Stránka 1 z 3

default-search.net jako homepage

Napsal: 13 črc 2014 19:47
od Kenny123
Dobrý den,
vím, že už to tady někdo před časem řešil, snažil jsem se aplikovat návod na sebe, ale daleko jsem se sám nedostal. PC před pár dny někde chytlo tzv. prohlížeč únosce, konkrétně default-search.net jako podstrčenou homepage . Která vás sleduje, přesměrovává atd a nejde zrušit. Vygooglovaná rada na SpyHunter vždycky končila nějakou mastnou registrací :roll: To raději pak v závěru zasponzoruju zdejší fórum, kde vám aspoň věřím. (Avastu ani CCcleaneru to default search nevadí - grrr, nově ten YAC to též neodstranil). Rada odstranit default search jako odinstalovat v seznamu programů nepomohla, protože to tam není. Používám hlavně explorer, zda to vlezlo i do mozily nevím. ...Zde je RSIT, děkuji : :oops:


---------------------------------------------------------------------------------------------------------------------------------

Logfile of random's system information tool 1.10 (written by random/random)
Run by Radim at 2014-07-13 20:13:36
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 62 GB (41%) free of 152 GB
Total RAM: 2046 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:14:59, on 13.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17207)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\iSafe\iSafeTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\taskeng.exe
C:\Users\Radim\Desktop\RSIT.exe
C:\Program Files\trend micro\Radim.exe
C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.seznam.cz
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... 04065E0&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... 04065E0&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... 04065E0&q=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.seznam.cz
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.seznam.cz
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... 04065E0&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... 04065E0&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... 04065E0&q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.seznam.cz
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... 04065E0&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... 04065E0&q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - (no file)
O2 - BHO: (no name) - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - (no file)
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll (file missing)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ABBYY FineReader 10 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.10.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iSafeService - Elex do Brasil Participaçoes Ltda - C:\Program Files\iSafe\iSafeSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Update DoughGo - Unknown owner - C:\Program Files\DoughGo\updateDoughGo.exe (file missing)

--
End of file - 7992 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default

prefs.js - "extensions.enabledItems" - "{800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9, {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16, {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.3.0.7280, {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1416, avg@toolbar:9.0.0.18.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"
prefs.js - "keyword.URL" - "http://search.certified-toolbar.com?si= ... 04065E0&q="
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
prefs.js - "browser.search.useDBForOrder" - true

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5]
"Description"=Office Live Update v1.5
"Path"=C:\Program Files\Microsoft\Office Live\npOLW.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pack.google.com/Google Updater;version=14]
"Description"=Google Updater
"Path"=C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


C:\Program Files\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
QuickTimePlugin.class

C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-13 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-01-20 6711840]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-09-13 59720]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-13 4086432]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"msacm.siren"=sirenacm.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-07-13 20:13:36 ----D---- C:\rsit
2014-07-13 20:07:48 ----A---- C:\Windows\avastSS.scr
2014-07-13 02:44:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-13 02:44:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-07-13 02:44:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-07-13 02:44:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-13 02:44:08 ----A---- C:\Windows\system32\iernonce.dll
2014-07-13 02:44:07 ----A---- C:\Windows\system32\urlmon.dll
2014-07-13 02:44:07 ----A---- C:\Windows\system32\jsproxy.dll
2014-07-13 02:44:07 ----A---- C:\Windows\system32\iedkcs32.dll
2014-07-13 02:44:06 ----A---- C:\Windows\system32\msfeeds.dll
2014-07-13 02:44:06 ----A---- C:\Windows\system32\ieUnatt.exe
2014-07-13 02:44:06 ----A---- C:\Windows\system32\ieapfltr.dll
2014-07-13 02:44:06 ----A---- C:\Windows\system32\dxtmsft.dll
2014-07-13 02:44:04 ----A---- C:\Windows\system32\msrating.dll
2014-07-13 02:44:04 ----A---- C:\Windows\system32\iesetup.dll
2014-07-13 02:44:04 ----A---- C:\Windows\system32\ie4uinit.exe
2014-07-13 02:44:03 ----A---- C:\Windows\system32\wininet.dll
2014-07-13 02:44:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-07-13 02:44:02 ----A---- C:\Windows\system32\ieui.dll
2014-07-13 02:44:02 ----A---- C:\Windows\system32\dxtrans.dll
2014-07-13 02:44:01 ----A---- C:\Windows\system32\mshtmled.dll
2014-07-13 02:44:01 ----A---- C:\Windows\system32\ieframe.dll
2014-07-13 02:44:00 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-07-13 02:44:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-07-13 02:43:59 ----A---- C:\Windows\system32\jscript9diag.dll
2014-07-13 02:43:59 ----A---- C:\Windows\system32\iertutil.dll
2014-07-13 02:43:58 ----A---- C:\Windows\system32\mshtml.dll
2014-07-13 02:43:57 ----A---- C:\Windows\system32\vbscript.dll
2014-07-13 02:43:57 ----A---- C:\Windows\system32\jscript9.dll
2014-07-13 02:43:43 ----A---- C:\Windows\system32\win32k.sys
2014-07-13 02:43:42 ----A---- C:\Windows\system32\osk.exe
2014-07-13 02:42:02 ----A---- C:\Windows\system32\qedit.dll
2014-07-13 02:40:55 ----A---- C:\Windows\system32\schannel.dll
2014-07-13 02:40:55 ----A---- C:\Windows\system32\kerberos.dll
2014-07-13 02:40:54 ----A---- C:\Windows\system32\msv1_0.dll
2014-07-13 02:40:53 ----A---- C:\Windows\system32\wdigest.dll
2014-07-13 02:40:53 ----A---- C:\Windows\system32\ncrypt.dll
2014-07-13 02:40:52 ----A---- C:\Windows\system32\TSpkg.dll
2014-07-13 02:40:50 ----A---- C:\Windows\system32\credssp.dll
2014-07-13 02:39:50 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-13 02:39:40 ----A---- C:\Windows\system32\aepdu.dll
2014-07-13 02:39:30 ----A---- C:\Windows\system32\aeinv.dll
2014-07-13 02:39:18 ----A---- C:\Windows\system32\lsasrv.dll
2014-07-13 00:46:54 ----D---- C:\Users\Radim\AppData\Roaming\eCyber
2014-07-13 00:45:44 ----A---- C:\Windows\system32\drivers\iSafeKrnlBoot.sys
2014-07-13 00:45:42 ----D---- C:\Program Files\iSafe
2014-07-13 00:45:30 ----D---- C:\Users\Radim\AppData\Roaming\iSafe
2014-07-13 00:09:17 ----A---- C:\Windows\system32\drivers\{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw.sys
2014-07-12 12:08:52 ----D---- C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-07-12 10:42:33 ----D---- C:\Program Files\DoughGo
2014-07-12 00:40:09 ----D---- C:\Program Files\Enigma Software Group
2014-07-12 00:38:38 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2014-07-10 16:56:22 ----D---- C:\ProgramData\systemk
2014-06-28 07:10:41 ----D---- C:\ProgramData\Apple Computer
2014-06-28 07:10:41 ----D---- C:\Program Files\QuickTime
2014-06-21 15:44:57 ----D---- C:\Users\Radim\AppData\Roaming\Windows Live Writer
2014-06-20 23:29:25 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-06-18 12:14:55 ----D---- C:\Program Files\Mozilla Firefox
2014-06-17 00:07:54 ----D---- C:\Program Files\EUcasino

======List of files/folders modified in the last 1 month======

2014-07-13 20:13:49 ----D---- C:\Windows\Prefetch
2014-07-13 20:13:40 ----D---- C:\Program Files\trend micro
2014-07-13 20:13:38 ----D---- C:\Windows\Temp
2014-07-13 20:11:46 ----D---- C:\Windows\inf
2014-07-13 20:10:01 ----D---- C:\Windows\system32\drivers
2014-07-13 20:10:01 ----D---- C:\Windows
2014-07-13 20:08:03 ----D---- C:\Windows\system32\Tasks
2014-07-13 20:07:48 ----A---- C:\Windows\system32\aswBoot.exe
2014-07-13 20:07:06 ----SHD---- C:\System Volume Information
2014-07-13 03:32:18 ----D---- C:\Windows\System32
2014-07-13 03:32:13 ----D---- C:\Windows\system32\LogFiles
2014-07-13 03:32:13 ----D---- C:\Windows\system32\catroot2
2014-07-13 03:32:13 ----D---- C:\Windows\debug
2014-07-13 03:24:37 ----D---- C:\Windows\winsxs
2014-07-13 03:24:01 ----D---- C:\Windows\system32\config
2014-07-13 03:21:21 ----D---- C:\Program Files\Windows Journal
2014-07-13 03:21:20 ----D---- C:\Windows\system32\en-US
2014-07-13 03:21:20 ----D---- C:\Program Files\Internet Explorer
2014-07-13 03:21:19 ----SD---- C:\Windows\system32\CompatTel
2014-07-13 03:21:19 ----D---- C:\Windows\system32\Dism
2014-07-13 03:21:19 ----D---- C:\Windows\system32\cs-CZ
2014-07-13 03:21:19 ----D---- C:\Windows\ehome
2014-07-13 03:21:11 ----D---- C:\Windows\system32\DriverStore
2014-07-13 03:07:53 ----D---- C:\Windows\system32\MRT
2014-07-13 03:07:47 ----A---- C:\Windows\system32\MRT.exe
2014-07-13 03:07:04 ----SHD---- C:\Windows\Installer
2014-07-13 03:06:22 ----D---- C:\Config.Msi
2014-07-13 03:06:21 ----D---- C:\ProgramData\Microsoft Help
2014-07-13 02:36:39 ----D---- C:\Windows\system32\catroot
2014-07-13 02:23:26 ----D---- C:\Program Files\VideoLAN
2014-07-13 02:19:43 ----A---- C:\Windows\win.ini
2014-07-13 02:05:08 ----D---- C:\Users\Radim\AppData\Roaming\vlc
2014-07-13 02:05:05 ----D---- C:\Windows\Panther
2014-07-13 00:45:42 ----D---- C:\Program Files
2014-07-13 00:41:07 ----SD---- C:\Users\Radim\AppData\Roaming\Microsoft
2014-07-12 00:38:38 ----D---- C:\Program Files\Common Files
2014-07-10 16:56:22 ----HD---- C:\ProgramData
2014-07-09 19:21:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-07-09 11:24:11 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-07-03 23:59:58 ----D---- C:\Program Files\ABBYY FineReader 10
2014-07-03 23:49:46 ----D---- C:\Program Files\CCleaner
2014-06-18 16:22:11 ----D---- C:\Program Files\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-13 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-13 192352]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2010-06-18 64288]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw;{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw; C:\Windows\system32\drivers\{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw.sys [2014-07-08 52920]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-13 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-07-13 779536]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-13 414520]
R1 F06DEFF2-5B9C-490D-910F-35D3A91196222;F06DEFF2-5B9C-490D-910F-35D3A91196222; \??\C:\Program Files\Settings Manager\systemk\systemkmgrc2.cfg [2014-07-09 34192]
R1 iSafeKrnl;iSafeKrnl; \??\C:\Program Files\iSafe\iSafeKrnl.sys [2014-06-27 213888]
R1 iSafeKrnlKit;iSafeKrnl Kit Driver; \??\C:\Program Files\iSafe\iSafeKrnlKit.sys [2014-06-27 64512]
R1 iSafeKrnlR3;iSafeKrnl Ring3 Driver; \??\C:\Program Files\iSafe\iSafeKrnlR3.sys [2014-06-27 36992]
R1 iSafeNetFilter;iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [2014-06-03 40280]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-13 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-13 67824]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-13 71944]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-08-18 4994560]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-01-20 2317536]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-03-02 139776]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 ENTECH;ENTECH; \??\C:\Windows\system32\DRIVERS\ENTECH.sys [2007-08-20 27672]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys []
S3 iSafeKrnlBoot;iSafeKrnl Boot Driver; C:\Windows\system32\DRIVERS\iSafeKrnlBoot.sys [2014-06-27 40064]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;Ovladač procesoru VIA C7; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S3 ZSMC301b;Look 312P; C:\Windows\System32\Drivers\usbVM31b.sys [2004-03-19 90968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Professional.10.0;ABBYY FineReader 10 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [2010-07-22 814344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-08-18 176128]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-13 50344]
R2 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-11 136120]
R2 iSafeService;iSafeService; C:\Program Files\iSafe\iSafeSvc.exe [2014-06-27 118048]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-15 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 Update DoughGo;Update DoughGo; C:\Program Files\DoughGo\updateDoughGo.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09 262320]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-15 135664]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-06-19 108032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-18 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-21 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]

-----------------EOF-----------------

Re: default-search.net jako homepage

Napsal: 13 črc 2014 20:18
od vyosek
Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

Re: default-search.net jako homepage

Napsal: 13 črc 2014 20:40
od Kenny123
JRT zde, na druhém už pracuju

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x86
Ran by Radim on ne 13.07.2014 at 21:29:31,29
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Bar
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\simplytech
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\simplytech
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\isafe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealio_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealio_RASMANCS



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Radim\AppData\Roaming\isafe"
Successfully deleted: [Folder] "C:\Users\Radim\appdata\locallow\datamngr"
Successfully deleted: [Folder] "C:\Users\Radim\appdata\locallow\simplytech"
Failed to delete: [Folder] "C:\Program Files\isafe"
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{010099B8-2D1C-4184-A13D-2FC2D7E6DC45}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{011C3C4C-777E-4A45-B290-E90E832290F2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{01776B0F-CF8F-43A9-858E-AF27485A9868}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{01C45105-4209-4EFC-8243-BEEE5C817887}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{023E86D8-7B5F-43BB-885D-AC65A56EBAE1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{02FA6EC6-BB48-4D41-8AEE-F0B86110729E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{03C73A02-4883-4306-B077-F6C51A397CCE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{04E57842-EF85-44DD-B743-93A6DC1CEE04}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{052A268A-F632-47EA-991E-D50C887A2DEF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{05BB3630-C53B-4AA8-896C-A62642E7C822}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0618F07C-D545-440F-9CF2-9BE38AF0834F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{07161D32-094C-47DB-B1EB-6197067C07B0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{080A4A8B-0FA4-4DF5-9835-FE094087A9E9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0824B88B-C4CA-4FBC-84E6-EF450200AA0C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{08743342-0805-4F06-81ED-FFFBC2B48688}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0899D589-E301-4ACF-9192-FC6FE2BD7324}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0A03D62F-D893-40EB-BAD9-ED7DB654DCDD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0A13D3BB-2EBC-4E95-ABD7-0470333F7BAD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0A82A48D-3963-4A41-8574-6CF6F8790695}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0A955675-52C6-47D7-84D8-7BF1AEE6AC5B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0ADC9466-A37A-4B44-B951-CC1EFCD0A11A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0B185C17-0C58-4E18-B5E4-84532A4E79AF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0B5975DE-A1A7-46D9-97AD-C4578D3D29CC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0C6824C1-4D15-498C-ACB3-F81F85D7080A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0CE30BA2-C8AA-45D7-B7ED-7B769599DFB7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0CFD3527-ECAA-49D6-BBA7-501615E5A93E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0D73E453-65CD-4F60-87AE-EF504FBC66E2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0DD7CBA1-3012-4CD7-9E17-BC203A52CA4F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0E7F4D53-9622-4A97-9F21-30E8A699CECF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0E84BE26-33FB-44D0-AEA1-9375F263412C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0E8BDD93-920A-4F98-95AE-6CA25B4EB128}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0EA1858D-C7F7-4D9C-8121-4ACE8A542947}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0F293F01-546F-4C0F-8840-58E2D7C61998}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{0FDBB2E8-B50B-45A5-BD7A-A3DC4F1F25F5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1093CFB3-59B5-4E14-8542-330CF8A8E279}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{10DCF893-EB2D-414B-82A4-CD09ECB15F98}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{13899FE7-00A1-430F-A12E-A096412FA435}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{13A628A8-42CC-4EB1-8B0D-A14C0FC3B64B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{15637DC0-FFC9-4893-913A-E17F374248E3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{15B953BE-E06F-41E1-B68A-466A47413737}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{15E3F81D-0568-4749-AAFA-D6B500B437BF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1602BB80-2467-485E-A324-77315969579A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{160E310B-C010-4FE4-8B74-0C430ED01C8D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{162007AA-0BBD-4EC1-B7F0-33C9C7FC07D6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{17E11196-E915-4FE1-B775-0738D408332B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{189367F9-97E6-4B76-979F-2C1EB99AB7DB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{191EAA02-F485-432D-BEA5-BABE0C6643E8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{19557D2B-68B4-45D8-B314-6E76D4564FD1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1A3C31F4-2656-4551-B155-5BF2D1A3816B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1A6137FD-C4BD-40BB-9A2E-06B6262706CA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1A639A2D-485E-46A1-808C-DCC5418355C4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1A8111F7-C513-4784-8761-5CD7AB62BE62}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1A8BCE9B-5036-4B3B-860F-0CED5A01C817}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1B013289-35DD-4268-B275-8EAC84B3FA39}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1CC982DB-C327-4504-BBE8-87C53EA743DE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1D084EF3-F03F-4442-BFC2-3B403419D4AD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1EE9B110-740B-4E0B-AC5A-1A21E5981239}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1F180015-1E6E-481F-8858-9AB816187DB3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1F487BEE-FA1F-49F5-AF25-245338C62EE4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1F48F7C3-5116-47FE-B0D5-B7ECC30818EF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1FA5CBCA-F592-4D5B-BE8B-B0B00CB8E647}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{1FD6DDA3-CEA3-4D34-9C17-F250906CAFF8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{20F32CD1-A1C4-4BD0-A37B-9EDD807FB9D5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{21794B49-5AA9-47E5-80A7-F5C3833A2B21}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{217CC98E-56BE-428A-AFD4-580015F80165}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{21A08725-2E89-422B-A20A-F2DAC88E6639}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{21BD1537-26D2-458D-B65B-78F018BE8F76}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{22D136C7-C589-454D-8F67-E6ADFE0FDCBC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{22F2CB01-80A0-4D22-AD26-FEE164EA60EF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{22F93B9B-F901-40E2-B8C9-C356E0DD394C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{23E75D97-8C2E-4FA3-A25B-9D8C0D4F19D3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{24130AF5-5059-4D9D-94AE-7C16C257C59D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{244928C5-E517-4E27-B8DE-EA1A19894AFC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{249E04E2-BA02-4ACF-B2C9-CAEA1C1D6EB0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{24E076C6-BF13-4584-9ECE-B3EDD4A3F523}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{25CBACD3-0248-4614-89F5-8D40CF2EDD03}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{26188ED9-0331-4FC7-ADD1-64EF6D2E209F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{263A9CE9-941B-4FA6-ADD5-48614F72D0DF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{26DB27E2-BCBB-4365-8A29-EB047BD91E93}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{27447DCE-E3DA-493B-9F0D-8186612A5D38}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{27859A75-3353-4402-AA8F-4E2A6EB5DB1D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{283CC2E0-D3A6-4312-8B6C-1027DE28D224}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{28569B0B-C933-4EE7-A57C-F3E9E41FB3BF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{29692D43-71BD-4CDF-8972-132EFEAA6B3D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{29C729F1-AF2F-4D25-A9F9-F2359C57F806}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2A53A3F9-6C1D-4CD2-BCC4-74834F23AF18}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2A5CF211-4957-4343-BDDB-3CECC4B24A32}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2A6178F9-A586-4708-9281-F0D2448AD24E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2B6EE415-7859-46CE-8045-8A5DF0EBEBBC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2BE77BF9-8E4D-41A3-AFBA-E3642B81A9C6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2D5E6D62-F882-44E3-849F-224A6A598367}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2DA0B60D-2296-473A-87B3-C3AD616C3F0C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2DB49F5F-EA7C-443D-B2E6-72B7C07ABFAC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2DB6BFD5-0F5B-448E-BBBF-F6E43766AE78}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2EA90A2B-D9FC-4B07-B3FB-332A8D7D7F14}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2ECA81B4-78D3-46A4-98BE-79FD7846336C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{2FC04AF8-0A02-4EC8-98BD-95A0EA43705A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{310DB0C0-A208-4EF0-9B08-8AB2D82AEEF0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{312560F0-518D-4D59-A868-55581C6CDC58}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{315556D5-8285-4883-B0CC-7D07CB1B53D6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3171E870-6F55-4BCB-A7D6-60B0F0CA4291}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3240D737-E377-48D9-83CE-867A23B5D65A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3276B52D-EDDD-4859-80ED-CC3D563F7C74}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{32B218B9-C1D7-4F80-8F3B-E8E5BF62F98B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{32E6046C-B3E0-4531-9C8C-9DA7016C0A38}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{33040B41-6666-46DA-B6C6-2BC5740240C9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3348014D-A480-4795-95DD-035ACFA12700}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{334DCDF4-88BF-432B-9AD6-D44BB64134B3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{337B87EF-A8BC-4006-B344-BF2F0D8E51C4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{33BF3A1A-710C-4AAD-BE84-F46A8B8DB48C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{33E3BF7E-67BF-433E-9035-A19A34FBF487}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{340D994E-84D7-4E69-AC32-A0B709D4A271}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{340EE9B6-A815-4785-A2E2-B88A3CC0FDD7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3429834D-FAFC-41F6-A4BF-053E233FB4E4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{349CEB4C-6F57-45E3-A425-EBD34B852B32}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{34E17EC5-7672-4277-984B-68C0AC4F00E0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{34E695D4-F119-4673-A89D-CD285F3638EE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{350DD71C-BB2E-4E55-9359-752D42ED9CCB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{352098C6-7F4A-4325-BEC5-8ADF03A0F7AA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{358C2AFB-435F-453D-9578-CC79809D1D3A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{35A6D8E9-A0F7-4127-AF6B-BFB84BEDE3D4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{35C7BD12-8356-454F-88D5-A4056DAF4466}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{35D214B6-BE0D-4C49-A5D9-83CDAA70EB2B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{36394539-5DD0-439A-A6D5-1CD38B36BE10}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3659526F-B8E7-49B3-9124-D1A9898B248C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3661696A-E16C-4837-908A-F9B7ACCD452D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3686299A-85E6-45DB-A82C-5560674B02A3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{36E5D847-5BE4-4C47-8FEF-9701CE665873}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{36E71A22-5E3A-45A3-BA65-70BCBB3F987B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{37347C05-7D7B-442C-9E7C-2EC69C4AE865}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{37E96269-CBBF-4F0A-BBAE-ED55AF77C880}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{38724802-4846-436B-979E-831FD9B0CAB8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{39442AE0-9852-4F77-9F4C-C2BF503C28B1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3A2A10D2-47A7-44DC-9AA0-BEFAFDAD80F5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3A793265-EF2C-46AE-8A9A-9502E1BF8E89}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3A80792F-5166-422A-B6F1-6FA309936C01}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3ACA5C12-872B-4A88-8ABB-FC0DEFB1E930}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3BD69F51-FF98-45B6-BFB6-854D3AFDEEF4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3D0534BA-C644-4805-98FF-45EDA008D5FA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3D343027-0E65-4C53-A11E-4725DB992667}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3DDC4BA8-2447-4CCD-9EF0-A38D9B00B814}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3E9FB1E8-6C7C-48E1-A3BD-2CCC07C65B4C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3EE92170-12B0-40EB-87FD-8659DB216EEB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3EFC797F-4D2E-4B13-ABA3-472F8BE6C379}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3F3127D5-87E3-4912-A40E-6CA759FD1728}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3F4BE588-5217-4ADE-A563-1941F94CEDB0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3FB7CC91-C210-4DE6-8552-A38C9C855E29}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{3FB7EC10-BAF6-4F20-84CD-BB8E1E7CC8D8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{400F9BC1-63A7-42FF-9A96-E2314E32E0EA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4038E691-EB92-421E-B132-DD2AD8F51786}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{404D280E-ABBE-4EEF-AA63-5E819C6664F6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4052ACCD-A81D-4BAA-9FD7-CEC0ACB27750}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{405C9B2F-A0DC-41B1-B6AD-CDAEBF02C01E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4061F7DE-6D14-402C-B5D4-D720AD59BEA0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{40DCB387-C8A6-4B9B-AF8F-72B8EFADB2B4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4122C242-85CC-4632-B46D-973B9820B049}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{422BD880-8EDF-4E3C-8074-FC84EDB53CB5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{424E0F66-23CA-484A-8E94-C01594C701DC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{42FBCE36-C910-46ED-B03E-BF34C63C57D2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4311F7F9-DB8C-45BF-8CEA-496774188EB4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{43453432-F6C9-43A3-99D3-D149A0B03418}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{43950612-46B7-41A6-9A29-E070301956D0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{43962240-ED76-4105-BC7A-8739C4765757}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{43CF9402-AF5C-4260-9B58-073A41658EFE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{44169E79-7E95-4114-84D4-0F42BB6F47F8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{447C7005-3184-47ED-ABC9-81877E52D934}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{449615F3-CC47-4B81-AB1C-FDC176641278}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{45EFD85B-69A7-4920-9565-037BC687EAFD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{472C9EE5-0DA6-46E9-9997-FA35AE5D51E8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{485BD82B-40C4-4F9D-96D6-53EF3BF56411}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{48A84A43-B2B1-4C28-8802-84C549606041}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4918EA97-EB20-4FFB-B120-FC1BAFBA1223}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{492CB07C-03B1-495A-B7B2-585CCC0E5DAB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4974C7BD-8013-488B-B334-E2DE1B42990B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4A48A902-C92B-46B2-864E-4CD4275E908A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4A58BD0D-A156-4F7D-A092-0E9E4919CBBD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4AFF5AB0-B84D-41DF-9622-46DCC44C2C1C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4B10CDEC-D105-49AB-8992-945972CF811D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4B29A85B-9C30-48F9-9276-D8DAC769FD05}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4C0F2B97-8C73-40C4-B813-D0869CF277B6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4C4B67A2-4744-441F-A0DA-B15B64E2EB25}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4C581BEA-951E-44C8-92A8-4B7A4C2F1C32}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4E3DCE5F-FAC6-48D1-9565-D2F4B3524C3F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4E4B3850-B3EF-4F90-ABD3-CBF97C1D3CB5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4EB60C70-82A6-44CC-ACD8-C8F1C18EE196}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4EBD468E-DCA4-42BE-8DA6-5F730151AAEB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4EE3588C-D9D0-4791-AF3F-047B2E6DE9E9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{4F462B08-321D-4532-BBDC-E570640C7CB4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5049B0D8-826C-4288-9FC5-661EF1372C0F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{511950EA-5EDB-4754-9168-26E0ADE2FDD9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{51B7E2DA-2020-435F-9644-4C4AF2FCF8D8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{51E1CEE4-5250-4148-ABF9-DAC7A977E303}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{52386D58-2A09-4E80-AC6F-8A65B19C1B9B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{52730F5C-E36E-4509-AADB-A0C0F827495D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{53828020-BCA6-4744-B5DA-50870FC24C46}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{53AE3403-60A7-431B-8EDC-9BF26E979C4A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{53EBDC7C-CF14-4224-B319-7322A7C3B792}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{547C83CA-6520-4393-AF79-C6582F145890}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{558093ED-D58C-4D8E-BC49-31792F331364}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5657106B-0472-4257-A7EA-A35056B176AD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{56EA32E3-44C4-4761-A65F-71FBD7570892}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5736538A-7977-45BE-A6F3-A7E441F488AB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{57543A9D-6B80-4105-995C-41FD6B5ED1C2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{593A80EA-8EBF-4476-8B71-15185274B107}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{59BD79B6-E82B-4DE1-8938-32AB304EFEF6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5A6DC58E-8F44-47F6-A85F-540A3D5A13A2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5C27F732-22CE-4383-AA51-D81BFAF556D3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5D415893-1D37-41FC-8E49-A27FC675C6D5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5D87B2A7-E009-4F93-B352-EABD40F9817D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5DE5913B-0572-4FC9-81BA-4AACD9BF419F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5E9938B8-B655-4CA0-90C0-EC9BCD666A0C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5ECAE274-9B37-4F6E-A6DA-3AB8A0D4DF81}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5F6E4C47-942D-46D5-841C-A616498E2C5C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5F92F37E-5DF4-4FF6-987B-C7858CFD8AB0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{5FF9269F-94D5-44BD-85A9-194762A8738F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{60165E62-CF68-4A05-9A29-A280832C3CA0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{605686C0-C2C0-4BAF-BAC4-222B82DC7496}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{60976335-22B2-4282-8D7C-989A59E218EC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{60A74F1D-10CB-433C-9211-D2C49B41C64A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{62AD6D86-7622-4D07-B849-4FD444D22C09}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6317D885-3D66-44A5-ADFC-F05BFAE23C7A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{63993A71-AE24-4939-80ED-F417633C2AFE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{63B121A9-B0EC-423B-B2F5-E890E8C3B78A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{63BEC99C-B34D-4014-A3F8-3FEFB2FB8CEB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{63E6DAA3-2CEF-42C9-8299-E856FE7CD016}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{63F26BE8-82BD-4B90-8882-5316AAA1BFB7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{64D5F070-CA5D-4228-8966-C2EC35E54687}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{64EC0E41-955D-4315-8B0E-8E1DAD22E67C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{653D30B2-3CE7-4138-B9F8-3E07C9F7F1DC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6544931A-B171-4611-8AEA-D46FE94745EB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6638539F-B9E0-404F-AA5E-5089B74B80BC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{66648B1B-45F0-4C80-9CA6-A0A24CAFE75E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6786C566-76F4-4DE3-AC73-93B035530138}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{67C117A0-9BAF-4B0E-B8D4-C3BF63A13303}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{681B8D79-E16C-4F4A-803C-E6809BADCF12}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{681CBDD3-5A0F-496C-86A7-CF5420C71652}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{683F50A4-4D6F-4086-ACDD-8CA4DD17669D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{68CFC33A-97B5-4A9E-A64F-2BCF016033DA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{68D00B72-CB4C-499E-9EF8-25E23B1A8908}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{690CEF4F-9EFE-4759-B05A-6AF004FDE38F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{691486C4-CC65-4CE0-B2AE-4D1A32C9F1EE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{69A27FEE-E2F5-4FC0-8764-B4C67BCF8926}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6A4F5693-71FE-4BAF-8352-37E6C88BBC3B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6A7D5DD2-F88A-4036-8B35-778E20A86D91}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6B4155B3-252D-45CE-91A4-6E2E618814CD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6B8CE2BC-251A-4A58-87D2-4AEC99AB75B4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6BAB90E8-F8AF-41EE-A7D7-B4FAEF60DEC1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6BEC55B1-A105-4C61-A89D-79797D8C3DA2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6C275C28-264C-4F81-AA5C-86A11832B4DA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6CD1BEA2-1A07-494A-8638-96771ED9D226}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6D0A15E6-6305-4409-AD3B-583E7D4D3710}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6D469A6E-53FF-43B0-A968-D8734EEB69DE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6D656BA9-AF8D-473A-83A5-2AED2F99780F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6E10A673-149E-4B06-9947-52AD5FF8A4F7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6E442D33-D73E-4504-BE4A-42D0D97A85EA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6E4CF549-3606-4C2B-BA57-977CB28AC314}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6EB34B0D-7000-44D9-9C70-6AE65EDE1BBE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{6FB63DF9-C7A5-415E-9FEF-3F2CE4532649}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{70856191-A97E-48AE-8C9B-5915EE3D6E70}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{70B63EA3-7498-4A61-B81A-5788876BF069}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{72118683-B4EA-449F-94D2-A651E79974B5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7221F6CA-CF24-45C7-A6F6-CF0D71A1789A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{722C2DC6-3DD5-4AF8-B588-76BC46A0B3AB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{727700A5-5BD6-4C38-BFAF-EC4B64FDB3C4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{72B35580-C3DF-497A-B57B-E87DDCB8227F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{736D1A45-8608-4163-A0BC-AC9ABCA390CD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{74293F80-9ED3-41A9-8C73-72382AB83DDA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7435BF8F-8B5F-431A-B797-7C87A585B771}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{74FCFE95-6F93-4A1D-94A8-6E435E79A847}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7547C632-433E-4495-A538-87B3082FBE22}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{756A696A-CE0A-4E5E-AAB4-53CA3E557878}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{75D111E9-52E5-4CB9-8782-0209C58349B2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{75D9F897-FE3F-4A51-8DF6-5A2885E0230D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{763921BC-FE7C-4277-B86D-8111D3082E09}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{764B1D91-DB5B-4434-97D6-A714D1C342D5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{76775C3B-FF03-4A53-AFA6-8640F4783B20}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{76A8FEB4-5E13-4444-B7EB-562361538B8E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7723FC07-9C70-418D-AD24-1D995EE14C8D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{77BC813D-1C34-410C-ADED-BA917F68D0D5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{77FE697A-1DAA-4F23-B5D7-8E085565D805}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{78047E9C-AB89-431F-924C-F875F6636BAA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{78219A71-AC13-4CF3-9D9F-349C327CF322}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{782A1E2B-79E7-48B5-9467-C28E5929F364}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{786F4C7F-972D-433E-9632-A43319E18FBA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{78EF0103-9B7D-4440-930E-1BE9143F92AB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{79DC1CFF-7034-4EAD-A6D9-8CFAE08E5507}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7BBEEA60-ABBA-4ED8-9028-3CCC8FE7B266}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7C1CAC6B-8BC2-47B9-A194-A5CB902908F4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7C20F002-F297-4FB3-B498-9990C5CC8552}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7CEDFBFE-C151-473E-B085-2B5E711ECDD7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7DEB37BE-43D7-4D91-B1E7-4685ADE3F47B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7E1DA85A-7742-470C-B51B-178B0F427B49}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7EC22B7B-C3D8-420B-9301-9EFB9968FEF1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7EC40023-D23E-4D31-8B6F-A13983C9698B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7EE6F147-1BD4-42FB-AEE8-892CB9FB0627}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7F1A9711-CB23-40BC-A491-A82109F9E625}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7F716640-3657-45A6-B911-E3492276AC0C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7F77CF2B-7178-40DC-A0A8-5A854661E801}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{7FD5F946-FC9E-4951-8C95-A53965EA3B95}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{80229F23-D3FB-4960-98AD-B3CAD9CE5C55}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{803B6EF7-B838-4C10-AF07-3699F954D3FE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{81281ED5-4243-4BE4-8D4F-BB89C9EB42D7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{81CA5794-273C-494D-AC70-2A875726F3CA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{81E1DDEA-30E3-4F75-B533-07212F91A00B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{828F1B9F-8476-452C-949C-4783413C0BE6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{82977083-F910-48EE-8744-F703658F2F1A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8320CB8D-967B-4C13-80CB-F7254B1C6AFC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{833856BC-9E7E-4541-A718-C57D5BDB4C3C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8338F771-C81B-4A6B-AFB4-4F2E0D915259}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{84964D74-634F-460B-8436-0F4F8D96AD76}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{84F68ED6-28F0-4AF8-BB08-5BC85D89E64D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{85028523-28CD-4108-8EA1-268672FCD90F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8547C8C2-9221-4701-B21F-BAADA528CE50}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{85595E39-F1C6-48E7-AE99-EAF31439E6A2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8584BFAA-4FC3-44D2-9F51-27638569C85C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8705A911-4173-4B3B-B9ED-2236073C43C0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{878BD7C9-1A35-406E-B2D1-AF93985B6F01}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{880AAA51-6767-43E3-B701-FF3BA077BC56}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{88B86D89-9D84-42B9-BE25-1CBDA34DA9DD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{891E1559-CA9C-4C07-9601-5B07A05C13ED}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{894DA16E-5775-4FF1-83AE-271B08E227DB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{895CE8E0-B422-4CA8-8180-CE1268FF9EBF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{89EA8201-5E68-4C51-A8A0-25422AA45523}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{89F5531A-4F4F-4477-ADCB-DB4A9306EF3E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8A2ABFDC-C0F8-430D-B187-E8AF5C43C57B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8A91877D-A56F-4773-B0F4-FCE95DA7D5BA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8AC1DA81-0561-4AE7-8672-6FDDF7F41C00}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8ADAB771-FE47-4B91-9A2C-E86BADC98266}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8B2AB1F5-B445-4259-AF04-C62AE4A6700D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8B670D8A-1748-4148-86EC-DD80FF9753F2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8BC8BAFD-099C-49A0-AB42-C35A4613D360}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8C46E0EF-7DF5-4AD1-B60A-3C601A5CE67E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8C8A34E6-AA33-42D7-8174-0DC5E3292F29}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8CBACBEF-B501-4256-ABD0-0DCF8D804599}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8CD4ADBE-17CB-43B8-9671-B6B722A778AB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8D9B5E0D-C788-458C-AFDA-CB35D90FCEB3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8F4352D3-FAA3-4C55-AA88-FF3FCAEBB302}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8F61C4DC-31CA-474F-890C-DA614C69AE99}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8F6D7A3E-8B76-4A9F-ACFC-E416DA485F58}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8F81EB72-FC91-4A0F-87F3-CA1DC5B384B3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{8FA8BA3B-C290-40AE-8B05-76CADC3902FB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{900A3ABD-4FEF-4BEF-ADE3-F1A1D13372A6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{905CCF0B-B48B-472B-845B-091BC81CD31F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{913B0564-88CB-4F93-9B42-256B2DF463E3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{92A35E86-323B-4948-98B3-5D195776EF78}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{92D970FA-A013-4D98-895B-49A0DD88976C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9341CA46-38C5-49E5-A646-22016FC07089}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9447DB75-2EA5-4330-A649-566063345448}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{94596FA7-2182-4855-9232-5CF4EC9DDA62}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{94BF7E8F-3388-4307-B9BA-BF8BA83DAF2D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{955AEC8E-5B18-4661-9F3D-9E88AFFF7225}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{96A1D128-1C91-49DD-A242-998D1423DDCE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9708FB83-3922-4C8E-B13C-D2974388D4F7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9820569A-2701-47DD-802C-7D77E518F13D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9842CBE2-8B65-418F-831B-3FD0EB822BDC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9875F7AE-BAE9-45B2-B325-239EFF6631F4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{98DDB7AE-6398-4831-AA0F-4AEAF43E57D0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{99018983-94E4-4078-ADF8-03246937BB70}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9A645AA7-D60D-476D-BE6C-CFDD0F9EE074}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9AD738FA-9E4C-4116-B910-B949AE7EE7CD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9C9ECEDF-0D7A-4AF0-971C-0B30ABED4EC7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9CC3EBAD-9DC5-4D13-B865-F0519FF42A01}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9CC9D9CA-0D57-4597-AE41-45DC623CB2B9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9CE512A4-6453-45BF-B75F-C1FDA46C751E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9D531F58-F94C-43EB-A097-E74AA7A01816}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9DF045E2-06CB-4DFB-B491-DC17C0B02917}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9E80176C-CA65-45DF-8D07-6C4260F993DD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9F5BEF67-5194-4BDF-B435-FCA84408C1FF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9F62DE21-76A7-4155-ACF7-3737799698E4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{9F754A2F-E94F-4650-BE3B-1A0829553553}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A05EF532-D9CC-49DB-94C6-F163225CD6B8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A088EAD8-C51F-4783-B9E7-1294B5B0E8F5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A0F2932C-1741-453A-A57F-0A9C6603DE52}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A105405A-6932-4840-B94D-120D9537DD6A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A112D645-7FD1-4001-9476-EAECB505779D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A1598BFA-10FF-4F6A-A235-140A7F6734E1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A164A274-08AF-42BC-A2D1-C3313972BAD2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A171DCCA-6CC4-4A70-93D8-EFFFBB61FA2F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A19A1154-C232-4F3F-B44A-91FD7A16BAE3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A245CA85-0224-4C26-83A1-B5EF5E2F6941}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A29ECDBD-0618-4B81-9BCC-29BC6563498C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A3AD9370-C594-47C8-8531-8B972F58CFF9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A3B231F4-9967-41DF-9B0A-966A87536E90}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A4D0323E-71E2-4B82-A051-C517A39AA75A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A579CFCF-4812-4F9A-8178-4EF3C793EB27}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A6071475-EF50-4B3D-8562-B5B7BFB2279A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A7C71AB1-23E4-450A-BB22-098B7AC86E4B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A7E91EC0-B911-41FB-84C1-36F2EE728D70}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A85E1332-49A9-456C-8446-45EE86D8F2A8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A8608FB9-9265-4AE2-A0B8-F16FAF64B5C8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A8A57FA1-B073-4C05-88A1-4A3A7CC11492}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A8CBF54E-35FD-45CB-A493-1DE349C91C73}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A93BB63E-39DC-42AE-ABF6-040DE25B7941}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{A95709E6-880B-4803-A946-B56C1E68E026}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AA2184D8-DAB0-40E7-9E55-E40D25DA6061}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AAB0983B-CCDF-4BC0-BDA0-3D359C7349F1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AAEB5811-E07C-4AA2-BA13-E63D1D919914}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AAF31E5E-BEEA-4541-AA8A-3FB843F352F8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ABC25A1D-A2D7-4681-84F2-1D77B7895915}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AC5FD02C-9D8E-4B00-AD0E-6D8CBCB7FF44}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ACB971F8-F30D-4FFF-B154-0017662B48B1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ACDA9F6B-C2EC-4170-8A6B-171DDA5F7109}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AD77D964-FF4E-4910-ADA7-F2A43D94FCFC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ADFF1BB9-47CF-4169-873A-C96D3B7D00AA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AE4E6F44-4155-49D9-924B-774A4F18EC90}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AE50F8C8-822A-4864-95CE-F2C0CE0D8D19}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AE80D324-2EFE-4E23-96C6-3B521CE66CF1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AF6CB31D-69E6-47F7-9756-FCEF3039B6A9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{AF6F02E2-5C54-441D-A933-454E13648ED8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B03F76EE-1ED6-4912-86E7-37820F88DCD0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B068BF26-4AED-40EE-9937-B04EB4E901CA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B0CADE77-2849-4AAA-A4C4-DE1FBD574274}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B10AA7E2-BC05-452C-AEFC-1C7AEA955566}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B1218409-BA3F-4409-96E6-2FC08C376344}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B174DA58-77F4-4F59-9569-13CE5BDD4954}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B1F62034-51B0-4CD1-9C71-4F23EF42CB51}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B1F960FB-C5B5-490B-B9FC-55228306749A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B31AB79B-C547-4004-8473-C60BA2DB453D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B3EC340D-E50C-48B2-B325-EE9B7035592B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B42A872D-E3EA-4A76-83AD-41B7E324A7E4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B42FE78E-2C65-450C-8AFF-92C79F7421A5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B4F6161E-37BE-4A80-B1CC-058D2A1752A4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B5110464-9D50-40FA-BBFC-F9CE7A5F4E2C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B51AF418-7458-421B-95E2-7F5F322714E6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B5460E92-BC44-4794-B031-2404FE4D7265}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B5792348-8CEC-412F-892F-5FE810270A26}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B58354A2-0A82-4F36-BE70-2D3850ADFC2D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B6569778-60E2-4959-A960-4A46660853F2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B6957B22-604E-4DC3-92F5-8B9A787BAD17}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B6E8951A-9FB1-400A-A567-22DE92450EC9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B720E232-F2F6-4F37-A61E-6EBBADFB6A24}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B7653D2F-6357-4F5D-8278-6F32BA6FC507}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B77C3495-6137-407C-8AAE-7E736DA09D85}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B7B51E51-CDA9-4D3F-B420-08738E088DF8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B7D17AB5-A52F-4B84-9CF1-1D6EEBDF23F9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B81B4900-EE01-47E9-BF87-EB9238DFAC36}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{B8FABFA4-9104-4F10-8004-266F781650F5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BA21B6D4-3205-4B73-8B92-6975B6EC2B0C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BAB2A906-FA92-4166-BE38-DEBF6D0E864E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BBA35675-D762-43BB-BC5D-D0B644B64CFB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BBCBA3FE-3754-427D-9B00-DAB7E70C3753}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BC4BB9AC-0BC7-4F0A-AC33-41B868728D8F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BC5D004F-ECC2-4CE0-909D-D870C3285DBA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BCA1C666-E22E-4B7A-8D19-EF397ADB745A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BCDADF0E-0883-4E86-98E4-5F7CD9E17C53}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BD772C83-1633-42B3-BCA8-2F99049FF59F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BF107D3D-C20E-4BE9-A3AC-FFDEC51A1D57}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BF390DD2-9063-490B-85F1-5AD582229AF2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{BFEDA18F-1183-45D5-A12A-964AF6A2D6FF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C012D863-F256-4363-92AB-123B6990279C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C0AE622C-B37C-45E0-B4B9-EBFF89492ACF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C19D8953-70CE-4B4C-96A1-21CC19811D53}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C2404F2A-EBB8-4523-9241-629D99AB96A9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C26D5123-19F7-41CA-9AED-B8AE85121344}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C26E391C-4174-4989-B446-633E5519AF0D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C32D58FC-8836-470A-ACBF-960316FFEB36}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C456D03B-5039-46A1-9BF8-02A1321C6BF0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C49239B0-5B2A-471B-A1AE-8CD145BFDBA6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C4B6B2B8-BB5D-4672-9699-914EE50FD0F9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C4D9B906-95F7-456A-9FDC-488B50146450}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C4D9D912-01F4-45D4-9EAF-2B53C3DEB7DB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C4E65C26-1DCB-4223-BD0C-D9E388E1CD3F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C5088F01-2AFF-4B04-8BEC-D6DFD114622D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C53BE925-3376-4DF0-AD38-64BC2D93BC6C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C5C15217-9A39-4AF9-BFD1-F83A599C9010}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C5C4CDDC-927E-42F6-AEE0-CA160F81B571}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C6154797-3D3E-4E96-898F-758061748886}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C695CAE8-9899-40AF-A804-593540EF5922}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C696F691-64D2-4707-80E0-B331E4DC22EE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C6F766A2-7C75-477D-BDE0-2D643F8F9E86}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C773F6E7-0717-4B79-AEE3-88FC02B38A0B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C79448D8-0BE1-498C-8B95-B3FB40A04D5B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C89D2D79-AB7C-4988-B36A-7F271B9A4245}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C977B1F7-7C5A-432A-B453-36D5C0372EB3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C984F26B-8350-4CFF-861F-1EA0025ADC7C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{C9A5444E-0563-4B54-9CAF-2AF93F985358}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CB7703F6-3690-4A5C-8CDA-5C2D9542834D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CC2D1E74-FDC0-4910-96C1-6EB6551DFF1A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CC8486EF-183B-4C28-8119-682D4FEA3BAE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CD00695D-D51E-49D3-ADCA-55C4CC5E1FEE}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CD660756-B14B-43C7-8BCE-A3DBEBD45517}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CE5F984A-5EC7-4497-806E-396EACA8A958}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CEAAF747-0706-4762-B0F4-542E085B0FED}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CF14B030-EE14-49E9-ADCB-9A489F302DFC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CF8302A8-B235-4918-AEC6-57FE95F38E86}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{CFBD760A-A20B-4F42-AE5B-E453502CEE00}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D06751CA-0236-400E-A837-2B40E795C68E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D06F6C76-FE38-4F6B-897B-8E068524CF16}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D0D6FB5A-7BA9-4A28-A33E-551074DB1669}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D10AA58E-4C4F-4CBC-A2E9-59325E5B3AC4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D1207FF7-5F3F-4B6F-8928-6F1A0AB38B79}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D162F90C-4555-4222-8806-1E03B738B271}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D1B75EA0-E501-46CC-A9EA-428238FB4F52}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D1C68841-5C3B-46D6-ADB4-BC5816C674B7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D24DF935-8BFE-40D1-B9E1-999045D735BD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D2842D6E-DCA0-49AA-9ABC-CECC0C3046BF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D2BEBA01-0048-46EF-88A5-800B68D21101}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D2EF946F-DF4A-4219-99A5-F589FEAC09F9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D4497942-8FE8-4E48-9ABB-BE3CC12F12FD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D4C671F1-254F-4477-AD24-25D06878151A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D4F79F2C-63B6-49DE-9914-455CD57D5891}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D53D512D-3086-4191-89FD-14310679FE27}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D56699C6-3DE6-4A81-A877-E32DC5C375FC}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D5C1CF0E-0232-4DAF-A3DC-B7607728B22A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D786FAC8-FCDD-42A2-9E8B-F4F1BE81A738}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D7899E13-B39B-449A-959A-5777BB9E76D2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D7AAACB5-2E45-4B7E-9B81-D2124288FB5E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D7F3F269-AAAB-487A-9599-C6FB1019A75C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D7FD3197-0AF9-4781-B80F-681BB76F9D05}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D801E797-D3DC-4CA2-B502-3B7677AB1789}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D8350117-9692-4621-8FCF-BFB162933F21}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D9058543-FBBF-4ED3-960C-7588F078A9B9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{D9D24485-B3A4-4703-9C98-D3A9A9722BF2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DA3ED525-3422-4C0B-8DEE-520C13D6B694}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DB80CCCE-4180-47CD-B8CF-7DE24C579DB7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DB91BE93-72F9-46E2-A736-FBE1B31AFC82}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DBEE715E-222C-42ED-AF20-BF7374DE6C5F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DBF4A2B8-93C9-48F4-BC81-1DE1987F8A8E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DC5573C7-E58A-43A8-AC61-C539FEEB5DA6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DC6BA6B6-08E6-432E-BEC8-176565E3C54C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DC86F05C-080B-4242-A600-4212554D0185}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DCAC43F6-47A4-4FC3-85F5-BDFE1BA6F1B0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DCD26CC1-6018-4629-AA91-C698826F1115}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DEB871D2-3F78-43BD-BF86-5C3D4EE53A9F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DF1E6D40-6ED8-4E5F-B6BB-0EC4AF89C681}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{DF5620D8-551B-4B3D-B9FC-20DAE68A3926}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E0266FE7-72F4-4ECA-9EC7-F4CED726F6E5}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E040FC66-519D-4E3C-AB3B-1C7E260C62D4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E0C156B4-DA5C-4A3F-A449-CE33AEEC01C7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E147BF72-72A1-44CD-A885-0FE90904AE42}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E25F5046-1FC6-4BAC-8449-673EE8E6F596}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E284C5F8-4996-450A-880A-CE96FCBA520C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E314BBA6-8E94-4D57-85A9-4EF03CEB6F1F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E43A55FB-B802-456B-B871-F1F1BF5D0C94}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E45AB50D-ABE6-4F89-937B-F78C240B37C8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E4DCA028-D069-4E33-81A1-7760E34E32A2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E53D5222-F737-444E-A59C-B8F160758597}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E582E2A4-A70D-424D-8FC1-C830DEF03981}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E5C897D0-8B18-40F9-AB87-FE39FAE6E70B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E5E9F5EB-B44C-4CD6-B7B2-E7D2AA21ED84}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E62E6040-ACF1-448C-94AB-AFD05FB9BF9A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E66E610E-3C24-4176-92EF-65D9127DE70D}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E670DC67-C8E3-4D74-88EC-B03F2CC7E776}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E6E92DD5-E0F0-445F-B5AF-6ACDD26F6B4C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E6FBB1FC-741A-40B6-8DC3-332FA80A1BF2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E78D8839-DF38-4F0A-95EC-E6C40E16415F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E7E84D9F-FF36-4CA0-8943-3C83217E4870}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E7F2857D-21C5-4E01-B7E9-16A3FD39B4F7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E8039159-040D-41A6-B513-18729B3A4BB7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E89566EA-A524-4ADE-90DE-EC4FE30F8322}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E895B6D5-4853-4CAB-882C-16525A5C481A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E8D3B276-0258-446A-9126-3B0770FA771B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E8D79AB2-D32E-45E2-9159-EC7324048BA7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E8F24C38-9145-42D6-A997-E9714149D22B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E91660EB-EE2F-4553-B7D3-6F9151C879BA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E96127DB-57BA-4399-B56A-CEE80D9E7118}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{E96502AA-6952-4EC1-9A4D-1B05459DAF7F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EB184C0B-5BCD-4FA5-8E4F-77DBB9C1EC97}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EB4EC423-21C9-43CC-BA0C-C5BB734EF653}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EBB9F4AA-C26E-4249-B261-A7DFF7136881}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EBCFEDD3-7887-485E-A908-3DA497C7DE4B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EBDACDA7-1571-4584-BE20-A5DA36D5EF2A}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EC6E36D0-74BD-4C65-A9BC-32B5B5E29899}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EC83A7F5-8331-484C-A78F-0CC3F3719FDF}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ECC80663-EF3E-4BC8-B4BF-2161C9F5E5A9}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ED0E6019-6B18-4E2C-903E-52DCB67C6CFA}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{ED752189-5C21-4246-9CDC-69C8A058243F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EDC8EB15-3CC8-4108-9E91-FFDEC8CB85F2}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EF908CCA-CDF8-4D09-A5F8-F2576489A218}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{EFDFB4C7-913E-435B-ACFC-EF4F633358A3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F0859EC9-7755-4388-BCD3-8D2D8A65021F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F09CF017-B09F-4B7B-991D-1E7A6C66E70F}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F16AA105-3621-402C-A8E6-50A893569589}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F187B078-1992-4173-A05B-AFBDAAE827D6}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F27FDABE-1C90-4D69-87E5-B8EA093B4A02}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F2C35681-56FB-4092-BDAC-D3E784D5CEE4}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F335462D-7620-4D8E-8B40-819CFEAA5D21}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F33F728D-ACC1-436E-AA31-42C097FCB8D8}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F410CC7E-6443-4BE4-9BED-C705543F5C32}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F4A0807C-95FD-404F-9E52-0F480A6DC4B1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F5E14055-E049-44A1-966E-1B2FD16AFEC7}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F786B40F-A77A-43CD-A883-AE7466CA2D7B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F7C6069C-F5B3-47A1-8666-06DE7B703A1B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F84A90ED-9B69-4819-AE4D-65EFBFD119EB}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F8E0709C-312D-485A-BA53-7C1B1DF3E529}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F9227D6E-E764-457A-BFF1-CE7CE4A7AF6C}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F9256B89-5950-4ADC-801A-A104C3F45AF1}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F949013D-6EFF-4284-A389-C3EFC0268A6B}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{F9FBE765-B84C-431A-93FD-8820FECD236E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FA5B3EF9-28B5-4730-BADC-ECE1AB3537FD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FA5F0D1D-5D00-4472-BAD3-E996D99C705E}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FB32A166-D997-47AF-8766-D7AFFFE1AD14}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FB35F423-5B64-4CDE-8106-D62DE0C6DEDD}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FC2EE728-52D0-46B5-906A-DE4051D2F976}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FC53A12A-CAAF-44EF-B7C2-294EABB2FAA3}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FC7FC816-BE1F-4E47-978D-2B48D8C679D0}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FC884270-BA85-4D85-9689-2FFD661F2120}
Successfully deleted: [Empty Folder] C:\Users\Radim\appdata\local\{FED0B554-C22B-4FF9-B361-D2F4B3A4C36C}



~~~ FireFox

Successfully deleted: [File] C:\Users\Radim\AppData\Roaming\mozilla\firefox\profiles\twue63jj.default\user.js
Successfully deleted the following from C:\Users\Radim\AppData\Roaming\mozilla\firefox\profiles\twue63jj.default\prefs.js

user_pref("browser.search.defaultengine", "Web Search");
user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=41460&st=chrome&tid=2938&ver=3.2&ts=1370132081880&tguid=41460-2938-1370132081880-1ED4DA9ED308D14484FAD0D4E0406
Emptied folder: C:\Users\Radim\AppData\Roaming\mozilla\firefox\profiles\twue63jj.default\minidumps [76 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 13.07.2014 at 21:34:33,36
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: default-search.net jako homepage

Napsal: 13 črc 2014 20:43
od vyosek
Pokracujte AdwCleanerem

Re: default-search.net jako homepage

Napsal: 13 črc 2014 20:51
od Kenny123
# AdwCleaner v3.215 - Report created 13/07/2014 at 21:45:26
# Updated 09/07/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Radim NOVAK
# Running from : C:\Users\Radim\Desktop\adwcleaner_3.215.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : F06DEFF2-5B9C-490D-910F-35D3A91196222
Service Deleted : iSafeKrnl
Service Deleted : iSafeNetFilter
[#] Service Deleted : iSafeService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\systemk
[!] Folder Deleted : C:\Program Files\iSafe
Folder Deleted : C:\Program Files\Red Sky
Folder Deleted : C:\Program Files\Settings Manager
Folder Deleted : C:\Users\Hanka\AppData\Local\AVG Security Toolbar
Folder Deleted : C:\Users\Jana\AppData\Local\AVG Security Toolbar
Folder Deleted : C:\Users\Jana\AppData\LocalLow\AVG Security Toolbar
Folder Deleted : C:\Users\Jana\AppData\LocalLow\SimplyTech
Folder Deleted : C:\Users\Jana\AppData\Roaming\Settings Manager
Folder Deleted : C:\Users\Pavla\AppData\Local\AVG Security Toolbar
Folder Deleted : C:\Users\Pavla\AppData\LocalLow\AVG Security Toolbar
Folder Deleted : C:\Users\Pavla\AppData\LocalLow\DataMngr
Folder Deleted : C:\Users\Pavla\AppData\LocalLow\SimplyTech
Folder Deleted : C:\Users\Radim\AppData\Local\DownTango
Folder Deleted : C:\Users\Radim\AppData\LocalLow\AVG Security Toolbar
Folder Deleted : C:\Users\Radim\AppData\LocalLow\DataMngr
Folder Deleted : C:\Users\Radim\AppData\Roaming\eCyber
Folder Deleted : C:\Users\Radim\AppData\Roaming\iSafe
Folder Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\ICQToolbarData
Folder Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\ICQToolbarData
Folder Deleted : C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\ICQToolbarData
File Deleted : C:\Users\Pavla\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\invalidprefs.js
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\default-search.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\Web Search.xml
File Deleted : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\searchplugins\Web Search.xml

***** [ Shortcuts ] *****


***** [ Registry ] *****

[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0AA5609C-5A0B-43F0-9B3F-C4744E7B9D70}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKCU\Software\SystemK
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\iSafe
Key Deleted : HKLM\Software\SystemK
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Start Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Start Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [(Default)]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]

-\\ Mozilla Firefox v30.0 (cs)

[ File : C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\zn9s5myv.default-1390048433011\prefs.js ]


[ File : C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", true);
Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
Line Deleted : user_pref("icqtoolbar.geolastmodified", 1350736361);
Line Deleted : user_pref("icqtoolbar.history", "kamenice%20126%2F3%2C%20brno||Kamenice%20126%2F3%2C%20Brno||Mgr.Radovan%20Kare%C5%A1||mgr.radovan%20kare%C5%A1||kamenice%20126%2F3%20brno||restaurace%20u%20vlka||histo[...]
Line Deleted : user_pref("icqtoolbar.hpChange", true);
Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
Line Deleted : user_pref("icqtoolbar.installTime", "1343459696");
Line Deleted : user_pref("icqtoolbar.installsource", "1");
Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "15.0.1");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uniqueID", "125935209612593520841259352098733");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1350823591);
Line Deleted : user_pref("icqtoolbar.userHpApproved", true);
Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Deleted : user_pref("keyword.URL", "hxxp://www.default-search.net/search?sid=498&a ... &src=ds&p=");

[ File : C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Web Search");

[ File : C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", true);
Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
Line Deleted : user_pref("icqtoolbar.geolastmodified", 1350518269);
Line Deleted : user_pref("icqtoolbar.history", "w222||cikanka||hxxp%3A%2F%2Ful.to%2Feczrdawz%2FVacation.162012.mp4||google||land%20cruiser%20200||cars%20rolls%20royce%20ghost%202010||mercedes%20cls%202011||mercedes%[...]
Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
Line Deleted : user_pref("icqtoolbar.installTime", "1345149402");
Line Deleted : user_pref("icqtoolbar.installsource", "1");
Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "15.0.1");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uniqueID", "125879096312587909621258790966757");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1350761965);
Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Deleted : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=41460&st=chrome&tid=2938&ver=3.2&ts=1370132081880&tguid=41460-2938-1370132081880-1ED4DA9ED308D14484FAD0D4E04065E0&q=");

-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.certified-toolbar.com?si=41460&st=bs&tid=2938&ver=3.2&ts=1370132081880&tguid=41460-2938-1370132081880-1ED4DA9ED308D14484FAD0D4E04065E0&q={searchTerms}
Deleted [Search Provider] : hxxp://www.default-search.net/search?sid=498&a ... earchTerms}
Deleted [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
Deleted [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
Deleted [Extension] : hphibigbodkkohoglgfkddblldpfohjl
Deleted [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Deleted [Extension] : kincjchfokkeneeofpeefomkikfkiedl
Deleted [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
Deleted [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc

[ File : C:\Users\Pavla\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.certified-toolbar.com?si=41460&st=bs&tid=2938&ver=3.2&ts=1370132081880&tguid=41460-2938-1370132081880-1ED4DA9ED308D14484FAD0D4E04065E0&q={searchTerms}
Deleted [Search Provider] : hxxp://www.default-search.net/search?sid=498&a ... earchTerms}

[ File : C:\Users\Radim\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [23596 octets] - [13/07/2014 21:43:13]
AdwCleaner[S0].txt - [20718 octets] - [13/07/2014 21:45:26]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [20779 octets] ##########

Re: default-search.net jako homepage

Napsal: 13 črc 2014 20:58
od vyosek
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: default-search.net jako homepage

Napsal: 13 črc 2014 21:25
od Kenny123
Zoek.exe v5.0.0.0 Updated 13-July-2014
Tool run by Radim on ne 13.07.2014 at 22:03:24,15.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Radim\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

13.7.2014 22:05:46 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2847674021-541428230-2807636112-1007\Software\Microsoft\Internet Explorer\SearchScopes\{11105E74-2066-44F0-97D7-C248892D052A} deleted successfully
HKEY_USERS\S-1-5-21-2847674021-541428230-2807636112-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9030D464-4C02-4ABF-8ECC-5164760863C6} deleted successfully
HKEY_USERS\S-1-5-21-2847674021-541428230-2807636112-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9FDDE16B-836F-4806-AB1F-1455CBEFF289} deleted successfully
HKEY_USERS\S-1-5-21-2847674021-541428230-2807636112-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435b-BC74-9C25C1C588A9} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2847674021-541428230-2807636112-1007\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\iSafeService deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\iSafeService deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\zn9s5myv.default-1390048433011\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.newtab.url", "www.seznam.cz");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\zn9s5myv.default-1390048433011\prefs.js:

Deleted from C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.newtab.url", "www.seznam.cz");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\prefs.js:

Deleted from C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.newtab.url", "www.seznam.cz");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.newtab.url", "www.seznam.cz");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\7207ub4u.default\prefs.js:

Added to C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\7207ub4u.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\zn9s5myv.default-1390048433011

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_13.07.2014_2216_.backup

ProfilePath: C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_13.07.2014_2216_.backup

ProfilePath: C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default

user.js not found
---- Lines CertifiedToolbar removed from prefs.js ----
user_pref("CertifiedToolbar_2938.global.ClearSearchHistoryOnClose", "false");
user_pref("CertifiedToolbar_2938.global.CurrentLanguageSelection", "English");
user_pref("CertifiedToolbar_2938.global.CurrentNavigationSelection", "Current window");
user_pref("CertifiedToolbar_2938.global.CurrentSearchEngineSelection", "US: United States of America");
user_pref("CertifiedToolbar_2938.global.DisplayRecentSearches", "true");
user_pref("CertifiedToolbar_2938.global.setupExtension", "true");
user_pref("CertifiedToolbar_2938.global.ShowButtonText2", "true");
user_pref("CertifiedToolbar_2938.global.UpdateTime", "1405091571445");
user_pref("CertifiedToolbar_2938.global.userEnable", true);
user_pref("CertifiedToolbar_2938.global.userID", "c7be73415ad79e8668cd56ce87531c23");
---- Lines ICQ Search removed from prefs.js ----
user_pref("avg.install.userSPSettings", "ICQ Search");
---- FireFox user.js and prefs.js backups ----

prefs_13.07.2014_2216_.backup

ProfilePath: C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_13.07.2014_2216_.backup

ProfilePath: C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\7207ub4u.default

user.js not found
---- FireFox user.js and prefs.js backups ----


==== Deleting Files \ Folders ======================

C:\Program Files\Probit Software deleted
C:\extensions deleted
C:\PROGRA~2\ICQ deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC deleted
C:\Users\Radim\Searches deleted
C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted
C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater deleted
C:\Windows\Launcher.exe deleted
C:\Windows\System32\drivers\{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw.sys deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-26.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-27.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-28.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-29.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-30.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icqplugin-31.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\searchplugins\icq-search.xml deleted
C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default\extensions\{dac70ad0-e58c-4d0b-9ac7-eee894ffb0fa} deleted
C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default\extensions\{dac70ad0-e58c-4d0b-9ac7-eee894ffb0fa} deleted
"C:\Windows\Installer\207e5f2.msi" deleted
"C:\Users\Radim\AppData\Roaming\vlc" deleted

==== Firefox Extensions ======================

ProfilePath: C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\zn9s5myv.default-1390048433011
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

ProfilePath: C:\Users\Jana\AppData\Roaming\Mozilla\Firefox\Profiles\45leq9uy.default
- Default Manager - %ProfilePath%\extensions\DefaultManager@Microsoft
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- YouTube to MP3 Button - %ProfilePath%\extensions\flvto@hotger.com.xpi
- Showcase - %ProfilePath%\extensions\{89506680-e3f4-484c-a2c0-ed711d481eda}.xpi

ProfilePath: C:\Users\Pavla\AppData\Roaming\Mozilla\Firefox\Profiles\k6e3t95l.default
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

ProfilePath: C:\Users\Hanka\AppData\Roaming\Mozilla\Firefox\Profiles\7207ub4u.default
- Undetermined - %ProfilePath%\extensions\{dac70ad0-e58c-4d0b-9ac7-eee894ffb0fa}
- Undetermined - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

==== Firefox Plugins ======================


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[13.07.2014 20:07]

Chrome In-App Payments service - Jana\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.google.com"
"Start Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://search.certified-toolbar.com?si= ... D4E04065E0"
"Start Default_Page_URL"="http://search.certified-toolbar.com?si= ... D4E04065E0"
"Default_Search_URL"="http://search.certified-toolbar.com?si= ... 04065E0&q="
"Search Bar"="http://search.certified-toolbar.com?si= ... 04065E0&q="
"Search Page"="http://search.certified-toolbar.com?si= ... 04065E0&q="
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
"Start Default_Page_URL"="http://www.google.com"
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si= ... 065E0&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.certified-toolbar.com?si= ... 065E0&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si= ... 065E0&q=%s"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si= ... 065E0&q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Search]
"Start Page"="http://search.certified-toolbar.com?si= ... D4E04065E0"
"Start Default_Page_URL"="http://search.certified-toolbar.com?si= ... D4E04065E0"
"Default_Search_URL"="http://search.certified-toolbar.com?si= ... 04065E0&q="
"Search Bar"="http://search.certified-toolbar.com?si= ... 04065E0&q="
"Search Page"="http://search.certified-toolbar.com?si= ... 04065E0&q="
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Start Page"="http://www.google.com"
"Start Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Start Page"="http://www.google.com"
"Start Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Search Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0191A6B0-1154-4C22-9182-23A95BBE92D9}"
{0191A6B0-1154-4C22-9182-23A95BBE92D9} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"

==== Reset Google Chrome ======================

C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\Pavla\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\Radim\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Pavla\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Radim\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Google Updater deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully

==== Empty IE Cache ======================

C:\Users\Radim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Radim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Radim\AppData\Local\Mozilla\Firefox\Profiles\twue63jj.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Pavla\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Radim\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=151 folders=26 40338543 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Hanka\AppData\Local\Temp emptied successfully
C:\Users\Jana\AppData\Local\Temp emptied successfully
C:\Users\Pavla\AppData\Local\Temp emptied successfully
C:\Users\Radim\AppData\Local\Temp will be emptied at reboot
C:\Windows\system32\config\systemprofile\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Radim\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on ne 13.07.2014 at 22:21:42,43 ======================

Re: default-search.net jako homepage

Napsal: 13 črc 2014 21:29
od vyosek

Re: default-search.net jako homepage

Napsal: 13 črc 2014 22:24
od Kenny123
Tento topic jsem bohužel moc nepochopil :cry:

1) Win mám 32, to vím
2) Stáhnutý Farbar Recovery Scan Tool na obrazovce mám od něj to šedé okýnko, a vybízí na Scan. V topicu ale není nic o spuštění skenování, nedělám s tím nic.
3) Ale nejde stáhnout FRSTLauncher jsem to potvrdil jako falešný poplach atd dělám opakovaně, ale prostě nejde :-( (Na plochu mi to jen nasázelo ikonky bílé A4 se znakem exploreru). Ta stahovací stránka je nenalezena. Kdyžtak pokud ta aplikace není velká, mohu jí poprosit do majlu jako přílohu? Uložím na plochu a spustím.

Re: default-search.net jako homepage

Napsal: 13 črc 2014 22:31
od Kenny123
Jsem nakonec spustil to první Farbar recovery scan tool (šedé okýnko, máte jej i na obrázku, zatržítka stejně), to druhé FRST launcher mi nejde.


Additional scan result of Farbar Recovery Scan Tool (x86) Version:13-07-2014 01
Ran by Radim at 2014-07-13 23:28:00
Running from C:\Users\Radim\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

Update for Microsoft Office 2007 (KB2508958) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft)
18 Wheels of Steel American Long Haul (HKLM\...\{31610C80-309D-40C5-8CF4-9D1EA19DBA0B}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
ABBYY FineReader 10 Professional Edition (HKLM\...\{F1000000-0001-0000-0000-074957833700}) (Version: 10.501.324.70022 - ABBYY)
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version: - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe AIR (Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 14 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Reader X (10.1.10) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AA1000000001}) (Version: 10.1.10 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
avast! Free Antivirus (HKLM\...\avast) (Version: 9.0.2021 - AVAST Software)
Běžecké tratě 2.17 (HKLM\...\Běžecké tratě 2.17) (Version: - )
Casino.com (HKCU\...\Casino.com) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform)
Codec Pack - All In 1 6.0.3.0 (HKLM\...\Cool's_Codec_pack_4.12) (Version: - )
csWord v.3 (HKLM\...\csWord_is1) (Version: - XSoft)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
EUcasino (HKLM\...\EUcasino) (Version: - )
Flvto Youtube Downloader (HKLM\...\Flvto Youtube Downloader) (Version: 0.5.0 - Hotger)
FreeCommander 2009.02 (HKLM\...\FreeCommander_is1) (Version: 2009.02 - Marek Jasinski)
GIMP 2.6.7 (HKLM\...\WinGimp-2.0_is1) (Version: - )
Google Drive (HKLM\...\{75939021-3B68-419D-8DC1-E9823BFF9658}) (Version: 1.16.7009.9618 - Google, Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Chrome (HKLM\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google SketchUp 6 (HKLM\...\{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}) (Version: 6.0.01623 - Google)
Google SketchUp 6 (Version: 6.4.247 - Google) Hidden
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
ICQ6.5 (HKLM\...\{60DE4033-9503-48D1-A483-7846BD217CA9}) (Version: 6.5 - ICQ)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.35 - Irfan Skiljan)
Java(TM) 6 Update 20 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216016FF}) (Version: 6.0.200 - Sun Microsystems, Inc.)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
KvetinkaProzeny (HKLM\...\KvetinkaProzeny.F4442F3611D910A74573A4ECD029F51CBC5E4266.1) (Version: 1.585 - Seznam.cz, a.s.)
KvetinkaProzeny (Version: 1.255 - Seznam.cz, a.s.) Hidden
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (CSY) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Primary Interop Assemblies (HKLM\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Access MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office OneNote MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2007 (Version: 12.0.4518.1025 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Publisher MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual Studio 2005 Tools for Office Runtime (HKLM\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation)
Microsoft Visual Studio 2005 Tools for Office Runtime (Version: 8.0.60940.0 - Microsoft Corporation) Hidden
Mozilla Firefox 30.0 (x86 cs) (HKLM\...\Mozilla Firefox 30.0 (x86 cs)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Photo-Brush 3.51 (HKLM\...\Photo-Brush_is1) (Version: - Mediachance)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5780 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.10.9560 - Skype Technologies S.A.)
Skype™ 6.14 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
TuneUp Utilities Language Pack (en-GB) (Version: 9.0.2020.2 - TuneUp Software) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{A030537D-0034-46AD-A730-B1119786F607}) (Version: - Microsoft)
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2883030) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{F5DCAB53-C2FD-4E5A-8C83-0F37485E5E89}) (Version: - Microsoft)
VeryPDF PDF2Word v3.0 (HKLM\...\VeryPDF PDF2Word v3.0_is1) (Version: - VeryPDF.com Inc)
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729 - Microsoft Corporation) Hidden
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
Winamp (HKLM\...\Winamp) (Version: 5.56 - Nullsoft, Inc)
Windows Live Communications Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Essentials (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM\...\{068B46A0-8858-4CEB-80BC-A4AE787A05FC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
XnView 1.96.5 (HKLM\...\XnView_is1) (Version: 1.96.5 - Gougelet Pierre-e)
Yet Another Cleaner! (HKLM\...\iSafe) (Version: - ELEX DO BRASIL PARTICIPAÇÕES LTDA)

==================== Restore Points =========================

10-07-2014 18:14:12 Naplánovaný kontrolní bod
11-07-2014 22:38:53 Installed SpyHunter
12-07-2014 10:08:13 Removed SpyHunter
13-07-2014 00:33:52 Windows Update
13-07-2014 01:01:10 Windows Update
13-07-2014 18:06:49 avast! antivirus system restore point
13-07-2014 19:35:18 Configured Microsoft Office Enterprise 2007
13-07-2014 19:36:08 Configured Microsoft Office Enterprise 2007
13-07-2014 19:37:17 Configured Microsoft Office Enterprise 2007
13-07-2014 20:05:29 zoek.exe restore point

==================== Hosts content: ==========================

2009-07-14 04:04 - 2014-07-13 22:05 - 00000840 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost
::1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {0939B275-A27F-4845-9B37-4EEC21E72951} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files\TuneUp Utilities 2010\OneClick.exe
Task: {0C5C519F-0C8B-4FAB-A501-53DE407150D2} - System32\Tasks\{3901A6BC-F970-4D83-B8A3-A16079058A47} => C:\Program Files\Skype\\Phone\Skype.exe [2014-02-10] (Skype Technologies S.A.)
Task: {1397F12D-66AE-4701-B45B-33CED477A38C} - System32\Tasks\{3DBD2ADE-1FF1-41FF-BB8D-37465C3C4C9E} => Firefox.exe http://www.skype.com/go/downloading?sou ... tError=404
Task: {1B94B830-F365-4186-B797-24EECDECB6BD} - System32\Tasks\{BB91A4B1-6B58-4B0C-9157-741F0CA05029} => Firefox.exe http://ui.skype.com/ui/0/5.3.0.108/cs/a ... adyoffered
Task: {256B36E0-426B-409F-8FAA-11E619CC62F7} - System32\Tasks\{D1D64832-2705-4B33-880A-6AD632B28AC7} => Chrome.exe http://ui.skype.com/ui/0/5.3.0.108/cs/a ... ltbrowser2
Task: {34D3F08F-A961-4BAB-B489-6C50B3940F36} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-15] (Google Inc.)
Task: {3ABE777A-D558-4121-9D6E-1D45F0E19ADD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09] (Adobe Systems Incorporated)
Task: {5F40E7F5-06E4-4C5E-A4A7-8AC3A9584412} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-06-24] (Piriform Ltd)
Task: {9AD7F121-615D-409E-9E90-E291365601BC} - System32\Tasks\{EB53A263-90EC-43DD-98B2-E9E000AC20FD} => Firefox.exe http://ui.skype.com/ui/0/5.3.0.108/cs/a ... adyoffered
Task: {A91A85FA-61BB-4C0D-B32F-69CE52044E98} - System32\Tasks\{87757F84-51FD-4106-A8B6-3BCE27E69E60} => Firefox.exe http://www.skype.com/go/downloading?sou ... tError=404
Task: {D365D500-EF47-4EB4-A4FA-64847429BC26} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {D54395A3-2DB8-453E-B45A-BDA21668CEA6} - System32\Tasks\Automatic troubleshooting => C:\Program Files\TuneUp Utilities 2010\TuneUpSystemStatusCheck.exe
Task: {DF5FDA5E-7918-44D2-88D6-D04CD21DA786} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-13] (AVAST Software)
Task: {EB96C09D-BA23-46B6-ACD0-A4BE38EB376B} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18] (Sun Microsystems, Inc.)
Task: {F9B5763A-E77A-4A1B-A008-EC9FAB9B533A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-15] (Google Inc.)
Task: {FF209C5A-A16D-47CE-BBBB-3721DAC847D8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-07-13 20:07 - 2014-07-13 20:07 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2014-07-13 19:44 - 2014-07-13 19:44 - 02792960 _____ () C:\Program Files\AVAST Software\Avast\defs\14071301\algo.dll
2009-11-20 17:37 - 2008-09-16 21:18 - 00132608 _____ () C:\Program Files\WinRAR\rarext.dll
2009-11-20 17:37 - 2008-10-11 23:18 - 00319488 _____ () C:\Program Files\WinRAR\rarlng.dll
2014-07-13 20:07 - 2014-07-13 20:07 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\TEMP:0B4227B4

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service"

==================== EXE Association (whitelisted) =============


==================== MSCONFIG/TASK MANAGER disabled items =========


==================== Faulty Device Manager Devices =============

Name: Adaptér tunelového režimu Microsoft Teredo
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw
Description: {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: iSafeKrnl Kit Driver
Description: iSafeKrnl Kit Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: iSafeKrnlKit
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: iSafeKrnl Ring3 Driver
Description: iSafeKrnl Ring3 Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: iSafeKrnlR3
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/13/2014 10:55:40 PM) (Source: MsiInstaller) (EventID: 11706) (User: Peichlovi)
Description: Produkt: Microsoft Office Shared MUI (Czech) 2007 – Chyba 1706 Instalační program nemůže najít požadované soubory. Zkontrolujte síťové připojení nebo jednotku CD-ROM. Další potenciální řešení tohoto problému najdete zde: C:\Users\Radim\AppData\Local\Temp\Setup000009c8\SETUP.CHM.

Error: (07/13/2014 10:54:49 PM) (Source: MsiInstaller) (EventID: 11706) (User: Peichlovi)
Description: Produkt: Microsoft Office Shared MUI (Czech) 2007 – Chyba 1706 Instalační program nemůže najít požadované soubory. Zkontrolujte síťové připojení nebo jednotku CD-ROM. Další potenciální řešení tohoto problému najdete zde: C:\Users\Radim\AppData\Local\Temp\Setup00000750\SETUP.CHM.

Error: (07/13/2014 09:45:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iSafeSvc2.exe, verze: 4.0.0.1, časové razítko: 0x5302db96
Název chybujícího modulu: w32tools.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x537f0b80
Kód výjimky: 0xc0000005
Posun chyby: 0x00339043
ID chybujícího procesu: 0x454
Čas spuštění chybující aplikace: 0xiSafeSvc2.exe0
Cesta k chybující aplikaci: iSafeSvc2.exe1
Cesta k chybujícímu modulu: iSafeSvc2.exe2
ID zprávy: iSafeSvc2.exe3

Error: (07/13/2014 09:35:17 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005, Přístup byl odepřen.
.
To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {46b21a8c-c52e-4a18-909c-4c7f9fc20080}


System errors:
=============
Error: (07/13/2014 10:21:25 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
iSafeKrnlKit
iSafeKrnlR3
{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw

Error: (07/13/2014 10:21:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update DoughGo neuspěla při spuštění v důsledku následující chyby:
%%2

Error: (07/13/2014 10:21:05 PM) (Source: atikmdag) (EventID: 10261) (User: )
Description: Display is not active

Error: (07/13/2014 10:21:05 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (07/13/2014 10:16:15 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/13/2014 10:16:14 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/13/2014 10:16:14 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/13/2014 10:16:13 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/13/2014 10:16:13 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/13/2014 10:16:12 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.


Microsoft Office Sessions:
=========================
Error: (02/07/2014 07:13:29 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3396 seconds with 3240 seconds of active time. This session ended with a crash.

Error: (01/17/2014 05:09:06 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 4 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/17/2014 05:07:09 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 0 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/17/2014 05:06:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 323 seconds with 60 seconds of active time. This session ended with a crash.

Error: (12/19/2011 07:16:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 36 seconds with 0 seconds of active time. This session ended with a crash.

Error: (10/05/2011 03:31:02 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6562.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 21 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/25/2011 08:58:01 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/25/2011 08:47:59 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/25/2011 08:41:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/25/2011 08:41:09 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Percentage of memory in use: 48%
Total physical RAM: 2046.49 MB
Available physical RAM: 1046.45 MB
Total Pagefile: 4092.98 MB
Available Pagefile: 2936.86 MB
Total Virtual: 2047.88 MB
Available Virtual: 1932.75 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:148.77 GB) (Free:59.23 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: B07B7292)
Partition 1: (Active) - (Size=283 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=149 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Re: default-search.net jako homepage

Napsal: 14 črc 2014 05:26
od vyosek
Jeste mi dejte prosim log s nazvem FRST.txt

Re: default-search.net jako homepage

Napsal: 14 črc 2014 21:22
od Kenny123
toto mám:
:arrow: Stažení Farbar Recovery Scan Tool
•Odkaz ke stažení: http://www.bleepingcomputer.com/downloa ... scan-tool/
•Na stránce vybereme dle verze svého systému verzi FRST (32bit nebo 64bit), tu si stáhneme.
•FRST.exe či FRST64.exe uložíme na Plochu.

ale toto opět opakovaně nedostanu
:arrow: Stažení FRSTLauncheru
•Odkaz ke stažení: http://vyosek.tym.cz/pro_usery/FRSTLauncher.exe
•FRSTLauncher opět uložíme na Plochu
•Pokud dostáváme od antiviru hlášení, že se jedná o neznámou\škodlivou aplikaci, tak hlášku ignorujeme. Případně na chvíli deaktivujeme rezidentní štít antiviru. Jedná se o falešný poplach a detekci.


Tady něco je, ale je to FRST poznámkový blok, ne txt.
----------------------------------------------------------------------------------------------------------------------------



Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:13-07-2014 01
Ran by Radim (administrator) on NOVAK on 13-07-2014 23:26:46
Running from C:\Users\Radim\Desktop
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Source Engine\OSE.EXE
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [6711840 2009-01-20] (Realtek Semiconductor)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-13] (AVAST Software)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKU\S-1-5-21-2847674021-541428230-2807636112-1007\...\MountPoints2: {a2b76294-1c0d-11df-9c30-00241dd74c45} - D:\start.exe
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)

==================== Internet (Whitelisted) ====================

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - URL http://search.certified-toolbar.com?si= ... earchTerms}
SearchScopes: HKLM - SuggestionsURL_JSON http://api.widdit.com/suggestions/?form ... earchTerms}
SearchScopes: HKLM - TopResultURLFallback http://search.certified-toolbar.com?si= ... earchTerms}
SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 217.196.209.2 8.8.8.8

FireFox:
========
FF ProfilePath: C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll No File
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll No File
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll No File
FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll No File
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml

========================== Services (Whitelisted) =================

R2 ABBYY.Licensing.FineReader.Professional.10.0; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [814344 2010-07-22] (ABBYY)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-13] (AVAST Software)
S2 Update DoughGo; "C:\Program Files\DoughGo\updateDoughGo.exe" [X]

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-07-13] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-07-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-07-13] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-07-13] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-07-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-07-13] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-07-13] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-07-13] ()
S3 ENTECH; C:\Windows\system32\DRIVERS\ENTECH.sys [27672 2007-08-20] (EnTech Taiwan)
S3 iSafeKrnlBoot; C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys [40064 2014-06-27] (Elex do Brasil Participações Ltda)
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [64288 2010-06-18] (Lavasoft AB)
S3 ZSMC301b; C:\Windows\System32\Drivers\usbVM31b.sys [90968 2004-03-19] (VM)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S1 iSafeKrnlKit; \??\C:\Program Files\iSafe\iSafeKrnlKit.sys [X]
S1 iSafeKrnlR3; \??\C:\Program Files\iSafe\iSafeKrnlR3.sys [X]
S1 {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw; system32\drivers\{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-13 23:26 - 2014-07-13 23:27 - 00010205 _____ () C:\Users\Radim\Desktop\FRST.txt
2014-07-13 23:15 - 2014-07-13 23:15 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.fr27l6g.partial
2014-07-13 23:08 - 2014-07-13 23:09 - 01076736 _____ (Farbar) C:\Users\Radim\Desktop\FRST.exe
2014-07-13 23:07 - 2014-07-13 23:26 - 00000000 ____D () C:\FRST
2014-07-13 23:01 - 2014-07-13 23:01 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.sz34zyg.partial
2014-07-13 22:58 - 2014-07-13 22:58 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher.exe.ta63azi.partial
2014-07-13 22:20 - 2014-07-13 22:03 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-13 22:05 - 2014-07-13 22:21 - 00023685 _____ () C:\zoek-results.log
2014-07-13 22:03 - 2014-07-13 22:16 - 00000000 ____D () C:\zoek_backup
2014-07-13 22:02 - 2014-07-13 22:02 - 01285120 _____ () C:\Users\Radim\Desktop\zoek.exe
2014-07-13 21:44 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-07-13 21:43 - 2014-07-13 21:45 - 00000000 ____D () C:\AdwCleaner
2014-07-13 21:42 - 2014-07-13 21:42 - 01348263 _____ () C:\Users\Radim\Desktop\adwcleaner_3.215.exe
2014-07-13 21:41 - 2014-07-13 21:41 - 00066371 _____ () C:\Users\Radim\Desktop\JRT2.txt
2014-07-13 21:34 - 2014-07-13 21:34 - 00066371 _____ () C:\Users\Radim\Desktop\JRT.txt
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Windows\ERUNT
2014-07-13 21:27 - 2014-07-13 21:28 - 01016261 _____ (Thisisu) C:\Users\Radim\Desktop\JRT.exe
2014-07-13 20:13 - 2014-07-13 20:15 - 00000000 ____D () C:\rsit
2014-07-13 20:10 - 2014-07-13 22:20 - 00001750 _____ () C:\Windows\PFRO.log
2014-07-13 20:07 - 2014-07-13 20:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-13 20:02 - 2014-07-13 20:03 - 01107968 _____ () C:\Users\Radim\Desktop\RSIT.exe
2014-07-13 20:01 - 2014-07-13 20:01 - 00461038 _____ () C:\Users\Radim\Desktop\RSIT.exe.4hoeo13.partial
2014-07-13 19:44 - 2014-07-13 22:21 - 00000224 _____ () C:\Windows\setupact.log
2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-13 02:44 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-13 02:44 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-13 02:44 - 2014-06-19 01:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-13 02:44 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-13 02:44 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-13 02:44 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-13 02:44 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-13 02:44 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-13 02:44 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-13 02:44 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-13 02:44 - 2014-06-19 01:23 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-13 02:44 - 2014-06-19 01:16 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-13 02:44 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-13 02:44 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-13 02:44 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-13 02:44 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-13 02:44 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-13 02:44 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-13 02:44 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-13 02:44 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-13 02:44 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-13 02:44 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-13 02:44 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-13 02:44 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-13 02:44 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-13 02:43 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-13 02:43 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-13 02:43 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-13 02:43 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-13 02:43 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-13 02:43 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-13 02:43 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-13 02:42 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-13 02:39 - 2014-06-30 03:40 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-13 02:39 - 2014-06-30 03:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-13 02:39 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-13 02:39 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-13 00:45 - 2014-07-13 00:45 - 00001698 _____ () C:\Users\Public\Desktop\YAC.lnk
2014-07-13 00:45 - 2014-06-27 11:54 - 00040064 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys
2014-07-13 00:44 - 2014-07-13 00:44 - 12348480 _____ (Elex do Brasil Participações Ltda) C:\Users\Radim\Downloads\yet_another_cleaner_sk.exe
2014-07-12 12:08 - 2014-07-13 00:41 - 00000000 ____D () C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-07-12 10:42 - 2014-07-13 02:25 - 00000000 ____D () C:\Program Files\DoughGo
2014-07-12 10:24 - 2014-07-12 10:24 - 00443264 _____ () C:\Users\Radim\Downloads\SafePCRepair.exe
2014-07-12 00:40 - 2014-07-12 00:40 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-12 00:38 - 2014-07-12 00:38 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2014-07-11 23:51 - 2014-07-12 00:14 - 00000000 ____D () C:\Users\Radim\Desktop\kiki
2014-07-09 22:38 - 2014-07-12 10:46 - 00000000 ____D () C:\Users\Radim\Desktop\fap
2014-07-09 22:38 - 2014-07-09 22:38 - 00000000 ____D () C:\Users\Radim\Desktop\Nová složka
2014-07-08 17:03 - 2014-07-08 17:19 - 00009736 _____ () C:\Users\Jana\Downloads\The-Big-Bang-Theory-7-07-The-Proton-Displacement-HD-1080p-ang+cz.mkv
2014-07-03 23:47 - 2014-07-03 23:48 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (2).exe
2014-07-03 23:42 - 2014-07-03 23:43 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (1).exe
2014-07-03 23:42 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro.exe
2014-06-28 07:10 - 2014-07-13 03:32 - 00000000 ____D () C:\Program Files\QuickTime
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-06-22 15:14 - 2014-06-22 15:14 - 00884472 _____ (Casino.com) C:\Users\Radim\Downloads\SetupCasino_f0c68c.exe
2014-06-22 15:12 - 2014-06-22 15:12 - 00001786 _____ () C:\Users\Radim\AppData\Roaming\Microsoft\Windows\Start Menu\Casino.com.lnk
2014-06-22 15:12 - 2014-06-22 15:12 - 00001784 _____ () C:\Users\Radim\Desktop\Casino.com.lnk
2014-06-22 15:11 - 2014-06-22 15:12 - 00000000 ____D () C:\Users\Radim\AppData\Local\Casino.com
2014-06-21 15:44 - 2014-06-21 15:45 - 00000000 ____D () C:\Users\Radim\AppData\Local\Windows Live Writer
2014-06-21 15:44 - 2014-06-21 15:44 - 00000000 ____D () C:\Users\Radim\AppData\Roaming\Windows Live Writer
2014-06-20 23:29 - 2014-07-13 20:07 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-06-20 20:41 - 2014-06-20 20:41 - 00039398 ___HT () C:\Users\Radim\Downloads\4732OSFR.bat
2014-06-18 12:14 - 2014-06-18 12:15 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-06-17 00:44 - 2014-06-17 00:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EUcasino
2014-06-17 00:18 - 2014-06-17 00:18 - 00325104 _____ () C:\Users\Radim\Downloads\EUcasino_Setup.exe
2014-06-17 00:07 - 2014-06-17 01:00 - 00000000 ____D () C:\Program Files\EUcasino
2014-06-15 22:20 - 2014-06-28 22:52 - 00000000 ____D () C:\Users\Radim\Desktop\greed

==================== One Month Modified Files and Folders =======

2014-07-13 23:27 - 2014-07-13 23:26 - 00010205 _____ () C:\Users\Radim\Desktop\FRST.txt
2014-07-13 23:26 - 2014-07-13 23:07 - 00000000 ____D () C:\FRST
2014-07-13 23:24 - 2013-03-09 13:33 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-13 23:24 - 2013-02-16 17:28 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-13 23:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-13 23:17 - 2011-05-22 15:15 - 06879744 ___SH () C:\Users\Radim\Desktop\Thumbs.db
2014-07-13 23:15 - 2014-07-13 23:15 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.fr27l6g.partial
2014-07-13 23:09 - 2014-07-13 23:08 - 01076736 _____ (Farbar) C:\Users\Radim\Desktop\FRST.exe
2014-07-13 23:08 - 2012-11-19 22:09 - 00000000 ____D () C:\Users\Radim\Desktop\uprava
2014-07-13 23:01 - 2014-07-13 23:01 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.sz34zyg.partial
2014-07-13 22:58 - 2014-07-13 22:58 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher.exe.ta63azi.partial
2014-07-13 22:55 - 2009-10-22 12:24 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-13 22:29 - 2009-07-14 06:34 - 00015152 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-13 22:29 - 2009-07-14 06:34 - 00015152 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-13 22:25 - 2011-10-25 00:42 - 01195369 _____ () C:\Windows\WindowsUpdate.log
2014-07-13 22:21 - 2014-07-13 22:05 - 00023685 _____ () C:\zoek-results.log
2014-07-13 22:21 - 2014-07-13 19:44 - 00000224 _____ () C:\Windows\setupact.log
2014-07-13 22:21 - 2013-02-16 17:28 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-13 22:21 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-13 22:20 - 2014-07-13 20:10 - 00001750 _____ () C:\Windows\PFRO.log
2014-07-13 22:16 - 2014-07-13 22:03 - 00000000 ____D () C:\zoek_backup
2014-07-13 22:16 - 2009-11-20 17:14 - 00000000 ____D () C:\Users\Radim
2014-07-13 22:03 - 2014-07-13 22:20 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-13 22:02 - 2014-07-13 22:02 - 01285120 _____ () C:\Users\Radim\Desktop\zoek.exe
2014-07-13 21:50 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-07-13 21:45 - 2014-07-13 21:43 - 00000000 ____D () C:\AdwCleaner
2014-07-13 21:42 - 2014-07-13 21:42 - 01348263 _____ () C:\Users\Radim\Desktop\adwcleaner_3.215.exe
2014-07-13 21:41 - 2014-07-13 21:41 - 00066371 _____ () C:\Users\Radim\Desktop\JRT2.txt
2014-07-13 21:37 - 2011-03-03 22:37 - 00000000 ____D () C:\Program Files\ABBYY FineReader 10
2014-07-13 21:34 - 2014-07-13 21:34 - 00066371 _____ () C:\Users\Radim\Desktop\JRT.txt
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Windows\ERUNT
2014-07-13 21:28 - 2014-07-13 21:27 - 01016261 _____ (Thisisu) C:\Users\Radim\Desktop\JRT.exe
2014-07-13 20:15 - 2014-07-13 20:13 - 00000000 ____D () C:\rsit
2014-07-13 20:13 - 2012-10-21 13:17 - 00000000 ____D () C:\Program Files\trend micro
2014-07-13 20:08 - 2014-04-13 22:12 - 00002007 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-13 20:08 - 2014-02-01 18:19 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-13 20:07 - 2014-07-13 20:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-13 20:07 - 2014-06-20 23:29 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-13 20:07 - 2014-03-25 09:54 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-13 20:07 - 2014-02-01 18:19 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-13 20:03 - 2014-07-13 20:02 - 01107968 _____ () C:\Users\Radim\Desktop\RSIT.exe
2014-07-13 20:01 - 2014-07-13 20:01 - 00461038 _____ () C:\Users\Radim\Desktop\RSIT.exe.4hoeo13.partial
2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-13 03:35 - 2014-04-09 22:40 - 00000000 __SHD () C:\Users\Radim\AppData\Local\EmieSiteList
2014-07-13 03:32 - 2014-06-28 07:10 - 00000000 ____D () C:\Program Files\QuickTime
2014-07-13 03:24 - 2009-07-14 06:33 - 00413856 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-13 03:21 - 2014-05-06 18:43 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-13 03:21 - 2009-07-14 11:20 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-13 03:13 - 2013-08-14 01:03 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-13 03:07 - 2009-10-22 12:55 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-13 02:25 - 2014-07-12 10:42 - 00000000 ____D () C:\Program Files\DoughGo
2014-07-13 02:23 - 2013-02-21 23:53 - 00000000 ____D () C:\Program Files\VideoLAN
2014-07-13 02:19 - 2009-07-14 04:04 - 00000580 _____ () C:\Windows\win.ini
2014-07-13 02:05 - 2012-04-08 19:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPaint
2014-07-13 02:05 - 2009-10-22 12:53 - 00000000 ____D () C:\Windows\Panther
2014-07-13 02:00 - 2012-11-19 23:29 - 00000000 ____D () C:\Users\Radim\Documents\Euro Truck Simulator
2014-07-13 00:45 - 2014-07-13 00:45 - 00001698 _____ () C:\Users\Public\Desktop\YAC.lnk
2014-07-13 00:44 - 2014-07-13 00:44 - 12348480 _____ (Elex do Brasil Participações Ltda) C:\Users\Radim\Downloads\yet_another_cleaner_sk.exe
2014-07-13 00:41 - 2014-07-12 12:08 - 00000000 ____D () C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-07-12 14:11 - 2012-01-05 01:53 - 00000000 ____D () C:\Users\Radim\Desktop\Euro Truck Simulator
2014-07-12 10:46 - 2014-07-09 22:38 - 00000000 ____D () C:\Users\Radim\Desktop\fap
2014-07-12 10:24 - 2014-07-12 10:24 - 00443264 _____ () C:\Users\Radim\Downloads\SafePCRepair.exe
2014-07-12 00:57 - 2014-05-12 16:05 - 00002339 _____ () C:\Users\Jana\Desktop\Flvto Youtube Downloader.lnk
2014-07-12 00:40 - 2014-07-12 00:40 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-12 00:38 - 2014-07-12 00:38 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2014-07-12 00:14 - 2014-07-11 23:51 - 00000000 ____D () C:\Users\Radim\Desktop\kiki
2014-07-11 17:11 - 2009-11-20 16:32 - 00000000 ____D () C:\Users\Pavla\Documents\narozky
2014-07-09 22:38 - 2014-07-09 22:38 - 00000000 ____D () C:\Users\Radim\Desktop\Nová složka
2014-07-09 19:52 - 2011-01-02 10:59 - 00093696 ___SH () C:\Users\Pavla\Documents\Thumbs.db
2014-07-09 19:47 - 2010-09-24 20:15 - 00000000 ____D () C:\Users\Pavla\Documents\Vánoce
2014-07-09 19:40 - 2009-11-20 16:33 - 00000000 ____D () C:\Users\Pavla\Documents\ZIMA foto
2014-07-09 19:23 - 2009-11-20 16:27 - 00000000 ____D () C:\Users\Pavla\Documents\LETO foto
2014-07-09 19:21 - 2009-10-22 12:09 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-09 11:24 - 2012-05-26 19:19 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-09 11:24 - 2011-06-24 21:12 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-08 17:19 - 2014-07-08 17:03 - 00009736 _____ () C:\Users\Jana\Downloads\The-Big-Bang-Theory-7-07-The-Proton-Displacement-HD-1080p-ang+cz.mkv
2014-07-08 15:25 - 2013-05-15 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-07-08 08:33 - 2010-03-28 16:24 - 07602176 ___SH () C:\Users\Jana\Desktop\Thumbs.db
2014-07-05 10:43 - 2009-07-14 06:53 - 00032534 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-07-03 23:59 - 2013-07-07 21:33 - 00000000 ____D () C:\Users\Radim\Desktop\FLESKA
2014-07-03 23:49 - 2009-11-20 17:49 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-03 23:48 - 2014-07-03 23:47 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (2).exe
2014-07-03 23:48 - 2013-09-12 19:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-03 23:48 - 2012-01-22 20:40 - 00000965 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-03 23:43 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (1).exe
2014-07-03 23:42 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro.exe
2014-06-30 03:40 - 2014-07-13 02:39 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 03:36 - 2014-07-13 02:39 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-28 22:52 - 2014-06-15 22:20 - 00000000 ____D () C:\Users\Radim\Desktop\greed
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-06-27 11:54 - 2014-07-13 00:45 - 00040064 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys
2014-06-25 20:39 - 2013-01-07 01:03 - 00000000 ____D () C:\Users\Radim\Downloads\simona
2014-06-22 16:50 - 2012-01-22 22:22 - 00000000 ____D () C:\Users\Radim\Desktop\oldtimerclub
2014-06-22 15:14 - 2014-06-22 15:14 - 00884472 _____ (Casino.com) C:\Users\Radim\Downloads\SetupCasino_f0c68c.exe
2014-06-22 15:12 - 2014-06-22 15:12 - 00001786 _____ () C:\Users\Radim\AppData\Roaming\Microsoft\Windows\Start Menu\Casino.com.lnk
2014-06-22 15:12 - 2014-06-22 15:12 - 00001784 _____ () C:\Users\Radim\Desktop\Casino.com.lnk
2014-06-22 15:12 - 2014-06-22 15:11 - 00000000 ____D () C:\Users\Radim\AppData\Local\Casino.com
2014-06-21 15:45 - 2014-06-21 15:44 - 00000000 ____D () C:\Users\Radim\AppData\Local\Windows Live Writer
2014-06-21 15:44 - 2014-06-21 15:44 - 00000000 ____D () C:\Users\Radim\AppData\Roaming\Windows Live Writer
2014-06-21 15:44 - 2010-12-31 19:00 - 00000000 ____D () C:\Users\Radim\AppData\Local\Windows Live
2014-06-20 21:39 - 2014-07-13 02:44 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-06-20 20:41 - 2014-06-20 20:41 - 00039398 ___HT () C:\Users\Radim\Downloads\4732OSFR.bat
2014-06-20 20:11 - 2011-04-17 16:19 - 00000000 ____D () C:\Users\Pavla\AppData\Roaming\Skype
2014-06-19 02:16 - 2014-07-13 02:43 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-19 01:56 - 2014-07-13 02:44 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-19 01:56 - 2014-07-13 02:44 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-19 01:38 - 2014-07-13 02:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-19 01:37 - 2014-07-13 02:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-19 01:36 - 2014-07-13 02:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-19 01:35 - 2014-07-13 02:44 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-06-19 01:32 - 2014-07-13 02:43 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-19 01:28 - 2014-07-13 02:44 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-19 01:28 - 2014-07-13 02:44 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-19 01:25 - 2014-07-13 02:44 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-19 01:23 - 2014-07-13 02:44 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-19 01:23 - 2014-07-13 02:44 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-19 01:22 - 2014-07-13 02:43 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-19 01:16 - 2014-07-13 02:44 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-19 01:12 - 2014-07-13 02:44 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-19 01:06 - 2014-07-13 02:44 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-19 01:01 - 2014-07-13 02:44 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-19 00:59 - 2014-07-13 02:44 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-19 00:58 - 2014-07-13 02:44 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-19 00:52 - 2014-07-13 02:44 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-19 00:52 - 2014-07-13 02:43 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-19 00:49 - 2014-07-13 02:44 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-19 00:46 - 2014-07-13 02:44 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-19 00:45 - 2014-07-13 02:44 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-19 00:35 - 2014-07-13 02:44 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-19 00:13 - 2014-07-13 02:44 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-19 00:09 - 2014-07-13 02:44 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-19 00:07 - 2014-07-13 02:44 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-18 17:35 - 2014-01-28 18:05 - 00000000 ____D () C:\Users\Jana\Desktop\Vše Kanada - VÍZA aspol
2014-06-18 16:22 - 2012-08-31 18:05 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-06-18 12:15 - 2014-06-18 12:14 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-06-18 03:51 - 2014-07-13 02:43 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-06-18 02:52 - 2014-07-13 02:43 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-06-17 01:00 - 2014-06-17 00:07 - 00000000 ____D () C:\Program Files\EUcasino
2014-06-17 00:44 - 2014-06-17 00:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EUcasino
2014-06-17 00:18 - 2014-06-17 00:18 - 00325104 _____ () C:\Users\Radim\Downloads\EUcasino_Setup.exe
2014-06-13 17:21 - 2012-10-25 00:55 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-08 16:35

==================== End Of Log ============================

Re: default-search.net jako homepage

Napsal: 14 črc 2014 21:32
od vyosek
:arrow: TXT je poznamkovy blok :D Jinak je to to, co jsem chtel

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
    HKU\S-1-5-21-2847674021-541428230-2807636112-1007\...\MountPoints2: {a2b76294-1c0d-11df-9c30-00241dd74c45} - D:\start.exe
    
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKLM - URL http://search.certified-toolbar.com?si= ... 04065E0&q={searchTerms}
    SearchScopes: HKLM - SuggestionsURL_JSON http://api.widdit.com/suggestions/?form ... 1&command={searchTerms}
    SearchScopes: HKLM - TopResultURLFallback http://search.certified-toolbar.com?si= ... 04065E0&q={searchTerms}
    SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
    SearchScopes: HKCU - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
    SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
    SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
    
    S2 Update DoughGo; "C:\Program Files\DoughGo\updateDoughGo.exe" [X]
    S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
    S3 gdrv; \??\C:\Windows\gdrv.sys [X]
    S1 iSafeKrnlKit; \??\C:\Program Files\iSafe\iSafeKrnlKit.sys [X]
    S1 iSafeKrnlR3; \??\C:\Program Files\iSafe\iSafeKrnlR3.sys [X]
    S1 {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw; system32\drivers\{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw.sys [X]
    
    2014-07-13 23:26 - 2014-07-13 23:27 - 00010205 _____ () C:\Users\Radim\Desktop\FRST.txt
    2014-07-13 23:15 - 2014-07-13 23:15 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.fr27l6g.partial
    2014-07-13 23:01 - 2014-07-13 23:01 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.sz34zyg.partial
    2014-07-13 22:58 - 2014-07-13 22:58 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher.exe.ta63azi.partial
    2014-07-13 22:20 - 2014-07-13 22:03 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-07-13 22:05 - 2014-07-13 22:21 - 00023685 _____ () C:\zoek-results.log
    2014-07-13 22:03 - 2014-07-13 22:16 - 00000000 ____D () C:\zoek_backup
    2014-07-13 22:02 - 2014-07-13 22:02 - 01285120 _____ () C:\Users\Radim\Desktop\zoek.exe
    2014-07-13 21:44 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
    2014-07-13 21:43 - 2014-07-13 21:45 - 00000000 ____D () C:\AdwCleaner
    2014-07-13 21:42 - 2014-07-13 21:42 - 01348263 _____ () C:\Users\Radim\Desktop\adwcleaner_3.215.exe
    2014-07-13 21:41 - 2014-07-13 21:41 - 00066371 _____ () C:\Users\Radim\Desktop\JRT2.txt
    2014-07-13 21:34 - 2014-07-13 21:34 - 00066371 _____ () C:\Users\Radim\Desktop\JRT.txt
    2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Windows\ERUNT
    2014-07-13 21:27 - 2014-07-13 21:28 - 01016261 _____ (Thisisu) C:\Users\Radim\Desktop\JRT.exe
    2014-07-13 20:13 - 2014-07-13 20:15 - 00000000 ____D () C:\rsit
    2014-07-13 20:10 - 2014-07-13 22:20 - 00001750 _____ () C:\Windows\PFRO.log
    2014-07-13 20:02 - 2014-07-13 20:03 - 01107968 _____ () C:\Users\Radim\Desktop\RSIT.exe
    2014-07-13 20:01 - 2014-07-13 20:01 - 00461038 _____ () C:\Users\Radim\Desktop\RSIT.exe.4hoeo13.partial
    2014-07-03 23:47 - 2014-07-03 23:48 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (2).exe
    2014-07-03 23:42 - 2014-07-03 23:43 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (1).exe
    2014-07-03 23:42 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro.exe
    
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt

Re: default-search.net jako homepage

Napsal: 14 črc 2014 21:53
od Kenny123
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:13-07-2014 01
Ran by Radim (administrator) on NOVAK on 14-07-2014 22:43:48
Running from C:\Users\Radim\Desktop
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
(Google) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [6711840 2009-01-20] (Realtek Semiconductor)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-13] (AVAST Software)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKU\S-1-5-21-2847674021-541428230-2807636112-1007\...\MountPoints2: {a2b76294-1c0d-11df-9c30-00241dd74c45} - D:\start.exe
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.seznam.cz
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - URL http://search.certified-toolbar.com?si= ... earchTerms}
SearchScopes: HKLM - SuggestionsURL_JSON http://api.widdit.com/suggestions/?form ... earchTerms}
SearchScopes: HKLM - TopResultURLFallback http://search.certified-toolbar.com?si= ... earchTerms}
SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 217.196.209.2 8.8.8.8

FireFox:
========
FF ProfilePath: C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll No File
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll No File
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll No File
FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll No File
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Users\Radim\AppData\Roaming\Mozilla\Firefox\Profiles\twue63jj.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml

========================== Services (Whitelisted) =================

R2 ABBYY.Licensing.FineReader.Professional.10.0; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [814344 2010-07-22] (ABBYY)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-13] (AVAST Software)

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-07-13] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-07-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-07-13] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-07-13] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-07-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-07-13] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-07-13] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-07-13] ()
S3 ENTECH; C:\Windows\system32\DRIVERS\ENTECH.sys [27672 2007-08-20] (EnTech Taiwan)
S3 iSafeKrnlBoot; C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys [40064 2014-06-27] (Elex do Brasil Participações Ltda)
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [64288 2010-06-18] (Lavasoft AB)
S3 ZSMC301b; C:\Windows\System32\Drivers\usbVM31b.sys [90968 2004-03-19] (VM)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S1 iSafeKrnlKit; \??\C:\Program Files\iSafe\iSafeKrnlKit.sys [X]
S1 iSafeKrnlR3; \??\C:\Program Files\iSafe\iSafeKrnlR3.sys [X]
S1 {735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw; system32\drivers\{735c7dda-e3b7-44f2-8521-a39cc0d289b2}Gw.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-14 22:38 - 2014-07-14 22:38 - 00004175 _____ () C:\Users\Radim\Desktop\fixlist.txt
2014-07-14 22:13 - 2014-07-14 22:13 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher2.exe.apkwd3r.partial
2014-07-14 09:49 - 2014-07-14 22:05 - 00000168 _____ () C:\Windows\setupact.log
2014-07-14 09:49 - 2014-07-14 09:49 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-13 23:28 - 2014-07-13 23:28 - 00031610 _____ () C:\Users\Radim\Desktop\Addition.txt
2014-07-13 23:26 - 2014-07-14 22:43 - 00010425 _____ () C:\Users\Radim\Desktop\FRST.txt
2014-07-13 23:15 - 2014-07-13 23:15 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.fr27l6g.partial
2014-07-13 23:08 - 2014-07-13 23:09 - 01076736 _____ (Farbar) C:\Users\Radim\Desktop\FRST.exe
2014-07-13 23:07 - 2014-07-14 22:43 - 00000000 ____D () C:\FRST
2014-07-13 23:01 - 2014-07-13 23:01 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.sz34zyg.partial
2014-07-13 22:58 - 2014-07-13 22:58 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher.exe.ta63azi.partial
2014-07-13 22:20 - 2014-07-13 22:03 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-13 22:05 - 2014-07-13 22:21 - 00023685 _____ () C:\zoek-results.log
2014-07-13 22:03 - 2014-07-13 22:16 - 00000000 ____D () C:\zoek_backup
2014-07-13 22:02 - 2014-07-13 22:02 - 01285120 _____ () C:\Users\Radim\Desktop\zoek.exe
2014-07-13 21:44 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-07-13 21:43 - 2014-07-14 00:23 - 00000000 ____D () C:\AdwCleaner
2014-07-13 21:42 - 2014-07-13 21:42 - 01348263 _____ () C:\Users\Radim\Desktop\adwcleaner_3.215.exe
2014-07-13 21:41 - 2014-07-13 21:41 - 00066371 _____ () C:\Users\Radim\Desktop\JRT2.txt
2014-07-13 21:34 - 2014-07-13 21:34 - 00066371 _____ () C:\Users\Radim\Desktop\JRT.txt
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Windows\ERUNT
2014-07-13 21:27 - 2014-07-13 21:28 - 01016261 _____ (Thisisu) C:\Users\Radim\Desktop\JRT.exe
2014-07-13 20:13 - 2014-07-13 20:15 - 00000000 ____D () C:\rsit
2014-07-13 20:07 - 2014-07-13 20:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-13 20:02 - 2014-07-13 20:03 - 01107968 _____ () C:\Users\Radim\Desktop\RSIT.exe
2014-07-13 20:01 - 2014-07-13 20:01 - 00461038 _____ () C:\Users\Radim\Desktop\RSIT.exe.4hoeo13.partial
2014-07-13 02:44 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-13 02:44 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-13 02:44 - 2014-06-19 01:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-13 02:44 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-13 02:44 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-13 02:44 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-13 02:44 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-13 02:44 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-13 02:44 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-13 02:44 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-13 02:44 - 2014-06-19 01:23 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-13 02:44 - 2014-06-19 01:16 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-13 02:44 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-13 02:44 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-13 02:44 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-13 02:44 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-13 02:44 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-13 02:44 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-13 02:44 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-13 02:44 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-13 02:44 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-13 02:44 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-13 02:44 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-13 02:44 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-13 02:44 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-13 02:43 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-13 02:43 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-13 02:43 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-13 02:43 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-13 02:43 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-13 02:43 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-13 02:43 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-13 02:42 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-13 02:40 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-13 02:39 - 2014-06-30 03:40 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-13 02:39 - 2014-06-30 03:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-13 02:39 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-13 02:39 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-13 00:45 - 2014-07-13 00:45 - 00001698 _____ () C:\Users\Public\Desktop\YAC.lnk
2014-07-13 00:45 - 2014-06-27 11:54 - 00040064 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys
2014-07-13 00:44 - 2014-07-13 00:44 - 12348480 _____ (Elex do Brasil Participações Ltda) C:\Users\Radim\Downloads\yet_another_cleaner_sk.exe
2014-07-12 10:42 - 2014-07-13 02:25 - 00000000 ____D () C:\Program Files\DoughGo
2014-07-12 10:24 - 2014-07-12 10:24 - 00443264 _____ () C:\Users\Radim\Downloads\SafePCRepair.exe
2014-07-12 00:40 - 2014-07-12 00:40 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-12 00:38 - 2014-07-12 00:38 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2014-07-11 23:51 - 2014-07-12 00:14 - 00000000 ____D () C:\Users\Radim\Desktop\kiki
2014-07-09 22:38 - 2014-07-14 00:11 - 00000000 ____D () C:\Users\Radim\Desktop\fap
2014-07-08 17:03 - 2014-07-08 17:19 - 00009736 _____ () C:\Users\Jana\Downloads\The-Big-Bang-Theory-7-07-The-Proton-Displacement-HD-1080p-ang+cz.mkv
2014-07-03 23:47 - 2014-07-03 23:48 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (2).exe
2014-07-03 23:42 - 2014-07-03 23:43 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (1).exe
2014-07-03 23:42 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro.exe
2014-06-28 07:10 - 2014-07-13 03:32 - 00000000 ____D () C:\Program Files\QuickTime
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-06-22 15:14 - 2014-06-22 15:14 - 00884472 _____ (Casino.com) C:\Users\Radim\Downloads\SetupCasino_f0c68c.exe
2014-06-22 15:12 - 2014-06-22 15:12 - 00001786 _____ () C:\Users\Radim\AppData\Roaming\Microsoft\Windows\Start Menu\Casino.com.lnk
2014-06-22 15:12 - 2014-06-22 15:12 - 00001784 _____ () C:\Users\Radim\Desktop\Casino.com.lnk
2014-06-22 15:11 - 2014-06-22 15:12 - 00000000 ____D () C:\Users\Radim\AppData\Local\Casino.com
2014-06-21 15:44 - 2014-06-21 15:45 - 00000000 ____D () C:\Users\Radim\AppData\Local\Windows Live Writer
2014-06-21 15:44 - 2014-06-21 15:44 - 00000000 ____D () C:\Users\Radim\AppData\Roaming\Windows Live Writer
2014-06-20 23:29 - 2014-07-13 20:07 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-06-20 20:41 - 2014-06-20 20:41 - 00039398 ___HT () C:\Users\Radim\Downloads\4732OSFR.bat
2014-06-18 12:14 - 2014-06-18 12:15 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-06-17 00:44 - 2014-06-17 00:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EUcasino
2014-06-17 00:18 - 2014-06-17 00:18 - 00325104 _____ () C:\Users\Radim\Downloads\EUcasino_Setup.exe
2014-06-17 00:07 - 2014-06-17 01:00 - 00000000 ____D () C:\Program Files\EUcasino
2014-06-15 22:20 - 2014-06-28 22:52 - 00000000 ____D () C:\Users\Radim\Desktop\greed

==================== One Month Modified Files and Folders =======

2014-07-14 22:44 - 2014-07-13 23:26 - 00010425 _____ () C:\Users\Radim\Desktop\FRST.txt
2014-07-14 22:43 - 2014-07-13 23:07 - 00000000 ____D () C:\FRST
2014-07-14 22:38 - 2014-07-14 22:38 - 00004175 _____ () C:\Users\Radim\Desktop\fixlist.txt
2014-07-14 22:24 - 2013-03-09 13:33 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-14 22:24 - 2013-02-16 17:28 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-14 22:14 - 2009-11-20 17:14 - 00000000 ____D () C:\Users\Radim
2014-07-14 22:13 - 2014-07-14 22:13 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher2.exe.apkwd3r.partial
2014-07-14 22:13 - 2009-07-14 06:34 - 00015152 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-14 22:13 - 2009-07-14 06:34 - 00015152 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-14 22:08 - 2011-05-22 15:15 - 06879744 ___SH () C:\Users\Radim\Desktop\Thumbs.db
2014-07-14 22:07 - 2013-02-16 17:28 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-14 22:05 - 2014-07-14 09:49 - 00000168 _____ () C:\Windows\setupact.log
2014-07-14 22:05 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-14 21:26 - 2011-10-25 00:42 - 01231497 _____ () C:\Windows\WindowsUpdate.log
2014-07-14 09:49 - 2014-07-14 09:49 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-14 00:23 - 2014-07-13 21:43 - 00000000 ____D () C:\AdwCleaner
2014-07-14 00:11 - 2014-07-09 22:38 - 00000000 ____D () C:\Users\Radim\Desktop\fap
2014-07-13 23:28 - 2014-07-13 23:28 - 00031610 _____ () C:\Users\Radim\Desktop\Addition.txt
2014-07-13 23:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-13 23:15 - 2014-07-13 23:15 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.fr27l6g.partial
2014-07-13 23:09 - 2014-07-13 23:08 - 01076736 _____ (Farbar) C:\Users\Radim\Desktop\FRST.exe
2014-07-13 23:08 - 2012-11-19 22:09 - 00000000 ____D () C:\Users\Radim\Desktop\uprava
2014-07-13 23:01 - 2014-07-13 23:01 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher_exe.sz34zyg.partial
2014-07-13 22:58 - 2014-07-13 22:58 - 00000000 _____ () C:\Users\Radim\Desktop\FRSTLauncher.exe.ta63azi.partial
2014-07-13 22:55 - 2009-10-22 12:24 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-13 22:21 - 2014-07-13 22:05 - 00023685 _____ () C:\zoek-results.log
2014-07-13 22:16 - 2014-07-13 22:03 - 00000000 ____D () C:\zoek_backup
2014-07-13 22:03 - 2014-07-13 22:20 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-13 22:02 - 2014-07-13 22:02 - 01285120 _____ () C:\Users\Radim\Desktop\zoek.exe
2014-07-13 21:50 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-07-13 21:42 - 2014-07-13 21:42 - 01348263 _____ () C:\Users\Radim\Desktop\adwcleaner_3.215.exe
2014-07-13 21:41 - 2014-07-13 21:41 - 00066371 _____ () C:\Users\Radim\Desktop\JRT2.txt
2014-07-13 21:37 - 2011-03-03 22:37 - 00000000 ____D () C:\Program Files\ABBYY FineReader 10
2014-07-13 21:34 - 2014-07-13 21:34 - 00066371 _____ () C:\Users\Radim\Desktop\JRT.txt
2014-07-13 21:29 - 2014-07-13 21:29 - 00000000 ____D () C:\Windows\ERUNT
2014-07-13 21:28 - 2014-07-13 21:27 - 01016261 _____ (Thisisu) C:\Users\Radim\Desktop\JRT.exe
2014-07-13 20:15 - 2014-07-13 20:13 - 00000000 ____D () C:\rsit
2014-07-13 20:13 - 2012-10-21 13:17 - 00000000 ____D () C:\Program Files\trend micro
2014-07-13 20:08 - 2014-04-13 22:12 - 00002007 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-13 20:08 - 2014-02-01 18:19 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-13 20:07 - 2014-07-13 20:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-13 20:07 - 2014-06-20 23:29 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-13 20:07 - 2014-03-25 09:54 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-13 20:07 - 2014-02-01 18:19 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-13 20:07 - 2014-02-01 18:19 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-13 20:03 - 2014-07-13 20:02 - 01107968 _____ () C:\Users\Radim\Desktop\RSIT.exe
2014-07-13 20:01 - 2014-07-13 20:01 - 00461038 _____ () C:\Users\Radim\Desktop\RSIT.exe.4hoeo13.partial
2014-07-13 03:35 - 2014-04-09 22:40 - 00000000 __SHD () C:\Users\Radim\AppData\Local\EmieSiteList
2014-07-13 03:32 - 2014-06-28 07:10 - 00000000 ____D () C:\Program Files\QuickTime
2014-07-13 03:24 - 2009-07-14 06:33 - 00413856 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-13 03:21 - 2014-05-06 18:43 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-13 03:21 - 2009-07-14 11:20 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-13 03:13 - 2013-08-14 01:03 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-13 03:07 - 2009-10-22 12:55 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-13 02:25 - 2014-07-12 10:42 - 00000000 ____D () C:\Program Files\DoughGo
2014-07-13 02:23 - 2013-02-21 23:53 - 00000000 ____D () C:\Program Files\VideoLAN
2014-07-13 02:19 - 2009-07-14 04:04 - 00000580 _____ () C:\Windows\win.ini
2014-07-13 02:05 - 2012-04-08 19:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPaint
2014-07-13 02:05 - 2009-10-22 12:53 - 00000000 ____D () C:\Windows\Panther
2014-07-13 02:00 - 2012-11-19 23:29 - 00000000 ____D () C:\Users\Radim\Documents\Euro Truck Simulator
2014-07-13 00:45 - 2014-07-13 00:45 - 00001698 _____ () C:\Users\Public\Desktop\YAC.lnk
2014-07-13 00:44 - 2014-07-13 00:44 - 12348480 _____ (Elex do Brasil Participações Ltda) C:\Users\Radim\Downloads\yet_another_cleaner_sk.exe
2014-07-12 14:11 - 2012-01-05 01:53 - 00000000 ____D () C:\Users\Radim\Desktop\Euro Truck Simulator
2014-07-12 10:24 - 2014-07-12 10:24 - 00443264 _____ () C:\Users\Radim\Downloads\SafePCRepair.exe
2014-07-12 00:57 - 2014-05-12 16:05 - 00002339 _____ () C:\Users\Jana\Desktop\Flvto Youtube Downloader.lnk
2014-07-12 00:40 - 2014-07-12 00:40 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-12 00:38 - 2014-07-12 00:38 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2014-07-12 00:14 - 2014-07-11 23:51 - 00000000 ____D () C:\Users\Radim\Desktop\kiki
2014-07-11 17:11 - 2009-11-20 16:32 - 00000000 ____D () C:\Users\Pavla\Documents\narozky
2014-07-09 19:52 - 2011-01-02 10:59 - 00093696 ___SH () C:\Users\Pavla\Documents\Thumbs.db
2014-07-09 19:47 - 2010-09-24 20:15 - 00000000 ____D () C:\Users\Pavla\Documents\Vánoce
2014-07-09 19:40 - 2009-11-20 16:33 - 00000000 ____D () C:\Users\Pavla\Documents\ZIMA foto
2014-07-09 19:23 - 2009-11-20 16:27 - 00000000 ____D () C:\Users\Pavla\Documents\LETO foto
2014-07-09 19:21 - 2009-10-22 12:09 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-09 11:24 - 2012-05-26 19:19 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-09 11:24 - 2011-06-24 21:12 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-08 17:19 - 2014-07-08 17:03 - 00009736 _____ () C:\Users\Jana\Downloads\The-Big-Bang-Theory-7-07-The-Proton-Displacement-HD-1080p-ang+cz.mkv
2014-07-08 15:25 - 2013-05-15 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-07-08 08:33 - 2010-03-28 16:24 - 07602176 ___SH () C:\Users\Jana\Desktop\Thumbs.db
2014-07-05 10:43 - 2009-07-14 06:53 - 00032534 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-07-03 23:59 - 2013-07-07 21:33 - 00000000 ____D () C:\Users\Radim\Desktop\FLESKA
2014-07-03 23:49 - 2009-11-20 17:49 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-03 23:48 - 2014-07-03 23:47 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (2).exe
2014-07-03 23:48 - 2013-09-12 19:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-03 23:48 - 2012-01-22 20:40 - 00000965 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-03 23:43 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro (1).exe
2014-07-03 23:42 - 2014-07-03 23:42 - 04814144 _____ (Piriform Ltd) C:\Users\Radim\Downloads\ccsetup415pro.exe
2014-06-30 03:40 - 2014-07-13 02:39 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 03:36 - 2014-07-13 02:39 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-28 22:52 - 2014-06-15 22:20 - 00000000 ____D () C:\Users\Radim\Desktop\greed
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-28 07:10 - 2014-06-28 07:10 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-06-27 11:54 - 2014-07-13 00:45 - 00040064 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys
2014-06-25 20:39 - 2013-01-07 01:03 - 00000000 ____D () C:\Users\Radim\Downloads\simona
2014-06-22 16:50 - 2012-01-22 22:22 - 00000000 ____D () C:\Users\Radim\Desktop\oldtimerclub
2014-06-22 15:14 - 2014-06-22 15:14 - 00884472 _____ (Casino.com) C:\Users\Radim\Downloads\SetupCasino_f0c68c.exe
2014-06-22 15:12 - 2014-06-22 15:12 - 00001786 _____ () C:\Users\Radim\AppData\Roaming\Microsoft\Windows\Start Menu\Casino.com.lnk
2014-06-22 15:12 - 2014-06-22 15:12 - 00001784 _____ () C:\Users\Radim\Desktop\Casino.com.lnk
2014-06-22 15:12 - 2014-06-22 15:11 - 00000000 ____D () C:\Users\Radim\AppData\Local\Casino.com
2014-06-21 15:45 - 2014-06-21 15:44 - 00000000 ____D () C:\Users\Radim\AppData\Local\Windows Live Writer
2014-06-21 15:44 - 2014-06-21 15:44 - 00000000 ____D () C:\Users\Radim\AppData\Roaming\Windows Live Writer
2014-06-21 15:44 - 2010-12-31 19:00 - 00000000 ____D () C:\Users\Radim\AppData\Local\Windows Live
2014-06-20 21:39 - 2014-07-13 02:44 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-06-20 20:41 - 2014-06-20 20:41 - 00039398 ___HT () C:\Users\Radim\Downloads\4732OSFR.bat
2014-06-20 20:11 - 2011-04-17 16:19 - 00000000 ____D () C:\Users\Pavla\AppData\Roaming\Skype
2014-06-19 02:16 - 2014-07-13 02:43 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-19 01:56 - 2014-07-13 02:44 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-19 01:56 - 2014-07-13 02:44 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-19 01:38 - 2014-07-13 02:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-19 01:37 - 2014-07-13 02:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-19 01:36 - 2014-07-13 02:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-19 01:35 - 2014-07-13 02:44 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-06-19 01:32 - 2014-07-13 02:43 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-19 01:28 - 2014-07-13 02:44 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-19 01:28 - 2014-07-13 02:44 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-19 01:25 - 2014-07-13 02:44 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-19 01:23 - 2014-07-13 02:44 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-19 01:23 - 2014-07-13 02:44 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-19 01:22 - 2014-07-13 02:43 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-19 01:16 - 2014-07-13 02:44 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-19 01:12 - 2014-07-13 02:44 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-19 01:06 - 2014-07-13 02:44 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-19 01:01 - 2014-07-13 02:44 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-19 00:59 - 2014-07-13 02:44 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-19 00:58 - 2014-07-13 02:44 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-19 00:52 - 2014-07-13 02:44 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-19 00:52 - 2014-07-13 02:43 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-19 00:49 - 2014-07-13 02:44 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-19 00:46 - 2014-07-13 02:44 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-19 00:45 - 2014-07-13 02:44 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-19 00:35 - 2014-07-13 02:44 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-19 00:13 - 2014-07-13 02:44 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-19 00:09 - 2014-07-13 02:44 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-19 00:07 - 2014-07-13 02:44 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-18 17:35 - 2014-01-28 18:05 - 00000000 ____D () C:\Users\Jana\Desktop\Vše Kanada - VÍZA aspol
2014-06-18 16:22 - 2012-08-31 18:05 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-06-18 12:15 - 2014-06-18 12:14 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-06-18 03:51 - 2014-07-13 02:43 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-06-18 02:52 - 2014-07-13 02:43 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-06-17 01:00 - 2014-06-17 00:07 - 00000000 ____D () C:\Program Files\EUcasino
2014-06-17 00:44 - 2014-06-17 00:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EUcasino
2014-06-17 00:18 - 2014-06-17 00:18 - 00325104 _____ () C:\Users\Radim\Downloads\EUcasino_Setup.exe

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-08 16:35

==================== End Of Log ============================

Re: default-search.net jako homepage

Napsal: 14 črc 2014 22:08
od vyosek
Dal jste znovu scan ne FIX, takze prosim znovu...