tohle z toho vylezlo
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 10-05-2014
Ran by Petr at 2014-05-10 18:17:26 Run:1
Running from C:\Users\Petr\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [683656 2013-02-07] (PDF Complete Inc)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111136 2012-11-21] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [493088 2012-11-21] (CyberLink Corp.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [Browser Tab Search by Ask] => "C:\Program Files (x86)\Browser Tab Search by Ask\SafetyNut\BrowserTabSearch\msbloader.exe"
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [Browser Tab Search by Askx64] => "C:\Program Files (x86)\Browser Tab Search by Ask\SafetyNut\BrowserTabSearch\msbloader64.exe"
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Petr\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Petr\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [BitTorrent] => C:\Users\Petr\AppData\Roaming\BitTorrent\BitTorrent.exe [1236832 2014-04-23] (BitTorrent Inc.)
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\...\Run: [AdobeBridge] => [X]
AppInit_DLLs: C:\Program Files => C:\Program Files [0 2014-05-06] ()
IFEO\rjatydimofu.exe: [Debugger] tasklist.exe
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL =
http://dts.search.ask.com/sr?src=ieb&gc ... earchTerms}
2014-05-10 16:40 - 2014-05-10 16:41 - 05200347 _____ (Swearware) C:\Users\Petr\Downloads\ComboFix (1).exe
2014-05-10 13:20 - 2014-05-10 12:55 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-05-10 13:01 - 2014-05-10 13:26 - 00007500 _____ () C:\zoek-results.log
2014-05-10 12:55 - 2014-05-10 13:18 - 00000000 ____D () C:\zoek_backup
2014-05-10 11:20 - 2014-05-10 11:31 - 00223713 _____ () C:\Users\Petr\Downloads\FRST.txt
2014-05-10 11:22 - 2014-05-10 11:23 - 00049690 _____ () C:\Users\Petr\Downloads\Addition.txt
2014-05-10 02:29 - 2014-05-10 02:31 - 11164411 _____ () C:\Users\Petr\Downloads\cc-setup.exe
2014-05-10 00:16 - 2014-05-10 00:19 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\Petr\Downloads\spybot-2.3.exe
C:\Users\Petr\Downloads\ComboFix.exe
C:\Program Files (x86)\Browser Tab Search by Ask
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForPetr.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Zune Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\PDF Complete => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\CLMLServer_For_P2G8 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\CLVirtualDrive => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\Browser Tab Search by Ask => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\Browser Tab Search by Askx64 => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\BitTorrent => Value deleted successfully.
HKU\S-1-5-21-3759913120-3322944388-1342903606-1002\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => Value deleted successfully.
"C:\Program Files" => Value Data removed successfully.
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\rjatydimofu.exe => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} => Key deleted successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} => Key not found.
C:\Users\Petr\Downloads\ComboFix (1).exe => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Petr\Downloads\FRST.txt => Moved successfully.
C:\Users\Petr\Downloads\Addition.txt => Moved successfully.
C:\Users\Petr\Downloads\cc-setup.exe => Moved successfully.
C:\Users\Petr\Downloads\spybot-2.3.exe => Moved successfully.
"C:\Users\Petr\Downloads\ComboFix.exe" => File/Directory not found.
"C:\Program Files (x86)\Browser Tab Search by Ask" => File/Directory not found.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\HPCeeScheduleForPetr.job => Moved successfully.
C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====