Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Stále vyskakují nové stránky ve firefoxu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Stále vyskakují nové stránky ve firefoxu

#1 Příspěvek od Mandis »

Prosím pěkně s Vyoskem jsem řešil malware a výrazně to pomohlo, ale stále mi vyskakují 2 stránky,
jedna se hrou a druhá s nahatinami. Již předtím jsem smazal firefox a znovu instaloval, tak jestli
jde prosím ještě tady pomoci, děkuji velmi pěkně:-)

Petr Manďák

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Pri odinstalaci Firefoxu je potreba smazat i jeho profil a pak znovu instalovat

:arrow: A dejte FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100 zkusime to odpalit
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#3 Příspěvek od Mandis »

Zdravím pěkně!:-)
omlouvám se, že jsem se 3 dny neozval, ale měl jsem dost cestování.
O to více bych Vás rád požádal o pomoc, protože jsem dnes kliknul na jednu reklamu o stáhnutí
rychlejšího downloaderu na jedné častěji používané stránce, ale nevšiml jsem si, že je to bouda, protože
takto tajně mi teď vyskakují reklamy dále a mnohe více a tváří se jako součástí stránky...
Malwarebytes mi našel 2 a dost nonmalware jak píše, ale stáhly se s tím programy, které mi nejdou odinstalovat
ani v absolute uninstall. Jsou to: iWebar, Object Browser, omiga-plus, Sense, Shopper-Pro.
Firefox jsem odinstaloval, ale žádnou otázku jako i profil smazat jsem nenašel. Teď používám Explorer a reklamy
mám také a hodně.
Děěěkuji mnohorkát!!!

Petr Manďák

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Petr (administrator) on MANDIS on 27-11-2014 13:40:54
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
(ShopperPro) C:\Program Files\Common Files\ShopperPro\spbiu.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
() C:\Program Files (x86)\Klip Pal\updateKlipPal.exe
() C:\Program Files (x86)\Klip Pal\bin\utilKlipPal.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.expext.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.PurBrowse64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.BrowserAdapter.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.BrowserAdapter64.exe
() C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(BitTorrent Inc.) C:\Users\Petr\uTorrent\utorrent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Object Browser) C:\Program Files (x86)\Object Browser\Object Browser-bg.exe
(iWebar) C:\Program Files (x86)\iWebar\iWebar-bg.exe
(Object Browser) C:\Program Files (x86)\Sense\Sense-bg.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe
(Glarysoft Ltd) C:\Program Files (x86)\Absolute Uninstaller\uninstaller.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2009-11-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [5226600 2014-11-21] (AVAST Software)
HKLM-x32\...\Run: [DBAgent] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1518664 2014-09-17] (Seagate Technology LLC)
HKLM-x32\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988968 2014-08-25] (YTDownloader)
HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe [3224064 2014-11-26] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [Uploader] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [127080 2014-09-17] (Seagate Technology LLC)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988968 2014-08-25] (YTDownloader)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe [3224064 2014-11-26] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Retriever.lnk
ShortcutTarget: Image Retriever.lnk -> C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe (Nuance Communications, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.trovi.com/?gd=&ctid=CT331970 ... E4AA&SSPV=
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc& ... 5852358523
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {2380B08A-4808-4B19-B6BE-496FC25B11DD} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {69C80649-6ACA-48D2-A1D4-D2E86210EC8C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {6E8919D5-8D40-4885-859F-93D027F915B9} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {792A4DBB-D834-44DF-87C1-72C6D52CE9D3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {86F29F0E-578D-40AE-B3DD-5342C2624F7D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {AC300793-F9A5-4B0D-9284-6A1B49A302CE} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B0BB8E1D-FEED-4370-A960-D1579DFE8822} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B5F41076-EE61-49F7-83F5-F592B036A44E} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {BFFDEB38-3E47-453A-A0FE-79B59570266A} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
BHO: Object Browser -> {11111111-1111-1111-1111-110311281150} -> C:\Program Files (x86)\Object Browser\Object Browser-bho64.dll (Object Browser)
BHO: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho64.dll (iWebar)
BHO: Sense -> {11111111-1111-1111-1111-110611811153} -> C:\Program Files (x86)\Sense\Sense-bho64.dll (Object Browser)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro64.dll (Goobzo Ltd.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Object Browser -> {11111111-1111-1111-1111-110311281150} -> C:\Program Files (x86)\Object Browser\Object Browser-bho.dll (Object Browser)
BHO-x32: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho.dll (iWebar)
BHO-x32: Sense -> {11111111-1111-1111-1111-110611811153} -> C:\Program Files (x86)\Sense\Sense-bho.dll (Object Browser)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Klip Pal 1.0.0.4 -> {a13d85a3-d31a-4f34-b4cd-fce576dc079e} -> C:\Program Files (x86)\Klip Pal\KlipPalbho.dll (Klip Pal)
BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll (Goobzo Ltd.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1

FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: Trovi search
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Trovi search
FF Homepage: www.seznam.cz
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\searchplugins\trovi-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml
FF Extension: Object Browser - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com [2014-11-27]
FF Extension: Fast Start - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\faststartff@gmail.com [2014-11-27]
FF Extension: Shopper-Pro - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} [2014-11-27]
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\extensions\faststartff@gmail.com
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]

Chrome:
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [87336 2012-01-12] (CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [75048 2012-01-12] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [296232 2012-01-12] (CyberLink)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-11-27] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-11-27] (globalUpdate) [File not signed]
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 Seagate Dashboard Services; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe [16000 2014-09-17] (Seagate Technology LLC)
R2 Seagate MobileBackup Service; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe [157776 2014-09-17] (Seagate Technology LLC)
R2 SPBIUpd; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2346880 2014-11-26] (ShopperPro)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 Update Klip Pal; C:\Program Files (x86)\Klip Pal\updateKlipPal.exe [525552 2014-11-27] ()
R2 Util Klip Pal; C:\Program Files (x86)\Klip Pal\bin\utilKlipPal.exe [525552 2014-11-27] ()
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-27] (Malwarebytes Corporation)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [82928 2011-10-27] (Cyberlink Corp.)
R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58728 2014-08-25] (YTDownloader)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 SPBIUpdd; C:\Program Files\Common Files\ShopperPro\spbiw.sys [41856 2014-11-26] ()
R2 SPDRIVER_1.37.0.1416; C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [52584 2014-11-26] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [146928 2012-01-11] (CyberLink Corp.)
R1 {5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64; C:\Windows\System32\drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys [48784 2014-11-26] (StdLib)
U3 abnpxdqa; C:\Windows\System32\Drivers\abnpxdqa.sys [0 ] (Advanced Micro Devices)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-27 13:14 - 2014-11-27 13:14 - 00000000 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_02x03.avi.7vk7jkf.partial
2014-11-27 12:48 - 2014-11-27 13:05 - 659426120 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_03x03.avi
2014-11-27 12:30 - 2014-11-27 12:30 - 00000476 __RSH () C:\ProgramData\ntuser.pol
2014-11-27 10:47 - 2014-11-27 10:47 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Sun
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-27 10:46 - 2014-11-27 11:16 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-27 10:46 - 2014-11-27 10:46 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-27 10:44 - 2014-11-27 10:45 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\jxpiinstall.exe
2014-11-27 10:44 - 2014-11-27 10:44 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\DownLite
2014-11-27 10:41 - 2014-11-27 10:59 - 00003100 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5_user.job
2014-11-27 10:41 - 2014-11-27 10:59 - 00002758 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5.job
2014-11-27 10:41 - 2014-11-27 10:59 - 00002430 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5_user.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00003744 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00003102 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5_user.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002756 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002430 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002412 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002094 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2.job
2014-11-27 10:41 - 2014-11-27 10:42 - 00005788 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005786 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005460 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005124 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2
2014-11-27 10:41 - 2014-11-27 10:42 - 00004346 _____ () C:\Windows\System32\Tasks\SW
2014-11-27 10:41 - 2014-11-27 10:41 - 00006774 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1
2014-11-27 10:41 - 2014-11-27 10:41 - 00005442 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2
2014-11-27 10:40 - 2014-11-27 10:59 - 00005486 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00004478 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00003454 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00001334 _____ () C:\Windows\Tasks\QEDFJA.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00005488 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-11.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004804 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004462 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-4.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004124 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00003436 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00002414 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-2.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001330 _____ () C:\Windows\Tasks\OXQC.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001328 _____ () C:\Windows\Tasks\QHD.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001326 _____ () C:\Windows\Tasks\SW.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00000950 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-11-27 10:40 - 2014-11-27 10:57 - 00005168 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11.job
2014-11-27 10:40 - 2014-11-27 10:57 - 00003748 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-1.job
2014-11-27 10:40 - 2014-11-27 10:45 - 00000954 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-11-27 10:40 - 2014-11-27 10:42 - 00007508 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4
2014-11-27 10:40 - 2014-11-27 10:42 - 00006466 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1
2014-11-27 10:40 - 2014-11-27 10:42 - 00005444 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-2
2014-11-27 10:40 - 2014-11-27 10:42 - 00004348 _____ () C:\Windows\System32\Tasks\QHD
2014-11-27 10:40 - 2014-11-27 10:42 - 00000000 ____D () C:\Program Files (x86)\Sense
2014-11-27 10:40 - 2014-11-27 10:41 - 00008516 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11
2014-11-27 10:40 - 2014-11-27 10:41 - 00008198 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11
2014-11-27 10:40 - 2014-11-27 10:41 - 00007834 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4
2014-11-27 10:40 - 2014-11-27 10:41 - 00007492 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-4
2014-11-27 10:40 - 2014-11-27 10:41 - 00004354 _____ () C:\Windows\System32\Tasks\QEDFJA
2014-11-27 10:40 - 2014-11-27 10:41 - 00004350 _____ () C:\Windows\System32\Tasks\OXQC
2014-11-27 10:40 - 2014-11-27 10:41 - 00000000 ____D () C:\Program Files (x86)\Object Browser
2014-11-27 10:40 - 2014-11-27 10:41 - 00000000 ____D () C:\Program Files (x86)\iWebar
2014-11-27 10:40 - 2014-11-27 10:40 - 01831384 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\QEDFJA.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01831384 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\OXQC.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01505752 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\SW.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01505752 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\QHD.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 00008518 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-11
2014-11-27 10:40 - 2014-11-27 10:40 - 00007154 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3
2014-11-27 10:40 - 2014-11-27 10:40 - 00006778 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-1
2014-11-27 10:40 - 2014-11-27 10:40 - 00006484 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3
2014-11-27 10:40 - 2014-11-27 10:40 - 00003952 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-11-27 10:40 - 2014-11-27 10:40 - 00003698 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-11-27 10:40 - 2014-11-27 10:40 - 00000000 ____D () C:\Users\Petr\AppData\Local\globalUpdate
2014-11-27 10:40 - 2014-11-27 10:40 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-11-27 10:39 - 2014-11-27 10:42 - 00004494 _____ () C:\Windows\System32\Tasks\ShopperPro
2014-11-27 10:39 - 2014-11-27 10:39 - 00004226 _____ () C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_313638333535373833362d4a375b5a5a6c783245343741
2014-11-27 10:39 - 2014-11-27 10:39 - 00003716 _____ () C:\Windows\System32\Tasks\SMupdate1
2014-11-27 10:39 - 2014-11-27 10:39 - 00003488 _____ () C:\Windows\System32\Tasks\SPDriver
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:39 - 00000000 ____D () C:\ProgramData\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:38 - 00003576 _____ () C:\Windows\System32\Tasks\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00003566 _____ () C:\Windows\System32\Tasks\YTDownloaderUpd
2014-11-27 10:38 - 2014-11-27 10:38 - 00003562 _____ () C:\Windows\System32\Tasks\ShopperProJSUpd
2014-11-27 10:38 - 2014-11-27 10:38 - 00001953 _____ () C:\Users\Petr\Desktop\YTDownloader.lnk
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Program Files (x86)\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Program Files (x86)\ShopperPro
2014-11-27 10:37 - 2014-11-27 10:37 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashRpt
2014-11-27 10:32 - 2014-11-26 23:47 - 00048784 _____ (StdLib) C:\Windows\system32\Drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys
2014-11-27 10:28 - 2014-11-27 10:54 - 00000000 ____D () C:\Program Files (x86)\DownLite
2014-11-27 10:26 - 2014-11-27 10:28 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\omiga-plus
2014-11-27 10:26 - 2014-11-27 10:28 - 00000000 ____D () C:\Program Files (x86)\SupTab
2014-11-27 10:25 - 2014-11-27 13:00 - 00000000 ____D () C:\Program Files (x86)\Klip Pal
2014-11-27 10:11 - 2014-11-27 10:13 - 2285057485 _____ () C:\Users\Petr\Downloads\Pozoruhodná cesta planety Země E02 Rotace Spin.mkv
2014-11-27 10:07 - 2014-11-27 10:12 - 2420121281 _____ () C:\Users\Petr\Downloads\Země z ptačí perspektivy E04 Jižní Amerika.mkv
2014-11-27 08:58 - 2014-11-27 10:31 - 3449090121 _____ () C:\Users\Petr\Downloads\Království--rostlin-2.mkv
2014-11-26 13:40 - 2014-11-27 13:40 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-25 16:42 - 2014-11-25 16:42 - 00000000 ____D () C:\Users\Petr\Downloads\Atlas mraků
2014-11-25 16:38 - 2014-11-25 16:39 - 00000965 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-25 07:09 - 2014-11-25 10:27 - 1827110690 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_2.zip
2014-11-25 02:49 - 2014-11-25 05:59 - 1826390791 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_1.zip
2014-11-23 11:39 - 2014-11-23 11:44 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon internet
2014-11-21 15:01 - 2014-11-23 11:45 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 22:13 - 2014-11-19 22:13 - 00041242 _____ () C:\Users\Petr\Documents\cc_20141119_221306záloha registrů.reg
2014-11-19 22:13 - 2014-11-19 22:13 - 00010322 _____ () C:\Users\Petr\Documents\cc_20141119_221343registr2.reg
2014-11-19 22:10 - 2014-11-19 22:10 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-19 22:10 - 2014-11-19 22:10 - 00000782 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
2014-11-19 21:54 - 2014-11-19 21:55 - 00000492 _____ () C:\DelFix.txt
2014-11-19 21:53 - 2014-11-19 21:53 - 00002717 _____ () C:\Users\Public\Desktop\Seagate Dashboard.lnk
2014-11-19 21:53 - 2014-11-19 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2014-11-19 21:52 - 2014-11-19 21:52 - 00000000 ____D () C:\ProgramData\Nero
2014-11-19 21:49 - 2014-11-19 21:49 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-11-19 21:26 - 2014-11-19 21:26 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2014-11-18 16:49 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-18 16:24 - 2014-11-27 13:40 - 00000000 ____D () C:\FRST
2014-11-17 12:35 - 2014-11-17 14:04 - 00000000 ____D () C:\Users\Petr\Desktop\Písničky pro Samíčka
2014-11-17 11:49 - 2014-11-27 11:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-17 11:47 - 2014-11-17 11:47 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1.exe
2014-11-17 11:46 - 2014-11-17 11:46 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-11-17 09:38 - 2014-11-27 13:40 - 00000000 ____D () C:\Users\Petr\Desktop\Programy proti virům a malware
2014-11-16 13:27 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-16 13:27 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-15 07:58 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-15 07:57 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-15 07:57 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-15 07:57 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-15 07:57 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-15 07:57 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-15 07:57 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-14 16:50 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-14 16:50 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-14 16:50 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-14 16:50 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-14 16:50 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-14 16:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-14 16:50 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-14 16:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-14 16:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-14 16:50 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-14 16:50 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-14 16:50 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-14 16:50 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-14 16:50 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-14 16:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-14 16:50 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-14 16:50 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-14 16:50 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-14 16:50 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-14 16:50 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-14 16:50 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-14 16:50 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-14 16:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-14 16:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-14 16:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-14 16:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-14 16:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-14 16:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-14 16:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-14 16:46 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-14 16:46 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-14 16:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-14 16:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-14 16:46 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-14 16:46 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-14 16:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-14 16:46 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-14 16:46 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-14 16:46 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-14 07:38 - 2014-11-14 07:38 - 00001935 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-14 07:37 - 2014-11-14 07:37 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-14 07:37 - 2014-11-14 07:37 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-07 22:29 - 2014-11-27 11:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-06 14:28 - 2014-11-15 06:32 - 00000000 ____D () C:\Users\Petr\Desktop\Kamera 2014
2014-11-06 11:50 - 2014-11-06 11:50 - 00002271 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\Users\Petr\AppData\Local\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-11-06 11:49 - 2014-11-06 11:50 - 00000000 ____D () C:\Program Files\WinZip
2014-11-06 11:48 - 2014-11-06 11:48 - 00000000 ____D () C:\Program Files\File Association Helper
2014-11-06 11:31 - 2014-11-06 11:31 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-11-04 13:03 - 2014-11-04 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 13:03 - 2013-02-04 15:10 - 00321536 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_BUL.dll
2014-11-04 13:03 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\SysWOW64\CNC1771D.TBL
2014-11-04 13:03 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG5500 series
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\CanonIJWSpt
2014-11-04 13:00 - 2014-11-04 13:00 - 00000000 ___HD () C:\Program Files\CanonBJ
2014-11-04 13:00 - 2013-04-04 05:00 - 00391168 _____ (CANON INC.) C:\Windows\system32\CNMLMBU.DLL
2014-11-04 13:00 - 2013-02-04 15:12 - 00367104 _____ (CANON INC.) C:\Windows\system32\CNC_BUL.dll
2014-11-04 13:00 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\system32\CNC1771D.TBL
2014-11-04 13:00 - 2012-11-08 13:04 - 00282624 _____ (CANON INC.) C:\Windows\system32\CNC_BUC.dll
2014-11-04 13:00 - 2012-11-08 13:03 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_BUI.dll
2014-11-04 13:00 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2014-11-04 12:51 - 2014-11-04 12:51 - 00000000 ___HD () C:\ProgramData\CanonIJETV
2014-11-04 12:48 - 2014-11-04 13:03 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-11-01 02:07 - 2014-11-16 04:50 - 00000000 ____D () C:\Users\Petr\Desktop\Sud_Tirol-Petr_JPG
2014-11-01 00:52 - 2014-11-16 05:29 - 00000000 ____D () C:\Users\Petr\Desktop\Love songs nové
2014-11-01 00:52 - 2014-11-16 04:45 - 00000000 ____D () C:\Users\Petr\Desktop\fotky do telefonu
2014-11-01 00:52 - 2014-11-16 04:42 - 00000000 ____D () C:\Users\Petr\Desktop\fotky special Samík
2014-10-30 20:27 - 2014-11-11 13:04 - 00000000 ____D () C:\Users\Petr\Desktop\Letiště Praha ofiko
2014-10-30 20:20 - 2014-11-23 21:14 - 00016818 ____H () C:\Users\Petr\Desktop\~WRL0006.tmp
2014-10-30 20:20 - 2014-11-21 07:37 - 00017842 ____H () C:\Users\Petr\Desktop\~WRL0004.tmp
2014-10-30 20:20 - 2014-11-07 17:35 - 00016448 ____H () C:\Users\Petr\Desktop\~WRL0003.tmp
2014-10-30 19:38 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 19:38 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 19:38 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-30 19:38 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-30 19:38 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 19:38 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 19:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 19:37 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 19:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 19:37 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 19:37 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-28 10:55 - 2014-11-16 06:27 - 00000000 ____D () C:\Users\Petr\Desktop\Trance a relaxační muzika na přebrání

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-27 13:41 - 2014-02-02 14:36 - 00000000 ____D () C:\Users\Petr\uTorrent
2014-11-27 12:30 - 2014-01-19 15:33 - 01081878 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 11:59 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-11-27 11:08 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 11:08 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 11:01 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-11-27 10:57 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 10:41 - 2014-01-21 10:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-27 10:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-27 10:26 - 2014-01-19 16:36 - 00001631 _____ () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-27 10:10 - 2011-04-12 09:34 - 00668790 _____ () C:\Windows\system32\perfh005.dat
2014-11-27 10:10 - 2011-04-12 09:34 - 00141418 _____ () C:\Windows\system32\perfc005.dat
2014-11-27 10:10 - 2009-07-14 06:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-26 13:40 - 2014-02-01 20:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 13:40 - 2014-02-01 20:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 13:40 - 2014-02-01 20:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 11:45 - 2014-01-27 21:35 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-23 11:45 - 2014-01-21 09:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Adobe
2014-11-23 07:51 - 2014-05-13 13:27 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 08:03 - 2014-05-13 13:27 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-19 22:12 - 2014-06-23 12:59 - 00000000 ____D () C:\Windows\Minidump
2014-11-19 22:12 - 2014-03-10 12:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Media Player Classic
2014-11-19 22:12 - 2014-01-19 15:29 - 00000000 ____D () C:\Windows\Panther
2014-11-19 21:20 - 2014-02-27 09:13 - 00003492 _____ () C:\Windows\System32\Tasks\Seagate_Install_Launch
2014-11-19 21:15 - 2014-01-27 21:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Seznam.cz
2014-11-19 21:09 - 2014-01-21 03:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-17 19:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-17 08:22 - 2014-05-22 05:52 - 00000000 ____D () C:\Users\Petr\Desktop\Filmy do telefonu do auta pro Samíčka
2014-11-16 20:04 - 2009-07-14 06:08 - 00032624 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-11-16 05:06 - 2014-09-20 18:12 - 00000000 ____D () C:\Users\Petr\Desktop\Proud nových léčivých metod
2014-11-16 04:58 - 2014-01-27 20:32 - 00000000 ____D () C:\Mandis disk
2014-11-16 04:56 - 2014-09-20 18:21 - 00000000 ____D () C:\Users\Petr\Desktop\kamera 2013
2014-11-16 04:43 - 2014-09-23 13:20 - 00000000 ____D () C:\Users\Petr\Desktop\Lifeisdrive best fotky 2014
2014-11-15 08:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-14 18:06 - 2009-07-14 05:45 - 00441080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 18:04 - 2014-05-14 19:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-14 17:18 - 2014-01-27 20:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-14 17:17 - 2014-01-27 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-14 17:03 - 2014-01-21 02:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-14 16:59 - 2014-01-21 02:07 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-14 07:37 - 2014-05-13 13:34 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-14 07:37 - 2014-05-13 13:34 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-14 07:37 - 2014-01-27 22:10 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-14 07:37 - 2014-01-27 22:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-11 13:05 - 2014-08-03 12:19 - 00000000 ____D () C:\Users\Petr\Desktop\fotky převod
2014-11-11 12:13 - 2014-01-28 12:10 - 00003696 _____ () C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2014-11-06 11:54 - 2014-10-24 09:47 - 00000000 ____D () C:\Users\Petr\Desktop\fotky pro Canon
2014-11-04 14:30 - 2010-11-21 04:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-04 13:03 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-11-04 11:49 - 2014-01-21 10:02 - 00113536 _____ () C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-02 22:02 - 2014-01-27 22:17 - 00000000 ____D () C:\ProgramData\AVG

Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\optprosetup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-25 00:53

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#4 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#5 Příspěvek od Mandis »

Přikládám AdwCleaner a děkuji:-)

# AdwCleaner v4.102 - Report created 27/11/2014 at 22:14:45
# Updated 23/11/2014 by Xplode
# Database : 2014-11-27.1 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Petr - MANDIS
# Running from : C:\Users\Petr\Downloads\adwcleaner_4.102.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : sbmntr
Service Deleted : SPBIUpd
Service Deleted : SPBIUpdd
[#] Service Deleted : Update Klip Pal
[#] Service Deleted : Util Klip Pal
Service Deleted : {5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\Program Files (x86)\DownLite
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\iWebar
Folder Deleted : C:\Program Files (x86)\Object Browser
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\SupTab
Folder Deleted : C:\Program Files (x86)\YTDownloader
[!] Folder Deleted : C:\Program Files (x86)\Klip Pal
[!] Folder Deleted : C:\Program Files (x86)\Klip Pal
Folder Deleted : C:\Users\Petr\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Petr\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Petr\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\Petr\AppData\LocalLow\Object Browser
Folder Deleted : C:\Users\Petr\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Petr\AppData\Roaming\DownLite
Folder Deleted : C:\Users\Petr\AppData\Roaming\omiga-plus
Folder Deleted : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\faststartff@gmail.com
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\ae44639e-43f2-4cd1-aa80-39d5d2e18fa9@gmail.com
File Deleted : C:\Windows\System32\\drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys
File Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\searchplugins\trovi-search.xml

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SMupdate1
Task Deleted : SPDriver
Task Deleted : YTDownloader
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5_user
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-1
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-11
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-2
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-4
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-5
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-5_user
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5_user

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [faststartff@gmail.com]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update Klip Pal
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util Klip Pal
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622812253}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644514423}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644814453}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{26118726-ae46-4b8d-81c0-75dc986a7c1a}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611811153}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622812253}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611811153}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\ShopperPro
Key Deleted : HKCU\Software\YTDownloader
Key Deleted : HKCU\Software\Klip Pal
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\Object Browser
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\Object Browser
Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\YTDownloader
Key Deleted : HKLM\SOFTWARE\Klip Pal
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iWebar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omiga-plus uninstall
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Klip Pal
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\isearch.omiga-plus.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\omiga-plus.com

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v

[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.search.defaultenginename", "Trovi search");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.search.selectedEngine", "Trovi search");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "149f0b78c5adad2cb0de64c25cb114c0");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.quick_start.enable_search1", false);
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);

*************************

AdwCleaner[R0].txt - [23912 octets] - [27/11/2014 22:11:02]
AdwCleaner[S0].txt - [20739 octets] - [27/11/2014 22:14:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [20800 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#6 Příspěvek od vyosek »

Poprosim nyni o Zoek
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#7 Příspěvek od Mandis »

Děkuji, že jste se podíval, jen Zoek trochu déle trval, přidávám report a děkuji moc za zprávičku od Vás:-)


Zoek.exe v5.0.0.0 Updated 26-11-2014
Tool run by Petr on źt 27.11.2014 at 22:32:38,69.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Petr\Desktop\Programy proti virům a malware\zoek\zoek.com [Scan all users] [Script inserted]

==== System Restore Info ======================

27.11.2014 22:36:52 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Malwarebytes' Anti-Malware deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\Program Files\ProgDVB deleted successfully
C:\PROGRA~3\ProgDVB deleted successfully
C:\PROGRA~3\xml_param deleted successfully
C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite deleted successfully
C:\Users\Petr\AppData\Roaming\hpqLog deleted successfully
C:\Users\Petr\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Petr\AppData\Roaming\Wondershare Video Converter Pro deleted successfully
C:\Users\Petr\AppData\Local\Downloaded Installations deleted successfully
C:\Users\Petr\AppData\Local\MediaShow deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1cbd9c47-8994-4580-806d-ae46b5623216} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{272F684-D349-4A9A-828A-6381D627689C} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2940586B-38E2-4B20-BE5F-B02D7CA7B538} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B20F4D4-23DA-4BA5-88D4-201FD0321517} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{334c4611-aa97-4030-a7b4-aac093bd5653} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{401b8c97-69e1-4bfe-b288-3c120ee079cd} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44FA76FC-796-4FD4-B7BA-5A5DBE2DE4A2} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57ABF7CA-1CD7-42AE-99FC-789D4783DAB4} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C1FE2F-CE85-4E63-A1A5-631F34EE082} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BBE6CE5-93A7-4F26-95E7-F0AF3C299260} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66603DA4-CBEE-4F16-BACC-D3EA4757DF7D} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66C49FD-346D-4480-AE46-EC621F32373F} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C8F7001-9335-4953-86F2-7A70B8FDE62F} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fee58ae-034c-4641-95b0-d0838de6926c} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FFB88A6-3804-410A-B519-2E7F7588D0AC} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79E1954A-5187-432D-9FE0-85C6AE59B90} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CCA1B0C-409E-4476-A6F3-ADD29195576} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7e30aac9-cdda-4839-9a06-7c7c938600e2} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87C6E1C3-E7B5-42A9-9646-44FE5DD4117} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8c609465-cb5b-4101-92cf-b583bbd42d6a} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9ED2FD51-ABB1-4485-8396-FEEFD4B16871} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a29b304c-2ec1-47c7-ae99-31bed2e82d6a} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A345A651-E439-4700-B92B-584CD4FD329D} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1D562E-7CB2-493A-BBBA-623DD03A65F9} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{baf29c14-ebb6-4657-b2d0-920741cc9bcc} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C029139F-2A5F-47E6-B95C-BE7BF27E119} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c4c77cdd-d209-45c0-8762-75ca428f7dde} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF29AE8B-B479-4242-B815-F364A795186} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D479CFF6-4324-4D60-B56C-27FF4443384} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6668AC5-D2B6-457F-8ADA-B2F2CB4FC8} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dbe61e52-094a-4f45-821a-950eabb0705f} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e77448e8-2d80-41bd-ae48-b1318fc4ff5c} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0D9FCA0-C66B-4B9C-BAE3-3A2DBB7C4193} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4A6195A-78A7-426A-A187-701B284C475C} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f648c4c4-2c0a-4532-91ef-1d33731a1398} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6740D1C-754F-40AC-A378-1E116E2994A3} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1cbd9c47-8994-4580-806d-ae46b5623216} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{334c4611-aa97-4030-a7b4-aac093bd5653} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{401b8c97-69e1-4bfe-b288-3c120ee079cd} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fee58ae-034c-4641-95b0-d0838de6926c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7e30aac9-cdda-4839-9a06-7c7c938600e2} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8c609465-cb5b-4101-92cf-b583bbd42d6a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a29b304c-2ec1-47c7-ae99-31bed2e82d6a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{baf29c14-ebb6-4657-b2d0-920741cc9bcc} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c4c77cdd-d209-45c0-8762-75ca428f7dde} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dbe61e52-094a-4f45-821a-950eabb0705f} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e77448e8-2d80-41bd-ae48-b1318fc4ff5c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f648c4c4-2c0a-4532-91ef-1d33731a1398} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748

user.js not found
---- Lines Klip Pal removed from prefs.js ----
user_pref("extensions.Klip Pal.aul", "1417080347472");
user_pref("extensions.Klip Pal.irl", true);
user_pref("extensions.Klip Pal.is", "ad7CZ");
user_pref("extensions.Klip Pal.ug", "39F1F516-FA93-4067-BE16-E95F5F0641B3");
---- Lines a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850 removed from prefs.js ----
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.active", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.addressbar", "NA");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.addressbarenhanced", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.asyncdb.was_copied", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.asyncinternaldb.was_copied", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.backgroundver", 1);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.certdomaininstaller", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallationTime.value", "%221417081202%2
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallerParams.expiration", "Fri Feb 01
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallerParams.value", "%7B%22source_id%
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.uc.expiration", "Thu Dec 11 2014 11:06:50
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.uc.value", "%22%5C%22CZ%5C%22%22");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.description", "Browser enhancer");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.domain", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.enablesearch", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.homepage", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.changeprevious", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.iframe", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.InstallationThankYouPage", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.InstallationTime", 1417081202);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.__defualt_browser__.expiration", "Fri
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.__defualt_browser__.value", "%22ff%22
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParams.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParams.value", "%7B%22source
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_appVer.value", "234");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_nextCheck.expiration", "Thu
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_remote_resources.expiration
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.lastDailyReport", "1417082802743");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.lastUpdate", "1417082802110");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.manifesturl", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.name", "Object Browser");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.newtab", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.opensearch", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.pluginsurl", "http://js.newstaticclientstack.com
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.pluginsversion", 197);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.publisher", "Object Browser");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.searchstatus", 0);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.setnewtab", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.thankyou", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.updateinterval", 360);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.ver", 234);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.apps", "32850");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.bic", "149f0b78c5adad2cb0de64c25cb114c0");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.cid", 32850);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.firstrun", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.hadappinstalled", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.installationdate", 1417082801);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.modetype", "production");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.reportInstall", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.statsDailyCounter", 1);
---- FireFox user.js and prefs.js backups ----

prefs_18.11.2014_1636_.backup
prefs_27.11.2014_2302_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Mozilla Firefox\browser\searchplugins\omiga-plus.xml deleted
C:\Windows\tasks\OXQC.job deleted
C:\windows\SysNative\tasks\OXQC deleted
C:\Windows\tasks\QEDFJA.job deleted
C:\windows\SysNative\tasks\QEDFJA deleted
C:\Windows\tasks\QHD.job deleted
C:\windows\SysNative\tasks\QHD deleted
C:\Windows\tasks\SW.job deleted
C:\windows\SysNative\tasks\SW deleted
C:\windows\SysNative\Tasks\SPBIW_UpdateTask_Time_313638333535373833362d4a375b5a5a6c783245343741 deleted
C:\windows\SysNative\tasks\YTDownloaderUpd deleted
C:\windows\SysNative\tasks\Microsoft\Windows\Maintenance\SMupdate2 deleted
C:\windows\SysNative\tasks\Microsoft\Windows\Multimedia\SMupdate3 deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Users\Petr\Desktop\YTDownloader.lnk deleted
C:\Users\Petr\AppData\Roaming\OXQC.exe deleted
C:\Users\Petr\AppData\Roaming\QEDFJA.exe deleted
C:\Users\Petr\AppData\Roaming\QHD.exe deleted
C:\Users\Petr\AppData\Roaming\SW.exe deleted
C:\Users\Petr\AppData\Local\MSGBOX.EXE deleted
"C:\Users\Petr\AppData\Roaming\OXQC" deleted
"C:\Users\Petr\AppData\Roaming\QEDFJA" deleted
"C:\Users\Petr\AppData\Roaming\QHD" deleted
"C:\Users\Petr\AppData\Roaming\SW" deleted

==== Firefox Extensions ======================

ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
- Undetermined - faststartff@gmail.com
- Undetermined - {746505DC-0E21-4667-97F8-72EA6BCF5EEF}
- Undetermined - 9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com

==== Firefox Plugins ======================

Profilepath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
8303B3CEC05500F763B4FA75210598BB - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll - Shockwave Flash


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"
{2380B08A-4808-4B19-B6BE-496FC25B11DD} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_12454"
{69C80649-6ACA-48D2-A1D4-D2E86210EC8C} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_12454"
{6E8919D5-8D40-4885-859F-93D027F915B9} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_12454"
{792A4DBB-D834-44DF-87C1-72C6D52CE9D3} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454"
{86F29F0E-578D-40AE-B3DD-5342C2624F7D} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_12454"
{AC300793-F9A5-4B0D-9284-6A1B49A302CE} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
{B0BB8E1D-FEED-4370-A960-D1579DFE8822} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_12454"
{B5F41076-EE61-49F7-83F5-F592B036A44E} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_12454"
{BFFDEB38-3E47-453A-A0FE-79B59570266A} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"

==== Reset Google Chrome ======================

Nothing found to reset

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=28 folders=1 6788047 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Petr\AppData\Local\Temp will be emptied at reboot
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Petr\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on źt 27.11.2014 at 23:11:27,89 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#8 Příspěvek od vyosek »

Supr, Zoek nam to tez pekne procistil :wink:

Poprosim o FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#9 Příspěvek od Mandis »

Je parádní, že mi již ty stále se otevírající reklamy a ještě maskující, že patří na stránky již nevyskakují.
Moooc děkuji a i ty programy navíc se smazaly, bezva! :-) Firefox si ale stále pamatuje to co si pamatoval jako mé
heslo pro přihlášení, které jsem si již změnil, takže plně odinstalovat zatím nešlo, ale pokud se i tam již jako naposled
nebudou vyskakovat ta 2 okna, tak je to parádní a klid... Děkuji moc:-)
Přikládám report, pokud byste ještě něco viděl:-)
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Petr (administrator) on MANDIS on 28-11-2014 11:33:27
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DeviceAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(BitTorrent Inc.) C:\Users\Petr\uTorrent\utorrent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2009-11-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [5226600 2014-11-21] (AVAST Software)
HKLM-x32\...\Run: [DBAgent] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1518664 2014-09-17] (Seagate Technology LLC)
HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [Uploader] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [127080 2014-09-17] (Seagate Technology LLC)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Retriever.lnk
ShortcutTarget: Image Retriever.lnk -> C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe (Nuance Communications, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {2380B08A-4808-4B19-B6BE-496FC25B11DD} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {69C80649-6ACA-48D2-A1D4-D2E86210EC8C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {6E8919D5-8D40-4885-859F-93D027F915B9} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {792A4DBB-D834-44DF-87C1-72C6D52CE9D3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {86F29F0E-578D-40AE-B3DD-5342C2624F7D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {AC300793-F9A5-4B0D-9284-6A1B49A302CE} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B0BB8E1D-FEED-4370-A960-D1579DFE8822} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B5F41076-EE61-49F7-83F5-F592B036A44E} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {BFFDEB38-3E47-453A-A0FE-79B59570266A} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1

FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
FF NewTab: hxxp://www.google.com/
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [87336 2012-01-12] (CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [75048 2012-01-12] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [296232 2012-01-12] (CyberLink)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 Seagate Dashboard Services; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe [16000 2014-09-17] (Seagate Technology LLC)
R2 Seagate MobileBackup Service; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe [157776 2014-09-17] (Seagate Technology LLC)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-28] (Malwarebytes Corporation)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [82928 2011-10-27] (Cyberlink Corp.)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [146928 2012-01-11] (CyberLink Corp.)
U3 aolnm569; C:\Windows\System32\Drivers\aolnm569.sys [0 ] (Advanced Micro Devices)
S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-28 10:46 - 2014-11-28 11:00 - 1154959481 _____ () C:\Users\Petr\Downloads\detske-a-vanocni-pisnicky.part2.rar
2014-11-28 10:28 - 2014-11-28 10:47 - 1309231040 _____ () C:\Users\Petr\Downloads\detske-a-vanocni-pisnicky.part1.rar
2014-11-28 09:51 - 2014-11-28 10:08 - 671213568 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_02x03.avi
2014-11-28 09:51 - 2014-11-28 10:07 - 650977280 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_01x03.avi
2014-11-28 07:50 - 2014-11-28 08:36 - 1592034884 _____ () C:\Users\Petr\Downloads\Království-rostlin-4.mkv.part
2014-11-28 07:49 - 2014-11-28 08:37 - 1686953483 _____ () C:\Users\Petr\Downloads\Království--rostlin-3.mkv.part
2014-11-28 07:37 - 2014-11-28 07:37 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-28 07:37 - 2014-11-28 07:37 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-28 07:37 - 2014-11-28 07:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
2014-11-27 21:57 - 2014-11-27 22:07 - 00000000 ____D () C:\Users\Petr\Desktop\E-book
2014-11-27 21:57 - 2014-11-27 21:57 - 00000000 ___RD () C:\Users\Petr\Desktop\The Offspring
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ___RD () C:\Users\Petr\Desktop\Green Day
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\ostratní mix
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Nightwork
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Lucka Vondráčková - Fénix (CD 01)
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\linkin park
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Chinaski - Premium (Best of...1993-2003)
2014-11-27 21:53 - 2008-08-19 01:39 - 1466433536 _____ () C:\Users\Petr\Desktop\nikdy.to.nevzdavej.avi
2014-11-27 17:27 - 2014-11-27 21:52 - 00000000 ____D () C:\Users\Petr\Desktop\Katka
2014-11-27 17:26 - 2014-11-27 23:10 - 00000900 _____ () C:\Windows\setupact.log
2014-11-27 17:26 - 2014-11-27 17:26 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-27 14:27 - 2013-08-08 09:39 - 00000000 ____D () C:\Users\Petr\Downloads\1
2014-11-27 12:48 - 2014-11-27 13:05 - 659426120 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_03x03.avi
2014-11-27 12:30 - 2014-11-27 23:11 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Sun
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-27 10:46 - 2014-11-28 06:57 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-27 10:46 - 2014-11-27 10:46 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-27 10:44 - 2014-11-27 10:45 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\jxpiinstall.exe
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-27 10:25 - 2014-11-27 22:15 - 00000000 ____D () C:\Program Files (x86)\Klip Pal
2014-11-27 10:11 - 2014-11-27 10:13 - 2285057485 _____ () C:\Users\Petr\Downloads\Pozoruhodná cesta planety Země E02 Rotace Spin.mkv
2014-11-27 08:58 - 2014-11-27 10:31 - 3449090121 _____ () C:\Users\Petr\Downloads\Království--rostlin-2.mkv
2014-11-26 13:40 - 2014-11-28 10:40 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-25 16:42 - 2014-11-27 14:33 - 00000000 ____D () C:\Users\Petr\Downloads\Atlas mraků
2014-11-25 16:38 - 2014-11-25 16:39 - 00000965 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-25 07:09 - 2014-11-25 10:27 - 1827110690 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_2.zip
2014-11-25 02:49 - 2014-11-25 05:59 - 1826390791 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_1.zip
2014-11-23 11:39 - 2014-11-23 11:44 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon internet
2014-11-21 15:01 - 2014-11-23 11:45 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 22:13 - 2014-11-19 22:13 - 00041242 _____ () C:\Users\Petr\Documents\cc_20141119_221306záloha registrů.reg
2014-11-19 22:13 - 2014-11-19 22:13 - 00010322 _____ () C:\Users\Petr\Documents\cc_20141119_221343registr2.reg
2014-11-19 22:10 - 2014-11-19 22:10 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-19 22:10 - 2014-11-19 22:10 - 00000782 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
2014-11-19 21:54 - 2014-11-19 21:55 - 00000492 _____ () C:\DelFix.txt
2014-11-19 21:53 - 2014-11-19 21:53 - 00002717 _____ () C:\Users\Public\Desktop\Seagate Dashboard.lnk
2014-11-19 21:53 - 2014-11-19 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2014-11-19 21:52 - 2014-11-19 21:52 - 00000000 ____D () C:\ProgramData\Nero
2014-11-19 21:49 - 2014-11-19 21:49 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-11-18 16:24 - 2014-11-28 11:33 - 00000000 ____D () C:\FRST
2014-11-17 12:35 - 2014-11-17 14:04 - 00000000 ____D () C:\Users\Petr\Desktop\Písničky pro Samíčka
2014-11-17 11:47 - 2014-11-17 11:47 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1.exe
2014-11-17 11:46 - 2014-11-17 11:46 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-11-17 09:38 - 2014-11-28 11:33 - 00000000 ____D () C:\Users\Petr\Desktop\Programy proti virům a malware
2014-11-16 13:27 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-16 13:27 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-15 07:58 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-15 07:57 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-15 07:57 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-15 07:57 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-15 07:57 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-15 07:57 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-15 07:57 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-14 16:50 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-14 16:50 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-14 16:50 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-14 16:50 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-14 16:50 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-14 16:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-14 16:50 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-14 16:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-14 16:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-14 16:50 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-14 16:50 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-14 16:50 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-14 16:50 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-14 16:50 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-14 16:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-14 16:50 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-14 16:50 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-14 16:50 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-14 16:50 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-14 16:50 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-14 16:50 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-14 16:50 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-14 16:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-14 16:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-14 16:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-14 16:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-14 16:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-14 16:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-14 16:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-14 16:46 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-14 16:46 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-14 16:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-14 16:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-14 16:46 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-14 16:46 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-14 16:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-14 16:46 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-14 16:46 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-14 16:46 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-14 07:38 - 2014-11-14 07:38 - 00001935 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-14 07:37 - 2014-11-14 07:37 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-14 07:37 - 2014-11-14 07:37 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-07 22:29 - 2014-11-28 07:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-06 14:28 - 2014-11-15 06:32 - 00000000 ____D () C:\Users\Petr\Desktop\Kamera 2014
2014-11-06 11:50 - 2014-11-06 11:50 - 00002271 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\Users\Petr\AppData\Local\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-11-06 11:49 - 2014-11-06 11:50 - 00000000 ____D () C:\Program Files\WinZip
2014-11-06 11:48 - 2014-11-06 11:48 - 00000000 ____D () C:\Program Files\File Association Helper
2014-11-06 11:31 - 2014-11-06 11:31 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-11-04 13:03 - 2014-11-04 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 13:03 - 2013-02-04 15:10 - 00321536 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_BUL.dll
2014-11-04 13:03 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\SysWOW64\CNC1771D.TBL
2014-11-04 13:03 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG5500 series
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\CanonIJWSpt
2014-11-04 13:00 - 2014-11-04 13:00 - 00000000 ___HD () C:\Program Files\CanonBJ
2014-11-04 13:00 - 2013-04-04 05:00 - 00391168 _____ (CANON INC.) C:\Windows\system32\CNMLMBU.DLL
2014-11-04 13:00 - 2013-02-04 15:12 - 00367104 _____ (CANON INC.) C:\Windows\system32\CNC_BUL.dll
2014-11-04 13:00 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\system32\CNC1771D.TBL
2014-11-04 13:00 - 2012-11-08 13:04 - 00282624 _____ (CANON INC.) C:\Windows\system32\CNC_BUC.dll
2014-11-04 13:00 - 2012-11-08 13:03 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_BUI.dll
2014-11-04 13:00 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2014-11-04 12:51 - 2014-11-04 12:51 - 00000000 ___HD () C:\ProgramData\CanonIJETV
2014-11-04 12:48 - 2014-11-04 13:03 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-11-01 02:07 - 2014-11-16 04:50 - 00000000 ____D () C:\Users\Petr\Desktop\Sud_Tirol-Petr_JPG
2014-11-01 00:52 - 2014-11-16 05:29 - 00000000 ____D () C:\Users\Petr\Desktop\Love songs nové
2014-11-01 00:52 - 2014-11-16 04:45 - 00000000 ____D () C:\Users\Petr\Desktop\fotky do telefonu
2014-11-01 00:52 - 2014-11-16 04:42 - 00000000 ____D () C:\Users\Petr\Desktop\fotky special Samík
2014-10-30 20:27 - 2014-11-11 13:04 - 00000000 ____D () C:\Users\Petr\Desktop\Letiště Praha ofiko
2014-10-30 20:20 - 2014-11-23 21:14 - 00016818 ____H () C:\Users\Petr\Desktop\~WRL0006.tmp
2014-10-30 20:20 - 2014-11-21 07:37 - 00017842 ____H () C:\Users\Petr\Desktop\~WRL0004.tmp
2014-10-30 20:20 - 2014-11-07 17:35 - 00016448 ____H () C:\Users\Petr\Desktop\~WRL0003.tmp
2014-10-30 19:38 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 19:38 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 19:38 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-30 19:38 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-30 19:38 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 19:38 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 19:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 19:37 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 19:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 19:37 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 19:37 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-28 11:33 - 2014-02-02 14:36 - 00000000 ____D () C:\Users\Petr\uTorrent
2014-11-28 09:35 - 2014-01-19 15:33 - 01140604 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 23:18 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 23:18 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 23:10 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 23:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-11-27 22:15 - 2014-01-19 16:36 - 00000927 _____ () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-27 21:53 - 2014-03-10 12:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Media Player Classic
2014-11-27 21:53 - 2011-04-12 09:34 - 00668790 _____ () C:\Windows\system32\perfh005.dat
2014-11-27 21:53 - 2011-04-12 09:34 - 00141418 _____ () C:\Windows\system32\perfc005.dat
2014-11-27 21:53 - 2009-07-14 06:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-27 21:40 - 2014-05-13 13:27 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-27 11:01 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-11-27 10:41 - 2014-01-21 10:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-27 10:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-26 13:40 - 2014-02-01 20:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 13:40 - 2014-02-01 20:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 13:40 - 2014-02-01 20:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 11:45 - 2014-01-27 21:35 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-23 11:45 - 2014-01-21 09:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Adobe
2014-11-22 08:03 - 2014-05-13 13:27 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-19 22:12 - 2014-06-23 12:59 - 00000000 ____D () C:\Windows\Minidump
2014-11-19 22:12 - 2014-01-19 15:29 - 00000000 ____D () C:\Windows\Panther
2014-11-19 21:20 - 2014-02-27 09:13 - 00003492 _____ () C:\Windows\System32\Tasks\Seagate_Install_Launch
2014-11-19 21:15 - 2014-01-27 21:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Seznam.cz
2014-11-19 21:09 - 2014-01-21 03:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-17 19:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-17 08:22 - 2014-05-22 05:52 - 00000000 ____D () C:\Users\Petr\Desktop\Filmy do telefonu do auta pro Samíčka
2014-11-16 20:04 - 2009-07-14 06:08 - 00032624 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-11-16 06:27 - 2014-10-28 10:55 - 00000000 ____D () C:\Users\Petr\Desktop\Trance a relaxační muzika na přebrání
2014-11-16 05:06 - 2014-09-20 18:12 - 00000000 ____D () C:\Users\Petr\Desktop\Proud nových léčivých metod
2014-11-16 04:58 - 2014-01-27 20:32 - 00000000 ____D () C:\Mandis disk
2014-11-16 04:56 - 2014-09-20 18:21 - 00000000 ____D () C:\Users\Petr\Desktop\kamera 2013
2014-11-16 04:43 - 2014-09-23 13:20 - 00000000 ____D () C:\Users\Petr\Desktop\Lifeisdrive best fotky 2014
2014-11-15 08:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-14 18:06 - 2009-07-14 05:45 - 00441080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 18:04 - 2014-05-14 19:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-14 17:18 - 2014-01-27 20:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-14 17:17 - 2014-01-27 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-14 17:03 - 2014-01-21 02:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-14 16:59 - 2014-01-21 02:07 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-14 07:37 - 2014-05-13 13:34 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-14 07:37 - 2014-05-13 13:34 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-14 07:37 - 2014-01-27 22:10 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-14 07:37 - 2014-01-27 22:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-11 13:05 - 2014-08-03 12:19 - 00000000 ____D () C:\Users\Petr\Desktop\fotky převod
2014-11-11 12:13 - 2014-01-28 12:10 - 00003696 _____ () C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2014-11-06 11:54 - 2014-10-24 09:47 - 00000000 ____D () C:\Users\Petr\Desktop\fotky pro Canon
2014-11-04 14:30 - 2010-11-21 04:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-04 13:03 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-11-04 11:49 - 2014-01-21 10:02 - 00113536 _____ () C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-02 22:02 - 2014-01-27 22:17 - 00000000 ____D () C:\ProgramData\AVG

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-25 00:53

==================== End Of Log ============================

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#10 Příspěvek od Mandis »

Ještě mi prosím vyskakují okna reklamy ve firefoxu, nevím jak ho celý dostat pryč i s nastaveními a nebo proč to dělá...
Děkuji vám!!

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#11 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    
    HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
    HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
    HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
    
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
    
    S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
    S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]
    
    C:\Program Files (x86)\ShopperPro
    c:\Program Files (x86)\Optimizer Pro 3.11
    2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
    2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
    2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
    2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
    2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
    2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
    2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
    2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
    2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
    2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
    2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
    2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
    2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#12 Příspěvek od Mandis »

Děkuji za Váš čas a práci, dávám fixlog:-)

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-11-2014 01
Ran by Petr at 2014-11-28 17:48:52 Run:1
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:

HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe

SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =

S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]

C:\Program Files (x86)\ShopperPro
c:\Program Files (x86)\Optimizer Pro 3.11
2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\YTDownloader => value deleted successfully.
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Windows\CurrentVersion\Run\\YTDownloader => value deleted successfully.
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
51cdb72 => Service deleted successfully.
SPDRIVER_1.37.0.1416 => Service deleted successfully.
"C:\Program Files (x86)\ShopperPro" => File/Directory not found.
"c:\Program Files (x86)\Optimizer Pro 3.11" => File/Directory not found.
C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\Common Files\ShopperPro => Moved successfully.
C:\Users\UpdatusUser\Desktop\YTD.lnk => Moved successfully.
C:\Users\Petr\Desktop\YTD.lnk => Moved successfully.
C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082} => Moved successfully.
C:\Program Files (x86)\YTD => Moved successfully.
C:\Users\Petr\Downloads\ytd-1.43.exe => Moved successfully.
C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe => Moved successfully.
C:\Users\Petr\Downloads\ccsetup419.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 60.2 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#13 Příspěvek od vyosek »

Jak se chova PC???
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Mandis
Návštěvník
Návštěvník
Příspěvky: 109
Registrován: 03 lis 2011 08:15

Re: Stále vyskakují nové stránky ve firefoxu

#14 Příspěvek od Mandis »

Neměl jsem možnost ho déle vyzkoušet, mám teď syna, nic nápadného to nedělá a to je moc dobře.
Když jsem to dopsal, tak mi jedno okno s reklamou práce vyskočilo, ale možná je to tím co si firefox
pamatuje, protože hesla zná pořád i při přeinstalaci...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Stále vyskakují nové stránky ve firefoxu

#15 Příspěvek od vyosek »

:arrow: Firefox odinstalujte a pak smazte i slozku C:\Users\Petr\AppData\Roaming\Mozilla

:arrow: Nasledne nova instalace FF
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno