
user_pref("browser.search.selectedEngine", "Search the web (Babylon)");
user_pref("browser.startup.homepage", "hxxp://start.funmoods.com");
user_pref("extensions.BabylonToolbar.admin", false);
user_pref("extensions.BabylonToolbar.aflt", "babsst");
user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
user_pref("extensions.BabylonToolbar.autoRvrt", "false");
user_pref("extensions.BabylonToolbar.dfltLng", "en");
user_pref("extensions.BabylonToolbar.excTlbr", false);
user_pref("extensions.BabylonToolbar.ffxUnstlRst", true);
user_pref("extensions.BabylonToolbar.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.BabylonToolbar.instlDay", "15780");
user_pref("extensions.BabylonToolbar.instlRef", "sst");
user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.8.11.1013:10:49");
user_pref("extensions.BabylonToolbar.newTab", false);
user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
user_pref("extensions.BabylonToolbar.rvrt", "false");
user_pref("extensions.BabylonToolbar.smplGrp", "none");
user_pref("extensions.BabylonToolbar.tlbrId", "base");
user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=c0bece9a00000000000050e549222367&q=");
user_pref("extensions.BabylonToolbar.vrsn", "1.8.11.10");
user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.11.1013:10:49");
user_pref("extensions.BabylonToolbar.vrsni", "1.8.11.10");
user_pref("extensions.BabylonToolbar_i.babExt", "");
user_pref("extensions.BabylonToolbar_i.babTrack", ""quot;&affID=119816");
user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://isearch.claro-search.com/?affID=114162&tt=3012_7&babsrc=NT_iclro&mntrId=c0bece9a00000000000050e549222367");
user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
user_pref("extensions.claro.admin", false);
user_pref("extensions.claro.aflt", "babsst");
user_pref("extensions.claro.dfltLng", "en");
user_pref("extensions.claro.excTlbr", false);
user_pref("extensions.claro.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.claro.instlDay", "15545");
user_pref("extensions.claro.instlRef", "sst");
user_pref("extensions.claro.prdct", "claro");
user_pref("extensions.claro.prtnrId", "claro");
user_pref("extensions.claro.tlbrId", "iclaro");
user_pref("extensions.claro.vrsn", "1.6.4.1");
user_pref("extensions.claro.vrsni", "1.6.4.1");
user_pref("extensions.claro_i.smplGrp", "none");
user_pref("extensions.claro_i.vrsnTs", "1.6.4.114:34:15");
user_pref("extensions.crossrider.bic", "13b3bb3447fa6197782d40dd47ac0ba8");
user_pref("extensions.funmoods.SimilarSitesStorage-pid2", "6c57c30ca087a3a7");
user_pref("extensions.funmoods.admin", false);
user_pref("extensions.funmoods.aflt", "ironto");
user_pref("extensions.funmoods.brwsrsrc", "ietlbr");
user_pref("extensions.funmoods.cntry", "IL");
user_pref("extensions.funmoods.cv", "cv5");
user_pref("extensions.funmoods.dfltLng", "");
user_pref("extensions.funmoods.dfltSrch", true);
user_pref("extensions.funmoods.dfltlng", "en");
user_pref("extensions.funmoods.dfltsrch", true);
user_pref("extensions.funmoods.excTlbr", false);
user_pref("extensions.funmoods.fmupdtFirst", false);
user_pref("extensions.funmoods.hdrMd5", "653250319BBCAE935789C2F11DFDCF61");
user_pref("extensions.funmoods.hmpg", true);
user_pref("extensions.funmoods.hrdid", "c0bece9a00000000000050e549222367");
user_pref("extensions.funmoods.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.funmoods.instlDay", "15581");
user_pref("extensions.funmoods.instlRef", "");
user_pref("extensions.funmoods.instlday", "15546");
user_pref("extensions.funmoods.instlref", "");
user_pref("extensions.funmoods.isDcmntCmplt", true);
user_pref("extensions.funmoods.keywordurl", "");
user_pref("extensions.funmoods.lastVrsnTs", "1.5.11.1615:22:01");
user_pref("extensions.funmoods.newTab", true);
user_pref("extensions.funmoods.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods.newtab", true);
user_pref("extensions.funmoods.newtaburl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods.noFFXTlbr", false);
user_pref("extensions.funmoods.prdct", "funmoods");
user_pref("extensions.funmoods.prtnrId", "funmoods");
user_pref("extensions.funmoods.prtnrid", "funmoods");
user_pref("extensions.funmoods.sg", "none");
user_pref("extensions.funmoods.smplGrp", "none");
user_pref("extensions.funmoods.smplgrp", "none");
user_pref("extensions.funmoods.srch", "");
user_pref("extensions.funmoods.srchPrvdr", "Search");
user_pref("extensions.funmoods.srchprvdr", "Search");
user_pref("extensions.funmoods.tlbrId", "base");
user_pref("extensions.funmoods.tlbrSrchUrl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods.tlbrid", "base");
user_pref("extensions.funmoods.tlbrsrchurl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods.vrsn", "1.5.11.16");
user_pref("extensions.funmoods.vrsnTs", "1.5.11.1615:22:01");
user_pref("extensions.funmoods.vrsni", "1.5.11.16");
user_pref("extensions.funmoods.vrsnts", "1.5.11.1611:04:38");
user_pref("extensions.funmoods_i.aflt", "ironto");
user_pref("extensions.funmoods_i.dfltLng", "");
user_pref("extensions.funmoods_i.dfltSrch", true);
user_pref("extensions.funmoods_i.dnsErr", true);
user_pref("extensions.funmoods_i.excTlbr", false);
user_pref("extensions.funmoods_i.hmpg", true);
user_pref("extensions.funmoods_i.hmpgUrl", "hxxp://start.funmoods.com/?f=1&a=ironto");
user_pref("extensions.funmoods_i.id", "c0bece9a00000000000050e549222367");
user_pref("extensions.funmoods_i.instlDay", "15581");
user_pref("extensions.funmoods_i.instlRef", "");
user_pref("extensions.funmoods_i.newTab", true);
user_pref("extensions.funmoods_i.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods_i.prdct", "funmoods");
user_pref("extensions.funmoods_i.prtnrId", "funmoods");
user_pref("extensions.funmoods_i.smplGrp", "none");
user_pref("extensions.funmoods_i.srchPrvdr", "Search");
user_pref("extensions.funmoods_i.tlbrId", "base");
user_pref("extensions.funmoods_i.tlbrSrchUrl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods_i.vrsn", "1.5.11.16");
user_pref("extensions.funmoods_i.vrsnTs", "1.5.11.1615:22:01");
user_pref("extensions.funmoods_i.vrsni", "1.5.11.16");
user_pref("extentions.y2layers.defaultEnableAppsList", "bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube");
user_pref("extentions.y2layers.installId", "5d33fb18-231e-443c-a9a8-e9205a6c749f");
user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=");
Emptied folder: C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\qighht39.default\minidumps [137 files]
~~~ Chrome
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\clbfjfbnelcflpgpklppgplejolacbej
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27.08.2013 at 10:35:25,73
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Naposledy upravil(a) tomikhu dne 27 srp 2013 09:43, celkem upraveno 1 x.
Re: spomalenie pc blokovanie ip adries esetom
a tu je uz aj z adwcleanera : # AdwCleaner v3.001 - Report created 27/08/2013 at 10:39:41
# Updated 24/08/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Tomáš - TOMÁŠ-PC
# Running from : C:\Users\Tomáš\Downloads\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files\ExpressFiles
Folder Deleted : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Users\TOM~1\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\ExpressFiles
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\jetpack
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\Babylon.xml
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_apps.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_images.search.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
***** [ Shortcuts ] *****
***** [ Registry ] *****
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Funmoods
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{20EDC024-43C5-423E-B7F5-FD93523E0D9F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{373ED12D-B306-43AC-9485-A7C5133DC34C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71EFB6B2-50BF-4C64-809D-02E18288EF67}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{185C9CDD-A458-479C-83E6-AA92FA5B815B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Key Deleted : HKCU\Software\ExpressFiles
Key Deleted : HKCU\Software\AppDataLow\Software\DVDVideoSoftTB
Key Deleted : HKLM\Software\DVDVideoSoftTB
Key Deleted : HKLM\Software\ExpressFiles
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DVDVideoSoftTB Toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16660
-\\ Mozilla Firefox v10.0.2 (sk)
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\prefs.js ]
Line Deleted : user_pref("CT3072253.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253", "\"3eee29e3205298ed9bf06eef24db7b173\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", "\"1362324308\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"80b45d28468cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"2a1a0d7b586ce1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.0.3", "\"4ead38b3e6bcd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253", "\"9971ee9815a5fc569766cf6ddcaaca8e\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"6baeae0141d4ee4e4989c3c4f54d6d97\"");
Line Deleted : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Tomáa\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qighht39.default\\conduitCommon\\modules\\3.18.0.7");
Line Deleted : user_pref("extensions.enabledAddons", "ffxtlbr@funmoods.com:1.5.0,battlefieldplay4free@ea.com:1.0.80.2,{687578b9-7132-4a7a-80e4-30ee31099e03}:3.18.0.7,ffxtlbr@babylon.com:1.5.0,ascsurfingprotection@io[...]
Line Deleted : user_pref("extensions.installCache", "[{\"name\":\"app-global\",\"addons\":{\"{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{82AF8D[...]
-\\ Google Chrome v29.0.1547.57
[ File : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [9506 octets] - [27/08/2013 10:39:19]
AdwCleaner[S0].txt - [8363 octets] - [27/08/2013 10:39:41]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8423 octets] ##########
# Updated 24/08/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Tomáš - TOMÁŠ-PC
# Running from : C:\Users\Tomáš\Downloads\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files\ExpressFiles
Folder Deleted : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Users\TOM~1\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\ExpressFiles
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\jetpack
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\Babylon.xml
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_apps.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_images.search.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
***** [ Shortcuts ] *****
***** [ Registry ] *****
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Funmoods
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{20EDC024-43C5-423E-B7F5-FD93523E0D9F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{373ED12D-B306-43AC-9485-A7C5133DC34C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71EFB6B2-50BF-4C64-809D-02E18288EF67}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{185C9CDD-A458-479C-83E6-AA92FA5B815B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
Key Deleted : HKCU\Software\ExpressFiles
Key Deleted : HKCU\Software\AppDataLow\Software\DVDVideoSoftTB
Key Deleted : HKLM\Software\DVDVideoSoftTB
Key Deleted : HKLM\Software\ExpressFiles
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DVDVideoSoftTB Toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16660
-\\ Mozilla Firefox v10.0.2 (sk)
[ File : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\prefs.js ]
Line Deleted : user_pref("CT3072253.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253", "\"3eee29e3205298ed9bf06eef24db7b173\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", "\"1362324308\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"80b45d28468cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"2a1a0d7b586ce1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.0.3", "\"4ead38b3e6bcd1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253", "\"9971ee9815a5fc569766cf6ddcaaca8e\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"6baeae0141d4ee4e4989c3c4f54d6d97\"");
Line Deleted : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Tomáa\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\qighht39.default\\conduitCommon\\modules\\3.18.0.7");
Line Deleted : user_pref("extensions.enabledAddons", "ffxtlbr@funmoods.com:1.5.0,battlefieldplay4free@ea.com:1.0.80.2,{687578b9-7132-4a7a-80e4-30ee31099e03}:3.18.0.7,ffxtlbr@babylon.com:1.5.0,ascsurfingprotection@io[...]
Line Deleted : user_pref("extensions.installCache", "[{\"name\":\"app-global\",\"addons\":{\"{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{82AF8D[...]
-\\ Google Chrome v29.0.1547.57
[ File : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [9506 octets] - [27/08/2013 10:39:19]
AdwCleaner[S0].txt - [8363 octets] - [27/08/2013 10:39:41]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8423 octets] ##########
Re: spomalenie pc blokovanie ip adries esetom

Poprosim o spusteni nasledujiciho



- Po spuštění FRST odsouhlasíme licenční podmínky kliknutím na Ano.
- Dooznačíme položku Addition.txt - viz obrázek.
- Klikneme na tlačítko Scan čímž spustíme skenování.
- Počkáme na dokončení skenování FRST a vytvoření doplňkových informací naší nástavbou.
- Otevře se nám textový soubor FRST.txt, což je požadovaný log a jehož obsah vložíme do svého tématu na fóru.
- Po uzavření logu se FRSTLauncher.exe ukončí a na ploše nám zbyde utilta FRST a dva logy FRST.txt a Addition.txt - nic z toho zatím nemažeme.
Re: spomalenie pc blokovanie ip adries esetom
tuto je: Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-08-2013 01
Ran by Tomáš (administrator) on 27-08-2013 10:46:46
Running from C:\Users\Tomáš\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: 041B
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Affinegy, Inc.) C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenManagerSvc32.exe
() C:\Windows\system32\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(FUJIFILM Corporation) C:\Program Files\FinePixViewerS\QuickDCF2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Valve Corporation) C:\Program Files\Steam\steam.exe
(Valve Corporation) C:\Program Files\Common Files\Steam\SteamService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [FileOpenBroker] - C:\Program Files\FileOpen\Services\FileOpenBroker32.exe [836480 2012-04-30] (FileOpen Systems Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5078504 2013-03-21] (ESET)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-09-28] (Google Inc.)
HKCU\...\Run: [Steam] - C:\Program Files\Steam\steam.exe [1597864 2013-02-14] (Valve Corporation)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
MountPoints2: {3987d49e-8e1b-11e2-830b-50e549222367} - E:\start.exe
MountPoints2: {4e31afc0-f1d6-11e1-b14e-806e6f6e6963} - E:\setup.exe
MountPoints2: {4e31b13d-f1d6-11e1-b14e-50e549222367} - J:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Exif Launcher S.lnk
ShortcutTarget: Exif Launcher S.lnk -> C:\Program Files\FinePixViewerS\QuickDCF2.exe (FUJIFILM Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.comfor.cz
URLSearchHook: (No Name) - {687578b9-7132-4a7a-80e4-30ee31099e03} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {26E1BEAF-C1A1-482B-8714-08844F1BCF7F} http://90.182.35.27/webviewer.cab
DPF: {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {BF776FD3-69B4-4151-AC97-3A2A64753E18} http://90.182.35.27/GVersionMan.cab
DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/stati ... 0.80.2.cab
DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\wikipedia-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zoznam-sk.xml
FF Extension: Battlefield Play4Free - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\Extensions\battlefieldplay4free@ea.com
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Default - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll No File
CHR Plugin: (Conduit Chrome Plugin) - C:\Users\Tom\u00E1\u0161\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\plugins/ConduitChromeApiPlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U33) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.330.5) - C:\Windows\system32\npdeployJava1.dll (Oracle Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Unity Player) - C:\Users\Tom\u00E1\u0161\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Extension: (YouTube) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (Gmail) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Users\Tomáš\AppData\Local\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx
========================== Services (Whitelisted) =================
R2 AffinegyService; C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe [569752 2010-07-28] (Affinegy, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1341664 2013-03-21] (ESET)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2012-07-07] ()
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
S2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [x]
==================== Drivers (Whitelisted) ====================
R2 Angelnt; C:\Windows\System32\Drivers\ANGELNT.SYS [51072 2011-09-28] (Identcode Ltd.)
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-03-16] (DT Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [171680 2013-02-14] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [122240 2013-01-10] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [150080 2013-01-10] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [46056 2013-01-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [47568 2013-02-14] (ESET)
S3 MEI; C:\Windows\system32\drivers\HECI.sys [41088 2010-10-19] (Intel Corporation)
R3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [458752 2007-11-08] (PixArt Imaging Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [466008 2013-01-25] (Duplex Secure Ltd.)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2009-10-28] (Samsung Electronics)
R3 vpcbus; C:\Windows\System32\DRIVERS\vpchbus.sys [165376 2009-09-23] (Microsoft Corporation)
R1 vpcnfltr; C:\Windows\System32\DRIVERS\vpcnfltr.sys [55040 2009-09-23] (Microsoft Corporation)
R3 vpcusb; C:\Windows\System32\DRIVERS\vpcusb.sys [78336 2009-09-23] (Microsoft Corporation)
R1 vpcvmm; C:\Windows\System32\drivers\vpcvmm.sys [294912 2009-09-23] (Microsoft Corporation)
U3 ab7ohj46; C:\Windows\System32\Drivers\ab7ohj46.sys [0 ] (Intel Corporation)
S3 ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys [x]
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [x]
S3 GGSAFERDriver; \??\C:\Program Files\Garena Classic\safedrv.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-27 10:46 - 2013-08-27 10:46 - 00000000 ____D C:\FRST
2013-08-27 10:46 - 2013-08-26 23:44 - 01072785 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2013-08-27 10:38 - 2013-08-27 10:39 - 00000000 ____D C:\AdwCleaner
2013-08-27 10:37 - 2013-08-27 10:37 - 00994642 _____ C:\Users\Tomáš\Downloads\adwcleaner.exe
2013-08-27 10:35 - 2013-08-27 10:35 - 00042853 _____ C:\Users\Tomáš\Desktop\JRT.txt
2013-08-27 10:33 - 2013-08-27 10:33 - 01021434 _____ (Thisisu) C:\Users\Tomáš\Downloads\JRT.exe
2013-08-27 10:33 - 2013-08-27 10:33 - 00000000 ____D C:\Windows\ERUNT
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\rsit
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\Program Files\trend micro
2013-08-27 09:51 - 2013-08-27 09:51 - 00781383 _____ C:\Users\Tomáš\Downloads\RSIT.exe
2013-08-26 15:18 - 2013-08-26 15:18 - 00000075 _____ C:\Users\Tomáš\Desktop\robor.mcs
2013-08-26 15:16 - 2013-08-26 15:16 - 00000317 _____ C:\MPUsbSIn.log
2013-08-26 15:15 - 2013-08-26 15:15 - 00002144 _____ C:\Users\Public\Desktop\MPLAB IDE v8.92.lnk
2013-08-26 15:13 - 2013-08-26 15:14 - 00000000 ____D C:\Program Files\Microchip
2013-08-26 15:02 - 2013-08-26 15:09 - 116318137 _____ C:\Users\Tomáš\Downloads\MPLAB_IDE_8_92.zip
2013-08-24 10:23 - 2013-08-24 10:23 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (3).txt
2013-08-22 21:10 - 2013-08-22 21:19 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\PyScripter
2013-08-22 21:10 - 2013-08-22 21:10 - 00000999 _____ C:\Users\Tomáš\Desktop\PyScripter.lnk
2013-08-22 21:10 - 2013-08-22 21:10 - 00000000 ____D C:\Program Files\PyScripter
2013-08-22 18:39 - 2013-08-22 18:39 - 00000033 _____ C:\Users\Tomáš\.gtkrc-2.0
2013-08-22 15:13 - 2013-08-22 15:13 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (2).txt
2013-08-22 13:57 - 2013-08-22 13:57 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument.txt
2013-08-22 12:10 - 2013-08-22 12:10 - 00000027 _____ C:\Users\Tomáš\AppData\Roaming\mbam.context.scan
2013-08-22 10:59 - 2013-08-22 10:59 - 00000000 ____D C:\Users\Tomáš\.idlerc
2013-08-22 10:57 - 2013-08-22 18:47 - 00000000 ____D C:\Python27
2013-08-22 10:57 - 2013-08-22 10:57 - 00002555 _____ C:\Users\Tomáš\Desktop\IDLE (Python GUI).lnk
2013-08-21 10:26 - 2013-08-21 10:26 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-08-20 20:42 - 2013-08-20 21:00 - 00000000 ____D C:\Users\Tomáš\Desktop\Nový priečinok (2)
2013-08-20 18:35 - 2013-08-20 18:35 - 01628160 _____ C:\Users\Tomáš\Documents\FRST64.iso
2013-08-19 17:18 - 2013-08-19 17:18 - 00041984 _____ C:\Users\Tomáš\Downloads\03_sprava_chov_vcelich_matiek_2013.wiz
2013-08-14 11:36 - 2013-08-14 11:38 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 11:33 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-14 11:33 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-14 11:33 - 2013-07-26 05:13 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-14 11:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-14 11:33 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-14 11:33 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-14 11:33 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-14 11:33 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-14 09:21 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-14 09:21 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-14 09:21 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2013-08-14 09:21 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-14 09:21 - 2013-07-09 06:53 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-14 09:21 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 09:21 - 2013-07-09 06:50 - 00652800 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 09:21 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 09:21 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 09:21 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-14 09:21 - 2013-07-06 07:05 - 01293760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 09:20 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-13 10:17 - 2013-08-13 10:17 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-08-13 10:09 - 2013-08-13 10:17 - 00263592 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-08-13 10:09 - 2013-08-13 10:09 - 00000000 ____D C:\Program Files\Common Files\Java
2013-08-13 10:08 - 2013-08-13 10:17 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-08-13 10:08 - 2013-08-13 10:17 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-07-30 11:47 - 2013-08-12 08:35 - 00000000 ____D C:\ProgramData\TrackMania
2013-07-30 11:45 - 2013-07-30 11:47 - 00079262 _____ C:\Windows\DirectX.log
2013-07-30 11:45 - 2013-07-30 11:45 - 00001076 _____ C:\Users\Public\Desktop\TmNationsForever.lnk
2013-07-30 11:43 - 2013-07-30 11:45 - 00000000 ____D C:\Program Files\TmNationsForever
2013-07-30 11:26 - 2013-07-30 11:43 - 528345264 _____ (Nadeo ) C:\Users\Tomáš\Downloads\tmnationsforeversk.exe
==================== One Month Modified Files and Folders =======
2013-08-27 10:46 - 2013-08-27 10:46 - 00000000 ____D C:\Users\TOM~1\AppData\Local\qb04E2B0.24
2013-08-27 10:46 - 2013-08-27 10:46 - 00000000 ____D C:\FRST
2013-08-27 10:42 - 2013-01-25 17:53 - 00000000 ____D C:\Program Files\Steam
2013-08-27 10:41 - 2013-07-17 10:02 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job
2013-08-27 10:41 - 2013-05-30 13:26 - 00012906 _____ C:\Windows\setupact.log
2013-08-27 10:41 - 2011-09-09 10:45 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-27 10:41 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-27 10:41 - 2009-07-14 06:33 - 00415768 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-27 10:40 - 2013-05-30 13:25 - 00004340 _____ C:\Windows\PFRO.log
2013-08-27 10:40 - 2011-09-09 10:48 - 01186824 _____ C:\Windows\WindowsUpdate.log
2013-08-27 10:39 - 2013-08-27 10:38 - 00000000 ____D C:\AdwCleaner
2013-08-27 10:37 - 2013-08-27 10:37 - 00994642 _____ C:\Users\Tomáš\Downloads\adwcleaner.exe
2013-08-27 10:35 - 2013-08-27 10:35 - 00042853 _____ C:\Users\Tomáš\Desktop\JRT.txt
2013-08-27 10:33 - 2013-08-27 10:33 - 01021434 _____ (Thisisu) C:\Users\Tomáš\Downloads\JRT.exe
2013-08-27 10:33 - 2013-08-27 10:33 - 00000000 ____D C:\Windows\ERUNT
2013-08-27 10:31 - 2012-07-10 12:15 - 00000000 ____D C:\Users\TOM~1\AppData\Local\GameSpy
2013-08-27 10:15 - 2012-03-31 20:02 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-27 10:07 - 2013-07-17 10:02 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\rsit
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\Program Files\trend micro
2013-08-27 09:51 - 2013-08-27 09:51 - 00781383 _____ C:\Users\Tomáš\Downloads\RSIT.exe
2013-08-27 09:35 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-27 09:35 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-26 23:44 - 2013-08-27 10:46 - 01072785 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2013-08-26 15:18 - 2013-08-26 15:18 - 00000075 _____ C:\Users\Tomáš\Desktop\robor.mcs
2013-08-26 15:16 - 2013-08-26 15:16 - 00000317 _____ C:\MPUsbSIn.log
2013-08-26 15:15 - 2013-08-26 15:15 - 00002144 _____ C:\Users\Public\Desktop\MPLAB IDE v8.92.lnk
2013-08-26 15:15 - 2011-09-25 17:57 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-08-26 15:14 - 2013-08-26 15:13 - 00000000 ____D C:\Program Files\Microchip
2013-08-26 15:09 - 2013-08-26 15:02 - 116318137 _____ C:\Users\Tomáš\Downloads\MPLAB_IDE_8_92.zip
2013-08-24 13:32 - 2012-01-09 18:08 - 01619968 ___SH C:\Users\Tomáš\Desktop\Thumbs.db
2013-08-24 10:27 - 2012-05-23 15:01 - 00000000 ____D C:\Users\Tomáš\Desktop\tomasm-Nový priečinok (2)
2013-08-24 10:23 - 2013-08-24 10:23 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (3).txt
2013-08-24 09:32 - 2011-10-13 14:30 - 00000000 ___RD C:\Program Files\Skype
2013-08-24 09:32 - 2011-10-13 14:30 - 00000000 ____D C:\ProgramData\Skype
2013-08-22 21:19 - 2013-08-22 21:10 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\PyScripter
2013-08-22 21:10 - 2013-08-22 21:10 - 00000999 _____ C:\Users\Tomáš\Desktop\PyScripter.lnk
2013-08-22 21:10 - 2013-08-22 21:10 - 00000000 ____D C:\Program Files\PyScripter
2013-08-22 18:47 - 2013-08-22 10:57 - 00000000 ____D C:\Python27
2013-08-22 18:39 - 2013-08-22 18:39 - 00000033 _____ C:\Users\Tomáš\.gtkrc-2.0
2013-08-22 18:39 - 2011-09-25 16:29 - 00000000 ____D C:\Users\Tomáš
2013-08-22 15:13 - 2013-08-22 15:13 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (2).txt
2013-08-22 14:03 - 2012-04-29 20:37 - 00000000 ____D C:\Users\Tomáš\Desktop\Tomasm-fotky-projekt
2013-08-22 13:57 - 2013-08-22 13:57 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument.txt
2013-08-22 12:10 - 2013-08-22 12:10 - 00000027 _____ C:\Users\Tomáš\AppData\Roaming\mbam.context.scan
2013-08-22 11:44 - 2012-01-24 14:58 - 00000000 ___HD C:\Users\Tomáš\Desktop\Nový priečinok
2013-08-22 10:59 - 2013-08-22 10:59 - 00000000 ____D C:\Users\Tomáš\.idlerc
2013-08-22 10:58 - 2013-05-22 13:51 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\Winamp
2013-08-22 10:57 - 2013-08-22 10:57 - 00002555 _____ C:\Users\Tomáš\Desktop\IDLE (Python GUI).lnk
2013-08-22 10:23 - 2012-11-16 19:55 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\.minecraft
2013-08-22 09:15 - 2012-03-31 20:02 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-08-22 09:15 - 2011-09-28 16:10 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-08-21 10:27 - 2013-05-20 20:36 - 00000000 ____D C:\Counter-Strike 1.6
2013-08-21 10:27 - 2012-09-13 09:08 - 00000000 ____D C:\Program Files\World of Warcraft Wotlk
2013-08-21 10:26 - 2013-08-21 10:26 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-08-21 10:22 - 2011-09-28 16:10 - 00000000 ____D C:\Users\TOM~1\AppData\Local\Google
2013-08-20 22:41 - 2012-02-02 22:00 - 00000440 _____ C:\Users\Tomáš\AppData\Roaming\burnaware.ini
2013-08-20 21:00 - 2013-08-20 20:42 - 00000000 ____D C:\Users\Tomáš\Desktop\Nový priečinok (2)
2013-08-20 19:05 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2013-08-20 18:35 - 2013-08-20 18:35 - 01628160 _____ C:\Users\Tomáš\Documents\FRST64.iso
2013-08-20 15:59 - 2010-11-20 23:01 - 00741092 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-20 15:51 - 2013-01-21 20:46 - 00000000 ____D C:\Users\Tomáš\Documents\Súbory programu Outlook
2013-08-20 12:38 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\NDF
2013-08-19 17:18 - 2013-08-19 17:18 - 00041984 _____ C:\Users\Tomáš\Downloads\03_sprava_chov_vcelich_matiek_2013.wiz
2013-08-18 16:39 - 2011-09-25 17:19 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\EL-Revize
2013-08-16 13:00 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-08-15 23:03 - 2011-09-25 17:24 - 00000000 ____D C:\Users\Tomáš\Desktop\REVIZNE SPRÁVY
2013-08-14 18:44 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\sk-SK
2013-08-14 11:38 - 2013-08-14 11:36 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 11:36 - 2011-09-30 21:49 - 75778376 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-13 10:17 - 2013-08-13 10:17 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-08-13 10:17 - 2013-08-13 10:09 - 00263592 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-08-13 10:17 - 2013-08-13 10:08 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-08-13 10:17 - 2013-08-13 10:08 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-08-13 10:17 - 2012-08-13 08:09 - 00867240 _____ (Oracle Corporation) C:\Windows\system32\npdeployJava1.dll
2013-08-13 10:17 - 2012-08-13 08:09 - 00000000 ____D C:\Program Files\Java
2013-08-13 10:17 - 2011-12-07 16:41 - 00789416 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2013-08-13 10:09 - 2013-08-13 10:09 - 00000000 ____D C:\Program Files\Common Files\Java
2013-08-12 09:14 - 2012-05-13 12:11 - 00000000 ____D C:\Users\Tomáš\Documents\TrackMania
2013-08-12 08:35 - 2013-07-30 11:47 - 00000000 ____D C:\ProgramData\TrackMania
2013-08-11 18:26 - 2011-10-19 20:47 - 00000000 ____D C:\Users\TOM~1\AppData\Local\Windows Live
2013-08-09 18:05 - 2011-09-28 17:21 - 00000000 ____D C:\ALFA
2013-07-30 11:47 - 2013-07-30 11:45 - 00079262 _____ C:\Windows\DirectX.log
2013-07-30 11:45 - 2013-07-30 11:45 - 00001076 _____ C:\Users\Public\Desktop\TmNationsForever.lnk
2013-07-30 11:45 - 2013-07-30 11:43 - 00000000 ____D C:\Program Files\TmNationsForever
2013-07-30 11:43 - 2013-07-30 11:26 - 528345264 _____ (Nadeo ) C:\Users\Tomáš\Downloads\tmnationsforeversk.exe
Files to move or delete:
====================
C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe
C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe
C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe
C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll
C:\Users\TOM~1\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
C:\Users\TOM~1\AppData\Local\Temp\is-EAHMK.tmp\UninstallPromote.exe
C:\Users\TOM~1\AppData\Local\Temp\is-EAHMK.tmp\_isetup\_shfoldr.dll
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Scheduled Tasks (whitelisted) ===========
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Supplementary Scan (All) ================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=dword:00000005
"ConsentPromptBehaviorUser"=dword:00000003
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000001
"EnableSecureUIAPaths"=dword:00000001
"EnableUIADesktopToggle"=dword:00000000
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000001
"ValidateAdminCodeSignatures"=dword:00000000
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"scforceoption"=dword:00000000
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"FilterAdministratorToken"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval"=dword:00000001
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
"vidc.msvc"="msvidc32.dll"
"msacm.imaadpcm"="imaadp32.acm"
"msacm.msg711"="msg711.acm"
"msacm.msgsm610"="msgsm32.acm"
"msacm.msadpcm"="msadp32.acm"
"midimapper"="midimap.dll"
"wavemapper"="msacm32.drv"
"VIDC.UYVY"="msyuv.dll"
"VIDC.YUY2"="msyuv.dll"
"VIDC.YVYU"="msyuv.dll"
"VIDC.IYUV"="iyuv_32.dll"
"vidc.i420"="iyuv_32.dll"
"VIDC.YVU9"="tsbyuv.dll"
"msacm.l3acm"="l3codeca.acm"
"vidc.cvid"="iccvid.dll"
"wave"="wdmaud.drv"
"midi"="wdmaud.drv"
"mixer"="wdmaud.drv"
"aux"="wdmaud.drv"
"wave1"="wdmaud.drv"
"midi1"="wdmaud.drv"
"mixer1"="wdmaud.drv"
"wave2"="wdmaud.drv"
"midi2"="wdmaud.drv"
"mixer2"="wdmaud.drv"
"wave3"="wdmaud.drv"
"midi3"="wdmaud.drv"
"mixer3"="wdmaud.drv"
"wave4"="wdmaud.drv"
"midi4"="wdmaud.drv"
"mixer4"="wdmaud.drv"
"msacm.siren"="sirenacm.dll"
"vidc.VP60"="C:\\Windows\\system32\\vp6vfw.dll"
"vidc.VP61"="C:\\Windows\\system32\\vp6vfw.dll"
"MSVideo8"="VfWWDM32.dll"
"wave5"="wdmaud.drv"
"midi5"="wdmaud.drv"
"mixer5"="wdmaud.drv"
"aux1"="wdmaud.drv"
"vidc.iv41"="ir41_32.ax"
"vidc.iv31"="ir32_32.dll"
"vidc.iv32"="ir32_32.dll"
"vidc.XVID"="xvidvfw.dll"
"msacm.iac2"="iac25_32.ax"
"vidc.iv50"="ir50_32.dll"
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:923.69 GB) (Free:794.96 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (Project 4) (CDROM) (Total:0.08 GB) (Free:0 GB) CDFS
Available physical RAM: 1661.13 MB
Total physical RAM: 3319.42 MB
Percentage of memory in use: 49%
LastRegBack: 2013-08-22 09:44
==================== End Of Log ==============================
Ran by Tomáš (administrator) on 27-08-2013 10:46:46
Running from C:\Users\Tomáš\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: 041B
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Affinegy, Inc.) C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenManagerSvc32.exe
() C:\Windows\system32\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenBroker32.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(FUJIFILM Corporation) C:\Program Files\FinePixViewerS\QuickDCF2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Valve Corporation) C:\Program Files\Steam\steam.exe
(Valve Corporation) C:\Program Files\Common Files\Steam\SteamService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [FileOpenBroker] - C:\Program Files\FileOpen\Services\FileOpenBroker32.exe [836480 2012-04-30] (FileOpen Systems Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5078504 2013-03-21] (ESET)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-09-28] (Google Inc.)
HKCU\...\Run: [Steam] - C:\Program Files\Steam\steam.exe [1597864 2013-02-14] (Valve Corporation)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
MountPoints2: {3987d49e-8e1b-11e2-830b-50e549222367} - E:\start.exe
MountPoints2: {4e31afc0-f1d6-11e1-b14e-806e6f6e6963} - E:\setup.exe
MountPoints2: {4e31b13d-f1d6-11e1-b14e-50e549222367} - J:\Autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Exif Launcher S.lnk
ShortcutTarget: Exif Launcher S.lnk -> C:\Program Files\FinePixViewerS\QuickDCF2.exe (FUJIFILM Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.comfor.cz
URLSearchHook: (No Name) - {687578b9-7132-4a7a-80e4-30ee31099e03} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {26E1BEAF-C1A1-482B-8714-08844F1BCF7F} http://90.182.35.27/webviewer.cab
DPF: {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {BF776FD3-69B4-4151-AC97-3A2A64753E18} http://90.182.35.27/GVersionMan.cab
DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/stati ... 0.80.2.cab
DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\wikipedia-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zoznam-sk.xml
FF Extension: Battlefield Play4Free - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\qighht39.default\Extensions\battlefieldplay4free@ea.com
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Default - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll No File
CHR Plugin: (Conduit Chrome Plugin) - C:\Users\Tom\u00E1\u0161\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\plugins/ConduitChromeApiPlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U33) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.330.5) - C:\Windows\system32\npdeployJava1.dll (Oracle Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Unity Player) - C:\Users\Tom\u00E1\u0161\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Extension: (YouTube) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (Gmail) - C:\Users\TOM~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Users\Tomáš\AppData\Local\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx
========================== Services (Whitelisted) =================
R2 AffinegyService; C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe [569752 2010-07-28] (Affinegy, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1341664 2013-03-21] (ESET)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2012-07-07] ()
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
S2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [x]
==================== Drivers (Whitelisted) ====================
R2 Angelnt; C:\Windows\System32\Drivers\ANGELNT.SYS [51072 2011-09-28] (Identcode Ltd.)
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-03-16] (DT Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [171680 2013-02-14] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [122240 2013-01-10] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [150080 2013-01-10] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [46056 2013-01-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [47568 2013-02-14] (ESET)
S3 MEI; C:\Windows\system32\drivers\HECI.sys [41088 2010-10-19] (Intel Corporation)
R3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [458752 2007-11-08] (PixArt Imaging Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [466008 2013-01-25] (Duplex Secure Ltd.)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2009-10-28] (Samsung Electronics)
R3 vpcbus; C:\Windows\System32\DRIVERS\vpchbus.sys [165376 2009-09-23] (Microsoft Corporation)
R1 vpcnfltr; C:\Windows\System32\DRIVERS\vpcnfltr.sys [55040 2009-09-23] (Microsoft Corporation)
R3 vpcusb; C:\Windows\System32\DRIVERS\vpcusb.sys [78336 2009-09-23] (Microsoft Corporation)
R1 vpcvmm; C:\Windows\System32\drivers\vpcvmm.sys [294912 2009-09-23] (Microsoft Corporation)
U3 ab7ohj46; C:\Windows\System32\Drivers\ab7ohj46.sys [0 ] (Intel Corporation)
S3 ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys [x]
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [x]
S3 GGSAFERDriver; \??\C:\Program Files\Garena Classic\safedrv.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-27 10:46 - 2013-08-27 10:46 - 00000000 ____D C:\FRST
2013-08-27 10:46 - 2013-08-26 23:44 - 01072785 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2013-08-27 10:38 - 2013-08-27 10:39 - 00000000 ____D C:\AdwCleaner
2013-08-27 10:37 - 2013-08-27 10:37 - 00994642 _____ C:\Users\Tomáš\Downloads\adwcleaner.exe
2013-08-27 10:35 - 2013-08-27 10:35 - 00042853 _____ C:\Users\Tomáš\Desktop\JRT.txt
2013-08-27 10:33 - 2013-08-27 10:33 - 01021434 _____ (Thisisu) C:\Users\Tomáš\Downloads\JRT.exe
2013-08-27 10:33 - 2013-08-27 10:33 - 00000000 ____D C:\Windows\ERUNT
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\rsit
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\Program Files\trend micro
2013-08-27 09:51 - 2013-08-27 09:51 - 00781383 _____ C:\Users\Tomáš\Downloads\RSIT.exe
2013-08-26 15:18 - 2013-08-26 15:18 - 00000075 _____ C:\Users\Tomáš\Desktop\robor.mcs
2013-08-26 15:16 - 2013-08-26 15:16 - 00000317 _____ C:\MPUsbSIn.log
2013-08-26 15:15 - 2013-08-26 15:15 - 00002144 _____ C:\Users\Public\Desktop\MPLAB IDE v8.92.lnk
2013-08-26 15:13 - 2013-08-26 15:14 - 00000000 ____D C:\Program Files\Microchip
2013-08-26 15:02 - 2013-08-26 15:09 - 116318137 _____ C:\Users\Tomáš\Downloads\MPLAB_IDE_8_92.zip
2013-08-24 10:23 - 2013-08-24 10:23 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (3).txt
2013-08-22 21:10 - 2013-08-22 21:19 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\PyScripter
2013-08-22 21:10 - 2013-08-22 21:10 - 00000999 _____ C:\Users\Tomáš\Desktop\PyScripter.lnk
2013-08-22 21:10 - 2013-08-22 21:10 - 00000000 ____D C:\Program Files\PyScripter
2013-08-22 18:39 - 2013-08-22 18:39 - 00000033 _____ C:\Users\Tomáš\.gtkrc-2.0
2013-08-22 15:13 - 2013-08-22 15:13 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (2).txt
2013-08-22 13:57 - 2013-08-22 13:57 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument.txt
2013-08-22 12:10 - 2013-08-22 12:10 - 00000027 _____ C:\Users\Tomáš\AppData\Roaming\mbam.context.scan
2013-08-22 10:59 - 2013-08-22 10:59 - 00000000 ____D C:\Users\Tomáš\.idlerc
2013-08-22 10:57 - 2013-08-22 18:47 - 00000000 ____D C:\Python27
2013-08-22 10:57 - 2013-08-22 10:57 - 00002555 _____ C:\Users\Tomáš\Desktop\IDLE (Python GUI).lnk
2013-08-21 10:26 - 2013-08-21 10:26 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-08-20 20:42 - 2013-08-20 21:00 - 00000000 ____D C:\Users\Tomáš\Desktop\Nový priečinok (2)
2013-08-20 18:35 - 2013-08-20 18:35 - 01628160 _____ C:\Users\Tomáš\Documents\FRST64.iso
2013-08-19 17:18 - 2013-08-19 17:18 - 00041984 _____ C:\Users\Tomáš\Downloads\03_sprava_chov_vcelich_matiek_2013.wiz
2013-08-14 11:36 - 2013-08-14 11:38 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 11:33 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-14 11:33 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-14 11:33 - 2013-07-26 05:13 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-14 11:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-14 11:33 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-14 11:33 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-14 11:33 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-14 11:33 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-14 11:33 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-14 09:21 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-14 09:21 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-14 09:21 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2013-08-14 09:21 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-14 09:21 - 2013-07-09 06:53 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-14 09:21 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 09:21 - 2013-07-09 06:50 - 00652800 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 09:21 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 09:21 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 09:21 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-14 09:21 - 2013-07-06 07:05 - 01293760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 09:20 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-13 10:17 - 2013-08-13 10:17 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-08-13 10:09 - 2013-08-13 10:17 - 00263592 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-08-13 10:09 - 2013-08-13 10:09 - 00000000 ____D C:\Program Files\Common Files\Java
2013-08-13 10:08 - 2013-08-13 10:17 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-08-13 10:08 - 2013-08-13 10:17 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-07-30 11:47 - 2013-08-12 08:35 - 00000000 ____D C:\ProgramData\TrackMania
2013-07-30 11:45 - 2013-07-30 11:47 - 00079262 _____ C:\Windows\DirectX.log
2013-07-30 11:45 - 2013-07-30 11:45 - 00001076 _____ C:\Users\Public\Desktop\TmNationsForever.lnk
2013-07-30 11:43 - 2013-07-30 11:45 - 00000000 ____D C:\Program Files\TmNationsForever
2013-07-30 11:26 - 2013-07-30 11:43 - 528345264 _____ (Nadeo ) C:\Users\Tomáš\Downloads\tmnationsforeversk.exe
==================== One Month Modified Files and Folders =======
2013-08-27 10:46 - 2013-08-27 10:46 - 00000000 ____D C:\Users\TOM~1\AppData\Local\qb04E2B0.24
2013-08-27 10:46 - 2013-08-27 10:46 - 00000000 ____D C:\FRST
2013-08-27 10:42 - 2013-01-25 17:53 - 00000000 ____D C:\Program Files\Steam
2013-08-27 10:41 - 2013-07-17 10:02 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job
2013-08-27 10:41 - 2013-05-30 13:26 - 00012906 _____ C:\Windows\setupact.log
2013-08-27 10:41 - 2011-09-09 10:45 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-27 10:41 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-27 10:41 - 2009-07-14 06:33 - 00415768 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-27 10:40 - 2013-05-30 13:25 - 00004340 _____ C:\Windows\PFRO.log
2013-08-27 10:40 - 2011-09-09 10:48 - 01186824 _____ C:\Windows\WindowsUpdate.log
2013-08-27 10:39 - 2013-08-27 10:38 - 00000000 ____D C:\AdwCleaner
2013-08-27 10:37 - 2013-08-27 10:37 - 00994642 _____ C:\Users\Tomáš\Downloads\adwcleaner.exe
2013-08-27 10:35 - 2013-08-27 10:35 - 00042853 _____ C:\Users\Tomáš\Desktop\JRT.txt
2013-08-27 10:33 - 2013-08-27 10:33 - 01021434 _____ (Thisisu) C:\Users\Tomáš\Downloads\JRT.exe
2013-08-27 10:33 - 2013-08-27 10:33 - 00000000 ____D C:\Windows\ERUNT
2013-08-27 10:31 - 2012-07-10 12:15 - 00000000 ____D C:\Users\TOM~1\AppData\Local\GameSpy
2013-08-27 10:15 - 2012-03-31 20:02 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-27 10:07 - 2013-07-17 10:02 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\rsit
2013-08-27 09:52 - 2013-08-27 09:52 - 00000000 ____D C:\Program Files\trend micro
2013-08-27 09:51 - 2013-08-27 09:51 - 00781383 _____ C:\Users\Tomáš\Downloads\RSIT.exe
2013-08-27 09:35 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-27 09:35 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-26 23:44 - 2013-08-27 10:46 - 01072785 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST.exe
2013-08-26 15:18 - 2013-08-26 15:18 - 00000075 _____ C:\Users\Tomáš\Desktop\robor.mcs
2013-08-26 15:16 - 2013-08-26 15:16 - 00000317 _____ C:\MPUsbSIn.log
2013-08-26 15:15 - 2013-08-26 15:15 - 00002144 _____ C:\Users\Public\Desktop\MPLAB IDE v8.92.lnk
2013-08-26 15:15 - 2011-09-25 17:57 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-08-26 15:14 - 2013-08-26 15:13 - 00000000 ____D C:\Program Files\Microchip
2013-08-26 15:09 - 2013-08-26 15:02 - 116318137 _____ C:\Users\Tomáš\Downloads\MPLAB_IDE_8_92.zip
2013-08-24 13:32 - 2012-01-09 18:08 - 01619968 ___SH C:\Users\Tomáš\Desktop\Thumbs.db
2013-08-24 10:27 - 2012-05-23 15:01 - 00000000 ____D C:\Users\Tomáš\Desktop\tomasm-Nový priečinok (2)
2013-08-24 10:23 - 2013-08-24 10:23 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (3).txt
2013-08-24 09:32 - 2011-10-13 14:30 - 00000000 ___RD C:\Program Files\Skype
2013-08-24 09:32 - 2011-10-13 14:30 - 00000000 ____D C:\ProgramData\Skype
2013-08-22 21:19 - 2013-08-22 21:10 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\PyScripter
2013-08-22 21:10 - 2013-08-22 21:10 - 00000999 _____ C:\Users\Tomáš\Desktop\PyScripter.lnk
2013-08-22 21:10 - 2013-08-22 21:10 - 00000000 ____D C:\Program Files\PyScripter
2013-08-22 18:47 - 2013-08-22 10:57 - 00000000 ____D C:\Python27
2013-08-22 18:39 - 2013-08-22 18:39 - 00000033 _____ C:\Users\Tomáš\.gtkrc-2.0
2013-08-22 18:39 - 2011-09-25 16:29 - 00000000 ____D C:\Users\Tomáš
2013-08-22 15:13 - 2013-08-22 15:13 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument (2).txt
2013-08-22 14:03 - 2012-04-29 20:37 - 00000000 ____D C:\Users\Tomáš\Desktop\Tomasm-fotky-projekt
2013-08-22 13:57 - 2013-08-22 13:57 - 00000000 _____ C:\Users\Tomáš\Desktop\Nový textový dokument.txt
2013-08-22 12:10 - 2013-08-22 12:10 - 00000027 _____ C:\Users\Tomáš\AppData\Roaming\mbam.context.scan
2013-08-22 11:44 - 2012-01-24 14:58 - 00000000 ___HD C:\Users\Tomáš\Desktop\Nový priečinok
2013-08-22 10:59 - 2013-08-22 10:59 - 00000000 ____D C:\Users\Tomáš\.idlerc
2013-08-22 10:58 - 2013-05-22 13:51 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\Winamp
2013-08-22 10:57 - 2013-08-22 10:57 - 00002555 _____ C:\Users\Tomáš\Desktop\IDLE (Python GUI).lnk
2013-08-22 10:23 - 2012-11-16 19:55 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\.minecraft
2013-08-22 09:15 - 2012-03-31 20:02 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-08-22 09:15 - 2011-09-28 16:10 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-08-21 10:27 - 2013-05-20 20:36 - 00000000 ____D C:\Counter-Strike 1.6
2013-08-21 10:27 - 2012-09-13 09:08 - 00000000 ____D C:\Program Files\World of Warcraft Wotlk
2013-08-21 10:26 - 2013-08-21 10:26 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-08-21 10:22 - 2011-09-28 16:10 - 00000000 ____D C:\Users\TOM~1\AppData\Local\Google
2013-08-20 22:41 - 2012-02-02 22:00 - 00000440 _____ C:\Users\Tomáš\AppData\Roaming\burnaware.ini
2013-08-20 21:00 - 2013-08-20 20:42 - 00000000 ____D C:\Users\Tomáš\Desktop\Nový priečinok (2)
2013-08-20 19:05 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2013-08-20 18:35 - 2013-08-20 18:35 - 01628160 _____ C:\Users\Tomáš\Documents\FRST64.iso
2013-08-20 15:59 - 2010-11-20 23:01 - 00741092 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-20 15:51 - 2013-01-21 20:46 - 00000000 ____D C:\Users\Tomáš\Documents\Súbory programu Outlook
2013-08-20 12:38 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\NDF
2013-08-19 17:18 - 2013-08-19 17:18 - 00041984 _____ C:\Users\Tomáš\Downloads\03_sprava_chov_vcelich_matiek_2013.wiz
2013-08-18 16:39 - 2011-09-25 17:19 - 00000000 ____D C:\Users\Tomáš\AppData\Roaming\EL-Revize
2013-08-16 13:00 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-08-15 23:03 - 2011-09-25 17:24 - 00000000 ____D C:\Users\Tomáš\Desktop\REVIZNE SPRÁVY
2013-08-14 18:44 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\sk-SK
2013-08-14 11:38 - 2013-08-14 11:36 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 11:36 - 2011-09-30 21:49 - 75778376 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-13 10:17 - 2013-08-13 10:17 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-08-13 10:17 - 2013-08-13 10:09 - 00263592 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-08-13 10:17 - 2013-08-13 10:08 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-08-13 10:17 - 2013-08-13 10:08 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-08-13 10:17 - 2012-08-13 08:09 - 00867240 _____ (Oracle Corporation) C:\Windows\system32\npdeployJava1.dll
2013-08-13 10:17 - 2012-08-13 08:09 - 00000000 ____D C:\Program Files\Java
2013-08-13 10:17 - 2011-12-07 16:41 - 00789416 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2013-08-13 10:09 - 2013-08-13 10:09 - 00000000 ____D C:\Program Files\Common Files\Java
2013-08-12 09:14 - 2012-05-13 12:11 - 00000000 ____D C:\Users\Tomáš\Documents\TrackMania
2013-08-12 08:35 - 2013-07-30 11:47 - 00000000 ____D C:\ProgramData\TrackMania
2013-08-11 18:26 - 2011-10-19 20:47 - 00000000 ____D C:\Users\TOM~1\AppData\Local\Windows Live
2013-08-09 18:05 - 2011-09-28 17:21 - 00000000 ____D C:\ALFA
2013-07-30 11:47 - 2013-07-30 11:45 - 00079262 _____ C:\Windows\DirectX.log
2013-07-30 11:45 - 2013-07-30 11:45 - 00001076 _____ C:\Users\Public\Desktop\TmNationsForever.lnk
2013-07-30 11:45 - 2013-07-30 11:43 - 00000000 ____D C:\Program Files\TmNationsForever
2013-07-30 11:43 - 2013-07-30 11:26 - 528345264 _____ (Nadeo ) C:\Users\Tomáš\Downloads\tmnationsforeversk.exe
Files to move or delete:
====================
C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe
C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe
C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe
C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll
C:\Users\TOM~1\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
C:\Users\TOM~1\AppData\Local\Temp\is-EAHMK.tmp\UninstallPromote.exe
C:\Users\TOM~1\AppData\Local\Temp\is-EAHMK.tmp\_isetup\_shfoldr.dll
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Scheduled Tasks (whitelisted) ===========
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Supplementary Scan (All) ================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=dword:00000005
"ConsentPromptBehaviorUser"=dword:00000003
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000001
"EnableSecureUIAPaths"=dword:00000001
"EnableUIADesktopToggle"=dword:00000000
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000001
"ValidateAdminCodeSignatures"=dword:00000000
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"scforceoption"=dword:00000000
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"FilterAdministratorToken"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval"=dword:00000001
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
"vidc.msvc"="msvidc32.dll"
"msacm.imaadpcm"="imaadp32.acm"
"msacm.msg711"="msg711.acm"
"msacm.msgsm610"="msgsm32.acm"
"msacm.msadpcm"="msadp32.acm"
"midimapper"="midimap.dll"
"wavemapper"="msacm32.drv"
"VIDC.UYVY"="msyuv.dll"
"VIDC.YUY2"="msyuv.dll"
"VIDC.YVYU"="msyuv.dll"
"VIDC.IYUV"="iyuv_32.dll"
"vidc.i420"="iyuv_32.dll"
"VIDC.YVU9"="tsbyuv.dll"
"msacm.l3acm"="l3codeca.acm"
"vidc.cvid"="iccvid.dll"
"wave"="wdmaud.drv"
"midi"="wdmaud.drv"
"mixer"="wdmaud.drv"
"aux"="wdmaud.drv"
"wave1"="wdmaud.drv"
"midi1"="wdmaud.drv"
"mixer1"="wdmaud.drv"
"wave2"="wdmaud.drv"
"midi2"="wdmaud.drv"
"mixer2"="wdmaud.drv"
"wave3"="wdmaud.drv"
"midi3"="wdmaud.drv"
"mixer3"="wdmaud.drv"
"wave4"="wdmaud.drv"
"midi4"="wdmaud.drv"
"mixer4"="wdmaud.drv"
"msacm.siren"="sirenacm.dll"
"vidc.VP60"="C:\\Windows\\system32\\vp6vfw.dll"
"vidc.VP61"="C:\\Windows\\system32\\vp6vfw.dll"
"MSVideo8"="VfWWDM32.dll"
"wave5"="wdmaud.drv"
"midi5"="wdmaud.drv"
"mixer5"="wdmaud.drv"
"aux1"="wdmaud.drv"
"vidc.iv41"="ir41_32.ax"
"vidc.iv31"="ir32_32.dll"
"vidc.iv32"="ir32_32.dll"
"vidc.XVID"="xvidvfw.dll"
"msacm.iac2"="iac25_32.ax"
"vidc.iv50"="ir50_32.dll"
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:923.69 GB) (Free:794.96 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (Project 4) (CDROM) (Total:0.08 GB) (Free:0 GB) CDFS
Available physical RAM: 1661.13 MB
Total physical RAM: 3319.42 MB
Percentage of memory in use: 49%
LastRegBack: 2013-08-22 09:44
==================== End Of Log ==============================
Re: spomalenie pc blokovanie ip adries esetom

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-09-28] (Google Inc.) HKCU\...\Run: [Steam] - C:\Program Files\Steam\steam.exe [1597864 2013-02-14] (Valve Corporation) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) MountPoints2: {3987d49e-8e1b-11e2-830b-50e549222367} - E:\start.exe MountPoints2: {4e31afc0-f1d6-11e1-b14e-806e6f6e6963} - E:\setup.exe MountPoints2: {4e31b13d-f1d6-11e1-b14e-50e549222367} - J:\Autorun.exe URLSearchHook: (No Name) - {687578b9-7132-4a7a-80e4-30ee31099e03} - No File SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} URL = http://www.bing.com/search?q={searchTerms}&form=MNMTDF&pc=MANM&src=IE-SearchBox SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll No File S3 ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys [x] Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => C:\Program Files\Google\Update\GoogleUpdate.exe C:\Program Files\Common Files\AVG Secure Search C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll Hosts: CMD: shutdown /r /f /t 2 End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: spomalenie pc blokovanie ip adries esetom
tu to je :
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-08-2013 01
Ran by Tomáš at 2013-08-27 10:58:35 Run:1
Running from C:\Users\Tomáš\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-09-28] (Google Inc.)
HKCU\...\Run: [Steam] - C:\Program Files\Steam\steam.exe [1597864 2013-02-14] (Valve Corporation)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
MountPoints2: {3987d49e-8e1b-11e2-830b-50e549222367} - E:\start.exe
MountPoints2: {4e31afc0-f1d6-11e1-b14e-806e6f6e6963} - E:\setup.exe
MountPoints2: {4e31b13d-f1d6-11e1-b14e-50e549222367} - J:\Autorun.exe
URLSearchHook: (No Name) - {687578b9-7132-4a7a-80e4-30ee31099e03} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll No File
S3 ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys [x]
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Common Files\AVG Secure Search
C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe
C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe
C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe
C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Steam => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3987d49e-8e1b-11e2-830b-50e549222367} => Key deleted successfully.
HKCR\CLSID\{3987d49e-8e1b-11e2-830b-50e549222367} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4e31afc0-f1d6-11e1-b14e-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{4e31afc0-f1d6-11e1-b14e-806e6f6e6963} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4e31b13d-f1d6-11e1-b14e-50e549222367} => Key deleted successfully.
HKCR\CLSID\{4e31b13d-f1d6-11e1-b14e-50e549222367} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{687578b9-7132-4a7a-80e4-30ee31099e03} => Value deleted successfully.
HKCR\CLSID\{687578b9-7132-4a7a-80e4-30ee31099e03} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\ToolbarSearchProviderProgress => Value deleted successfully.
C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll not found.
ALSysIO => Service deleted successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => Moved successfully.
"C:\Program Files\Common Files\AVG Secure Search" => File/Directory not found.
C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-08-2013 01
Ran by Tomáš at 2013-08-27 10:58:35 Run:1
Running from C:\Users\Tomáš\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-09-28] (Google Inc.)
HKCU\...\Run: [Steam] - C:\Program Files\Steam\steam.exe [1597864 2013-02-14] (Valve Corporation)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
MountPoints2: {3987d49e-8e1b-11e2-830b-50e549222367} - E:\start.exe
MountPoints2: {4e31afc0-f1d6-11e1-b14e-806e6f6e6963} - E:\setup.exe
MountPoints2: {4e31b13d-f1d6-11e1-b14e-50e549222367} - J:\Autorun.exe
URLSearchHook: (No Name) - {687578b9-7132-4a7a-80e4-30ee31099e03} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll No File
S3 ALSysIO; \??\C:\Users\TOM~1\AppData\Local\Temp\ALSysIO.sys [x]
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Common Files\AVG Secure Search
C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe
C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe
C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe
C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Steam => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3987d49e-8e1b-11e2-830b-50e549222367} => Key deleted successfully.
HKCR\CLSID\{3987d49e-8e1b-11e2-830b-50e549222367} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4e31afc0-f1d6-11e1-b14e-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{4e31afc0-f1d6-11e1-b14e-806e6f6e6963} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4e31b13d-f1d6-11e1-b14e-50e549222367} => Key deleted successfully.
HKCR\CLSID\{4e31b13d-f1d6-11e1-b14e-50e549222367} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{687578b9-7132-4a7a-80e4-30ee31099e03} => Value deleted successfully.
HKCR\CLSID\{687578b9-7132-4a7a-80e4-30ee31099e03} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{C8FBA65A-D7FD-4ED1-936E-4A3AF3DB8D1C} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\ToolbarSearchProviderProgress => Value deleted successfully.
C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll not found.
ALSysIO => Service deleted successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82c3fc31a517.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ce82c3fc502a09.job => Moved successfully.
"C:\Program Files\Common Files\AVG Secure Search" => File/Directory not found.
C:\Users\TOM~1\AppData\Local\Temp\i4jdel0.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\tbuTor.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver2.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriverT.exe => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\iGdiCnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IScrCnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\ISRT.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IUserCnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\objpscnv.dll => Moved successfully.
C:\Users\TOM~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\_ISRES1033.dll => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Re: spomalenie pc blokovanie ip adries esetom
Fajn, nastala nejaka zmena?
Re: spomalenie pc blokovanie ip adries esetom
tak to hej menej vitazeny procesor ipečky uz neblokuje fak diky 

Re: spomalenie pc blokovanie ip adries esetom
Tak jeste uklidime
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: spomalenie pc blokovanie ip adries esetom
tak velmy vam dakujem už to šlape ako ma


