Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosba o preventivku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Prosba o preventivku

#1 Příspěvek od trojnik »

Zdravím, PC se zdá v pořádku, ale už nešlape tak jako dřív, prosil bych Vás tedy o preventivní kontrolu.
Děkuji.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jogo at 2014-06-06 23:06:25
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 21 GB (4%) free of 477 GB
Total RAM: 3583 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:06:40, on 6.6.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Documents and Settings\All Users\Data aplikací\IePluginServices\PluginService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Documents and Settings\Jogo\Data aplikací\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Genesis_06061608\Genesis_06061608.exe
C:\DOCUME~1\Jogo\LOCALS~1\temp\dgen.exe
C:\Program Files\PCDApp\cgminer.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Jogo\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Jogo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1 ... XX5QM2ZAWT
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds& ... earchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds& ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hp&ts=1 ... XX5QM2ZAWT
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1 ... XX5QM2ZAWT
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds& ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hp&ts=1 ... XX5QM2ZAWT
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.sweet-page.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.sweet-page.com/web/?type=ds& ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: save oni - {35B893A6-910D-1667-EF1A-62A649E0C3DC} - C:\Program Files\save oni\sk.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: SAuve eon - {42A676A3-A221-6072-E0E0-C7C8A97DB317} - C:\Program Files\SAuve eon\5AgwjKV3y.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: YoutubeAdblocker - {BE9E1304-5022-36F8-11B8-F7E88BD96298} - C:\Program Files\YoutubeAdblocker\ABTEHi.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [DApp] C:\Program Files\PCDApp\start.vbs
O4 - HKCU\..\Run: [Octoshape Streaming Services] "C:\Documents and Settings\Jogo\Data aplikací\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LiveSupport] "C:\Program Files\LiveSupport\LiveSupport.exe" /noshow /log
O4 - HKCU\..\Run: [uTorrent] C:\Documents and Settings\Jogo\Data aplikací\uTorrent\uTorrent.exe /MINIMIZED
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: genesis_06061608.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: Unibet Poker - {C53BFCFC-7A54-4627-AEBA-2CD4871FCA97} - C:\Microgaming\Poker\UnibetpokerMPP\MPPoker.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\SupTab\SEARCH~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: IePlugin Services (IePluginServices) - Cherished Technololgy LIMITED - C:\Documents and Settings\All Users\Data aplikací\IePluginServices\PluginService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Protect Monitor (ProtectMonitor) - Unknown owner - C:\Program Files\PCDApp\StartHelp.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe

--
End of file - 11274 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job - c:\Program Files\Microsoft Security Client\MpCmdRun.exe Scan -ScheduleJob -RestrictPrivileges
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\WGASetup.job - C:\WINDOWS\system32\KB905474\wgasetup.exe /autoauto

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.sweet-page.com/?type=hp&ts=1 ... XX5QM2ZAWT"
prefs.js - "extensions.enabledItems" - "{3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.872, avg@igeared:6.010.006.004, DTToolbar@toolbarnet.com:1.0.7.0088, {E9A1DEE0-C623-4439-8932-001E7D17607D}:2.1.0.5, {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.7, {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16, jqs@sun.com:1.0, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.15"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.3.3&q="

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"avg@igeared"=C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi]
"Description"=ZoneAlarm Toolbar Api
"Path"=C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.9.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\WINDOWS\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll

C:\Program Files\Mozilla Firefox\extensions\
{800b5000-a755-47e1-992b-48a1c1357f07}

C:\Program Files\Mozilla Firefox\components\
AskSearch.js

C:\Program Files\Mozilla Firefox\plugins\
npFoxitReaderPlugin.dll
NPOFF12.DLL

C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\extensions\
sam@samfind.com
staged
{20a82645-c095-46ed-80e3-08825760534b}
{800b5000-a755-47e1-992b-48a1c1357f07}
{C9B68337-E93A-44EA-94DC-CB300EC06444}
{E9A1DEE0-C623-4439-8932-001E7D17607D}
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\
ask.xml
askcom.xml
conduit.xml
daemon-search.xml
icqplugin-1.xml
icqplugin-10.xml
icqplugin-11.xml
icqplugin-12.xml
icqplugin-13.xml
icqplugin-14.xml
icqplugin-15.xml
icqplugin-16.xml
icqplugin-17.xml
icqplugin-18.xml
icqplugin-19.xml
icqplugin-2.xml
icqplugin-20.xml
icqplugin-21.xml
icqplugin-22.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.xml
MyStart.xml
sweetim.xml
Sweetpacks Search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B893A6-910D-1667-EF1A-62A649E0C3DC}]
save oni - C:\Program Files\save oni\sk.dll [2014-06-03 423936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42A676A3-A221-6072-E0E0-C7C8A97DB317}]
SAuve eon - C:\Program Files\SAuve eon\5AgwjKV3y.dll [2013-06-03 423936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-09 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE9E1304-5022-36F8-11B8-F7E88BD96298}]
YoutubeAdblocker - C:\Program Files\YoutubeAdblocker\ABTEHi.dll [2013-06-03 423936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-09 155384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2008-12-10 929224]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-10-30 16269312]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2009-03-15 180224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"WheelMouse"=C:\ADVANC~1\wh_exec.exe [2010-05-26 147456]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-07-28 98304]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"DApp"=C:\Program Files\PCDApp\start.vbs [2014-04-10 178]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Octoshape Streaming Services"=C:\Documents and Settings\Jogo\Data aplikací\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe [2009-01-08 70936]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"LiveSupport"=C:\Program Files\LiveSupport\LiveSupport.exe /noshow /log []
"uTorrent"=C:\Documents and Settings\Jogo\Data aplikací\uTorrent\uTorrent.exe [2014-06-06 1272912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-12-29 687560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer]
C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe /CHECKNOW []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Tool]
C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe /applicationMode:systemTray /showWelcome:false []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HTC Sync Loader]
C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2012-04-17 651264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage]
C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload]
C:\Program Files\Samsung\Kies\Kies.exe /preload []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
c:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 951576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE4]
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OscarEditor]
C:\Program Files\OSCAR Editor X7\OscarEditor.exe [2010-07-22 2636800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2014-02-10 20922016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion]
C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe /Background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpyHunter Security Suite]
C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files\Steam\Steam.exe [2013-01-08 1354736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sweetpacks Communicator]
C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\309042~1.318\SSSCHE~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^Automatické vypnutí počítače.lnk]
C:\PROGRA~1\AUTOMA~1\avp.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^hamachi.lnk]
C:\PROGRA~1\Hamachi\hamachi.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.0.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]

C:\Documents and Settings\Jogo\Nabídka Start\Programy\Po spuštění
genesis_06061608.lnk - C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Genesis_06061608\Genesis_06061608.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\SupTab\SEARCH~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2011-07-28 188416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-06 267304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"msacm.lhacm"=lhacm.acm

======File associations======

.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2014-06-06 23:06:26 ----D---- C:\Program Files\trend micro
2014-06-06 23:06:25 ----D---- C:\rsit
2014-06-06 18:09:05 ----D---- C:\Program Files\PCDApp
2014-06-06 18:08:52 ----D---- C:\Documents and Settings\Jogo\Data aplikací\32176
2014-06-04 09:44:54 ----D---- C:\Documents and Settings\All Users\Data aplikaci\McAfee
2014-06-03 12:50:21 ----AD---- C:\Documents and Settings\All Users\Data aplikaci\TEMP
2014-06-03 12:36:12 ----D---- C:\Documents and Settings\Jogo\Data aplikací\SkypEmoticons
2014-06-03 12:35:42 ----D---- C:\Documents and Settings\Jogo\Data aplikací\SupTab
2014-06-03 12:35:39 ----D---- C:\Program Files\SupTab
2014-06-03 12:35:36 ----A---- C:\Documents and Settings\Jogo\Data aplikací\Explorer.EXE_log.txt
2014-06-03 12:35:35 ----A---- C:\Documents and Settings\Jogo\Data aplikací\LiveSupport.exe_log.txt
2014-06-03 12:35:34 ----A---- C:\Documents and Settings\Jogo\Data aplikací\regsvr32.exe_log.txt
2014-06-03 12:34:22 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Application fields Software
2014-06-03 12:33:29 ----D---- C:\Documents and Settings\All Users\Data aplikaci\SAuve eon
2014-06-03 12:33:28 ----D---- C:\Program Files\SAuve eon
2014-06-03 12:33:27 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-06-03 12:32:43 ----D---- C:\Program Files\YoutubeAdblocker
2014-06-03 12:32:43 ----D---- C:\Documents and Settings\All Users\Data aplikaci\YoutubeAdblocker
2014-06-03 12:32:24 ----D---- C:\Documents and Settings\All Users\Data aplikaci\save oni
2014-06-03 12:32:23 ----D---- C:\Program Files\save oni
2014-06-03 12:32:09 ----D---- C:\Documents and Settings\All Users\Data aplikaci\a20623e4fc32e34d
2014-06-03 12:31:20 ----D---- C:\Documents and Settings\All Users\Data aplikaci\InstallMate
2014-05-18 23:17:41 ----D---- C:\Program Files\Common Files\Skype
2014-05-18 23:17:39 ----RD---- C:\Program Files\Skype
2014-05-15 02:49:54 ----D---- C:\Program Files\Common Files\DESIGNER
2014-05-07 21:05:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.TMP

======List of files/folders modified in the last 1 month======

2014-06-06 23:06:33 ----D---- C:\WINDOWS\Prefetch
2014-06-06 23:06:26 ----D---- C:\Program Files
2014-06-06 21:34:41 ----D---- C:\Program Files\The KMPlayer
2014-06-06 18:29:49 ----SD---- C:\WINDOWS\Tasks
2014-06-06 18:19:40 ----D---- C:\Documents and Settings\Jogo\Data aplikací\uTorrent
2014-06-06 18:19:35 ----D---- C:\Program Files\uTorrent
2014-06-06 18:19:13 ----D---- C:\WINDOWS\system32
2014-06-06 14:58:06 ----D---- C:\WINDOWS\temp
2014-06-06 10:53:59 ----D---- C:\WINDOWS\system32\config
2014-06-06 10:36:04 ----D---- C:\WINDOWS\system32\CatRoot2
2014-06-06 03:39:25 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-06-05 17:54:56 ----D---- C:\WINDOWS
2014-06-04 09:48:25 ----SHD---- C:\WINDOWS\Installer
2014-06-04 09:48:19 ----SHD---- C:\Config.Msi
2014-06-04 09:48:13 ----D---- C:\WINDOWS\4941BFEB62C047A2801E998FC469CC2C.TMP
2014-06-04 09:48:07 ----D---- C:\WINDOWS\system32\drivers
2014-06-03 16:03:14 ----D---- C:\Program Files\Google
2014-06-03 12:32:07 ----D---- C:\Documents and Settings
2014-05-30 16:29:15 ----D---- C:\Program Files\Battle.net
2014-05-23 00:57:36 ----D---- C:\Documents and Settings\Jogo\Data aplikací\Skype
2014-05-18 23:17:46 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Skype
2014-05-18 23:17:41 ----D---- C:\Program Files\Common Files
2014-05-18 11:04:21 ----D---- C:\Documents and Settings\Jogo\Data aplikací\Battle.net
2014-05-15 02:55:26 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Microsoft Help
2014-05-15 02:54:55 ----D---- C:\WINDOWS\system32\MRT
2014-05-15 02:50:09 ----A---- C:\WINDOWS\system32\MRT.exe
2014-05-14 11:07:56 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-05-14 10:46:32 ----D---- C:\Program Files\Diablo III
2014-05-09 16:42:48 ----D---- C:\Program Files\Mozilla Maintenance Service
2014-05-07 00:26:23 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2014-01-25 231960]
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2009-02-16 717296]
R1 ACEDRV05;ACEDRV05; \??\C:\WINDOWS\system32\drivers\ACEDRV05.sys []
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-19 43008]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 MpKsl19c8c8b8;MpKsl19c8c8b8; \??\c:\Documents and Settings\All Users\Data aplikaci\Microsoft\Microsoft Antimalware\Definition Updates\{509617BB-FEB9-45BD-80A7-6B23ECAC6631}\MpKsl19c8c8b8.sys []
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2009-03-15 56268]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-07-29 7084544]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-05-21 93696]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-11-02 4394496]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 aggn1zia;aggn1zia; C:\WINDOWS\system32\drivers\aggn1zia.sys []
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys [2012-08-28 20032]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 GarenaPEngine;GarenaPEngine; \??\C:\DOCUME~1\Jogo\LOCALS~1\Temp\FZG57.tmp []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 getbus;getbus; \??\C:\DOCUME~1\Jogo\LOCALS~1\Temp\getbus.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2010-06-07 25280]
S3 htcnprot;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2010-06-22 21248]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 qcserxp;HTC Diagnostic Port; C:\WINDOWS\system32\DRIVERS\qcserxp.sys [2009-01-24 103424]
S3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-02-27 81408]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 usb_rndisx;Adaptér USB RNDIS; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2013-02-12 12928]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 whfltr2k;WheelMouse USB Lower Filter Driver; C:\WINDOWS\system32\DRIVERS\whfltr2k.sys [2009-09-17 7424]
S3 WinUSB;SAMSUNG Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2011-07-28 643072]
R2 IePluginServices;IePlugin Services; C:\Documents and Settings\All Users\Data aplikací\IePluginServices\PluginService.exe [2014-05-08 704112]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-12-09 161768]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 22216]
R2 TeamViewer9;TeamViewer 9; C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe [2014-04-25 5024576]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2009-07-14 593920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 ProtectMonitor;Protect Monitor; C:\Program Files\PCDApp\StartHelp.exe [2014-05-30 97249]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-11-03 1045256]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-01-06 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-04-27 118896]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Prosba o preventivku

#2 Příspěvek od cernohous13 »

Zdravím,

:arrow: Stáhni Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
Ulož jej na plochu a spusť - zobrazí se licenční podminky -> start libovolnou klávesou.
Bude vytvořena záloha a proběhne skenování.
Vyskočí log (nebo je uložen zde c:\JRT jako JRT.txt) - zkopíruj jej sem

:arrow: Stáhni AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Ulož nejlépe na plochu -> ukonči všechny programy -> spusť AdwCleaner -> klikni na Scan po dokončení na Clean
bude provedena oprava, restartuje se - (případně restartuj) a vypadne log C:\AdwCleaner\AdwCleaner[S?].txt , jeho obsah vložíš sem

:arrow: pravděpodobně budeš nucen vypnout na tu chvíli antivir - je to čisté, prověřeno
vyosek píše: :arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • :arrow: Po spuštění do okna vlozte skript nize

    Kód: Vybrat vše

    srinfo;
    autoclean;
    emptyclsid;
    iedefaults;
    process;
    hijackthis;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Log bude zde C:\zoek-results.log
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#3 Příspěvek od trojnik »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Microsoft Windows XP x86
Ran by Jogo on so 07.06.2014 at 18:31:42,65
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Documents and Settings\Jogo\Data aplikací\mozilla\firefox\profiles\k1lqse3s.default\minidumps [27 files]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 07.06.2014 at 18:48:18,21
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#4 Příspěvek od trojnik »

# AdwCleaner v3.212 - Report created 07/06/2014 at 17:33:07
# Updated 05/06/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Jogo - JOGO-3A7B435CA2
# Running from : C:\Documents and Settings\Jogo\Dokumenty\Downloads\adwcleaner_3.212.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : IePluginServices

***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Data aplikaci\Ask
Folder Deleted : C:\Documents and Settings\All Users\Data aplikaci\ICQ\ICQToolbar
Folder Deleted : C:\Documents and Settings\All Users\Data aplikaci\YoutubeAdblocker
[!] Folder Deleted : C:\Program Files\SupTab
Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser
Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Data aplikací\torch
Folder Deleted : C:\Documents and Settings\All Users\Uniblue
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\IePluginServices
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Iminent
Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser
Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch
Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser
Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Data aplikací\torch
Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser
Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch
Folder Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\AVG Security Toolbar
Folder Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser
Folder Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Conduit
Folder Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\torch
Folder Deleted : C:\DOCUME~1\Jogo\LOCALS~1\Temp\Iminent
Folder Deleted : C:\Documents and Settings\Jogo\Data aplikací\SkypEmoticons
Folder Deleted : C:\Documents and Settings\Jogo\Data aplikací\SupTab
Folder Deleted : C:\Documents and Settings\Jogo\Dokumenty\Optimizer Pro
Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser
Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch
Folder Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\ICQToolbarData
Folder Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Folder Deleted : C:\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Folder Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
[!] Folder Deleted : C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
[!] Folder Deleted : C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
[!] Folder Deleted : C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
[!] Folder Deleted : C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
[!] Folder Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
[!] Folder Deleted : C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
File Deleted : C:\Program Files\Mozilla Firefox\Extensions\DTToolbar@toolbarnet.com
File Deleted : C:\DOCUME~1\Jogo\LOCALS~1\Temp\Uninstall.exe
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Explorer.EXE_log.txt
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\LiveSupport.exe_log.txt
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\regsvr32.exe_log.txt
File Deleted : C:\Program Files\Mozilla Firefox\Components\AskSearch.js
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\daemon-search.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\MyStart.xml
File Deleted : C:\Program Files\Mozilla Firefox\browser\searchplugins\sweet-page.xml
File Deleted : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins\Sweetpacks Search.xml
File Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
Shortcut Disinfected : C:\Documents and Settings\All Users\Nabídka Start\Programy\Opera.lnk
Shortcut Disinfected : C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome\Google Chrome.lnk
Shortcut Disinfected : C:\Documents and Settings\Jogo\Nabídka Start\Programy\Internet Explorer.lnk
Shortcut Disinfected : C:\Documents and Settings\Jogo\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (bez doplňků).lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SweetPacks Communicator
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-733953632
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0702A2B6-13AA-4090-9E01-BCDC85DD933F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{08993A7C-E764-4172-9627-BFB5EA6897B2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{128A6C66-AC6A-4617-8268-AB7F47B7215E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{571715D7-3395-4DF0-B43C-784836209E60}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{622FD888-4E91-4D68-84D4-7262FD0811BF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B0DE3308-5D5A-470D-81B9-634FC078393B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4634804A-F0B0-4A74-A550-FC0EEF8A4362}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4C07EA4F-5F52-4222-B170-4CD9ED33BAEA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C44FEFF4-EF0C-4CF7-83D0-92B4266A32B9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F131923C-381D-4E4C-A472-4A17118FD742}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D2E5FA06-DCC7-46F9-BEFF-BFD06F69B9B2}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3041D03E-FD4B-44E0-B742-2D9B88305F98}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58124A0B-DC32-4180-9BFF-E0E21AE34026}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A87B991-A31F-4130-AE72-6D0C294BF082}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E908B145-C847-4E85-B315-07E2E70DECF8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3041D03E-FD4B-44E0-B742-2D9B88305F98}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6A87B991-A31F-4130-AE72-6D0C294BF082}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Key Deleted : HKCU\Software\AskBarDis
Key Deleted : HKCU\Software\AVG Security Toolbar
Key Deleted : HKCU\Software\genesis
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\Toolbar
Key Deleted : HKCU\Software\wscontb
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\Software\AskBarDis
Key Deleted : HKLM\Software\Dealio
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\SupDp
Key Deleted : HKLM\Software\SupTab
Key Deleted : HKLM\Software\sweet-pageSoftware
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Wpm
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{774C0434-9948-4DEE-A14E-69CDD316E36C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{c3e85ee9-5892-4142-b537-bceb3dac4c3d}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{D0C73318-7B4A-4D16-A0C4-3B83F075EA88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{FB697452-8CA4-46B4-98B1-165C922A2EF3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Optimizer Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WNLT
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~1\SupTab\SEARCH~1.DLL
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\81337C0DA4B761D40A4CB3380F57AE88
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\CC94835868BCA58489B0D79DE655BCB1

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [CustomizeSearch]

-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\prefs.js ]


-\\ Google Chrome v35.0.1916.114

[ File : C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2645238&SearchSource=3&q={searchTerms}
Deleted [Search Provider] : hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=icq-fx-plug&q={searchTerms}&ch_id=icq-fx-plug
Deleted [Search Provider] : hxxp://www.daemon-search.com/search/web?q={searchTerms}
Deleted [Search Provider] : hxxp://search.iminent.com/?q={searchTerms}&ie=utf-8&oe=utf-8&appId=448e2daa-8f76-4155-8519-0df1a25fdcc0&lcid=1029&ref=toolbox
Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=727EAC17-73CB-439F-8173-6C1790221BAC&apn_ptnrs=U3&apn_sauid=DBFE2204-4456-46F2-B2D5-40470E5E1BF3&apn_dtid=OSJ000YYCZ&q={searchTerms}
Deleted [Search Provider] : hxxp://www.sweet-page.com/web/?type=ds&ts=1401 ... earchTerms}
Deleted [Startup_urls] : hxxp://www.sweet-page.com/?type=hp&ts=14017917 ... XX5QM2ZAWT
Deleted [Homepage] : hxxp://www.sweet-page.com/?type=hp&ts=14017917 ... XX5QM2ZAWT
Deleted [Extension] : maheldmicdiopjphjnoaejligpjoeiel

*************************

AdwCleaner[R0].txt - [26209 octets] - [07/06/2014 17:32:12]
AdwCleaner[S0].txt - [24824 octets] - [07/06/2014 17:33:07]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [24885 octets] ##########

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#5 Příspěvek od trojnik »

Zoek.exe v5.0.0.0 Updated 02-June-2014
Tool run by Jogo on so 07.06.2014 at 17:41:28,95.
Systém Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\Jogo\Plocha\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

7.6.2014 17:43:39 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-682003330-1979792683-1801674531-1003\Software\Microsoft\Internet Explorer\SearchScopes\{AD912B46-DA90-4A6B-9AA4-FCA3A2F2FCC7} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\avg@igeared deleted successfully

==== Running Processes ======================

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Documents and Settings\Jogo\Data aplikací\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\PCDApp\cgminer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Genesis_06061608\Genesis_06061608.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\temp\dgen.exe
C:\Program Files\PCDApp\cgminer.exe
C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\TeamViewer\Version9\tv_w32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\Documents and Settings\Jogo\Plocha\zoek.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k eapsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k dot3svc
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc

==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Documents and Settings\Jogo\Data aplikací\Thunderbird\Profiles\bj8hcpzp.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_07.06.2014_1759_.backup

ProfilePath: C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default

prefs.js not found
user.js not found
---- FireFox user.js and prefs.js backups ----


==== Deleting Files \ Folders ======================

"C:\RECYCLER\S-1-5-18\$c2494f2eb98e925f3a77a938b27c89cf" not found
C:\Documents and Settings\Jogo\AppData\LocalLow\{35B893A6-910D-1667-EF1A-62A649E0C3DC} deleted
C:\Documents and Settings\Jogo\AppData\LocalLow\{42A676A3-A221-6072-E0E0-C7C8A97DB317} deleted
C:\Documents and Settings\Jogo\AppData\LocalLow\{BE9E1304-5022-36F8-11B8-F7E88BD96298} deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~2\save oni deleted
C:\Program Files\save oni deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~2\SAuve eon deleted
C:\Program Files\SAuve eon deleted
C:\Program Files\Mozilla Firefox\defaults\preferences\autoconfig.js deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~2\dsgsdgdsgdsgw.pad deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~2\ICQ deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~2\InstallMate deleted
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847} deleted
C:\Documents and Settings\All Users\Nabídka Start\Programy\Free Lunch Design deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
C:\WINDOWS\System32\InstallUtil.InstallLog deleted
C:\WINDOWS\System32\PerfStringBackup.TMP deleted
C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\CT2645238 deleted
C:\Documents and Settings\Jogo\Dokumenty\Downloads\Downloader_for_EarthWorm Jim 3.exe deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~2\a20623e4fc32e34d\{4820778D-AB0D-6D18-C316-52A6A0E1D507}" deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~2\a20623e4fc32e34d\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9}" deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~2\a20623e4fc32e34d\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9}.old" deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~2\a20623e4fc32e34d\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}" deleted
"C:\RECYCLER\S-1-5-21-682003330-1979792683-1801674531-1003\$c2494f2eb98e925f3a77a938b27c89cf" deleted
"C:\DOCUME~1\ALLUSE~1\DATAAP~2\a20623e4fc32e34d" deleted
"C:\Documents and Settings\Jogo\Data aplikací\Outlook" deleted
"C:\RECYCLER\S-1-5-21-682003330-1979792683-1801674531-1003\$c2494f2eb98e925f3a77a938b27c89cf\L" deleted
"C:\RECYCLER\S-1-5-21-682003330-1979792683-1801674531-1003\$c2494f2eb98e925f3a77a938b27c89cf\U" deleted

==== Registry Search Results for "$c2494f2eb98e925f3a77a938b27c89cf" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InprocServer32]
@="C:\\RECYCLER\\S-1-5-18\\$c2494f2eb98e925f3a77a938b27c89cf\\n."

[HKEY_USERS\S-1-5-21-682003330-1979792683-1801674531-1003\Software\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32]
@="C:\\RECYCLER\\S-1-5-21-682003330-1979792683-1801674531-1003\\$c2494f2eb98e925f3a77a938b27c89cf\\n."

[HKEY_USERS\S-1-5-21-682003330-1979792683-1801674531-1003_Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32]
@="C:\\RECYCLER\\S-1-5-21-682003330-1979792683-1801674531-1003\\$c2494f2eb98e925f3a77a938b27c89cf\\n."

======== System Restore Points ========

RP659: 23.4.2014 12:59:38 - Software Distribution Service 3.0
RP660: 24.4.2014 14:48:23 - Software Distribution Service 3.0
RP661: 26.4.2014 14:30:58 - Software Distribution Service 3.0
RP662: 27.4.2014 15:29:39 - Kontrolní bod systému
RP663: 27.4.2014 17:21:45 - Software Distribution Service 3.0
RP664: 1.5.2014 1:46:56 - Software Distribution Service 3.0
RP665: 2.5.2014 11:37:28 - Software Distribution Service 3.0
RP666: 3.5.2014 12:25:53 - Software Distribution Service 3.0
RP667: 3.5.2014 12:35:04 - Software Distribution Service 3.0
RP668: 4.5.2014 19:40:12 - Software Distribution Service 3.0
RP669: 5.5.2014 21:02:44 - Software Distribution Service 3.0
RP670: 7.5.2014 21:11:44 - Software Distribution Service 3.0
RP671: 8.5.2014 21:34:31 - Kontrolní bod systému
RP672: 9.5.2014 16:53:49 - Software Distribution Service 3.0
RP673: 10.5.2014 16:55:20 - Kontrolní bod systému
RP674: 11.5.2014 10:10:54 - Software Distribution Service 3.0
RP675: 14.5.2014 10:53:46 - Software Distribution Service 3.0
RP676: 15.5.2014 2:48:18 - Software Distribution Service 3.0
RP677: 15.5.2014 16:11:01 - Software Distribution Service 3.0
RP678: 16.5.2014 18:10:39 - Software Distribution Service 3.0
RP679: 18.5.2014 3:29:29 - Software Distribution Service 3.0
RP680: 19.5.2014 15:17:14 - Software Distribution Service 3.0
RP681: 20.5.2014 16:07:37 - Software Distribution Service 3.0
RP682: 21.5.2014 16:40:37 - Software Distribution Service 3.0
RP683: 22.5.2014 16:53:17 - Kontrolní bod systému
RP684: 23.5.2014 16:54:25 - Software Distribution Service 3.0
RP685: 24.5.2014 22:00:30 - Kontrolní bod systému
RP686: 25.5.2014 2:40:23 - Software Distribution Service 3.0
RP687: 26.5.2014 21:42:30 - Software Distribution Service 3.0
RP688: 29.5.2014 19:58:25 - Software Distribution Service 3.0
RP689: 31.5.2014 9:59:14 - Software Distribution Service 3.0
RP690: 1.6.2014 3:11:40 - Software Distribution Service 3.0
RP691: 2.6.2014 22:49:04 - Software Distribution Service 3.0
RP692: 4.6.2014 9:42:08 - Software Distribution Service 3.0
RP693: 4.6.2014 9:48:17 - Removed SpyHunter
RP694: 5.6.2014 18:05:46 - Software Distribution Service 3.0
RP695: 7.6.2014 11:23:22 - Software Distribution Service 3.0
RP696: 7.6.2014 17:43:39 - zoek.exe restore point

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [31.12.2009 02:33]

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default
- Undetermined - C:\Documents and Settings\Jogo\Data aplikacĂ­\Mozilla\Firefox\Profiles\k1lqse3s.default\extensions\sam@samfind.com
- samfind Bookmarks Bar - %ProfilePath%\extensions\sam@samfind.com
- Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Stylish - %ProfilePath%\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default
01D93217A9EE48DD37072B671378CC9C - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In
5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa
5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
C04FCB7EEBEB5097B30468828F20FB9E - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U9
2C82D753EF779945977C82A3908DA20A - C:\WINDOWS\system32\npDeployJava1.dll - Java Deployment Toolkit 7.0.90.5
AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
7E54D1EC87CE306CB1A26CE59AFE6E37 - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
D33D39A318AEA70691CED7530E2D9DF9 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
CFBC726A1712BD8DC9914EA06DBCE20B - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
6B47E809D91DF30D028CF4F1B11A6616 - C:\WINDOWS\system32\npptools.dll - Operační systém Microsoft® Windows®
28986F0A2342A033345EF9E70D395E4F - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight


==== Chrome Look ======================

SAuve eon - Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
tinyFilter - Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
tinyFilter - ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
tinyFilter - Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
tinyFilter - HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
tinyFilter - Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
tinyFilter - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli
SAuve eon - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb
suaave oen - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja
YoutubeAdblocker - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel
tinyFilter - SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli

==== Chrome Fix ======================

C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage-journal deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\chrome-extension_maheldmicdiopjphjnoaejligpjoeiel_0.localstorage deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\chrome-extension_maheldmicdiopjphjnoaejligpjoeiel_0.localstorage-journal deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ekelmdiegleadnfaechhadijibekjnja_0.localstorage deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ekelmdiegleadnfaechhadijibekjnja_0.localstorage-journal deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome SxS\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nlfgnnlnfbpcammlnibfkplpnbbbdeli_0.localstorage deleted successfully
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nlfgnnlnfbpcammlnibfkplpnbbbdeli_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"ICQ Search"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="C:\\Documents and Settings\\All Users\\Data aplikací\\ICQ\\ICQNewTab\\newTab.html"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"CustomizeSearch"="http://www.google.com"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com/ie"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"ICQ Search"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{3A6E98CC-5C5B-4A02-B71F-74B9B70DD8B8} WebHledani Url="http://www.webhledani.cz/results.aspx?i ... earchTerms}"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
{90448E41-E0D0-4547-8E1C-172B4FD7934E} Dealio Url="http://www.dealio.com/products.html?kwd={searchTerms}"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-682003330-1979792683-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{42A676A3-A221-6072-E0E0-C7C8A97DB317} deleted successfully
HKEY_USERS\S-1-5-21-682003330-1979792683-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{42A676A3-A221-6072-E0E0-C7C8A97DB317} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{42A676A3-A221-6072-E0E0-C7C8A97DB317} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{42A676A3-A221-6072-E0E0-C7C8A97DB317} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{42A676A3-A221-6072-E0E0-C7C8A97DB317} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\cf837a5a-8059-49e5-89b9-8e880efa8e2b deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9} deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Tool deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpyHunter Security Suite deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg deleted successfully

==== HijackThis Entries ======================

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [DApp] C:\Program Files\PCDApp\start.vbs
O4 - HKCU\..\Run: [Octoshape Streaming Services] "C:\Documents and Settings\Jogo\Data aplikací\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] C:\Documents and Settings\Jogo\Data aplikací\uTorrent\uTorrent.exe /MINIMIZED
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: genesis_06061608.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: Unibet Poker - {C53BFCFC-7A54-4627-AEBA-2CD4871FCA97} - C:\Microgaming\Poker\UnibetpokerMPP\MPPoker.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Protect Monitor (ProtectMonitor) - Unknown owner - C:\Program Files\PCDApp\StartHelp.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Jogo\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=444 folders=169 108360981 bytes)

==== Empty Temp Folders ======================

C:\Documents and Settings\Administrator\Local Settings\temp emptied successfully
C:\Documents and Settings\Default User\Local Settings\Temp emptied successfully
C:\Documents and Settings\Jogo\Local Settings\temp will be emptied at reboot
C:\Documents and Settings\LocalService\Local Settings\temp emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\Jogo\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\Jogo\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted

==== EOF on so 07.06.2014 at 18:27:01,95 ======================

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Prosba o preventivku

#6 Příspěvek od cernohous13 »

:arrow: Stáhni a nainstaluj MBAM zde http://www.bleepingcomputer.com/downloa ... i-malware/ verzi 1.75
Spustit -> na 3.záložce "Aktualizace" -> Kontrola aktualizací (možná bude provedeno automaticky)
následně na 1.záložce "Kontrolor" -> Úplná kontrola -> Prohledat
po dokončení scanu vyskočí okno Notepad s výsledkem - obsah zkopíruj do své odpovědi
zatím nic nemazat - počkej na posouzení
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#7 Příspěvek od trojnik »

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.06.08.01

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Jogo :: JOGO-3A7B435CA2 [administrátor]

8.6.2014 10:22:54
MBAM-log-2014-06-08 (11-50-03).txt

Typ: Kompletní kontrola (A:\|C:\|D:\|E:\|F:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 464572
Uplynulý čas: 1 hodin, 25 minut, 13 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 1
HKCR\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32| (Trojan.0Access) -> Špatný: (C:\RECYCLER\S-1-5-18\$c2494f2eb98e925f3a77a938b27c89cf\n.) Dobrý: (fastprox.dll) -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 34
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\IePluginServices\PluginService.exe.vir (PUP.Optional.IePluginService.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\RSHP.exe.vir (PUP.Optional.IEPluginService.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\activision\Call of Duty 4 - Modern Warfare\rzr-cod4.exe (Trojan.Agent.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files\activision\Call of Duty 4 - Modern Warfare\crack\rzr-cod4.exe (Trojan.Agent.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files\PCDApp\cgminer.exe (PUP.Optional.BitMiner) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP691\A0216227.exe (PUP.Optional.OptimizerPro) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP691\A0216229.exe (PUP.Optional.OptimizerPro) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP691\A0216230.exe (PUP.Optional.OptimizerPro) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP692\A0216297.dll (Trojan.SProtector) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP692\A0216298.dll (Trojan.SProtector) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP693\A0216329.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216465.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216467.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216468.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216469.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216470.exe (PUP.Optional.Sweetpacks) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216472.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216503.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216510.exe (PUP.Optional.IEPluginService.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216517.exe (PUP.Optional.IePluginService.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216571.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216573.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216575.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216577.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Documents and Settings_Jogo_Dokumenty_Downloads_Downloader_for_EarthWorm Jim 3.exe.vir (PUP.Optional.InstalleRex) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Program Files_SAuve eon\5AgwjKV3y.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Program Files_SAuve eon\5AgwjKV3y.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Program Files_save oni\sk.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Program Files_save oni\sk.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Config.Msi\3410c.rbf (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage (PUP.Optional.Superfish.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal (PUP.Optional.Superfish.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_videodownloadconverter.dl.tb.ask.com_0.localstorage (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_videodownloadconverter.dl.tb.ask.com_0.localstorage-journal (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Prosba o preventivku

#8 Příspěvek od cernohous13 »

:arrow: v MBAM
po ukončení scanu -> Zobrazit výsledky -> zkontrolovat zda je vše označeno -> Odstranit označené
vyběhne log, ve kterém budou záznamy tohoto typu:
Nalezené soubory
C:\Program Files\xxxxxx -> Umístnění do karantény a smazání se zdařilo
ten bych rád viděl :)

:arrow: po restartu nový RSIT sem
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#9 Příspěvek od trojnik »

No, scan jsem musel udělat znova, jelikož jsem mezitím PC vypnul a výsledky minulé kontroly jsem tam už nikde nenašel. Všechny soubory jsem tedy smazal a hodilo mi to tenhle log.

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.06.08.01

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Jogo :: JOGO-3A7B435CA2 [administrátor]

8.6.2014 17:41:15
mbam-log-2014-06-08 (17-41-15).txt

Typ: Kompletní kontrola (A:\|C:\|D:\|E:\|F:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 465181
Uplynulý čas: 1 hodin, 43 minut, 17 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 1
HKCR\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32| (Trojan.0Access) -> Špatný: (C:\RECYCLER\S-1-5-18\$c2494f2eb98e925f3a77a938b27c89cf\n.) Dobrý: (fastprox.dll) -> Přesun do karantény a opravení se zdařilo.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 34
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\IePluginServices\PluginService.exe.vir (PUP.Optional.IePluginService.A) -> Přesun do karantény a smazání se zdařilo.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\RSHP.exe.vir (PUP.Optional.IEPluginService.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\activision\Call of Duty 4 - Modern Warfare\rzr-cod4.exe (Trojan.Agent.CK) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\activision\Call of Duty 4 - Modern Warfare\crack\rzr-cod4.exe (Trojan.Agent.CK) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\PCDApp\cgminer.exe (PUP.Optional.BitMiner) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP691\A0216227.exe (PUP.Optional.OptimizerPro) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP691\A0216229.exe (PUP.Optional.OptimizerPro) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP691\A0216230.exe (PUP.Optional.OptimizerPro) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP692\A0216297.dll (Trojan.SProtector) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP692\A0216298.dll (Trojan.SProtector) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP693\A0216329.exe (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216465.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216467.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216468.exe (PUP.Optional.InstallBrain.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216469.exe (PUP.Optional.InstallBrain.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216470.exe (PUP.Optional.Sweetpacks) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216472.exe (PUP.Optional.InstallBrain.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216503.dll (PUP.Optional.SweetIM) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216510.exe (PUP.Optional.IEPluginService.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP695\A0216517.exe (PUP.Optional.IePluginService.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216571.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216573.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216575.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\System Volume Information\_restore{99E884F2-7C14-4FF3-ABB5-5A4AE495A12D}\RP696\A0216577.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\zoek_backup\C_Documents and Settings_Jogo_Dokumenty_Downloads_Downloader_for_EarthWorm Jim 3.exe.vir (PUP.Optional.InstalleRex) -> Přesun do karantény a smazání se zdařilo.
C:\zoek_backup\C_Program Files_SAuve eon\5AgwjKV3y.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\zoek_backup\C_Program Files_SAuve eon\5AgwjKV3y.x64.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\zoek_backup\C_Program Files_save oni\sk.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\zoek_backup\C_Program Files_save oni\sk.x64.dll (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\Config.Msi\3410c.rbf (PUP.Optional.SweetIM) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage (PUP.Optional.Superfish.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal (PUP.Optional.Superfish.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_videodownloadconverter.dl.tb.ask.com_0.localstorage (PUP.Optional.MindSpark.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_videodownloadconverter.dl.tb.ask.com_0.localstorage-journal (PUP.Optional.MindSpark.A) -> Přesun do karantény a smazání se zdařilo.

(konec)

_________________________________________________
log z RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jogo at 2014-06-08 19:32:51
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 41 GB (9%) free of 477 GB
Total RAM: 3583 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:33:12, on 8.6.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\TeamViewer\Version9\tv_w32.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Jogo\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Jogo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.zonealarm.com/?src=hp&tbi ... tsId=&ver=&
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.8.29.17\bh\zonealarm.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.8.29.17\zonealarmTlbr.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [DApp] C:\Program Files\PCDApp\start.vbs
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: Unibet Poker - {C53BFCFC-7A54-4627-AEBA-2CD4871FCA97} - C:\Microgaming\Poker\UnibetpokerMPP\MPPoker.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe

--
End of file - 10551 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\WGASetup.job - C:\WINDOWS\system32\KB905474\wgasetup.exe /autoauto

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.9.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\WINDOWS\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll


C:\Program Files\Mozilla Firefox\plugins\
npFoxitReaderPlugin.dll
NPOFF12.DLL

C:\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\extensions\
sam@samfind.com
{20a82645-c095-46ed-80e3-08825760534b}
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}]
Zonealarm Helper Object - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.8.29.17\bh\zonealarm.dll [2014-02-26 279952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-09 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-09 155384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - ZoneAlarm Security Toolbar - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.8.29.17\zonealarmTlbr.dll [2014-02-26 289168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-10-30 16269312]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2009-03-15 180224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"WheelMouse"=C:\ADVANC~1\wh_exec.exe [2010-05-26 147456]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-07-28 98304]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"DApp"=C:\Program Files\PCDApp\start.vbs []
"Avira Systray"=C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [2014-05-14 183376]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2014-05-09 737872]
"ZoneAlarm"=C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [2014-05-30 137352]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-12-29 687560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HTC Sync Loader]
C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2012-04-17 651264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Octoshape Streaming Services]
C:\Documents and Settings\Jogo\Data aplikací\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe [2009-01-08 70936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE4]
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OscarEditor]
C:\Program Files\OSCAR Editor X7\OscarEditor.exe [2010-07-22 2636800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2014-02-10 20922016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files\Steam\Steam.exe [2013-01-08 1354736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Documents and Settings\Jogo\Data aplikací\uTorrent\uTorrent.exe [2014-06-06 1272912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\309042~1.318\SSSCHE~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^Automatické vypnutí počítače.lnk]
C:\PROGRA~1\AUTOMA~1\avp.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^hamachi.lnk]
C:\PROGRA~1\Hamachi\hamachi.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.0.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2011-07-28 188416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-06 267304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe"="C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe:*:Enabled:True Vector"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe"="C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe:*:Enabled:True Vector"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"msacm.lhacm"=lhacm.acm

======File associations======

.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2014-06-08 10:21:17 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2014-06-07 19:12:24 ----D---- C:\e70da82c1edce0392c2e122ff7baabbd
2014-06-07 19:04:21 ----D---- C:\Documents and Settings\Jogo\Data aplikací\Avira
2014-06-07 19:02:20 ----D---- C:\Program Files\Check Point Software Technologies LTD
2014-06-07 19:02:18 ----D---- C:\Documents and Settings\Jogo\Data aplikací\Check Point Software Technologies LTD
2014-06-07 19:01:45 ----D---- C:\WINDOWS\system32\NtmsData
2014-06-07 19:01:04 ----D---- C:\Documents and Settings\All Users\Data aplikaci\CheckPoint
2014-06-07 18:58:20 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2014-06-07 18:58:19 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2014-06-07 18:58:19 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2014-06-07 18:58:19 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2014-06-07 18:54:42 ----D---- C:\Program Files\Avira
2014-06-07 18:54:41 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Avira
2014-06-07 18:54:36 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Package Cache
2014-06-07 18:29:28 ----SHD---- C:\RECYCLER
2014-06-07 18:24:27 ----A---- C:\WINDOWS\zoek-delete.exe
2014-06-07 18:24:26 ----D---- C:\WINDOWS\Temp
2014-06-07 17:40:25 ----D---- C:\zoek_backup
2014-06-07 17:32:48 ----A---- C:\WINDOWS\system32\sqlite3.dll
2014-06-07 17:32:09 ----D---- C:\AdwCleaner
2014-06-07 13:13:34 ----D---- C:\WINDOWS\ERUNT
2014-06-06 23:06:26 ----D---- C:\Program Files\trend micro
2014-06-06 23:06:25 ----D---- C:\rsit
2014-06-06 18:09:05 ----D---- C:\Program Files\PCDApp
2014-06-06 18:08:52 ----D---- C:\Documents and Settings\Jogo\Data aplikací\32176
2014-06-04 09:44:54 ----D---- C:\Documents and Settings\All Users\Data aplikaci\McAfee
2014-06-03 12:50:21 ----AD---- C:\Documents and Settings\All Users\Data aplikaci\TEMP
2014-06-03 12:34:22 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Application fields Software
2014-06-03 12:33:27 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-05-30 03:46:44 ----A---- C:\WINDOWS\system32\vsdatant.sys
2014-05-18 23:17:41 ----D---- C:\Program Files\Common Files\Skype
2014-05-18 23:17:39 ----RD---- C:\Program Files\Skype
2014-05-15 02:49:54 ----D---- C:\Program Files\Common Files\DESIGNER

======List of files/folders modified in the last 1 month======

2014-06-08 19:33:00 ----D---- C:\WINDOWS\Prefetch
2014-06-08 19:29:59 ----D---- C:\WINDOWS\system32\CatRoot2
2014-06-08 19:28:35 ----SHD---- C:\System Volume Information
2014-06-08 19:28:09 ----D---- C:\WINDOWS\system32\drivers
2014-06-08 19:27:19 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-06-08 19:25:45 ----HDC---- C:\WINDOWS\$NtUninstallKB956390$
2014-06-08 19:25:37 ----SHD---- C:\Config.Msi
2014-06-08 18:33:39 ----D---- C:\WINDOWS\Registration
2014-06-08 10:21:21 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2014-06-07 20:03:17 ----D---- C:\WINDOWS\Microsoft.NET
2014-06-07 19:21:11 ----D---- C:\WINDOWS
2014-06-07 19:16:05 ----RSD---- C:\WINDOWS\assembly
2014-06-07 19:15:14 ----D---- C:\WINDOWS\system32
2014-06-07 19:15:05 ----SHD---- C:\WINDOWS\Installer
2014-06-07 19:14:59 ----D---- C:\Program Files\CheckPoint
2014-06-07 19:13:24 ----D---- C:\WINDOWS\system32\XPSViewer
2014-06-07 19:13:23 ----RSD---- C:\WINDOWS\Fonts
2014-06-07 19:12:59 ----HD---- C:\WINDOWS\inf
2014-06-07 19:12:39 ----D---- C:\WINDOWS\system32\CatRoot
2014-06-07 19:11:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-06-07 19:11:49 ----D---- C:\WINDOWS\WinSxS
2014-06-07 19:02:20 ----D---- C:\Program Files
2014-06-07 19:01:45 ----D---- C:\WINDOWS\repair
2014-06-07 19:00:04 ----RASH---- C:\boot.ini
2014-06-07 19:00:04 ----A---- C:\WINDOWS\win.ini
2014-06-07 19:00:04 ----A---- C:\WINDOWS\system.ini
2014-06-07 18:53:10 ----SD---- C:\WINDOWS\Tasks
2014-06-07 17:43:59 ----D---- C:\WINDOWS\system32\drivers\etc
2014-06-07 13:25:14 ----D---- C:\WINDOWS\system32\config
2014-06-06 23:51:57 ----D---- C:\Program Files\The KMPlayer
2014-06-06 18:19:40 ----D---- C:\Documents and Settings\Jogo\Data aplikací\uTorrent
2014-06-06 18:19:35 ----D---- C:\Program Files\uTorrent
2014-06-04 09:48:13 ----D---- C:\WINDOWS\4941BFEB62C047A2801E998FC469CC2C.TMP
2014-06-04 09:31:43 ----D---- C:\Documents and Settings\Jogo\Data aplikací\TeamViewer
2014-06-03 16:03:14 ----D---- C:\Program Files\Google
2014-06-03 12:32:07 ----D---- C:\Documents and Settings
2014-05-30 16:29:15 ----D---- C:\Program Files\Battle.net
2014-05-23 00:57:36 ----D---- C:\Documents and Settings\Jogo\Data aplikací\Skype
2014-05-18 23:17:46 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Skype
2014-05-18 23:17:41 ----D---- C:\Program Files\Common Files
2014-05-18 11:04:21 ----D---- C:\Documents and Settings\Jogo\Data aplikací\Battle.net
2014-05-15 02:55:26 ----D---- C:\Documents and Settings\All Users\Data aplikaci\Microsoft Help
2014-05-15 02:54:55 ----D---- C:\WINDOWS\system32\MRT
2014-05-15 02:50:09 ----A---- C:\WINDOWS\system32\MRT.exe
2014-05-14 11:07:56 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-05-14 10:46:32 ----D---- C:\Program Files\Diablo III
2014-05-09 16:42:48 ----D---- C:\Program Files\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2009-02-16 717296]
R1 ACEDRV05;ACEDRV05; \??\C:\WINDOWS\system32\drivers\ACEDRV05.sys []
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-19 43008]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-05-09 136216]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-05-09 37352]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2009-03-15 56268]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2014-05-09 28520]
R1 Vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2014-05-30 534024]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-05-09 93528]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-07-29 7084544]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-05-21 93696]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-11-02 4394496]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 attwfwsw;attwfwsw; C:\WINDOWS\system32\drivers\attwfwsw.sys []
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys [2012-08-28 20032]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 GarenaPEngine;GarenaPEngine; \??\C:\DOCUME~1\Jogo\LOCALS~1\Temp\FZG57.tmp []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 getbus;getbus; \??\C:\DOCUME~1\Jogo\LOCALS~1\Temp\getbus.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2010-06-07 25280]
S3 htcnprot;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2010-06-22 21248]
S3 qcserxp;HTC Diagnostic Port; C:\WINDOWS\system32\DRIVERS\qcserxp.sys [2009-01-24 103424]
S3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-02-27 81408]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 usb_rndisx;Adaptér USB RNDIS; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2013-02-12 12928]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 whfltr2k;WheelMouse USB Lower Filter Driver; C:\WINDOWS\system32\DRIVERS\whfltr2k.sys [2009-09-17 7424]
S3 WinUSB;SAMSUNG Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2014-05-09 430160]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2014-05-09 430160]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2011-07-28 643072]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-05-14 123984]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-12-09 161768]
R2 TeamViewer9;TeamViewer 9; C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe [2014-04-25 5024576]
R2 vsmon;TrueVector Internet Monitor; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2014-05-30 3592120]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [2014-05-29 90936]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2009-07-14 593920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-11-03 1045256]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-01-06 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-04-27 118896]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2014-05-09 1039440]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Prosba o preventivku

#10 Příspěvek od cernohous13 »

:arrow: MBAM odinstaluj
Stáhni OTM z jednoho odkazu a rozbal nejlépe na plochu.
http://oldtimer.geekstogo.com/OTM.exe
http://www.itxassociates.com/OT-Tools/OTM.exe

Spusť program „OTM.exe“ (pro Vistu a Win7 – pravým a „Run As Administrator“).
Do okna pod žlutou čáru vlož celý text zeleným písmem ze „Scriptu“

Klikni na červené „MoveIt!“

Při nabídce restartu „YES“
a log potom najdeš v C:\_OTM\MovedFiles\ - dej mi ho sem na kontrolu
Script OTM

Kód: Vybrat vše

:Commands
[resethosts]
[emptytemp]
[emptyflash]
[emptyjava]
[clearallrestorepoints]

:Files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\WGASetup.job
C:\WINDOWS\zoek-delete.exe
C:\AdwCleaner
C:\Program Files\PCDApp
C:\Documents and Settings\Jogo\Data aplikací\32176
C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk
C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^Automatické vypnutí počítače.lnk
C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^hamachi.lnk

:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DApp"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^Automatické vypnutí počítače.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^hamachi.lnk]

:Services
esgiguard
getbus
JavaQuickStarterService
:???: Jaký je stav PC?
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#11 Příspěvek od trojnik »

OTM mi nahlásilo nějakou chybu a po tom to vyhodilo tohle:

Files moved on Reboot...
File move failed. C:\WINDOWS\System32\drivers\etc\Hosts scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Prosba o preventivku

#12 Příspěvek od cernohous13 »

Pokud nenajdeš log zde - C:\_OTM\MovedFiles\
proveď ještě jednou v Nouzovém režimu
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#13 Příspěvek od trojnik »

No to by nebylo, že bych ten log nenašel, ona se ta akce prostě vůbec neprovedla. Po tom co jsem stiskl Movelt, se po několika sekundách objevila chybová hláška, že program nemohl vytvořit složku C:\WINDOWS\System32\drivers\etc\Hosts. Po tom jsem se musel odhlásit a znovu přihlásit do windows, protože jsem měl prázdnou plochu a nemohl jsem nic. No a po přihlášení mi vylezl ten log co jsem posílal výše.

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Prosba o preventivku

#14 Příspěvek od cernohous13 »

Je dost důležité aby OTM provedlo opravy - opakuj s tímto scriptem

Script OTM

Kód: Vybrat vše

:Commands
[emptytemp]
[emptyflash]
[emptyjava]
[clearallrestorepoints]

:Files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\WGASetup.job
C:\WINDOWS\zoek-delete.exe
C:\AdwCleaner
C:\Program Files\PCDApp
C:\Documents and Settings\Jogo\Data aplikací\32176
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\McAfee Security Scan Plus.lnk
C:\Documents and Settings\Jogo\Nabídka Start\Programy\Po spuštění\hamachi.lnk

:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DApp"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^hamachi.lnk]

:Services
esgiguard
getbus
JavaQuickStarterService
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

trojnik
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 08 úno 2013 21:22

Re: Prosba o preventivku

#15 Příspěvek od trojnik »

Paráda, už to šlapalo. Tady je log:

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: All Users

User: ASPNET

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56466 bytes

User: Guest

User: HelpAssistant

User: Jogo
->Temp folder emptied: 67207171 bytes
->Temporary Internet Files folder emptied: 9982815 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 95304958 bytes
->Google Chrome cache emptied: 355945773 bytes
->Opera cache emptied: 65664 bytes
->Flash cache emptied: 57082 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 876 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: SUPPORT_388945a0

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1460924 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 120833988 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 767983719 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 67 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1 353,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users

User: ASPNET

User: Default User
->Flash cache emptied: 0 bytes

User: Guest

User: HelpAssistant

User: Jogo
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

User: SUPPORT_388945a0

Total Flash Files Cleaned = 0,00 mb


[EMPTYJAVA]

User: Administrator

User: All Users

User: ASPNET

User: Default User

User: Guest

User: HelpAssistant

User: Jogo
->Java cache emptied: 0 bytes

User: LocalService

User: NetworkService

User: SUPPORT_388945a0

Total Java Files Cleaned = 0,00 mb


Restore point Set: OTM Restore Point
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP102.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP139.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP147.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP182.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1AF.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1CB.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D0.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1FF.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP22E.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP247.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP24B.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP25E.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2A.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP301.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP343.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP347.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP35.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP37D.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP39C.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3C2.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3C8.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3DA.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP457.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP484.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4AF.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP512.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP514.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP563.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5B0.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7D3.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPBA7.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI117.tmp moved successfully.
C:\WINDOWS\Installer\MSI142.tmp moved successfully.
C:\WINDOWS\Installer\MSI154.tmp moved successfully.
C:\WINDOWS\Installer\MSI155.tmp moved successfully.
C:\WINDOWS\Installer\MSI17E.tmp moved successfully.
C:\WINDOWS\Installer\MSI17F.tmp moved successfully.
C:\WINDOWS\Installer\MSI180.tmp moved successfully.
C:\WINDOWS\Installer\MSI182.tmp moved successfully.
C:\WINDOWS\Installer\MSI184.tmp moved successfully.
C:\WINDOWS\Installer\MSI187.tmp moved successfully.
C:\WINDOWS\Installer\MSI29.tmp moved successfully.
C:\WINDOWS\Installer\MSI330.tmp moved successfully.
C:\WINDOWS\Installer\MSI36B.tmp moved successfully.
C:\WINDOWS\Installer\MSI36F.tmp moved successfully.
C:\WINDOWS\Installer\MSI376.tmp moved successfully.
C:\WINDOWS\Installer\MSI37C.tmp moved successfully.
C:\WINDOWS\Installer\MSI3BA.tmp moved successfully.
C:\WINDOWS\Installer\MSI3BB.tmp moved successfully.
C:\WINDOWS\Installer\MSI3BC.tmp moved successfully.
C:\WINDOWS\Installer\MSI3BD.tmp moved successfully.
C:\WINDOWS\Installer\MSI3FF.tmp moved successfully.
C:\WINDOWS\Installer\MSI442.tmp moved successfully.
C:\WINDOWS\Installer\MSI49B.tmp moved successfully.
C:\WINDOWS\Installer\MSI603.tmp moved successfully.
C:\WINDOWS\Installer\MSI641.tmp moved successfully.
C:\WINDOWS\Installer\MSI642.tmp moved successfully.
C:\WINDOWS\Installer\MSI643.tmp moved successfully.
C:\WINDOWS\Installer\MSI644.tmp moved successfully.
C:\WINDOWS\Installer\MSI645.tmp moved successfully.
C:\WINDOWS\Installer\MSI67.tmp moved successfully.
C:\WINDOWS\Installer\MSI68.tmp moved successfully.
C:\WINDOWS\Installer\MSI69.tmp moved successfully.
C:\WINDOWS\Installer\MSI7A2.tmp moved successfully.
C:\WINDOWS\Installer\MSI7A4.tmp moved successfully.
C:\WINDOWS\Installer\MSI7D.tmp moved successfully.
C:\WINDOWS\Installer\MSIBC.tmp moved successfully.
C:\WINDOWS\Installer\MSIBE.tmp moved successfully.
C:\WINDOWS\Installer\MSIBF.tmp moved successfully.
C:\WINDOWS\Installer\MSIC1.tmp moved successfully.
C:\WINDOWS\Installer\MSIC2.tmp moved successfully.
C:\WINDOWS\Installer\MSIC3.tmp moved successfully.
File move failed. C:\WINDOWS\Temp\ZLT069cb.TMP scheduled to be moved on reboot.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job moved successfully.
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINDOWS\tasks\WGASetup.job moved successfully.
C:\WINDOWS\zoek-delete.exe moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\zh-TW folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\zh-CN folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\vi-VI folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\tr-TR folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\ru-MO folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\ru folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\pt-BR folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\pt folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\pl folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\it-IT folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\it-CH folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\fr-LU folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\fr-FR folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\fr-CH folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\fr-CA folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\fr-BE folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\es-ES folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\es-419 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales\en-US folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\_locales folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\js folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\img\weather folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web\img folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab\web folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\SupTab folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\search_engine folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\META-INF folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\defaults\preferences folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\defaults folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\components folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07} folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\Components folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\browser\searchplugins folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox\browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files\Mozilla Firefox folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\torch folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací\Chromatic Browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0\Local Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\SUPPORT_388945a0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Nabídka Start\Programy\Příslušenství\Systémové nástroje folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Nabídka Start\Programy\Příslušenství folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Nabídka Start\Programy folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Nabídka Start folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Temp\Iminent\Log folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Temp\Iminent folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Temp folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\torch folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\Chromatic Browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\AVG Security Toolbar\cache folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací\AVG Security Toolbar folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Local Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Dokumenty\Optimizer Pro folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Dokumenty folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\SkypEmoticons folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\searchplugins folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\ICQToolbarData folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\META-INF folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D} folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\search_engine folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\META-INF folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\defaults\preferences folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\defaults folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\components folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\skin folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\tr folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\sk folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\ru folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\it folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\he folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\fr folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\es folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\en-US folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\de folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\cs folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale\bg folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\locale folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\content\img folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome\content folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}\chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07} folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací\Mozilla folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Jogo folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\torch folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací\Chromatic Browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant\Local Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\HelpAssistant folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\torch folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací\Chromatic Browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest\Local Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Guest folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\torch folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací\Chromatic Browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET\Local Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\ASPNET folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Nabídka Start\Programy folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Nabídka Start folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\Iminent\Mediator\Datas\Cache\apix.iminent.com folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\Iminent\Mediator\Datas\Cache folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\Iminent\Mediator\Datas folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\Iminent\Mediator folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\Iminent folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\IePluginServices\update folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\IePluginServices folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\TR folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\SK folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\RU folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\IT folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\HE folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\FR folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\ES folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\EN folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\DE folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML\BG folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar\XML folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací\ICQ folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikaci\YoutubeAdblocker folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Data aplikaci folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\torch folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli\133 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\nlfgnnlnfbpcammlnibfkplpnbbbdeli folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel\1.0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\maheldmicdiopjphjnoaejligpjoeiel folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\ekelmdiegleadnfaechhadijibekjnja folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb\2.14 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions\dmodhnkgeojjkliojbmefhnleikjeplb folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací\Chromatic Browser folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings\Data aplikací folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator\Local Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Administrator folder moved successfully.
C:\AdwCleaner\Quarantine\C\Documents and Settings folder moved successfully.
C:\AdwCleaner\Quarantine\C folder moved successfully.
C:\AdwCleaner\Quarantine folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles\k1lqse3s.default folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox\Profiles folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings\Jogo\Data aplikací\Mozilla\Firefox folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings\Jogo\Data aplikací\Mozilla folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings\Jogo\Data aplikací folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings\Jogo folder moved successfully.
C:\AdwCleaner\Backup\C\Documents and Settings folder moved successfully.
C:\AdwCleaner\Backup\C folder moved successfully.
C:\AdwCleaner\Backup folder moved successfully.
C:\AdwCleaner folder moved successfully.
C:\Program Files\PCDApp folder moved successfully.
C:\Documents and Settings\Jogo\Data aplikací\32176 folder moved successfully.
File/Folder C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\McAfee Security Scan Plus.lnk not found.
File/Folder C:\Documents and Settings\Jogo\Nabídka Start\Programy\Po spuštění\hamachi.lnk not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\DApp deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Jogo^Nabídka Start^Programy^Po spuštění^hamachi.lnk\ deleted successfully.
========== SERVICES/DRIVERS ==========
Service esgiguard stopped successfully!
Service esgiguard deleted successfully!
Service getbus stopped successfully!
Service getbus deleted successfully!
Service JavaQuickStarterService stopped successfully!
Service JavaQuickStarterService deleted successfully!

OTM by OldTimer - Version 3.1.21.0 log created on 06092014_152509

Files moved on Reboot...
C:\Documents and Settings\Jogo\Local Settings\Temp\avgnt.exe\Avira.OE.ExtApi.dll moved successfully.
C:\Documents and Settings\Jogo\Local Settings\Temp\~DF4D3F.tmp moved successfully.
File C:\WINDOWS\temp\ZLT069cb.TMP not found!

Registry entries deleted on Reboot...

Zamčeno