Prosím o kontrolu logu
Napsal: 10 úno 2014 19:35
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-02-2014
Ran by Comfor (administrator) on COMFOR-PC on 10-02-2014 19:27:40
Running from C:\Users\Comfor\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Czech
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(AMD) C:\Windows\system32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\Monitor.exe
(Nitro PDF Software) C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
(AVG) C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesService32.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(AVG) C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesApp32.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\Program Files\Smart PDF Creator Pro\SmartSoft PDF Printer Agent.exe
(RealNetworks, Inc.) C:\Program Files\real\realplayer\Update\realsched.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(BitTorrent Inc.) C:\Program Files\uTorrent\uTorrent.exe
(Yontoo LLC) C:\Users\Comfor\AppData\Roaming\Yontoo\YontooDesktop.exe
(Badoo) C:\ProgramData\Badoo\Badoo Desktop\1.6.58.1220\Badoo.Desktop.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe
(SqueakyChocolate, LLC) C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Alexey ILJIN) C:\Program Files\Translate Client\translateclient.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.3.124.0\SeaPort.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\system32\cmd.exe
(Conduit Ltd.) C:\Users\Comfor\AppData\Local\NativeMessaging\CT3072253\1_0_0_10\TBMessagingHost.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7711264 2009-08-18] (Realtek Semiconductor)
HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [40048 2007-05-11] (Adobe Systems Incorporated)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [417792 2009-11-10] (Apple Inc.)
HKLM\...\Run: [SmartSoft PDF Printer Agent] - C:\Program Files\Smart PDF Creator Pro\SmartSoft PDF Printer Agent.exe [62856 2010-10-14] ()
HKLM\...\Run: [TkBellExe] - c:\program files\real\realplayer\Update\realsched.exe [296056 2012-05-19] (RealNetworks, Inc.)
HKLM\...\Run: [ApnUpdater] - C:\Program Files\Ask.com\Updater\Updater.exe [1391272 2012-01-03] (Ask)
HKLM\...\Run: [] - [X]
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Namedate] - C:\nezmeskej\nezmeskej.exe [924160 2011-08-11] (Petr Mazánek (www.nezmeskej.cz, info@nezmeskej.cz, +420608702180))
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [ALLUpdate] - C:\Program Files\OpenSubtitlesPlayer\ALLUpdate.exe [1064448 2011-08-17] ()
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [uTorrent] - C:\Program Files\uTorrent\uTorrent.exe [802136 2013-06-25] (BitTorrent Inc.)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Yontoo Desktop] - C:\Users\Comfor\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-06] (Yontoo LLC)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Badoo Desktop] - C:\ProgramData\Badoo\Badoo Desktop\1.6.58.1220\Badoo.Desktop.exe [1067232 2012-12-24] (Badoo)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [TBHostSupport] - "C:\Windows\system32\Rundll32.exe" "C:\Users\Comfor\AppData\Local\TBHostSupport\TBHostSupport_0.dll",DLLRunTBHostSupportPlugin <===== ATTENTION
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Advanced SystemCare 7] - C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-09] (IObit)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [UpdateChecker] - C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe [7168 2013-11-09] (SqueakyChocolate, LLC)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [NextLive] - C:\Windows\system32\rundll32.exe "C:\Users\Comfor\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe [814472 2013-06-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\MountPoints2: {74b8fbee-0f4b-11df-82ec-00241d3fae49} - I:\Launcher.exe
AppInit_DLLs: c:\progra~2\bitguard\271832~1.68\{c16c1~1\bitguard.dll => File Not Found
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x09F27A627B5DCA01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.delta-search.com/?affID=1197 ... 241d3fae49
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=EIE9HP&PC=UP50
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... nkId=69157
URLSearchHook: HKLM - uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
URLSearchHook: HKCU - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
URLSearchHook: HKCU - pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\4.6\pdfforgeToolbarIE.dll (Spigot, Inc.)
URLSearchHook: HKCU - uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
SearchScopes: HKCU - bProtectorDefaultScope {F26AE35E-2B63-44FE-A252-6E72849DDCFB}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTer ... 241d3fae49
SearchScopes: HKCU - {22395ABA-C683-48AD-951D-551C2D09F220} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {A6452A64-B474-4659-9991-D2DEAD026201} URL = http://search.conduit.com/ResultsExt.as ... =CT3072253
SearchScopes: HKCU - {D477054F-B896-4F7A-B580-5465BA108A4C} URL = http://websearch.ask.com/redirect?clien ... CA10AEAB43
BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit)
BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
BHO: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\4.6\pdfforgeToolbarIE.dll (Spigot, Inc.)
BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll (Microsoft Corporation.)
BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\OpenSubtitlesPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
BHO: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files\Smileys We Love Toolbar for IE\adxloader.dll ()
BHO: No Name - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - No File
Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\4.6\pdfforgeToolbarIE.dll (Spigot, Inc.)
Toolbar: HKLM - uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files\Smileys We Love Toolbar for IE\adxloader.dll ()
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKCU - uTorrentControl2 Toolbar - {687578B9-7132-4A7A-80E4-30EE31099E03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 %SystemRoot%\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
FireFox:
========
FF ProfilePath: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default
FF user.js: detected! => C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\user.js
FF NewTab: hxxp://www.delta-search.com/?affID=119776&babs ... 241d3fae49
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Delta Search
FF Homepage: hxxp://isearch.babylon.com/?affID=119776&babsrc=HP_ss_gr&mntrId=a45be2cf00000000000000241d3fae49
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=15.0.4.53 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=15.0.4.53 - c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprphtml5videoshim;version=15.0.4.53 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.775 - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=15.0.4.53 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @veetle.com/veetleCorePlugin,version=0.9.18 - C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF Plugin: @veetle.com/veetlePlayerPlugin,version=0.9.18 - C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF Plugin: NitroPDF - C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll ( )
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npnul32.dll (mozilla.org)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpplugin.dll (RealPlayer)
FF SearchPlugin: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\searchplugins\BrowserProtect.xml
FF SearchPlugin: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\searchplugins\conduit.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zoznam-sk.xml
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\ascsurfingprotection@iobit.com [2014-01-16]
FF Extension: Babylon - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\ffxtlbr@babylon.com [2012-02-12]
FF Extension: Iplex to ALLPlayer - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\IplextoALL@ALLPlayer.org [2012-02-12]
FF Extension: Yontoo - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\plugin@yontoo.com [2013-03-09]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-10-21]
FF Extension: uTorrentControl2 Community Toolbar - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\{687578b9-7132-4a7a-80e4-30ee31099e03} [2012-05-05]
FF Extension: FreeHDSport.TV - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\freehdsport@freehdsport.tv.xpi [2013-03-09]
FF Extension: SmileysWeLove: Smileys for use with Facebook, GMail, and more - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\jid1-vW9nopuIAJiRHw@jetpack.xpi [2014-01-16]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-05-13]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2010-12-31]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-29]
FF HKLM\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-29]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-09-05]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll ()
CHR Plugin: (NPObject) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\NPObject.dll No File
CHR Plugin: (Conduit Chrome Approve TB Plugin) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.19.11_0\plugins/ChromeApproveTBPlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Download Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprpplugin.dll (RealPlayer)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll No File
CHR Plugin: (McAfee Security Scanner +) - C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll No File
CHR Plugin: (Nitro PDF Plug-In) - C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll ( )
CHR Plugin: (Veetle TV Player) - C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
CHR Plugin: (Veetle TV Core) - C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (FreeHDSport.TV) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok [2013-03-09]
CHR Extension: (YouTube) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-30]
CHR Extension: (Vyhledávání Google) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-01-26]
CHR Extension: (Delta Toolbar) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde [2013-03-09]
CHR Extension: (Free Smileys & Emoticons) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbjfdilbioabojmcplalojlmdngbjl [2014-01-16]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2010-04-18]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-02-05]
CHR Extension: (Peněženka Google) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-01]
CHR Extension: (uTorrentControl2) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc [2012-05-12]
CHR Extension: (Gmail) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-01-26]
CHR HKLM\...\Chrome\Extension: [bgnnidmnbdkmhfkjgdnngciimpdgohok] - C:\Program Files\LSHunter.TV\stv12.crx [2013-03-09]
CHR HKLM\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Comfor\AppData\Roaming\BabSolution\CR\Delta.crx [2013-03-09]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2011-11-08]
CHR HKLM\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-16]
CHR HKLM\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Program Files\Yontoo\YontooLayers.crx [2014-01-16]
CHR HKLM\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Users\Comfor\AppData\Local\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx [2012-04-17]
CHR HKCU\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Users\Comfor\AppData\Local\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx [2012-04-17]
========================== Services (Whitelisted) =================
R2 AdvancedSystemCareService7; C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
S2 gupdate1ca67a83b1110db; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-11-17] (Google Inc.)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.)
R2 NitroReaderDriverReadSpool2; C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [196912 2011-06-21] (Nitro PDF Software)
R2 TuneUp.UtilitiesSvc; C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesService32.exe [1741624 2013-12-18] (AVG)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [35640 2013-12-18] (AVG)
S2 Yontoo Desktop Updater; C:\Users\Comfor\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-06] (Yontoo LLC)
S4 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [X]
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\system32\Drivers\aswFsBlk.sys [29816 2013-08-30] (AVAST Software)
R0 aswKbd; C:\Windows\system32\Drivers\aswKbd.sys [21576 2013-03-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-08-30] (AVAST Software)
R1 AswRdr; C:\Windows\system32\Drivers\AswRdr.sys [49760 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49376 2013-08-30] ()
R1 aswSnx; C:\Windows\system32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [56080 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [177864 2013-08-30] ()
S3 ENTECH; C:\Windows\system32\DRIVERS\ENTECH.sys [27672 2007-08-20] (EnTech Taiwan)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R3 TuneUpUtilitiesDrv; C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesDriver32.sys [12320 2013-09-18] (TuneUp Software)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-10 19:27 - 2014-02-10 19:28 - 00030247 _____ () C:\Users\Comfor\Desktop\FRST.txt
2014-02-10 19:26 - 2014-02-10 19:26 - 00112640 _____ (forum.viry.cz) C:\Users\Comfor\Desktop\FRSTLauncher.exe
2014-02-10 19:26 - 2014-02-10 19:26 - 00029696 _____ () C:\Users\Comfor\AppData\Local\MSGBOX.EXE
2014-02-10 19:26 - 2014-02-10 19:26 - 00015327 _____ () C:\Users\Comfor\Desktop\LM.bat
2014-02-10 19:22 - 2014-02-10 19:27 - 00000000 ____D () C:\FRST
2014-02-10 19:21 - 2014-02-10 19:21 - 01139200 _____ (Farbar) C:\Users\Comfor\Desktop\FRST.exe
2014-02-05 22:15 - 2014-02-05 22:27 - 691994575 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_3_720.wmv
2014-02-05 22:14 - 2014-02-05 22:23 - 723221695 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_2_720.wmv
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_.torrent
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_ (1).torrent
2014-02-05 22:11 - 2014-02-05 22:13 - 00014348 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_2_dil.torrent
2014-02-03 21:42 - 2014-02-03 21:44 - 00000000 ____D () C:\Users\Comfor\Downloads\Czech Mega Swingers 17
2014-02-03 21:41 - 2014-02-03 21:41 - 00018501 _____ () C:\Users\Comfor\Downloads\[CzT]Czech_Mega_Swingers_17_2013_CZ_.torrent
2014-02-03 21:40 - 2014-02-03 22:00 - 615570963 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_1_720.wmv
2014-02-03 21:40 - 2014-02-03 21:40 - 00012308 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_1_dil_720p_.torrent
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setupact.log
2014-01-17 20:29 - 2013-12-18 09:38 - 00035640 _____ (AVG) C:\Windows\system32\uxtuneup.dll
2014-01-17 20:29 - 2013-12-18 09:38 - 00025400 _____ (AVG) C:\Windows\system32\authuitu.dll
2014-01-17 16:29 - 2014-01-17 16:29 - 00005498 _____ () C:\Windows\PFRO.log
2014-01-17 16:28 - 2014-01-17 16:28 - 46379008 _____ () C:\Windows\system32\config\software.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 38453248 _____ () C:\Windows\system32\config\components.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00229376 _____ () C:\Windows\system32\config\default.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00057344 _____ () C:\Windows\system32\config\sam.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00028672 _____ () C:\Windows\system32\config\security.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00000000 _____ () C:\asc_rdflag
2014-01-16 20:40 - 2013-06-27 18:05 - 00024384 _____ (IObit) C:\Windows\system32\RegistryDefragBootTime.exe
2014-01-16 19:36 - 2014-01-16 19:36 - 45760512 _____ () C:\Windows\system32\config\software.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 38453248 _____ () C:\Windows\system32\config\components.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00229376 _____ () C:\Windows\system32\config\default.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00057344 _____ () C:\Windows\system32\config\sam.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00028672 _____ () C:\Windows\system32\config\security.iobit
2014-01-16 19:23 - 2014-02-10 18:44 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\newnext.me
2014-01-16 19:23 - 2014-01-16 19:24 - 00000000 ____D () C:\Users\Comfor\AppData\Local\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\Documents\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\genienext
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\cache
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\.android
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 _____ () C:\Users\Comfor\daemonprocess.txt
2014-01-16 19:22 - 2014-01-16 19:24 - 00000000 ____D () C:\Program Files\Mobogenie
2014-01-16 19:21 - 2014-01-16 19:21 - 00000000 ____D () C:\Program Files\SqueakyChocolate
2014-01-16 19:20 - 2014-01-16 19:21 - 00000000 ____D () C:\Program Files\Smileys We Love Toolbar for IE
2014-01-16 19:20 - 2014-01-16 19:20 - 00000000 ____D () C:\Users\Comfor\Documents\Add-in Express
2014-01-16 19:19 - 2014-01-16 19:19 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Apple Computer
2014-01-16 19:18 - 2014-01-16 19:18 - 00001036 _____ () C:\Users\Comfor\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00001012 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\ProductData
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-16 19:18 - 2013-12-18 09:38 - 00036152 _____ (AVG) C:\Windows\system32\TURegOpt.exe
2014-01-16 19:17 - 2014-01-31 07:52 - 00001992 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-01-16 19:17 - 2014-01-17 20:29 - 00000000 ____D () C:\Program Files\AVG PC TuneUp 2014
2014-01-16 19:17 - 2014-01-16 19:20 - 00000000 ____D () C:\ProgramData\IObit
2014-01-16 19:17 - 2014-01-16 19:18 - 00000000 ____D () C:\Program Files\IObit
2014-01-16 19:17 - 2014-01-16 19:17 - 00001846 _____ () C:\Users\Public\Desktop\AVG PC TuneUp 2014.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00001832 _____ () C:\Users\Public\Desktop\AVG údržba 1 kliknutím.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\AVG
2014-01-16 19:16 - 2014-01-17 20:32 - 00000000 ____D () C:\ProgramData\AVG
2014-01-16 19:16 - 2014-01-16 19:19 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\IObit
2014-01-16 19:16 - 2014-01-16 19:16 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-01-16 19:14 - 2014-01-16 19:15 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\rmi
==================== One Month Modified Files and Folders =======
2014-02-10 19:28 - 2014-02-10 19:27 - 00030247 _____ () C:\Users\Comfor\Desktop\FRST.txt
2014-02-10 19:27 - 2014-02-10 19:22 - 00000000 ____D () C:\FRST
2014-02-10 19:26 - 2014-02-10 19:26 - 00112640 _____ (forum.viry.cz) C:\Users\Comfor\Desktop\FRSTLauncher.exe
2014-02-10 19:26 - 2014-02-10 19:26 - 00029696 _____ () C:\Users\Comfor\AppData\Local\MSGBOX.EXE
2014-02-10 19:26 - 2014-02-10 19:26 - 00015327 _____ () C:\Users\Comfor\Desktop\LM.bat
2014-02-10 19:24 - 2009-11-08 15:40 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\uTorrent
2014-02-10 19:21 - 2014-02-10 19:21 - 01139200 _____ (Farbar) C:\Users\Comfor\Desktop\FRST.exe
2014-02-10 19:03 - 2009-11-17 18:22 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-10 18:48 - 2008-01-21 02:35 - 01073758 _____ () C:\Windows\WindowsUpdate.log
2014-02-10 18:44 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\newnext.me
2014-02-10 18:44 - 2013-03-09 16:27 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Yontoo
2014-02-10 18:44 - 2010-08-22 22:11 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\translateclient
2014-02-10 18:42 - 2009-11-17 18:22 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-10 18:42 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-10 18:42 - 2006-11-02 13:47 - 00004016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-10 18:42 - 2006-11-02 13:47 - 00004016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-10 17:25 - 2006-11-02 14:01 - 00032560 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-02-08 10:04 - 2009-11-03 19:49 - 00002671 _____ () C:\Users\Comfor\Desktop\Microsoft Word.lnk
2014-02-05 23:26 - 2009-09-16 11:58 - 00231936 _____ () C:\Users\Comfor\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-05 22:27 - 2014-02-05 22:15 - 691994575 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_3_720.wmv
2014-02-05 22:23 - 2014-02-05 22:14 - 723221695 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_2_720.wmv
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_.torrent
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_ (1).torrent
2014-02-05 22:13 - 2014-02-05 22:11 - 00014348 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_2_dil.torrent
2014-02-03 22:00 - 2014-02-03 21:40 - 615570963 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_1_720.wmv
2014-02-03 21:44 - 2014-02-03 21:42 - 00000000 ____D () C:\Users\Comfor\Downloads\Czech Mega Swingers 17
2014-02-03 21:41 - 2014-02-03 21:41 - 00018501 _____ () C:\Users\Comfor\Downloads\[CzT]Czech_Mega_Swingers_17_2013_CZ_.torrent
2014-02-03 21:40 - 2014-02-03 21:40 - 00012308 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_1_dil_720p_.torrent
2014-01-31 07:52 - 2014-01-16 19:17 - 00001992 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-01-19 18:51 - 2009-12-13 20:59 - 00000000 ____D () C:\Users\Comfor\Desktop\radim
2014-01-19 10:08 - 2012-12-22 22:58 - 00000000 ____D () C:\Users\Comfor\Desktop\Simpsonovi
2014-01-17 22:21 - 2012-05-05 13:12 - 00000000 ____D () C:\Users\Comfor\AppData\Local\Conduit
2014-01-17 20:32 - 2014-01-16 19:16 - 00000000 ____D () C:\ProgramData\AVG
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setupact.log
2014-01-17 20:29 - 2014-01-16 19:17 - 00000000 ____D () C:\Program Files\AVG PC TuneUp 2014
2014-01-17 16:44 - 2009-09-11 13:11 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-01-17 16:43 - 2013-08-16 07:27 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-17 16:36 - 2006-11-02 11:24 - 83425928 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-01-17 16:29 - 2014-01-17 16:29 - 00005498 _____ () C:\Windows\PFRO.log
2014-01-17 16:28 - 2014-01-17 16:28 - 46379008 _____ () C:\Windows\system32\config\software.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 38453248 _____ () C:\Windows\system32\config\components.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00229376 _____ () C:\Windows\system32\config\default.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00057344 _____ () C:\Windows\system32\config\sam.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00028672 _____ () C:\Windows\system32\config\security.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00000000 _____ () C:\asc_rdflag
2014-01-17 16:28 - 2009-09-16 10:45 - 00000000 ____D () C:\Users\Comfor
2014-01-16 20:40 - 2013-11-26 17:41 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2014-01-16 20:39 - 2009-09-25 20:01 - 00000000 ____D () C:\Windows\Minidump
2014-01-16 20:39 - 2009-09-11 13:38 - 00000000 ____D () C:\Windows\Panther
2014-01-16 19:52 - 2010-10-16 12:22 - 00000000 ____D () C:\Program Files\PDFCreator
2014-01-16 19:36 - 2014-01-16 19:36 - 45760512 _____ () C:\Windows\system32\config\software.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 38453248 _____ () C:\Windows\system32\config\components.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00229376 _____ () C:\Windows\system32\config\default.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00057344 _____ () C:\Windows\system32\config\sam.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00028672 _____ () C:\Windows\system32\config\security.iobit
2014-01-16 19:24 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\Mobogenie
2014-01-16 19:24 - 2014-01-16 19:22 - 00000000 ____D () C:\Program Files\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\Documents\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\genienext
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\cache
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\.android
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 _____ () C:\Users\Comfor\daemonprocess.txt
2014-01-16 19:21 - 2014-01-16 19:21 - 00000000 ____D () C:\Program Files\SqueakyChocolate
2014-01-16 19:21 - 2014-01-16 19:20 - 00000000 ____D () C:\Program Files\Smileys We Love Toolbar for IE
2014-01-16 19:20 - 2014-01-16 19:20 - 00000000 ____D () C:\Users\Comfor\Documents\Add-in Express
2014-01-16 19:20 - 2014-01-16 19:17 - 00000000 ____D () C:\ProgramData\IObit
2014-01-16 19:19 - 2014-01-16 19:19 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Apple Computer
2014-01-16 19:19 - 2014-01-16 19:16 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\IObit
2014-01-16 19:18 - 2014-01-16 19:18 - 00001036 _____ () C:\Users\Comfor\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00001012 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\ProductData
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-16 19:18 - 2014-01-16 19:17 - 00000000 ____D () C:\Program Files\IObit
2014-01-16 19:17 - 2014-01-16 19:17 - 00001846 _____ () C:\Users\Public\Desktop\AVG PC TuneUp 2014.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00001832 _____ () C:\Users\Public\Desktop\AVG údržba 1 kliknutím.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\AVG
2014-01-16 19:16 - 2014-01-16 19:16 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-01-16 19:16 - 2011-12-18 09:56 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\OpenCandy
2014-01-16 19:15 - 2014-01-16 19:14 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\rmi
Files to move or delete:
====================
C:\ProgramData\ezsid.dat
Some content of TEMP:
====================
C:\Users\Comfor\AppData\Local\Temp\setup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-10 18:49
==================== End Of Log ============================
Ran by Comfor (administrator) on COMFOR-PC on 10-02-2014 19:27:40
Running from C:\Users\Comfor\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Czech
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(AMD) C:\Windows\system32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\Monitor.exe
(Nitro PDF Software) C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
(AVG) C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesService32.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(AVG) C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesApp32.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\Program Files\Smart PDF Creator Pro\SmartSoft PDF Printer Agent.exe
(RealNetworks, Inc.) C:\Program Files\real\realplayer\Update\realsched.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(BitTorrent Inc.) C:\Program Files\uTorrent\uTorrent.exe
(Yontoo LLC) C:\Users\Comfor\AppData\Roaming\Yontoo\YontooDesktop.exe
(Badoo) C:\ProgramData\Badoo\Badoo Desktop\1.6.58.1220\Badoo.Desktop.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe
(SqueakyChocolate, LLC) C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Alexey ILJIN) C:\Program Files\Translate Client\translateclient.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.3.124.0\SeaPort.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\system32\cmd.exe
(Conduit Ltd.) C:\Users\Comfor\AppData\Local\NativeMessaging\CT3072253\1_0_0_10\TBMessagingHost.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7711264 2009-08-18] (Realtek Semiconductor)
HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [40048 2007-05-11] (Adobe Systems Incorporated)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [417792 2009-11-10] (Apple Inc.)
HKLM\...\Run: [SmartSoft PDF Printer Agent] - C:\Program Files\Smart PDF Creator Pro\SmartSoft PDF Printer Agent.exe [62856 2010-10-14] ()
HKLM\...\Run: [TkBellExe] - c:\program files\real\realplayer\Update\realsched.exe [296056 2012-05-19] (RealNetworks, Inc.)
HKLM\...\Run: [ApnUpdater] - C:\Program Files\Ask.com\Updater\Updater.exe [1391272 2012-01-03] (Ask)
HKLM\...\Run: [] - [X]
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Namedate] - C:\nezmeskej\nezmeskej.exe [924160 2011-08-11] (Petr Mazánek (www.nezmeskej.cz, info@nezmeskej.cz, +420608702180))
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [ALLUpdate] - C:\Program Files\OpenSubtitlesPlayer\ALLUpdate.exe [1064448 2011-08-17] ()
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [uTorrent] - C:\Program Files\uTorrent\uTorrent.exe [802136 2013-06-25] (BitTorrent Inc.)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Yontoo Desktop] - C:\Users\Comfor\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-06] (Yontoo LLC)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Badoo Desktop] - C:\ProgramData\Badoo\Badoo Desktop\1.6.58.1220\Badoo.Desktop.exe [1067232 2012-12-24] (Badoo)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [TBHostSupport] - "C:\Windows\system32\Rundll32.exe" "C:\Users\Comfor\AppData\Local\TBHostSupport\TBHostSupport_0.dll",DLLRunTBHostSupportPlugin <===== ATTENTION
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [Advanced SystemCare 7] - C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-09] (IObit)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [UpdateChecker] - C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe [7168 2013-11-09] (SqueakyChocolate, LLC)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\Run: [NextLive] - C:\Windows\system32\rundll32.exe "C:\Users\Comfor\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe [814472 2013-06-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-761075100-1063118794-438648706-1000\...\MountPoints2: {74b8fbee-0f4b-11df-82ec-00241d3fae49} - I:\Launcher.exe
AppInit_DLLs: c:\progra~2\bitguard\271832~1.68\{c16c1~1\bitguard.dll => File Not Found
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x09F27A627B5DCA01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.delta-search.com/?affID=1197 ... 241d3fae49
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=EIE9HP&PC=UP50
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... nkId=69157
URLSearchHook: HKLM - uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
URLSearchHook: HKCU - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
URLSearchHook: HKCU - pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\4.6\pdfforgeToolbarIE.dll (Spigot, Inc.)
URLSearchHook: HKCU - uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
SearchScopes: HKCU - bProtectorDefaultScope {F26AE35E-2B63-44FE-A252-6E72849DDCFB}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTer ... 241d3fae49
SearchScopes: HKCU - {22395ABA-C683-48AD-951D-551C2D09F220} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
SearchScopes: HKCU - {A6452A64-B474-4659-9991-D2DEAD026201} URL = http://search.conduit.com/ResultsExt.as ... =CT3072253
SearchScopes: HKCU - {D477054F-B896-4F7A-B580-5465BA108A4C} URL = http://websearch.ask.com/redirect?clien ... CA10AEAB43
BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit)
BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
BHO: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\4.6\pdfforgeToolbarIE.dll (Spigot, Inc.)
BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll (Microsoft Corporation.)
BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\OpenSubtitlesPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
BHO: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files\Smileys We Love Toolbar for IE\adxloader.dll ()
BHO: No Name - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - No File
Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM - pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\4.6\pdfforgeToolbarIE.dll (Spigot, Inc.)
Toolbar: HKLM - uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.3.124.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files\Smileys We Love Toolbar for IE\adxloader.dll ()
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKCU - uTorrentControl2 Toolbar - {687578B9-7132-4A7A-80E4-30EE31099E03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll (Conduit Ltd.)
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 %SystemRoot%\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
FireFox:
========
FF ProfilePath: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default
FF user.js: detected! => C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\user.js
FF NewTab: hxxp://www.delta-search.com/?affID=119776&babs ... 241d3fae49
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Delta Search
FF Homepage: hxxp://isearch.babylon.com/?affID=119776&babsrc=HP_ss_gr&mntrId=a45be2cf00000000000000241d3fae49
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=15.0.4.53 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=15.0.4.53 - c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprphtml5videoshim;version=15.0.4.53 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.775 - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=15.0.4.53 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @veetle.com/veetleCorePlugin,version=0.9.18 - C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF Plugin: @veetle.com/veetlePlayerPlugin,version=0.9.18 - C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF Plugin: NitroPDF - C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll ( )
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npnul32.dll (mozilla.org)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpplugin.dll (RealPlayer)
FF SearchPlugin: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\searchplugins\BrowserProtect.xml
FF SearchPlugin: C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\searchplugins\conduit.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zoznam-sk.xml
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\ascsurfingprotection@iobit.com [2014-01-16]
FF Extension: Babylon - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\ffxtlbr@babylon.com [2012-02-12]
FF Extension: Iplex to ALLPlayer - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\IplextoALL@ALLPlayer.org [2012-02-12]
FF Extension: Yontoo - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\plugin@yontoo.com [2013-03-09]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-10-21]
FF Extension: uTorrentControl2 Community Toolbar - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\{687578b9-7132-4a7a-80e4-30ee31099e03} [2012-05-05]
FF Extension: FreeHDSport.TV - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\freehdsport@freehdsport.tv.xpi [2013-03-09]
FF Extension: SmileysWeLove: Smileys for use with Facebook, GMail, and more - C:\Users\Comfor\AppData\Roaming\Mozilla\Firefox\Profiles\kn6rs3m6.default\Extensions\jid1-vW9nopuIAJiRHw@jetpack.xpi [2014-01-16]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-05-13]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2010-12-31]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-29]
FF HKLM\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-29]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-09-05]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll ()
CHR Plugin: (NPObject) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\NPObject.dll No File
CHR Plugin: (Conduit Chrome Approve TB Plugin) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.19.11_0\plugins/ChromeApproveTBPlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Download Plugin) - C:\Program Files\Mozilla Firefox\plugins\nprpplugin.dll (RealPlayer)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.5) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll No File
CHR Plugin: (McAfee Security Scanner +) - C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll No File
CHR Plugin: (Nitro PDF Plug-In) - C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll ( )
CHR Plugin: (Veetle TV Player) - C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
CHR Plugin: (Veetle TV Core) - C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (FreeHDSport.TV) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok [2013-03-09]
CHR Extension: (YouTube) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-30]
CHR Extension: (Vyhledávání Google) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-01-26]
CHR Extension: (Delta Toolbar) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde [2013-03-09]
CHR Extension: (Free Smileys & Emoticons) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbjfdilbioabojmcplalojlmdngbjl [2014-01-16]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2010-04-18]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-02-05]
CHR Extension: (Peněženka Google) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-01]
CHR Extension: (uTorrentControl2) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc [2012-05-12]
CHR Extension: (Gmail) - C:\Users\Comfor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-01-26]
CHR HKLM\...\Chrome\Extension: [bgnnidmnbdkmhfkjgdnngciimpdgohok] - C:\Program Files\LSHunter.TV\stv12.crx [2013-03-09]
CHR HKLM\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Comfor\AppData\Roaming\BabSolution\CR\Delta.crx [2013-03-09]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2011-11-08]
CHR HKLM\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-16]
CHR HKLM\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Program Files\Yontoo\YontooLayers.crx [2014-01-16]
CHR HKLM\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Users\Comfor\AppData\Local\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx [2012-04-17]
CHR HKCU\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Users\Comfor\AppData\Local\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx [2012-04-17]
========================== Services (Whitelisted) =================
R2 AdvancedSystemCareService7; C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
S2 gupdate1ca67a83b1110db; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-11-17] (Google Inc.)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.)
R2 NitroReaderDriverReadSpool2; C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe [196912 2011-06-21] (Nitro PDF Software)
R2 TuneUp.UtilitiesSvc; C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesService32.exe [1741624 2013-12-18] (AVG)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [35640 2013-12-18] (AVG)
S2 Yontoo Desktop Updater; C:\Users\Comfor\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-06] (Yontoo LLC)
S4 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [X]
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\system32\Drivers\aswFsBlk.sys [29816 2013-08-30] (AVAST Software)
R0 aswKbd; C:\Windows\system32\Drivers\aswKbd.sys [21576 2013-03-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-08-30] (AVAST Software)
R1 AswRdr; C:\Windows\system32\Drivers\AswRdr.sys [49760 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49376 2013-08-30] ()
R1 aswSnx; C:\Windows\system32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [56080 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [177864 2013-08-30] ()
S3 ENTECH; C:\Windows\system32\DRIVERS\ENTECH.sys [27672 2007-08-20] (EnTech Taiwan)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R3 TuneUpUtilitiesDrv; C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesDriver32.sys [12320 2013-09-18] (TuneUp Software)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-10 19:27 - 2014-02-10 19:28 - 00030247 _____ () C:\Users\Comfor\Desktop\FRST.txt
2014-02-10 19:26 - 2014-02-10 19:26 - 00112640 _____ (forum.viry.cz) C:\Users\Comfor\Desktop\FRSTLauncher.exe
2014-02-10 19:26 - 2014-02-10 19:26 - 00029696 _____ () C:\Users\Comfor\AppData\Local\MSGBOX.EXE
2014-02-10 19:26 - 2014-02-10 19:26 - 00015327 _____ () C:\Users\Comfor\Desktop\LM.bat
2014-02-10 19:22 - 2014-02-10 19:27 - 00000000 ____D () C:\FRST
2014-02-10 19:21 - 2014-02-10 19:21 - 01139200 _____ (Farbar) C:\Users\Comfor\Desktop\FRST.exe
2014-02-05 22:15 - 2014-02-05 22:27 - 691994575 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_3_720.wmv
2014-02-05 22:14 - 2014-02-05 22:23 - 723221695 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_2_720.wmv
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_.torrent
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_ (1).torrent
2014-02-05 22:11 - 2014-02-05 22:13 - 00014348 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_2_dil.torrent
2014-02-03 21:42 - 2014-02-03 21:44 - 00000000 ____D () C:\Users\Comfor\Downloads\Czech Mega Swingers 17
2014-02-03 21:41 - 2014-02-03 21:41 - 00018501 _____ () C:\Users\Comfor\Downloads\[CzT]Czech_Mega_Swingers_17_2013_CZ_.torrent
2014-02-03 21:40 - 2014-02-03 22:00 - 615570963 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_1_720.wmv
2014-02-03 21:40 - 2014-02-03 21:40 - 00012308 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_1_dil_720p_.torrent
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setupact.log
2014-01-17 20:29 - 2013-12-18 09:38 - 00035640 _____ (AVG) C:\Windows\system32\uxtuneup.dll
2014-01-17 20:29 - 2013-12-18 09:38 - 00025400 _____ (AVG) C:\Windows\system32\authuitu.dll
2014-01-17 16:29 - 2014-01-17 16:29 - 00005498 _____ () C:\Windows\PFRO.log
2014-01-17 16:28 - 2014-01-17 16:28 - 46379008 _____ () C:\Windows\system32\config\software.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 38453248 _____ () C:\Windows\system32\config\components.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00229376 _____ () C:\Windows\system32\config\default.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00057344 _____ () C:\Windows\system32\config\sam.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00028672 _____ () C:\Windows\system32\config\security.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00000000 _____ () C:\asc_rdflag
2014-01-16 20:40 - 2013-06-27 18:05 - 00024384 _____ (IObit) C:\Windows\system32\RegistryDefragBootTime.exe
2014-01-16 19:36 - 2014-01-16 19:36 - 45760512 _____ () C:\Windows\system32\config\software.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 38453248 _____ () C:\Windows\system32\config\components.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00229376 _____ () C:\Windows\system32\config\default.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00057344 _____ () C:\Windows\system32\config\sam.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00028672 _____ () C:\Windows\system32\config\security.iobit
2014-01-16 19:23 - 2014-02-10 18:44 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\newnext.me
2014-01-16 19:23 - 2014-01-16 19:24 - 00000000 ____D () C:\Users\Comfor\AppData\Local\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\Documents\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\genienext
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\cache
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\.android
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 _____ () C:\Users\Comfor\daemonprocess.txt
2014-01-16 19:22 - 2014-01-16 19:24 - 00000000 ____D () C:\Program Files\Mobogenie
2014-01-16 19:21 - 2014-01-16 19:21 - 00000000 ____D () C:\Program Files\SqueakyChocolate
2014-01-16 19:20 - 2014-01-16 19:21 - 00000000 ____D () C:\Program Files\Smileys We Love Toolbar for IE
2014-01-16 19:20 - 2014-01-16 19:20 - 00000000 ____D () C:\Users\Comfor\Documents\Add-in Express
2014-01-16 19:19 - 2014-01-16 19:19 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Apple Computer
2014-01-16 19:18 - 2014-01-16 19:18 - 00001036 _____ () C:\Users\Comfor\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00001012 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\ProductData
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-16 19:18 - 2013-12-18 09:38 - 00036152 _____ (AVG) C:\Windows\system32\TURegOpt.exe
2014-01-16 19:17 - 2014-01-31 07:52 - 00001992 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-01-16 19:17 - 2014-01-17 20:29 - 00000000 ____D () C:\Program Files\AVG PC TuneUp 2014
2014-01-16 19:17 - 2014-01-16 19:20 - 00000000 ____D () C:\ProgramData\IObit
2014-01-16 19:17 - 2014-01-16 19:18 - 00000000 ____D () C:\Program Files\IObit
2014-01-16 19:17 - 2014-01-16 19:17 - 00001846 _____ () C:\Users\Public\Desktop\AVG PC TuneUp 2014.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00001832 _____ () C:\Users\Public\Desktop\AVG údržba 1 kliknutím.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\AVG
2014-01-16 19:16 - 2014-01-17 20:32 - 00000000 ____D () C:\ProgramData\AVG
2014-01-16 19:16 - 2014-01-16 19:19 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\IObit
2014-01-16 19:16 - 2014-01-16 19:16 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-01-16 19:14 - 2014-01-16 19:15 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\rmi
==================== One Month Modified Files and Folders =======
2014-02-10 19:28 - 2014-02-10 19:27 - 00030247 _____ () C:\Users\Comfor\Desktop\FRST.txt
2014-02-10 19:27 - 2014-02-10 19:22 - 00000000 ____D () C:\FRST
2014-02-10 19:26 - 2014-02-10 19:26 - 00112640 _____ (forum.viry.cz) C:\Users\Comfor\Desktop\FRSTLauncher.exe
2014-02-10 19:26 - 2014-02-10 19:26 - 00029696 _____ () C:\Users\Comfor\AppData\Local\MSGBOX.EXE
2014-02-10 19:26 - 2014-02-10 19:26 - 00015327 _____ () C:\Users\Comfor\Desktop\LM.bat
2014-02-10 19:24 - 2009-11-08 15:40 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\uTorrent
2014-02-10 19:21 - 2014-02-10 19:21 - 01139200 _____ (Farbar) C:\Users\Comfor\Desktop\FRST.exe
2014-02-10 19:03 - 2009-11-17 18:22 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-10 18:48 - 2008-01-21 02:35 - 01073758 _____ () C:\Windows\WindowsUpdate.log
2014-02-10 18:44 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\newnext.me
2014-02-10 18:44 - 2013-03-09 16:27 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Yontoo
2014-02-10 18:44 - 2010-08-22 22:11 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\translateclient
2014-02-10 18:42 - 2009-11-17 18:22 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-10 18:42 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-10 18:42 - 2006-11-02 13:47 - 00004016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-10 18:42 - 2006-11-02 13:47 - 00004016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-10 17:25 - 2006-11-02 14:01 - 00032560 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-02-08 10:04 - 2009-11-03 19:49 - 00002671 _____ () C:\Users\Comfor\Desktop\Microsoft Word.lnk
2014-02-05 23:26 - 2009-09-16 11:58 - 00231936 _____ () C:\Users\Comfor\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-05 22:27 - 2014-02-05 22:15 - 691994575 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_3_720.wmv
2014-02-05 22:23 - 2014-02-05 22:14 - 723221695 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_2_720.wmv
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_.torrent
2014-02-05 22:14 - 2014-02-05 22:14 - 00013748 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_3_dil_CzechMegaSwinger_ (1).torrent
2014-02-05 22:13 - 2014-02-05 22:11 - 00014348 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_2_dil.torrent
2014-02-03 22:00 - 2014-02-03 21:40 - 615570963 _____ () C:\Users\Comfor\Downloads\czmswin_16_part_1_720.wmv
2014-02-03 21:44 - 2014-02-03 21:42 - 00000000 ____D () C:\Users\Comfor\Downloads\Czech Mega Swingers 17
2014-02-03 21:41 - 2014-02-03 21:41 - 00018501 _____ () C:\Users\Comfor\Downloads\[CzT]Czech_Mega_Swingers_17_2013_CZ_.torrent
2014-02-03 21:40 - 2014-02-03 21:40 - 00012308 _____ () C:\Users\Comfor\Downloads\[CzT]SwingersAkce_16_1_dil_720p_.torrent
2014-01-31 07:52 - 2014-01-16 19:17 - 00001992 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-01-19 18:51 - 2009-12-13 20:59 - 00000000 ____D () C:\Users\Comfor\Desktop\radim
2014-01-19 10:08 - 2012-12-22 22:58 - 00000000 ____D () C:\Users\Comfor\Desktop\Simpsonovi
2014-01-17 22:21 - 2012-05-05 13:12 - 00000000 ____D () C:\Users\Comfor\AppData\Local\Conduit
2014-01-17 20:32 - 2014-01-16 19:16 - 00000000 ____D () C:\ProgramData\AVG
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-01-17 20:31 - 2014-01-17 20:31 - 00000000 _____ () C:\Windows\setupact.log
2014-01-17 20:29 - 2014-01-16 19:17 - 00000000 ____D () C:\Program Files\AVG PC TuneUp 2014
2014-01-17 16:44 - 2009-09-11 13:11 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-01-17 16:43 - 2013-08-16 07:27 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-17 16:36 - 2006-11-02 11:24 - 83425928 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-01-17 16:29 - 2014-01-17 16:29 - 00005498 _____ () C:\Windows\PFRO.log
2014-01-17 16:28 - 2014-01-17 16:28 - 46379008 _____ () C:\Windows\system32\config\software.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 38453248 _____ () C:\Windows\system32\config\components.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00229376 _____ () C:\Windows\system32\config\default.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00057344 _____ () C:\Windows\system32\config\sam.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00028672 _____ () C:\Windows\system32\config\security.iodefrag.bak
2014-01-17 16:28 - 2014-01-17 16:28 - 00000000 _____ () C:\asc_rdflag
2014-01-17 16:28 - 2009-09-16 10:45 - 00000000 ____D () C:\Users\Comfor
2014-01-16 20:40 - 2013-11-26 17:41 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2014-01-16 20:39 - 2009-09-25 20:01 - 00000000 ____D () C:\Windows\Minidump
2014-01-16 20:39 - 2009-09-11 13:38 - 00000000 ____D () C:\Windows\Panther
2014-01-16 19:52 - 2010-10-16 12:22 - 00000000 ____D () C:\Program Files\PDFCreator
2014-01-16 19:36 - 2014-01-16 19:36 - 45760512 _____ () C:\Windows\system32\config\software.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 38453248 _____ () C:\Windows\system32\config\components.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00229376 _____ () C:\Windows\system32\config\default.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00057344 _____ () C:\Windows\system32\config\sam.iobit
2014-01-16 19:36 - 2014-01-16 19:36 - 00028672 _____ () C:\Windows\system32\config\security.iobit
2014-01-16 19:24 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\Mobogenie
2014-01-16 19:24 - 2014-01-16 19:22 - 00000000 ____D () C:\Program Files\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\Documents\Mobogenie
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\genienext
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\AppData\Local\cache
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 ____D () C:\Users\Comfor\.android
2014-01-16 19:23 - 2014-01-16 19:23 - 00000000 _____ () C:\Users\Comfor\daemonprocess.txt
2014-01-16 19:21 - 2014-01-16 19:21 - 00000000 ____D () C:\Program Files\SqueakyChocolate
2014-01-16 19:21 - 2014-01-16 19:20 - 00000000 ____D () C:\Program Files\Smileys We Love Toolbar for IE
2014-01-16 19:20 - 2014-01-16 19:20 - 00000000 ____D () C:\Users\Comfor\Documents\Add-in Express
2014-01-16 19:20 - 2014-01-16 19:17 - 00000000 ____D () C:\ProgramData\IObit
2014-01-16 19:19 - 2014-01-16 19:19 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\Apple Computer
2014-01-16 19:19 - 2014-01-16 19:16 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\IObit
2014-01-16 19:18 - 2014-01-16 19:18 - 00001036 _____ () C:\Users\Comfor\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00001012 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\ProductData
2014-01-16 19:18 - 2014-01-16 19:18 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-16 19:18 - 2014-01-16 19:17 - 00000000 ____D () C:\Program Files\IObit
2014-01-16 19:17 - 2014-01-16 19:17 - 00001846 _____ () C:\Users\Public\Desktop\AVG PC TuneUp 2014.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00001832 _____ () C:\Users\Public\Desktop\AVG údržba 1 kliknutím.lnk
2014-01-16 19:17 - 2014-01-16 19:17 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\AVG
2014-01-16 19:16 - 2014-01-16 19:16 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-01-16 19:16 - 2011-12-18 09:56 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\OpenCandy
2014-01-16 19:15 - 2014-01-16 19:14 - 00000000 ____D () C:\Users\Comfor\AppData\Roaming\rmi
Files to move or delete:
====================
C:\ProgramData\ezsid.dat
Some content of TEMP:
====================
C:\Users\Comfor\AppData\Local\Temp\setup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-10 18:49
==================== End Of Log ============================