Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zamořený PC známých

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Zamořený PC známých

#1 Příspěvek od Tuxer »

Čau, teď tu mám doma pc od známých který používají především dva malí kluci.
Jak to tak bývá tak ti spratci ten kompl tak zas**li bordelem že je ten pc nepoužitelný.
Nevím přesně co s počítačem dělali, ale nechápu jak tam ten všechen balast natahali. :roll:
Po přihlašení do windows se spustí všeomožné pc optimizéry a další falešné utility.
Při spuštění Chromu začnou vyskakovat nevé okna plné raklam a když otevřu jakékoliv stránky, tak se po stranách zobrazují reklamy.
Pc jsem zkoušel skenovat MBAMem a našel přes 4000 detekovaných souborů, tak jsem si řekl že to už je na mě moc.. :shock:
Teď píšu z nouzového režimu pomocí opery portable, pač s tak zasekným Google Chromem jsem se ještě nesetkal :D
Takže prosím od vás velkou pomoc a trpělivost s řešením tohoto zapeklitého případu :wacko:

Prosím o kontrolu logu, log z FRST se nevešel do příspěvku tak je v příloze
V příloze je i Addition.txt
Díky za pomoc
Přílohy
LOG.rar
(35.67 KiB) Staženo 67 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamořený PC známých

#2 Příspěvek od Rudy »

Zdravím!
Máte pravdu, skutečně neskutečný humus. něco vyházíme pomocí aut. skenerů. Nejprve spusťte tyto utility:

1.
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve >Scan< a potom na >Clean< (smazat)
Proběhne skenováni a pak se objeví log, který sem vložte.
2.
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe

Ulozte nejlepe na plochu
Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
Probehne vytvoreni zalohy a nasledne prohledavani
Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Re: Zamořený PC známých

#3 Příspěvek od Tuxer »

tady je log z AdwCcleaneru, jeste vlozim log z JRT
# AdwCleaner v3.216 - Report created 18/07/2014 at 16:19:40
# Updated 17/07/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Dlabal - DLABAL-PC
# Running from : C:\Users\Dlabal\Desktop\adwcleaner_3.216.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : {01531192-f7ef-415f-a549-cfdb11836731}w64
[#] Service Deleted : BackupStack
[#] Service Deleted : d0e87c27
[#] Service Deleted : DatamngrCoordinator
[#] Service Deleted : DefaultTabSearch
[#] Service Deleted : DefaultTabUpdate
[#] Service Deleted : F06DEFF2-5B9C-490D-910F-35D3A91196222
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
[#] Service Deleted : MgAssistService
[#] Service Deleted : NethxxpService
[#] Service Deleted : pcsuservice
[#] Service Deleted : ProtectMonitor
[#] Service Deleted : RBClientService
[#] Service Deleted : sbmntr
[#] Service Deleted : ServiceUpdater
[#] Service Deleted : SPBIUpd
[#] Service Deleted : SPBIUpdd
[#] Service Deleted : srvBrowserProtect
[#] Service Deleted : SrvUpdater
[#] Service Deleted : Update Surftastic
[#] Service Deleted : Updater Service for EazelBar
[#] Service Deleted : Util Surftastic
Service Deleted : wStLibG64

***** [ Files / Folders ] *****

[#] Folder Deleted : C:\ProgramData\BitGuard
[#] Folder Deleted : C:\ProgramData\Browser Manager
[#] Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\ProgramData\DataMngr
Folder Deleted : C:\ProgramData\PC Optimizer Pro
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\Systweak
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\ProgramData\wincert
Folder Deleted : C:\ProgramData\AillCheaapProice
Folder Deleted : C:\ProgramData\AlLCheApPriiccE
Folder Deleted : C:\ProgramData\EnjoyCoaUpeon
Folder Deleted : C:\ProgramData\ExstrraSaviings
Folder Deleted : C:\ProgramData\JoniCoupon
Folder Deleted : C:\ProgramData\saavE net
Folder Deleted : C:\ProgramData\SaearCh-NewTab
Folder Deleted : C:\ProgramData\save net
Folder Deleted : C:\ProgramData\SaveLots
Folder Deleted : C:\ProgramData\SSearch-NEwTabe
Folder Deleted : C:\ProgramData\websave
Folder Deleted : C:\ProgramData\webssavve
Folder Deleted : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Pro
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiveSupport
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\optimizer pro v3.2
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Right Backup
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkypEmoticons
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
Folder Deleted : C:\Program Files (x86)\BrowserProtect
Folder Deleted : C:\Program Files (x86)\DefaultTab
Folder Deleted : C:\Program Files (x86)\DownLite
Folder Deleted : C:\Program Files (x86)\Driver Pro
Folder Deleted : C:\Program Files (x86)\EazelBar
Folder Deleted : C:\Program Files (x86)\EZDownloader
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\iMesh Applications
Folder Deleted : C:\Program Files (x86)\iWebar
Folder Deleted : C:\Program Files (x86)\LiveSupport
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\Movies Toolbar
Folder Deleted : C:\Program Files (x86)\Music Toolbar
Folder Deleted : C:\Program Files (x86)\MyPC Backup
Folder Deleted : C:\Program Files (x86)\Object Browser
Folder Deleted : C:\Program Files (x86)\Optimizer Pro
Folder Deleted : C:\Program Files (x86)\RegClean Pro
Folder Deleted : C:\Program Files (x86)\RichMediaViewV1
Folder Deleted : C:\Program Files (x86)\Right Backup
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\SmartTweak
Folder Deleted : C:\Program Files (x86)\SoftwareUpdater
Folder Deleted : C:\Program Files (x86)\SpeedItup Free
Folder Deleted : C:\Program Files (x86)\Surftastic
Folder Deleted : C:\Program Files (x86)\SW-Booster
Folder Deleted : C:\Program Files (x86)\Uniblue
Folder Deleted : C:\Program Files (x86)\YTDownloader
Folder Deleted : C:\Program Files (x86)\AlLCheApPriiccE
Folder Deleted : C:\Program Files (x86)\saavE net
Folder Deleted : C:\Program Files (x86)\SaearCh-NewTab
Folder Deleted : C:\Program Files (x86)\save net
Folder Deleted : C:\Program Files (x86)\SSearch-NEwTabe
Folder Deleted : C:\Program Files (x86)\websave
Folder Deleted : C:\Program Files (x86)\webssavve
Folder Deleted : C:\Program Files (x86)\YoutubeAdblocker
Folder Deleted : C:\Windows\SpeedItup Free
Folder Deleted : C:\Program Files\PC Optimizer Pro
Folder Deleted : C:\Program Files\Systweak Toolbar
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Dlabal\AppData\Local\41
Folder Deleted : C:\Users\Dlabal\AppData\Local\FilesFrog Update Checker
Folder Deleted : C:\Users\Dlabal\AppData\Local\genienext
Folder Deleted : C:\Users\Dlabal\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Dlabal\AppData\Local\iLivid
Folder Deleted : C:\Users\Dlabal\AppData\Local\iMesh
Folder Deleted : C:\Users\Dlabal\AppData\Local\Mail.Ru
Folder Deleted : C:\Users\Dlabal\AppData\Local\Math Problem Solver
Folder Deleted : C:\Users\Dlabal\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Dlabal\AppData\Local\Pay-By-Ads
Folder Deleted : C:\Users\Dlabal\AppData\Local\torch
Folder Deleted : C:\Users\Dlabal\AppData\Local\webplayer
Folder Deleted : C:\Users\Dlabal\AppData\LocalLow\DataMngr
Folder Deleted : C:\Users\Dlabal\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\Dlabal\AppData\LocalLow\Object Browser
Folder Deleted : C:\Users\Dlabal\AppData\LocalLow\searchresultstb
Folder Deleted : C:\Users\Dlabal\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\BaseFlash
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\DefaultTab
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\DownLite
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Driver Pro
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\EZDownloader
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Movies Toolbar
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Oxy
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\SkypEmoticons
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Uniblue
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mail.Ru
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
Folder Deleted : C:\Users\Dlabal\Documents\Mobogenie
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Public\util
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\{282b0e54-8981-49eb-9193-5910a1f6fd33}
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\blojb@mxc-.org
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\i7cw4dv@dlafoyw-.com
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\jr-u@mipuyiopdap.co.uk
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\ng-mufe@ayiuumxrkt.org
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\o-o9guv@yuiodmoar-.co.uk
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\q63dbvq@calt-k.org
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\rctbm6@douiu.edu
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\ueiaxpgat@zidaszvbu-.net
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\uyyuyeowlo@rbpa-tbt.net
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\vqfb9-eay@dbw-oiu.org
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\wlpwl-9gzwd@sjlcclhtaoeue.com
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6ca4-4d23-ab87-73f2d1973314.com
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
Folder Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\f80af4ec-42b9-429d-99b0-4078ec7cf864@44882d20-8865-4b13-b79e-ae8470d9a955.com
Folder Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdihkdldaicijakhchgojcokhpamkibi
Folder Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cigiagpbkapepgklncnajbakkpkopmam
Folder Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfgaibfbmkjgmimhbbaikfnpkkjkpoan
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkjdfhdndpjpkcmnnadaipkfabaagjob
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkjdfhdndpjpkcmnnadaipkfabaagjob
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdadmaiomhdgpiklbcigocdnhanoepcn
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdadmaiomhdgpiklbcigocdnhanoepcn
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbpofkcnenlohihoifdaihdgmckmdaeb
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbpofkcnenlohihoifdaihdgmckmdaeb
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmppkebleiacinhlmcalmnmdnbplokhe
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmppkebleiacinhlmcalmnmdnbplokhe
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcjigbpbfllmnfkcgdbhligdfgjbocoe
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcjigbpbfllmnfkcgdbhligdfgjbocoe
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmbgmimhfenoegmpeiejiekbfjdnnifm
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmbgmimhfenoegmpeiejiekbfjdnnifm
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\oajpnlpbmfihfjjefllmmjncdjoaafnf
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\oajpnlpbmfihfjjefllmmjncdjoaafnf
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmmnfllnbofnpjlkoimimjnobflkndma
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmmnfllnbofnpjlkoimimjnobflkndma
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\Extensions\addon@defaulttab.com.xpi
File Deleted : C:\Windows\SysWOW64\hfpapi.dll
File Deleted : C:\Windows\SysWOW64\installd.exe
File Deleted : C:\Windows\SysWOW64\nethtsrv.exe
File Deleted : C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w64.sys
File Deleted : C:\Windows\System32\drivers\wStLibG64.sys
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Users\Dlabal\daemonprocess.txt
File Deleted : C:\Users\Dlabal\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\Dlabal\AppData\Roaming\regsvr32.exe_log.txt
File Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\driverscanner.lnk
File Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iMesh.lnk
File Deleted : C:\Users\Dlabal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PC Optimizer Pro.lnk
File Deleted : C:\Users\Dlabal\Desktop\Sync Folder.lnk
File Deleted : C:\Users\Steam\Uninstall.exe
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\defaulttab.config
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\invalidprefs.js
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\searchplugins\Ask.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\Ask.xml
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\searchplugins\search-here.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\search-with-eazelbar.xml
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\searchplugins\WebSearch.xml
File Deleted : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\user.js
File Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
File Deleted : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
File Deleted : C:\Windows\System32\Tasks\AmiUpdXp
File Deleted : C:\Windows\Tasks\driverscanner.job
File Deleted : C:\Windows\System32\Tasks\driverscanner
File Deleted : C:\Windows\Tasks\dsmonitor.job
File Deleted : C:\Windows\System32\Tasks\dsmonitor
File Deleted : C:\Windows\System32\Tasks\DTChk
File Deleted : C:\Windows\System32\Tasks\DTReg
File Deleted : C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
File Deleted : C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
File Deleted : C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
File Deleted : C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
File Deleted : C:\Windows\System32\Tasks\Math Problem Solver CPU
File Deleted : C:\Windows\System32\Tasks\Math Problem Solver GPU
File Deleted : C:\Windows\System32\Tasks\Math Problem Solver Optimize
File Deleted : C:\Windows\Tasks\PC Optimizer Pro Updates.job
File Deleted : C:\Windows\System32\Tasks\PC Optimizer Pro Updates
File Deleted : C:\Windows\Tasks\PC Optimizer Pro64 Scan.job
File Deleted : C:\Windows\System32\Tasks\PC Optimizer Pro64 Scan
File Deleted : C:\Windows\Tasks\PC SpeedUp Service Deactivator.job
File Deleted : C:\Windows\System32\Tasks\PC SpeedUp Service Deactivator
File Deleted : C:\Windows\System32\Tasks\PileFile logon
File Deleted : C:\Windows\System32\Tasks\PileFile reminder
File Deleted : C:\Windows\System32\Tasks\RegClean Pro
File Deleted : C:\Windows\Tasks\RegClean Pro_DEFAULT.job
File Deleted : C:\Windows\Tasks\RegClean Pro_UPDATES.job
File Deleted : C:\Windows\System32\Tasks\RegClean Pro_UPDATES
File Deleted : C:\Windows\System32\Tasks\ShopperPro
File Deleted : C:\Windows\System32\Tasks\ShopperProJSUpd
File Deleted : C:\Windows\System32\Tasks\SMupdate1
File Deleted : C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart
File Deleted : C:\Windows\System32\Tasks\SPDriver
File Deleted : C:\Windows\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-1.job
File Deleted : C:\Windows\System32\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-1
File Deleted : C:\Windows\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-2.job
File Deleted : C:\Windows\System32\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-2
File Deleted : C:\Windows\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-3.job
File Deleted : C:\Windows\System32\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-3
File Deleted : C:\Windows\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-4.job
File Deleted : C:\Windows\System32\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-4
File Deleted : C:\Windows\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-5.job
File Deleted : C:\Windows\System32\Tasks\5d27283f-b8bd-436a-82eb-61b8f246b910-5
File Deleted : C:\Windows\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-1.job
File Deleted : C:\Windows\System32\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-1
File Deleted : C:\Windows\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-2.job
File Deleted : C:\Windows\System32\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-2
File Deleted : C:\Windows\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-3.job
File Deleted : C:\Windows\System32\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-3
File Deleted : C:\Windows\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-4.job
File Deleted : C:\Windows\System32\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-4
File Deleted : C:\Windows\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-5.job
File Deleted : C:\Windows\System32\Tasks\71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-5
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-1.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-1
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-10.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-10
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-11.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-11
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-2.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-2
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-3.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-3
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-4.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-4
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-5.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-5
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-5_user.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-5_user
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-6.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-6
File Deleted : C:\Windows\Tasks\cbb58f32-1494-485a-b928-72482a358098-7.job
File Deleted : C:\Windows\System32\Tasks\cbb58f32-1494-485a-b928-72482a358098-7
File Deleted : C:\Windows\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-1.job
File Deleted : C:\Windows\System32\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-1
File Deleted : C:\Windows\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-2.job
File Deleted : C:\Windows\System32\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-2
File Deleted : C:\Windows\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-3.job
File Deleted : C:\Windows\System32\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-3
File Deleted : C:\Windows\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-4.job
File Deleted : C:\Windows\System32\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-4
File Deleted : C:\Windows\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-5.job
File Deleted : C:\Windows\System32\Tasks\e4183259-4b60-4232-af88-b64fbb747bff-5
File Deleted : C:\Windows\Tasks\SW-Booster-S-584836823.job
File Deleted : C:\Windows\System32\Tasks\SW-Booster-S-584836823

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Dlabal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player\Uninstall.lnk
Shortcut Disinfected : C:\Users\Dlabal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Dlabal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk

***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{EBD839AE-B08C-4FB7-859B-F54AF16C159F}]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [OKitSpace@OKitSpace.es]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lbidgdoiglndbjlcnnifemecdhnpeabo
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [livesupport]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [pcspeedup]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [se]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [SpeedUpMyComputer]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DefaultTabBHO.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DiscoveryHelper.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GIFAnimator.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\iMesh.exe
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IMTrProgress.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IMWeb.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Launcher.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\OKitSpace.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Toolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WMHelper.DLL
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser.1
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX.1
Key Deleted : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery
Key Deleted : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery.1
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.Device
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.file
Key Deleted : HKLM\SOFTWARE\Classes\imweb.imwebcontrol
Key Deleted : HKLM\SOFTWARE\Classes\net
Key Deleted : HKLM\SOFTWARE\Classes\net.5.14
Key Deleted : HKLM\SOFTWARE\CLASSES\OKitSpace
Key Deleted : HKLM\SOFTWARE\CLASSES\OKitSpace.1
Key Deleted : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
Key Deleted : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.BandObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.ToolbarHelperObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMPlayCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMRipCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowVolumeOnArrival
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Key Deleted : HKLM\SOFTWARE\Classes\Websaave.Websaave
Key Deleted : HKLM\SOFTWARE\Classes\Websaave.Websaave.3.7
Key Deleted : HKLM\SOFTWARE\Classes\Search-eNewTiabb.Search-eNewTiabb
Key Deleted : HKLM\SOFTWARE\Classes\Search-eNewTiabb.Search-eNewTiabb.2.1
Key Deleted : HKLM\SOFTWARE\Classes\AllCheeAPiPrice.AllCheeAPiPrice
Key Deleted : HKLM\SOFTWARE\Classes\AllCheeAPiPrice.AllCheeAPiPrice.5.2
Key Deleted : HKLM\SOFTWARE\Classes\Search-NewTab.Search-NewTab
Key Deleted : HKLM\SOFTWARE\Classes\Search-NewTab.Search-NewTab.2.1
Key Deleted : HKLM\SOFTWARE\Classes\SaavvELotS.SaavvELotS
Key Deleted : HKLM\SOFTWARE\Classes\SaavvELotS.SaavvELotS.6.3
Key Deleted : HKLM\SOFTWARE\Classes\weBsaeve.weBsaeve
Key Deleted : HKLM\SOFTWARE\Classes\weBsaeve.weBsaeve.3.7
Key Deleted : HKLM\SOFTWARE\Classes\JoooniCouaponn.JoooniCouaponn
Key Deleted : HKLM\SOFTWARE\Classes\JoooniCouaponn.JoooniCouaponn.7.0
Key Deleted : HKLM\SOFTWARE\Classes\ExsutrASaivoiings.ExsutrASaivoiings
Key Deleted : HKLM\SOFTWARE\Classes\ExsutrASaivoiings.ExsutrASaivoiings.4.2
Key Deleted : HKLM\SOFTWARE\Classes\AllCaHeapPrice.AllCaHeapPrice
Key Deleted : HKLM\SOFTWARE\Classes\AllCaHeapPrice.AllCaHeapPrice.5.2
Key Deleted : HKLM\SOFTWARE\Classes\YoutubeAdblocker.YoutubeAdblocker
Key Deleted : HKLM\SOFTWARE\Classes\YoutubeAdblocker.YoutubeAdblocker.1.0
Key Deleted : HKLM\SOFTWARE\Classes\ENjoyCooupon.ENjoyCooupon
Key Deleted : HKLM\SOFTWARE\Classes\ENjoyCooupon.ENjoyCooupon.3.4
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-584836823
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-596631634
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{d0e87c27}
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0032850.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0032850.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0032850.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0032850.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0059568.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0059568.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0059568.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0059568.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{38495740-0035-4471-851E-F5BBB86AB085}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7E8A36EA-2501-4ED3-A3C8-CFA9143FB169}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{90A52F08-64AC-4DC6-9D7D-4516670275D3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A7DDCBDE-5C86-415C-8A37-763AE183E7E4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B89F5C49-51DB-4974-AB5A-E25901AA339C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EBD839AE-B08C-4FB7-859B-F54AF16C159F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F0D6F486-7230-3139-1997-CB2FBCF4E080}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511951168}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552210}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422822292}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522952268}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555510}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455825592}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555955568}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556610}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466826692}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566956668}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{363BB65D-1747-4826-B445-1DA6244E2037}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6857AC4A-95B4-4E2C-B2D2-8A235FCCEF4A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FEB62B15-CC00-4736-AAEC-BA046C9DFF73}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344554410}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440444824492}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544954468}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{26B19FA4-E8A1-4A1B-A163-1A1E46F830DD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0D6F486-7230-3139-1997-CB2FBCF4E080}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EBD839AE-B08C-4FB7-859B-F54AF16C159F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0D6F486-7230-3139-1997-CB2FBCF4E080}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511951168}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EBD839AE-B08C-4FB7-859B-F54AF16C159F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F0D6F486-7230-3139-1997-CB2FBCF4E080}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511951168}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EBD839AE-B08C-4FB7-859B-F54AF16C159F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{282B0E54-8981-49EB-9193-5910A1F6FD33}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EBD839AE-B08C-4FB7-859B-F54AF16C159F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{F0D6F486-7230-3139-1997-CB2FBCF4E080}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{2C353E32-B8AC-4B82-B988-4C2D3394388A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{EBD839AE-B08C-4FB7-859B-F54AF16C159F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{EBFCF40E-A87B-463F-A782-55BDD4160B5E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{F0D6F486-7230-3139-1997-CB2FBCF4E080}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551110}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411821192}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511951168}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552210}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422822292}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522952268}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1C888195-0160-4883-91B7-294C0CE2F277}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{99ACA0F7-D864-45CB-8C40-FD42A077E7CA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555510}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455825592}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555955568}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556610}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466826692}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566956668}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{282B0E54-8981-49EB-9193-5910A1F6FD33}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0D6F486-7230-3139-1997-CB2FBCF4E080}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE478DC2-E4AD-4197-8F80-5E456BEBC57F}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10532FE1-EF34-4A35-7A90-82CE4261F23D}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DF02911-1941-6E8F-488E-89180AA309C6}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2BEFFF34-6AF6-F23D-7158-40614362B1F2}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5284C88A-B153-CFD9-0873-46DE5855DEF6}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B768E2A-6F6D-4917-03A2-F7B5679D7955}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7A3B5017-BF7D-767A-20DD-74B6DB865F1A}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E8D173C-0ABB-41E5-8B50-67FFAE419EF4}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{920ECF1F-46F1-1177-8F2E-757883094941}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990CAFA3-BA00-0D76-5522-9D827DDC235D}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5D117FD-ABCF-AFE8-C6D4-5DD7CDAF676B}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B72EFA33-FA56-6439-9F0A-39ACD288DF76}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B88139B0-DF24-264A-4C6D-0CD2F95C499C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DB6D028B-67A3-40A5-FABB-8F4979715AC9}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{282B0E54-8981-49EB-9193-5910A1F6FD33}]
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EBD839AE-B08C-4FB7-859B-F54AF16C159F}]
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{F0D6F486-7230-3139-1997-CB2FBCF4E080}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\APNDTX
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\Default Tab
Key Deleted : HKCU\Software\DefaultTab
Key Deleted : HKCU\Software\distromatic
Key Deleted : HKCU\Software\Driver Pro
Key Deleted : HKCU\Software\EazelBar
Key Deleted : HKCU\Software\Escolade
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\GOffers
Key Deleted : HKCU\Software\Imesh
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\installedbrowserextensions
Key Deleted : HKCU\Software\LiveSupport
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\pc optimizer pro
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\Somoto
Key Deleted : HKCU\Software\Speedchecker Limited
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\Webplayer
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\DefaultTab
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\Object Browser
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Default Tab
Key Deleted : HKLM\Software\DefaultTab
Key Deleted : HKLM\Software\EazelBar
Key Deleted : HKLM\Software\GlobalUpdate
Key Deleted : HKLM\Software\Imesh
Key Deleted : HKLM\Software\installedbrowserextensions
Key Deleted : HKLM\Software\iWebar
Key Deleted : HKLM\Software\MediaBuzzV1
Key Deleted : HKLM\Software\Object Browser
Key Deleted : HKLM\Software\OKitSpace
Key Deleted : HKLM\Software\Sense
Key Deleted : HKLM\Software\SoftwareUpdater
Key Deleted : HKLM\Software\SW-Booster
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Vittalia
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2DF3E224-05CD-4113-AA7A-86F2F6607B46}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7DD5E91C-3864-77EC-7635-D14910C2A03E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Driver Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EazelBar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Imesh
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iWebar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveSupport_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean-Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SkypEmoticons_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpeedUpMyComputer
Key Deleted : [x64] HKLM\SOFTWARE\installedbrowserextensions
Key Deleted : [x64] HKLM\SOFTWARE\pc optimizer pro
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\pc optimizer pro
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCSU-SL_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v29.0.1 (cs)

[ File : C:\Users\Dlabal\AppData\Roaming\Mozilla\Firefox\Profiles\xfix28qd.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.searchsun.info/?pid=724&r=2014/04/24&hid=1009510974538787452&lg=EN&cc=CZ&l=1&q=");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "Search with EazelBar");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://www.search.ask.com/?o=APN10645A&gct=hp& ... 03-267&t=4");
Line Deleted : user_pref("extensions.5aQ2Z.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.n[...]
Line Deleted : user_pref("extensions.5fNDABTP.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorob[...]
Line Deleted : user_pref("extensions.KShtE7N06K.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumor[...]
Line Deleted : user_pref("extensions.P1f.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.net[...]
Line Deleted : user_pref("extensions.Y_esXKZz.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorob[...]
Line Deleted : user_pref("extensions.a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292.48292.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Line Deleted : user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_meta.value", "%7B%22handlebars.js%22%3A%7B%22id%22%3A183015%2C%22ver%22%3A2%2[...]
Line Deleted : user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Line Deleted : user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Line Deleted : user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Line Deleted : user_pref("extensions.cCntJsPWWVB.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumo[...]
Line Deleted : user_pref("extensions.crossrider.bic", "145994dfdccf1447c838ddda5151a19e");
Line Deleted : user_pref("extensions.fi5.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.net[...]
Line Deleted : user_pref("extensions.h_qiFRkkCAp.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumo[...]
Line Deleted : user_pref("extensions.lceNG.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.n[...]
Line Deleted : user_pref("extensions.xqNGgX.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
Line Deleted : user_pref("keyword.URL", "hxxp://dts.search.ask.com/sr?src=ffb&gct=ds&appid=0&systemid=406&v=u12441-267&apn_dtid=BND406&apn_ptnrs=AG6&apn_uid=7587927151684505&o=APN10645&q=");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.BrowserSearch", "hxxp://en.eazel.com/results.php?oid=1&id=8FAE6F6D41714648B9513AF64CBD299D&cat=web&co=&lg=en&q={searchTerms}");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.Homepage", "hxxp://en.eazel.com/?id=AAA3d93e5a762d96aa3874264c7430dad11&oid=1");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.ToolbarName", "EazelBar");
Line Deleted : user_pref("{EBD839AE-B08C-4fb7-859B-F54AF16C159F}.UpdateURL", "hxxp://media.eazel.com/xmlbar/EazelBar/LatestVersion.xml");

-\\ Google Chrome v33.0.1750.146

[ File : C:\Users\Dlabal\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.eazel.com/results.php?id=AAA00bde8b08e80e287d4837a8edffc5271&cat=web&co=&lg=en&q={searchTerms}
Deleted [Search Provider] : hxxp://websearch.searchsun.info/?l=1&q={searchTerms}&pid=724&r=2014/04/24&hid=1009510974538787452&lg=EN&cc=CZ
Deleted [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=1638&systemid=406&v=a13203-267&apn_uid=7587927151684505&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
Deleted [Startup_urls] : hxxp://www.search.ask.com/?o=APN10645A&gct=hp& ... 41-267&t=4
Deleted [Homepage] : hxxp://www.search.ask.com/?o=APN10645A&gct=hp& ... 41-267&t=4
Deleted [Extension] : aaaaabcbmongicmdegkmmfgdickgnnob
Deleted [Extension] : cdihkdldaicijakhchgojcokhpamkibi
Deleted [Extension] : cigiagpbkapepgklncnajbakkpkopmam
Deleted [Extension] : kdidombaedgpfiiedeimiebkmbilgmlc
Deleted [Extension] : kfgaibfbmkjgmimhbbaikfnpkkjkpoan

*************************

AdwCleaner[R0].txt - [82813 octets] - [18/07/2014 16:19:04]
AdwCleaner[S0].txt - [74129 octets] - [18/07/2014 16:19:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [74190 octets] ##########

Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Re: Zamořený PC známých

#4 Příspěvek od Tuxer »

tady jeste log z, JRT

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Professional x64
Ran by Dlabal on p  18.07.2014 at 16:30:11,13
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ytdownloader
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{206333CD-0D06-43D4-B714-799A7F28C83A}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E590DC8B-8256-432E-A3E6-900310666D7F}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2977d8cc-8902-4340-be88-2c676bf96b8d}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{2977d8cc-8902-4340-be88-2c676bf96b8d}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2977d8cc-8902-4340-be88-2c676bf96b8d}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{2977d8cc-8902-4340-be88-2c676bf96b8d}



~~~ Files



~~~ Folders



~~~ FireFox

Successfully deleted the following from C:\Users\Dlabal\AppData\Roaming\mozilla\firefox\profiles\xfix28qd.default\prefs.js

user_pref("extensions.defaulttab.installdate", 1404130277);
user_pref("extensions.defaulttab.useNewTabWhiteList", false);
user_pref("extensions.h_qiFRkkCAp.url", "hxxp://getproxy5.info/sync2/?q=hfZ9ofV9CShEAen0pjn8tMqLDe49CNU0n8OMCMlNhd9FqdaGrTrFqjkHqdnMBzqUojw9rdCFqTw5rjs9rGh7hfs0pihPBMn0qHY9pjr
Emptied folder: C:\Users\Dlabal\AppData\Roaming\mozilla\firefox\profiles\xfix28qd.default\minidumps [85 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p  18.07.2014 at 16:35:20,31
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamořený PC známých

#5 Příspěvek od Rudy »

Teď dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Re: Zamořený PC známých

#6 Příspěvek od Tuxer »

tady je log z FRST, opět se tu nevešel, tak je v příloze
Přílohy
LOG2.rar
(27.2 KiB) Staženo 56 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamořený PC známých

#7 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [MSWinHost] => C:\Windows\inf\issc.vbe [2334 2013-11-30] ()
HKLM-x32\...\Run: [mncquyqvSrv] => C:\Windows\inf\mncquyqv.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mncxtllnnSrv] => C:\Windows\inf\mncxtllnn.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mncsbftbSrv] => C:\Windows\inf\mncsbftb.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mncstcnSrv] => C:\Windows\inf\mncstcn.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mncktfttySrv] => C:\Windows\inf\mncktftty.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mnckrxviySrv] => C:\Windows\inf\mnckrxviy.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mncbhceSrv] => C:\Windows\inf\mncbhce.vbe [1342 2014-01-19] ()
HKLM-x32\...\Run: [mncaxxySrv] => C:\Windows\SysWOW64\mncaxxy.vbe [7670 2014-03-05] ()
HKLM-x32\...\Run: [mncuugpxoSrv] => C:\Windows\inf\mncuugpxo.vbe [1342 2014-01-19] ()
C:\Windows\inf\issc.vbe
C:\Windows\inf\mncquyqv.vbe
C:\Windows\inf\mncxtllnn.vbe
C:\Windows\inf\mncsbftb.vbe
C:\Windows\inf\mncstcn.vbe
C:\Windows\inf\mncktftty.vbe
C:\Windows\inf\mnckrxviy.vbe
C:\Windows\inf\mncbhce.vbe
C:\Windows\SysWOW64\mncaxxy.vbe
C:\Windows\inf\mncuugpxo.vbe
HKLM-x32\...\Run: [msetldSrv] => C:\Windows\inf\msetld.vbe [1558 2013-08-27] ()
HKLM-x32\...\Run: [msqjxxSrv] => C:\Windows\inf\msqjxx.vbe [1558 2013-08-27] ()
HKLM-x32\...\Run: [mshoscSrv] => C:\Windows\inf\mshosc.vbe [1558 2013-08-27] ()
HKLM-x32\...\Run: [msyswdgbSrv] => C:\Windows\inf\msyswdgb.vbe [1558 2013-08-27] ()
HKLM-x32\...\Run: [MSStp] => C:\Windows\inf\msstp.vbe [1584 2014-03-05] ()
HKLM-x32\...\Run: [mncbquspSrv] => C:\Windows\SysWOW64\mncbqusp.vbe [7670 2014-03-05] ()
C:\Windows\inf\msetld.vbe
C:\Windows\inf\msqjxx.vbe
C:\Windows\inf\mshosc.vbe
C:\Windows\inf\msyswdgb.vbe
c:\Windows\inf\msstp.vbe
C:\Windows\SysWOW64\mncbqusp.vbe
HKU\S-1-5-21-2211035653-2795179229-3450331334-1000\...\Run: [Jenkat Games Arcade App] => C:\Users\Dlabal\AppData\Roaming\JGArcadeApp\Jenkat Games Arcade App\JGAA.exe /b
c:\Users\Dlabal\AppData\Roaming\JGArcadeApp
HKU\S-1-5-21-2211035653-2795179229-3450331334-1000\...\MountPoints2: {7bebf87f-67f1-11e3-909e-806e6f6e6963} - E:\DinosaurRaceGrasslands.EXE
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
SearchScopes: HKCU - {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTer ... DF&pc=MSSE
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaBuzzV1mode8348.net] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode8348\ff
FF HKLM-x32\...\Firefox\Extensions: [ext@RichMediaViewV1release883.net] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release883\ff
FF HKLM-x32\...\Firefox\Extensions: [ext@TrustMediaViewerV1alpha1715.net] - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha1715\ff
C:\Program Files (x86)\MediaBuzzV1
C:\Program Files (x86)\RichMediaViewV1
C:\Program Files (x86)\TrustMediaViewerV1
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
C:\Windows\system32\Drivers\48230029.sys
C:\awh6DB0.tmp
C:\awh60A5.tmp
C:\awhE0CC.tmp
C:\awh75BB.tmp
C:\awh583D.tmp
C:\awh9F4A.tmp
C:\awh2F49.tmp
C:\awh2107.tmp
C:\awh48F1.tmp
C:\awh3996.tmp
C:\awh4B71.tmp
C:\awh57B0.tmp
C:\awh11FB.tmp
C:\awh46CF.tmp
C:\awh3764.tmp
C:\awh77E.tmp
C:\awh2FD6.tmp
C:\awh17C4.tmp
C:\awhFE2C.tmp
C:\awh1D20.tmp
C:\awh7010.tmp
C:\awh1FEE.tmp
C:\awh34C5.tmp
C:\awh2847.tmp
C:\awhF24A.tmp
C:\awh6CA7.tmp
C:\awh2C6C.tmp
C:\awhFED7.tmp
C:\awh20D8.tmp
C:\awh75EA.tmp
C:\awh1D5F.tmp
C:\awh1776.tmp
C:\awh1708.tmp
c:\awh3A80.tmp
C:\awhE04.tmp
C:\awh35EE.tmp
C:\awh8813.tmp
C:\awhCDB.tmp
C:\awh112F.tmp
C:\awh4920.tmp
C:\awh7F3D.tmp
C:\awh82B6.tmp
C:\awh3E85.tmp
C:\awh9CF.tmp
C:\awh952.tmp
C:\awh7112.tmp
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Dlabal\ChangeNick.exe
C:\Users\Dlabal\opengl32.dll
C:\Users\Dlabal\Rust Client.exe
C:\Users\Dlabal\rust.exe
C:\Users\Dlabal\Steam.dll
C:\Users\Dlabal\steamclient.dll
C:\Users\Dlabal\steam_api.dll
C:\Users\Dlabal\VAC2.dll
C:\Users\Dlabal\ValveAPI.dll
C:\Users\Steam\AppOverlay.dll
C:\Users\Steam\AppOverlay64.dll
C:\Users\Steam\crashhandler.dll
C:\Users\Steam\crashhandler64.dll
C:\Users\Steam\CSERHelper.dll
C:\Users\Steam\d3dcompiler_46.dll
C:\Users\Steam\d3dcompiler_46_64.dll
C:\Users\Steam\dbghelp.dll
C:\Users\Steam\GameOverlayRenderer.dll
C:\Users\Steam\GameOverlayRenderer64.dll
C:\Users\Steam\GameOverlayUI.exe
C:\Users\Steam\libavcodec-55.dll
C:\Users\Steam\libavformat-55.dll
C:\Users\Steam\libavresample-1.dll
C:\Users\Steam\libavutil-53.dll
C:\Users\Steam\libswscale-2.dll
C:\Users\Steam\SDL2.dll
C:\Users\Steam\Steam.dll
C:\Users\Steam\Steam.exe
C:\Users\Steam\Steam2.dll
C:\Users\Steam\steamclient.dll
C:\Users\Steam\steamclient64.dll
C:\Users\Steam\steamerrorreporter.exe
C:\Users\Steam\steamerrorreporter64.exe
C:\Users\Steam\SteamUI.dll
C:\Users\Steam\streaming_client.exe
C:\Users\Steam\tier0_s.dll
C:\Users\Steam\tier0_s64.dll
C:\Users\Steam\video.dll
C:\Users\Steam\vstdlib_s.dll
C:\Users\Steam\vstdlib_s64.dll
C:\Users\Steam\WriteMiniDump.exe
C:\Users\Dlabal\AppData\Local\Temp
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
AlternateDataStreams: C:\ProgramData\TEMP:862BDB1A
Task: {06CA415E-750A-4A83-A0FA-B46FF00DC613} - \SW-Booster-S-584836823 No Task File <==== ATTENTION
Task: {0BB41D88-CDC4-4ED1-B2F4-72F818783554} - \Math Problem Solver GPU No Task File <==== ATTENTION
Task: {10868AC1-C6DD-42ED-921C-2A2559284C97} - \e4183259-4b60-4232-af88-b64fbb747bff-2 No Task File <==== ATTENTION
Task: {1390C75F-0223-4A49-8939-39690A3C98CA} - \cbb58f32-1494-485a-b928-72482a358098-3 No Task File <==== ATTENTION
Task: {1539C351-B460-4DEE-8BE4-0076D6176F1B} - \RegClean Pro_UPDATES No Task File <==== ATTENTION
Task: {169ACA97-7AC6-4D53-8AE5-02E0EC7D9631} - \cbb58f32-1494-485a-b928-72482a358098-11 No Task File <==== ATTENTION
Task: {193A0699-99EB-4CEE-8BBD-DAA6047305A9} - \ShopperProJSUpd No Task File <==== ATTENTION
Task: {1F6AC98A-5EFE-43EC-A4BE-BC18F17BA064} - \RegClean Pro_DEFAULT No Task File <==== ATTENTION
Task: {27711B5D-36BD-4417-863A-209B0AA0A8DE} - \dsmonitor No Task File <==== ATTENTION
Task: {2BB150B4-B36D-4111-95C5-61CB52EC6A3F} - \PileFile logon No Task File <==== ATTENTION
Task: {2D6ED137-8F2C-46C6-BE74-8F7331E3F134} - \71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-2 No Task File <==== ATTENTION
Task: {30525FAF-B09F-4C8B-A95B-ADE104C11643} - \PC Optimizer Pro64 Scan No Task File <==== ATTENTION
Task: {32194CCA-C8C1-4944-9E7C-F99515887A66} - \PC SpeedUp Service Deactivator No Task File <==== ATTENTION
Task: {351FBFB8-1F74-4428-8067-5AFDC8B1439D} - \cbb58f32-1494-485a-b928-72482a358098-2 No Task File <==== ATTENTION
Task: {3BDA84A7-2A64-4C17-8E39-C842A9D9046C} - \PC Optimizer Pro Updates No Task File <==== ATTENTION
Task: {3F79F35E-20C6-49B5-8B0B-E1A54F72AD7D} - \cbb58f32-1494-485a-b928-72482a358098-10 No Task File <==== ATTENTION
Task: {3F7F397C-FDDE-4050-90B4-C99FBA58C6F0} - \71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-3 No Task File <==== ATTENTION
Task: {4357F78B-E147-45E4-A23D-08DC04F31EC0} - \cbb58f32-1494-485a-b928-72482a358098-5 No Task File <==== ATTENTION
Task: {4BD59F5D-8EB2-4C82-9D6E-8DDED9761BE2} - \DTChk No Task File <==== ATTENTION
Task: {4EDB1AF5-4B0E-427B-9504-430F86E7C1C9} - \e4183259-4b60-4232-af88-b64fbb747bff-5 No Task File <==== ATTENTION
Task: {50775DA4-BAC1-4AA5-A0A3-D9E51A121EF5} - \Math Problem Solver Optimize No Task File <==== ATTENTION
Task: {540CA924-D178-4CD9-ACAF-09EC1E9B92D3} - System32\Tasks\PC Optimizer Pro64 startups => C:\Program Files\PC Optimizer Pro\StartApps.exe <==== ATTENTION
Task: {55750826-1592-45E3-B2B4-756D169B968B} - \5d27283f-b8bd-436a-82eb-61b8f246b910-4 No Task File <==== ATTENTION
Task: {57F02BB5-9FC4-4F23-A3CA-3236E6E7E3A0} - System32\Tasks\PC Optimizer Pro Idle => C:\Program Files\PC Optimizer Pro\StartApps.exe <==== ATTENTION
Task: {58E38156-892F-4BFC-ABFA-F4DC4591ABF8} - \cbb58f32-1494-485a-b928-72482a358098-4 No Task File <==== ATTENTION
Task: {605E3CDC-EA2A-4E99-9640-A75877ED05E2} - \cbb58f32-1494-485a-b928-72482a358098-5_user No Task File <==== ATTENTION
Task: {61B2FCFA-5BA4-4DA6-9D9E-9C49E3316F28} - \AmiUpdXp No Task File <==== ATTENTION
Task: {62553941-37EF-450D-813F-6FF6C69C14A2} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION
Task: {68F1687B-3F62-484B-A7A1-6028241EE098} - \RegClean Pro No Task File <==== ATTENTION
Task: {6A8A42B0-4D34-40AF-9D0E-76A0C0346D6B} - \SomotoUpdateCheckerAutoStart No Task File <==== ATTENTION
Task: {6BBFCCE3-71A6-4411-A716-D0CDE4B57901} - \globalUpdateUpdateTaskMachineUA No Task File <==== ATTENTION
Task: {746C6996-C6F7-4EA9-BE33-5574D1A6CD66} - \cbb58f32-1494-485a-b928-72482a358098-1 No Task File <==== ATTENTION
Task: {75A83168-6C01-45C6-85B9-BCCF00AB8503} - System32\Tasks\UNELEVATE_279 => C:\Program Files (x86)\ShopperPro\JSDriver\1.35.1.155\jsdrv.exe <==== ATTENTION
Task: {84BBC022-A29C-42B0-9434-D01F6A34D854} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.)
Task: {869C5B14-47A1-4F1D-9611-B979600A27B5} - \5d27283f-b8bd-436a-82eb-61b8f246b910-2 No Task File <==== ATTENTION
Task: {8BF7669D-E95A-4F36-B080-49D35BFD3C57} - \71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-1 No Task File <==== ATTENTION
Task: {8C1F0549-4088-4C1D-A0A3-17E64AEED9E5} - \DTReg No Task File <==== ATTENTION
Task: {8E4AE409-D994-4BAB-9005-D2AAEF27385C} - \SPDriver No Task File <==== ATTENTION
Task: {977DD631-9F6F-4CA0-9331-163A833F79E3} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION
Task: {9965B733-CC1D-40C5-B0A3-B99EFB86E820} - \e4183259-4b60-4232-af88-b64fbb747bff-4 No Task File <==== ATTENTION
Task: {9B92089B-BC1B-4DB1-8001-9572C290FF94} - \globalUpdateUpdateTaskMachineCore No Task File <==== ATTENTION
Task: {9D360195-7123-45B2-B50B-EF6EAD85D390} - \e4183259-4b60-4232-af88-b64fbb747bff-1 No Task File <==== ATTENTION
Task: {9ECB940F-5D4E-4DDE-ADE8-05F43D1B7CE7} - \5d27283f-b8bd-436a-82eb-61b8f246b910-3 No Task File <==== ATTENTION
Task: {A05F0896-887F-481A-8157-CD342241EE25} - \5d27283f-b8bd-436a-82eb-61b8f246b910-5 No Task File <==== ATTENTION
Task: {A2051627-44CA-4A44-A3DE-8BB99013B442} - \ShopperPro No Task File <==== ATTENTION
Task: {A2129F9E-D3B3-4369-8FC0-AEF5118F445B} - \Math Problem Solver CPU No Task File <==== ATTENTION
Task: {B1367FAA-B74B-43BC-B312-570615D85910} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: {B483D209-1DC7-47F9-96C5-6DC511331D23} - \5d27283f-b8bd-436a-82eb-61b8f246b910-1 No Task File <==== ATTENTION
Task: {BFD5BE39-56FE-4AAA-B02D-5DB95FF2A865} - \cbb58f32-1494-485a-b928-72482a358098-6 No Task File <==== ATTENTION
Task: {CA27281C-34CE-4C77-9BFE-DCF4ACC8B529} - \71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-5 No Task File <==== ATTENTION
Task: {D1E4CB15-7FCC-42A4-9574-3DEBEFB2497F} - \e4183259-4b60-4232-af88-b64fbb747bff-3 No Task File <==== ATTENTION
Task: {E3D06968-5130-4759-ABE0-7E20EE02937E} - System32\Tasks\YTDownloaderUpd => C:\Program Files (x86)\YTDownloader\updater.exe <==== ATTENTION
Task: {E467719F-6F90-4618-844B-ABB785BBACB4} - \71cc2990-a79e-4f3a-8c64-f26d3c6f8b4f-4 No Task File <==== ATTENTION
Task: {EDD5567F-3335-44AD-B5DF-D35A47FD23B8} - \PileFile reminder No Task File <==== ATTENTION
Task: {F1147DD9-0196-4901-B64D-371F4CEB5065} - \DriverScanner No Task File <==== ATTENTION
Task: {F19712B2-B38C-4E2C-8825-50D81C33A5E9} - \cbb58f32-1494-485a-b928-72482a358098-7 No Task File <==== ATTENTION
Task: {FC5ED365-816F-4C4F-BEC2-576A8D67308A} - \SMupdate1 No Task File <==== ATTENTION
Task: C:\Windows\Tasks\PC Optimizer Pro Idle.job => C:\Program Files\PC Optimizer Pro\StartApps.exe <==== ATTENTION
Task: C:\Windows\Tasks\PC Optimizer Pro64 startups.job => C:\Program Files\PC Optimizer Pro\StartApps.exe <==== ATTENTION
Task: C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\Windows\Tasks\WS-Booster-S-596631634.job => c:\programdata\greatsoft\ws-booster\WS-Booster.exe <==== ATTENTION
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Re: Zamořený PC známých

#8 Příspěvek od Tuxer »

Super, už tu nevidím žádné falešné utility, v prohlížeči nejsou vůbec reklamy.
Ale po nalogování do systému se zobrazovala tabulka steamu s aktualizacemi ale nikdy se aktualizace nedokončila, tak jsem steam odinstaloval.
Ještě jsem smazal nějakou pochybnou aplikaci HD-V1.8.
v příloze je fixlog
Přílohy
Fixlog.rar
(13.6 KiB) Staženo 37 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamořený PC známých

#9 Příspěvek od Rudy »

Log je čistý, vše bylo smazáno. Steam je herní utilita, pokud nepaříte hry, chybět vám nebude. HD-V1.8. log neukázal. Vše by mělo být OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Re: Zamořený PC známých

#10 Příspěvek od Tuxer »

Díky, ještě jsem to projel MBAmem, našel nějakou havěť.. v příloze je log
Přílohy
mbam.rar
(8.36 KiB) Staženo 48 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamořený PC známých

#11 Příspěvek od Rudy »

Vše smažte. Něteré věci zkrátka FRST neukáže.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tuxer
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 08 lis 2009 13:04

Re: Zamořený PC známých

#12 Příspěvek od Tuxer »

Rudy, zatím to vypadá že je vše v pořádku.
Kdyby se ještě něco objevilo, tak napíšu.
Hodně děkuji za tvoji pomoc. :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamořený PC známých

#13 Příspěvek od Rudy »

OK, to jsem rád. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět