
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Stále vyskakují nové stránky ve firefoxu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Stále vyskakují nové stránky ve firefoxu
Prosím pěkně s Vyoskem jsem řešil malware a výrazně to pomohlo, ale stále mi vyskakují 2 stránky,
jedna se hrou a druhá s nahatinami. Již předtím jsem smazal firefox a znovu instaloval, tak jestli
jde prosím ještě tady pomoci, děkuji velmi pěkně:-)
Petr Manďák
jedna se hrou a druhá s nahatinami. Již předtím jsem smazal firefox a znovu instaloval, tak jestli
jde prosím ještě tady pomoci, děkuji velmi pěkně:-)
Petr Manďák
Re: Stále vyskakují nové stránky ve firefoxu
Zdravim
Pri odinstalaci Firefoxu je potreba smazat i jeho profil a pak znovu instalovat
A dejte FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100 zkusime to odpalit



Re: Stále vyskakují nové stránky ve firefoxu
Zdravím pěkně!:-)
omlouvám se, že jsem se 3 dny neozval, ale měl jsem dost cestování.
O to více bych Vás rád požádal o pomoc, protože jsem dnes kliknul na jednu reklamu o stáhnutí
rychlejšího downloaderu na jedné častěji používané stránce, ale nevšiml jsem si, že je to bouda, protože
takto tajně mi teď vyskakují reklamy dále a mnohe více a tváří se jako součástí stránky...
Malwarebytes mi našel 2 a dost nonmalware jak píše, ale stáhly se s tím programy, které mi nejdou odinstalovat
ani v absolute uninstall. Jsou to: iWebar, Object Browser, omiga-plus, Sense, Shopper-Pro.
Firefox jsem odinstaloval, ale žádnou otázku jako i profil smazat jsem nenašel. Teď používám Explorer a reklamy
mám také a hodně.
Děěěkuji mnohorkát!!!
Petr Manďák
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Petr (administrator) on MANDIS on 27-11-2014 13:40:54
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
(ShopperPro) C:\Program Files\Common Files\ShopperPro\spbiu.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
() C:\Program Files (x86)\Klip Pal\updateKlipPal.exe
() C:\Program Files (x86)\Klip Pal\bin\utilKlipPal.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.expext.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.PurBrowse64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.BrowserAdapter.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.BrowserAdapter64.exe
() C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(BitTorrent Inc.) C:\Users\Petr\uTorrent\utorrent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Object Browser) C:\Program Files (x86)\Object Browser\Object Browser-bg.exe
(iWebar) C:\Program Files (x86)\iWebar\iWebar-bg.exe
(Object Browser) C:\Program Files (x86)\Sense\Sense-bg.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe
(Glarysoft Ltd) C:\Program Files (x86)\Absolute Uninstaller\uninstaller.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2009-11-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [5226600 2014-11-21] (AVAST Software)
HKLM-x32\...\Run: [DBAgent] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1518664 2014-09-17] (Seagate Technology LLC)
HKLM-x32\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988968 2014-08-25] (YTDownloader)
HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe [3224064 2014-11-26] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [Uploader] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [127080 2014-09-17] (Seagate Technology LLC)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988968 2014-08-25] (YTDownloader)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe [3224064 2014-11-26] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Retriever.lnk
ShortcutTarget: Image Retriever.lnk -> C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe (Nuance Communications, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.trovi.com/?gd=&ctid=CT331970 ... E4AA&SSPV=
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc& ... 5852358523
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {2380B08A-4808-4B19-B6BE-496FC25B11DD} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {69C80649-6ACA-48D2-A1D4-D2E86210EC8C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {6E8919D5-8D40-4885-859F-93D027F915B9} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {792A4DBB-D834-44DF-87C1-72C6D52CE9D3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {86F29F0E-578D-40AE-B3DD-5342C2624F7D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {AC300793-F9A5-4B0D-9284-6A1B49A302CE} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B0BB8E1D-FEED-4370-A960-D1579DFE8822} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B5F41076-EE61-49F7-83F5-F592B036A44E} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {BFFDEB38-3E47-453A-A0FE-79B59570266A} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
BHO: Object Browser -> {11111111-1111-1111-1111-110311281150} -> C:\Program Files (x86)\Object Browser\Object Browser-bho64.dll (Object Browser)
BHO: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho64.dll (iWebar)
BHO: Sense -> {11111111-1111-1111-1111-110611811153} -> C:\Program Files (x86)\Sense\Sense-bho64.dll (Object Browser)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro64.dll (Goobzo Ltd.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Object Browser -> {11111111-1111-1111-1111-110311281150} -> C:\Program Files (x86)\Object Browser\Object Browser-bho.dll (Object Browser)
BHO-x32: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho.dll (iWebar)
BHO-x32: Sense -> {11111111-1111-1111-1111-110611811153} -> C:\Program Files (x86)\Sense\Sense-bho.dll (Object Browser)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Klip Pal 1.0.0.4 -> {a13d85a3-d31a-4f34-b4cd-fce576dc079e} -> C:\Program Files (x86)\Klip Pal\KlipPalbho.dll (Klip Pal)
BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll (Goobzo Ltd.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: Trovi search
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Trovi search
FF Homepage: www.seznam.cz
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\searchplugins\trovi-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml
FF Extension: Object Browser - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com [2014-11-27]
FF Extension: Fast Start - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\faststartff@gmail.com [2014-11-27]
FF Extension: Shopper-Pro - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} [2014-11-27]
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\extensions\faststartff@gmail.com
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
Chrome:
=======
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [87336 2012-01-12] (CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [75048 2012-01-12] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [296232 2012-01-12] (CyberLink)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-11-27] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-11-27] (globalUpdate) [File not signed]
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 Seagate Dashboard Services; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe [16000 2014-09-17] (Seagate Technology LLC)
R2 Seagate MobileBackup Service; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe [157776 2014-09-17] (Seagate Technology LLC)
R2 SPBIUpd; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2346880 2014-11-26] (ShopperPro)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 Update Klip Pal; C:\Program Files (x86)\Klip Pal\updateKlipPal.exe [525552 2014-11-27] ()
R2 Util Klip Pal; C:\Program Files (x86)\Klip Pal\bin\utilKlipPal.exe [525552 2014-11-27] ()
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-27] (Malwarebytes Corporation)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [82928 2011-10-27] (Cyberlink Corp.)
R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58728 2014-08-25] (YTDownloader)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 SPBIUpdd; C:\Program Files\Common Files\ShopperPro\spbiw.sys [41856 2014-11-26] ()
R2 SPDRIVER_1.37.0.1416; C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [52584 2014-11-26] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [146928 2012-01-11] (CyberLink Corp.)
R1 {5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64; C:\Windows\System32\drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys [48784 2014-11-26] (StdLib)
U3 abnpxdqa; C:\Windows\System32\Drivers\abnpxdqa.sys [0 ] (Advanced Micro Devices)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-27 13:14 - 2014-11-27 13:14 - 00000000 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_02x03.avi.7vk7jkf.partial
2014-11-27 12:48 - 2014-11-27 13:05 - 659426120 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_03x03.avi
2014-11-27 12:30 - 2014-11-27 12:30 - 00000476 __RSH () C:\ProgramData\ntuser.pol
2014-11-27 10:47 - 2014-11-27 10:47 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Sun
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-27 10:46 - 2014-11-27 11:16 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-27 10:46 - 2014-11-27 10:46 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-27 10:44 - 2014-11-27 10:45 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\jxpiinstall.exe
2014-11-27 10:44 - 2014-11-27 10:44 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\DownLite
2014-11-27 10:41 - 2014-11-27 10:59 - 00003100 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5_user.job
2014-11-27 10:41 - 2014-11-27 10:59 - 00002758 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5.job
2014-11-27 10:41 - 2014-11-27 10:59 - 00002430 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5_user.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00003744 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00003102 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5_user.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002756 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002430 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002412 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002094 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2.job
2014-11-27 10:41 - 2014-11-27 10:42 - 00005788 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005786 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005460 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005124 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2
2014-11-27 10:41 - 2014-11-27 10:42 - 00004346 _____ () C:\Windows\System32\Tasks\SW
2014-11-27 10:41 - 2014-11-27 10:41 - 00006774 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1
2014-11-27 10:41 - 2014-11-27 10:41 - 00005442 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2
2014-11-27 10:40 - 2014-11-27 10:59 - 00005486 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00004478 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00003454 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00001334 _____ () C:\Windows\Tasks\QEDFJA.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00005488 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-11.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004804 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004462 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-4.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004124 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00003436 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00002414 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-2.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001330 _____ () C:\Windows\Tasks\OXQC.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001328 _____ () C:\Windows\Tasks\QHD.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001326 _____ () C:\Windows\Tasks\SW.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00000950 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-11-27 10:40 - 2014-11-27 10:57 - 00005168 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11.job
2014-11-27 10:40 - 2014-11-27 10:57 - 00003748 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-1.job
2014-11-27 10:40 - 2014-11-27 10:45 - 00000954 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-11-27 10:40 - 2014-11-27 10:42 - 00007508 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4
2014-11-27 10:40 - 2014-11-27 10:42 - 00006466 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1
2014-11-27 10:40 - 2014-11-27 10:42 - 00005444 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-2
2014-11-27 10:40 - 2014-11-27 10:42 - 00004348 _____ () C:\Windows\System32\Tasks\QHD
2014-11-27 10:40 - 2014-11-27 10:42 - 00000000 ____D () C:\Program Files (x86)\Sense
2014-11-27 10:40 - 2014-11-27 10:41 - 00008516 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11
2014-11-27 10:40 - 2014-11-27 10:41 - 00008198 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11
2014-11-27 10:40 - 2014-11-27 10:41 - 00007834 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4
2014-11-27 10:40 - 2014-11-27 10:41 - 00007492 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-4
2014-11-27 10:40 - 2014-11-27 10:41 - 00004354 _____ () C:\Windows\System32\Tasks\QEDFJA
2014-11-27 10:40 - 2014-11-27 10:41 - 00004350 _____ () C:\Windows\System32\Tasks\OXQC
2014-11-27 10:40 - 2014-11-27 10:41 - 00000000 ____D () C:\Program Files (x86)\Object Browser
2014-11-27 10:40 - 2014-11-27 10:41 - 00000000 ____D () C:\Program Files (x86)\iWebar
2014-11-27 10:40 - 2014-11-27 10:40 - 01831384 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\QEDFJA.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01831384 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\OXQC.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01505752 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\SW.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01505752 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\QHD.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 00008518 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-11
2014-11-27 10:40 - 2014-11-27 10:40 - 00007154 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3
2014-11-27 10:40 - 2014-11-27 10:40 - 00006778 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-1
2014-11-27 10:40 - 2014-11-27 10:40 - 00006484 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3
2014-11-27 10:40 - 2014-11-27 10:40 - 00003952 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-11-27 10:40 - 2014-11-27 10:40 - 00003698 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-11-27 10:40 - 2014-11-27 10:40 - 00000000 ____D () C:\Users\Petr\AppData\Local\globalUpdate
2014-11-27 10:40 - 2014-11-27 10:40 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-11-27 10:39 - 2014-11-27 10:42 - 00004494 _____ () C:\Windows\System32\Tasks\ShopperPro
2014-11-27 10:39 - 2014-11-27 10:39 - 00004226 _____ () C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_313638333535373833362d4a375b5a5a6c783245343741
2014-11-27 10:39 - 2014-11-27 10:39 - 00003716 _____ () C:\Windows\System32\Tasks\SMupdate1
2014-11-27 10:39 - 2014-11-27 10:39 - 00003488 _____ () C:\Windows\System32\Tasks\SPDriver
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:39 - 00000000 ____D () C:\ProgramData\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:38 - 00003576 _____ () C:\Windows\System32\Tasks\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00003566 _____ () C:\Windows\System32\Tasks\YTDownloaderUpd
2014-11-27 10:38 - 2014-11-27 10:38 - 00003562 _____ () C:\Windows\System32\Tasks\ShopperProJSUpd
2014-11-27 10:38 - 2014-11-27 10:38 - 00001953 _____ () C:\Users\Petr\Desktop\YTDownloader.lnk
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Program Files (x86)\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Program Files (x86)\ShopperPro
2014-11-27 10:37 - 2014-11-27 10:37 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashRpt
2014-11-27 10:32 - 2014-11-26 23:47 - 00048784 _____ (StdLib) C:\Windows\system32\Drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys
2014-11-27 10:28 - 2014-11-27 10:54 - 00000000 ____D () C:\Program Files (x86)\DownLite
2014-11-27 10:26 - 2014-11-27 10:28 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\omiga-plus
2014-11-27 10:26 - 2014-11-27 10:28 - 00000000 ____D () C:\Program Files (x86)\SupTab
2014-11-27 10:25 - 2014-11-27 13:00 - 00000000 ____D () C:\Program Files (x86)\Klip Pal
2014-11-27 10:11 - 2014-11-27 10:13 - 2285057485 _____ () C:\Users\Petr\Downloads\Pozoruhodná cesta planety Země E02 Rotace Spin.mkv
2014-11-27 10:07 - 2014-11-27 10:12 - 2420121281 _____ () C:\Users\Petr\Downloads\Země z ptačí perspektivy E04 Jižní Amerika.mkv
2014-11-27 08:58 - 2014-11-27 10:31 - 3449090121 _____ () C:\Users\Petr\Downloads\Království--rostlin-2.mkv
2014-11-26 13:40 - 2014-11-27 13:40 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-25 16:42 - 2014-11-25 16:42 - 00000000 ____D () C:\Users\Petr\Downloads\Atlas mraků
2014-11-25 16:38 - 2014-11-25 16:39 - 00000965 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-25 07:09 - 2014-11-25 10:27 - 1827110690 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_2.zip
2014-11-25 02:49 - 2014-11-25 05:59 - 1826390791 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_1.zip
2014-11-23 11:39 - 2014-11-23 11:44 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon internet
2014-11-21 15:01 - 2014-11-23 11:45 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 22:13 - 2014-11-19 22:13 - 00041242 _____ () C:\Users\Petr\Documents\cc_20141119_221306záloha registrů.reg
2014-11-19 22:13 - 2014-11-19 22:13 - 00010322 _____ () C:\Users\Petr\Documents\cc_20141119_221343registr2.reg
2014-11-19 22:10 - 2014-11-19 22:10 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-19 22:10 - 2014-11-19 22:10 - 00000782 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
2014-11-19 21:54 - 2014-11-19 21:55 - 00000492 _____ () C:\DelFix.txt
2014-11-19 21:53 - 2014-11-19 21:53 - 00002717 _____ () C:\Users\Public\Desktop\Seagate Dashboard.lnk
2014-11-19 21:53 - 2014-11-19 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2014-11-19 21:52 - 2014-11-19 21:52 - 00000000 ____D () C:\ProgramData\Nero
2014-11-19 21:49 - 2014-11-19 21:49 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-11-19 21:26 - 2014-11-19 21:26 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2014-11-18 16:49 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-18 16:24 - 2014-11-27 13:40 - 00000000 ____D () C:\FRST
2014-11-17 12:35 - 2014-11-17 14:04 - 00000000 ____D () C:\Users\Petr\Desktop\Písničky pro Samíčka
2014-11-17 11:49 - 2014-11-27 11:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-17 11:47 - 2014-11-17 11:47 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1.exe
2014-11-17 11:46 - 2014-11-17 11:46 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-11-17 09:38 - 2014-11-27 13:40 - 00000000 ____D () C:\Users\Petr\Desktop\Programy proti virům a malware
2014-11-16 13:27 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-16 13:27 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-15 07:58 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-15 07:57 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-15 07:57 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-15 07:57 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-15 07:57 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-15 07:57 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-15 07:57 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-14 16:50 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-14 16:50 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-14 16:50 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-14 16:50 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-14 16:50 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-14 16:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-14 16:50 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-14 16:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-14 16:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-14 16:50 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-14 16:50 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-14 16:50 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-14 16:50 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-14 16:50 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-14 16:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-14 16:50 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-14 16:50 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-14 16:50 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-14 16:50 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-14 16:50 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-14 16:50 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-14 16:50 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-14 16:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-14 16:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-14 16:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-14 16:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-14 16:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-14 16:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-14 16:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-14 16:46 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-14 16:46 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-14 16:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-14 16:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-14 16:46 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-14 16:46 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-14 16:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-14 16:46 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-14 16:46 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-14 16:46 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-14 07:38 - 2014-11-14 07:38 - 00001935 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-14 07:37 - 2014-11-14 07:37 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-14 07:37 - 2014-11-14 07:37 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-07 22:29 - 2014-11-27 11:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-06 14:28 - 2014-11-15 06:32 - 00000000 ____D () C:\Users\Petr\Desktop\Kamera 2014
2014-11-06 11:50 - 2014-11-06 11:50 - 00002271 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\Users\Petr\AppData\Local\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-11-06 11:49 - 2014-11-06 11:50 - 00000000 ____D () C:\Program Files\WinZip
2014-11-06 11:48 - 2014-11-06 11:48 - 00000000 ____D () C:\Program Files\File Association Helper
2014-11-06 11:31 - 2014-11-06 11:31 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-11-04 13:03 - 2014-11-04 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 13:03 - 2013-02-04 15:10 - 00321536 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_BUL.dll
2014-11-04 13:03 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\SysWOW64\CNC1771D.TBL
2014-11-04 13:03 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG5500 series
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\CanonIJWSpt
2014-11-04 13:00 - 2014-11-04 13:00 - 00000000 ___HD () C:\Program Files\CanonBJ
2014-11-04 13:00 - 2013-04-04 05:00 - 00391168 _____ (CANON INC.) C:\Windows\system32\CNMLMBU.DLL
2014-11-04 13:00 - 2013-02-04 15:12 - 00367104 _____ (CANON INC.) C:\Windows\system32\CNC_BUL.dll
2014-11-04 13:00 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\system32\CNC1771D.TBL
2014-11-04 13:00 - 2012-11-08 13:04 - 00282624 _____ (CANON INC.) C:\Windows\system32\CNC_BUC.dll
2014-11-04 13:00 - 2012-11-08 13:03 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_BUI.dll
2014-11-04 13:00 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2014-11-04 12:51 - 2014-11-04 12:51 - 00000000 ___HD () C:\ProgramData\CanonIJETV
2014-11-04 12:48 - 2014-11-04 13:03 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-11-01 02:07 - 2014-11-16 04:50 - 00000000 ____D () C:\Users\Petr\Desktop\Sud_Tirol-Petr_JPG
2014-11-01 00:52 - 2014-11-16 05:29 - 00000000 ____D () C:\Users\Petr\Desktop\Love songs nové
2014-11-01 00:52 - 2014-11-16 04:45 - 00000000 ____D () C:\Users\Petr\Desktop\fotky do telefonu
2014-11-01 00:52 - 2014-11-16 04:42 - 00000000 ____D () C:\Users\Petr\Desktop\fotky special Samík
2014-10-30 20:27 - 2014-11-11 13:04 - 00000000 ____D () C:\Users\Petr\Desktop\Letiště Praha ofiko
2014-10-30 20:20 - 2014-11-23 21:14 - 00016818 ____H () C:\Users\Petr\Desktop\~WRL0006.tmp
2014-10-30 20:20 - 2014-11-21 07:37 - 00017842 ____H () C:\Users\Petr\Desktop\~WRL0004.tmp
2014-10-30 20:20 - 2014-11-07 17:35 - 00016448 ____H () C:\Users\Petr\Desktop\~WRL0003.tmp
2014-10-30 19:38 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 19:38 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 19:38 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-30 19:38 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-30 19:38 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 19:38 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 19:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 19:37 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 19:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 19:37 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 19:37 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-28 10:55 - 2014-11-16 06:27 - 00000000 ____D () C:\Users\Petr\Desktop\Trance a relaxační muzika na přebrání
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-27 13:41 - 2014-02-02 14:36 - 00000000 ____D () C:\Users\Petr\uTorrent
2014-11-27 12:30 - 2014-01-19 15:33 - 01081878 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 11:59 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-11-27 11:08 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 11:08 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 11:01 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-11-27 10:57 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 10:41 - 2014-01-21 10:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-27 10:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-27 10:26 - 2014-01-19 16:36 - 00001631 _____ () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-27 10:10 - 2011-04-12 09:34 - 00668790 _____ () C:\Windows\system32\perfh005.dat
2014-11-27 10:10 - 2011-04-12 09:34 - 00141418 _____ () C:\Windows\system32\perfc005.dat
2014-11-27 10:10 - 2009-07-14 06:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-26 13:40 - 2014-02-01 20:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 13:40 - 2014-02-01 20:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 13:40 - 2014-02-01 20:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 11:45 - 2014-01-27 21:35 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-23 11:45 - 2014-01-21 09:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Adobe
2014-11-23 07:51 - 2014-05-13 13:27 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 08:03 - 2014-05-13 13:27 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-19 22:12 - 2014-06-23 12:59 - 00000000 ____D () C:\Windows\Minidump
2014-11-19 22:12 - 2014-03-10 12:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Media Player Classic
2014-11-19 22:12 - 2014-01-19 15:29 - 00000000 ____D () C:\Windows\Panther
2014-11-19 21:20 - 2014-02-27 09:13 - 00003492 _____ () C:\Windows\System32\Tasks\Seagate_Install_Launch
2014-11-19 21:15 - 2014-01-27 21:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Seznam.cz
2014-11-19 21:09 - 2014-01-21 03:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-17 19:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-17 08:22 - 2014-05-22 05:52 - 00000000 ____D () C:\Users\Petr\Desktop\Filmy do telefonu do auta pro Samíčka
2014-11-16 20:04 - 2009-07-14 06:08 - 00032624 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-11-16 05:06 - 2014-09-20 18:12 - 00000000 ____D () C:\Users\Petr\Desktop\Proud nových léčivých metod
2014-11-16 04:58 - 2014-01-27 20:32 - 00000000 ____D () C:\Mandis disk
2014-11-16 04:56 - 2014-09-20 18:21 - 00000000 ____D () C:\Users\Petr\Desktop\kamera 2013
2014-11-16 04:43 - 2014-09-23 13:20 - 00000000 ____D () C:\Users\Petr\Desktop\Lifeisdrive best fotky 2014
2014-11-15 08:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-14 18:06 - 2009-07-14 05:45 - 00441080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 18:04 - 2014-05-14 19:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-14 17:18 - 2014-01-27 20:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-14 17:17 - 2014-01-27 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-14 17:03 - 2014-01-21 02:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-14 16:59 - 2014-01-21 02:07 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-14 07:37 - 2014-05-13 13:34 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-14 07:37 - 2014-05-13 13:34 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-14 07:37 - 2014-01-27 22:10 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-14 07:37 - 2014-01-27 22:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-11 13:05 - 2014-08-03 12:19 - 00000000 ____D () C:\Users\Petr\Desktop\fotky převod
2014-11-11 12:13 - 2014-01-28 12:10 - 00003696 _____ () C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2014-11-06 11:54 - 2014-10-24 09:47 - 00000000 ____D () C:\Users\Petr\Desktop\fotky pro Canon
2014-11-04 14:30 - 2010-11-21 04:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-04 13:03 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-11-04 11:49 - 2014-01-21 10:02 - 00113536 _____ () C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-02 22:02 - 2014-01-27 22:17 - 00000000 ____D () C:\ProgramData\AVG
Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\optprosetup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-25 00:53
==================== End Of Log ============================
omlouvám se, že jsem se 3 dny neozval, ale měl jsem dost cestování.
O to více bych Vás rád požádal o pomoc, protože jsem dnes kliknul na jednu reklamu o stáhnutí
rychlejšího downloaderu na jedné častěji používané stránce, ale nevšiml jsem si, že je to bouda, protože
takto tajně mi teď vyskakují reklamy dále a mnohe více a tváří se jako součástí stránky...
Malwarebytes mi našel 2 a dost nonmalware jak píše, ale stáhly se s tím programy, které mi nejdou odinstalovat
ani v absolute uninstall. Jsou to: iWebar, Object Browser, omiga-plus, Sense, Shopper-Pro.
Firefox jsem odinstaloval, ale žádnou otázku jako i profil smazat jsem nenašel. Teď používám Explorer a reklamy
mám také a hodně.
Děěěkuji mnohorkát!!!
Petr Manďák
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Petr (administrator) on MANDIS on 27-11-2014 13:40:54
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
(ShopperPro) C:\Program Files\Common Files\ShopperPro\spbiu.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
() C:\Program Files (x86)\Klip Pal\updateKlipPal.exe
() C:\Program Files (x86)\Klip Pal\bin\utilKlipPal.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.expext.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.PurBrowse64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.BrowserAdapter.exe
() C:\Program Files (x86)\Klip Pal\bin\KlipPal.BrowserAdapter64.exe
() C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(BitTorrent Inc.) C:\Users\Petr\uTorrent\utorrent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Object Browser) C:\Program Files (x86)\Object Browser\Object Browser-bg.exe
(iWebar) C:\Program Files (x86)\iWebar\iWebar-bg.exe
(Object Browser) C:\Program Files (x86)\Sense\Sense-bg.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe
(Glarysoft Ltd) C:\Program Files (x86)\Absolute Uninstaller\uninstaller.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2009-11-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [5226600 2014-11-21] (AVAST Software)
HKLM-x32\...\Run: [DBAgent] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1518664 2014-09-17] (Seagate Technology LLC)
HKLM-x32\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988968 2014-08-25] (YTDownloader)
HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe [3224064 2014-11-26] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [Uploader] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [127080 2014-09-17] (Seagate Technology LLC)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988968 2014-08-25] (YTDownloader)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe [3224064 2014-11-26] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Retriever.lnk
ShortcutTarget: Image Retriever.lnk -> C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe (Nuance Communications, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.trovi.com/?gd=&ctid=CT331970 ... E4AA&SSPV=
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... 5852358523
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc& ... 5852358523
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {2380B08A-4808-4B19-B6BE-496FC25B11DD} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {69C80649-6ACA-48D2-A1D4-D2E86210EC8C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {6E8919D5-8D40-4885-859F-93D027F915B9} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {792A4DBB-D834-44DF-87C1-72C6D52CE9D3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {86F29F0E-578D-40AE-B3DD-5342C2624F7D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {AC300793-F9A5-4B0D-9284-6A1B49A302CE} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B0BB8E1D-FEED-4370-A960-D1579DFE8822} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B5F41076-EE61-49F7-83F5-F592B036A44E} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {BFFDEB38-3E47-453A-A0FE-79B59570266A} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
BHO: Object Browser -> {11111111-1111-1111-1111-110311281150} -> C:\Program Files (x86)\Object Browser\Object Browser-bho64.dll (Object Browser)
BHO: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho64.dll (iWebar)
BHO: Sense -> {11111111-1111-1111-1111-110611811153} -> C:\Program Files (x86)\Sense\Sense-bho64.dll (Object Browser)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro64.dll (Goobzo Ltd.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Object Browser -> {11111111-1111-1111-1111-110311281150} -> C:\Program Files (x86)\Object Browser\Object Browser-bho.dll (Object Browser)
BHO-x32: iWebar -> {11111111-1111-1111-1111-110611511123} -> C:\Program Files (x86)\iWebar\iWebar-bho.dll (iWebar)
BHO-x32: Sense -> {11111111-1111-1111-1111-110611811153} -> C:\Program Files (x86)\Sense\Sense-bho.dll (Object Browser)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Klip Pal 1.0.0.4 -> {a13d85a3-d31a-4f34-b4cd-fce576dc079e} -> C:\Program Files (x86)\Klip Pal\KlipPalbho.dll (Klip Pal)
BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll (Goobzo Ltd.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: Trovi search
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Trovi search
FF Homepage: www.seznam.cz
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\searchplugins\trovi-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml
FF Extension: Object Browser - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com [2014-11-27]
FF Extension: Fast Start - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\faststartff@gmail.com [2014-11-27]
FF Extension: Shopper-Pro - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} [2014-11-27]
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\extensions\faststartff@gmail.com
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
Chrome:
=======
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [87336 2012-01-12] (CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [75048 2012-01-12] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [296232 2012-01-12] (CyberLink)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-11-27] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-11-27] (globalUpdate) [File not signed]
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 Seagate Dashboard Services; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe [16000 2014-09-17] (Seagate Technology LLC)
R2 Seagate MobileBackup Service; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe [157776 2014-09-17] (Seagate Technology LLC)
R2 SPBIUpd; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2346880 2014-11-26] (ShopperPro)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 Update Klip Pal; C:\Program Files (x86)\Klip Pal\updateKlipPal.exe [525552 2014-11-27] ()
R2 Util Klip Pal; C:\Program Files (x86)\Klip Pal\bin\utilKlipPal.exe [525552 2014-11-27] ()
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-27] (Malwarebytes Corporation)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [82928 2011-10-27] (Cyberlink Corp.)
R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58728 2014-08-25] (YTDownloader)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 SPBIUpdd; C:\Program Files\Common Files\ShopperPro\spbiw.sys [41856 2014-11-26] ()
R2 SPDRIVER_1.37.0.1416; C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [52584 2014-11-26] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [146928 2012-01-11] (CyberLink Corp.)
R1 {5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64; C:\Windows\System32\drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys [48784 2014-11-26] (StdLib)
U3 abnpxdqa; C:\Windows\System32\Drivers\abnpxdqa.sys [0 ] (Advanced Micro Devices)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-27 13:14 - 2014-11-27 13:14 - 00000000 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_02x03.avi.7vk7jkf.partial
2014-11-27 12:48 - 2014-11-27 13:05 - 659426120 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_03x03.avi
2014-11-27 12:30 - 2014-11-27 12:30 - 00000476 __RSH () C:\ProgramData\ntuser.pol
2014-11-27 10:47 - 2014-11-27 10:47 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Sun
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-27 10:46 - 2014-11-27 11:16 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-27 10:46 - 2014-11-27 10:46 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-27 10:44 - 2014-11-27 10:45 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\jxpiinstall.exe
2014-11-27 10:44 - 2014-11-27 10:44 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\DownLite
2014-11-27 10:41 - 2014-11-27 10:59 - 00003100 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5_user.job
2014-11-27 10:41 - 2014-11-27 10:59 - 00002758 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5.job
2014-11-27 10:41 - 2014-11-27 10:59 - 00002430 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5_user.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00003744 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00003102 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5_user.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002756 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002430 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002412 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2.job
2014-11-27 10:41 - 2014-11-27 10:58 - 00002094 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2.job
2014-11-27 10:41 - 2014-11-27 10:42 - 00005788 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005786 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005460 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5
2014-11-27 10:41 - 2014-11-27 10:42 - 00005124 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2
2014-11-27 10:41 - 2014-11-27 10:42 - 00004346 _____ () C:\Windows\System32\Tasks\SW
2014-11-27 10:41 - 2014-11-27 10:41 - 00006774 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1
2014-11-27 10:41 - 2014-11-27 10:41 - 00005442 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2
2014-11-27 10:40 - 2014-11-27 10:59 - 00005486 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00004478 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00003454 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3.job
2014-11-27 10:40 - 2014-11-27 10:59 - 00001334 _____ () C:\Windows\Tasks\QEDFJA.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00005488 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-11.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004804 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004462 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-4.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00004124 _____ () C:\Windows\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00003436 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00002414 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-2.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001330 _____ () C:\Windows\Tasks\OXQC.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001328 _____ () C:\Windows\Tasks\QHD.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00001326 _____ () C:\Windows\Tasks\SW.job
2014-11-27 10:40 - 2014-11-27 10:58 - 00000950 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-11-27 10:40 - 2014-11-27 10:57 - 00005168 _____ () C:\Windows\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11.job
2014-11-27 10:40 - 2014-11-27 10:57 - 00003748 _____ () C:\Windows\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-1.job
2014-11-27 10:40 - 2014-11-27 10:45 - 00000954 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-11-27 10:40 - 2014-11-27 10:42 - 00007508 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4
2014-11-27 10:40 - 2014-11-27 10:42 - 00006466 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1
2014-11-27 10:40 - 2014-11-27 10:42 - 00005444 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-2
2014-11-27 10:40 - 2014-11-27 10:42 - 00004348 _____ () C:\Windows\System32\Tasks\QHD
2014-11-27 10:40 - 2014-11-27 10:42 - 00000000 ____D () C:\Program Files (x86)\Sense
2014-11-27 10:40 - 2014-11-27 10:41 - 00008516 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11
2014-11-27 10:40 - 2014-11-27 10:41 - 00008198 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11
2014-11-27 10:40 - 2014-11-27 10:41 - 00007834 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4
2014-11-27 10:40 - 2014-11-27 10:41 - 00007492 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-4
2014-11-27 10:40 - 2014-11-27 10:41 - 00004354 _____ () C:\Windows\System32\Tasks\QEDFJA
2014-11-27 10:40 - 2014-11-27 10:41 - 00004350 _____ () C:\Windows\System32\Tasks\OXQC
2014-11-27 10:40 - 2014-11-27 10:41 - 00000000 ____D () C:\Program Files (x86)\Object Browser
2014-11-27 10:40 - 2014-11-27 10:41 - 00000000 ____D () C:\Program Files (x86)\iWebar
2014-11-27 10:40 - 2014-11-27 10:40 - 01831384 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\QEDFJA.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01831384 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\OXQC.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01505752 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\SW.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 01505752 _____ (Object Browser) C:\Users\Petr\AppData\Roaming\QHD.exe
2014-11-27 10:40 - 2014-11-27 10:40 - 00008518 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-11
2014-11-27 10:40 - 2014-11-27 10:40 - 00007154 _____ () C:\Windows\System32\Tasks\62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3
2014-11-27 10:40 - 2014-11-27 10:40 - 00006778 _____ () C:\Windows\System32\Tasks\6a772a71-1412-458a-8c77-5a20c3dcfd6d-1
2014-11-27 10:40 - 2014-11-27 10:40 - 00006484 _____ () C:\Windows\System32\Tasks\e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3
2014-11-27 10:40 - 2014-11-27 10:40 - 00003952 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-11-27 10:40 - 2014-11-27 10:40 - 00003698 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-11-27 10:40 - 2014-11-27 10:40 - 00000000 ____D () C:\Users\Petr\AppData\Local\globalUpdate
2014-11-27 10:40 - 2014-11-27 10:40 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-11-27 10:39 - 2014-11-27 10:42 - 00004494 _____ () C:\Windows\System32\Tasks\ShopperPro
2014-11-27 10:39 - 2014-11-27 10:39 - 00004226 _____ () C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_313638333535373833362d4a375b5a5a6c783245343741
2014-11-27 10:39 - 2014-11-27 10:39 - 00003716 _____ () C:\Windows\System32\Tasks\SMupdate1
2014-11-27 10:39 - 2014-11-27 10:39 - 00003488 _____ () C:\Windows\System32\Tasks\SPDriver
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:39 - 00000000 ____D () C:\ProgramData\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:38 - 00003576 _____ () C:\Windows\System32\Tasks\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00003566 _____ () C:\Windows\System32\Tasks\YTDownloaderUpd
2014-11-27 10:38 - 2014-11-27 10:38 - 00003562 _____ () C:\Windows\System32\Tasks\ShopperProJSUpd
2014-11-27 10:38 - 2014-11-27 10:38 - 00001953 _____ () C:\Users\Petr\Desktop\YTDownloader.lnk
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Program Files (x86)\YTDownloader
2014-11-27 10:38 - 2014-11-27 10:38 - 00000000 ____D () C:\Program Files (x86)\ShopperPro
2014-11-27 10:37 - 2014-11-27 10:37 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashRpt
2014-11-27 10:32 - 2014-11-26 23:47 - 00048784 _____ (StdLib) C:\Windows\system32\Drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys
2014-11-27 10:28 - 2014-11-27 10:54 - 00000000 ____D () C:\Program Files (x86)\DownLite
2014-11-27 10:26 - 2014-11-27 10:28 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\omiga-plus
2014-11-27 10:26 - 2014-11-27 10:28 - 00000000 ____D () C:\Program Files (x86)\SupTab
2014-11-27 10:25 - 2014-11-27 13:00 - 00000000 ____D () C:\Program Files (x86)\Klip Pal
2014-11-27 10:11 - 2014-11-27 10:13 - 2285057485 _____ () C:\Users\Petr\Downloads\Pozoruhodná cesta planety Země E02 Rotace Spin.mkv
2014-11-27 10:07 - 2014-11-27 10:12 - 2420121281 _____ () C:\Users\Petr\Downloads\Země z ptačí perspektivy E04 Jižní Amerika.mkv
2014-11-27 08:58 - 2014-11-27 10:31 - 3449090121 _____ () C:\Users\Petr\Downloads\Království--rostlin-2.mkv
2014-11-26 13:40 - 2014-11-27 13:40 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-25 16:42 - 2014-11-25 16:42 - 00000000 ____D () C:\Users\Petr\Downloads\Atlas mraků
2014-11-25 16:38 - 2014-11-25 16:39 - 00000965 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-25 07:09 - 2014-11-25 10:27 - 1827110690 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_2.zip
2014-11-25 02:49 - 2014-11-25 05:59 - 1826390791 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_1.zip
2014-11-23 11:39 - 2014-11-23 11:44 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon internet
2014-11-21 15:01 - 2014-11-23 11:45 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 22:13 - 2014-11-19 22:13 - 00041242 _____ () C:\Users\Petr\Documents\cc_20141119_221306záloha registrů.reg
2014-11-19 22:13 - 2014-11-19 22:13 - 00010322 _____ () C:\Users\Petr\Documents\cc_20141119_221343registr2.reg
2014-11-19 22:10 - 2014-11-19 22:10 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-19 22:10 - 2014-11-19 22:10 - 00000782 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
2014-11-19 21:54 - 2014-11-19 21:55 - 00000492 _____ () C:\DelFix.txt
2014-11-19 21:53 - 2014-11-19 21:53 - 00002717 _____ () C:\Users\Public\Desktop\Seagate Dashboard.lnk
2014-11-19 21:53 - 2014-11-19 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2014-11-19 21:52 - 2014-11-19 21:52 - 00000000 ____D () C:\ProgramData\Nero
2014-11-19 21:49 - 2014-11-19 21:49 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-11-19 21:26 - 2014-11-19 21:26 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2014-11-18 16:49 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-18 16:24 - 2014-11-27 13:40 - 00000000 ____D () C:\FRST
2014-11-17 12:35 - 2014-11-17 14:04 - 00000000 ____D () C:\Users\Petr\Desktop\Písničky pro Samíčka
2014-11-17 11:49 - 2014-11-27 11:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-17 11:47 - 2014-11-17 11:47 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1.exe
2014-11-17 11:46 - 2014-11-17 11:46 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-11-17 09:38 - 2014-11-27 13:40 - 00000000 ____D () C:\Users\Petr\Desktop\Programy proti virům a malware
2014-11-16 13:27 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-16 13:27 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-15 07:58 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-15 07:57 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-15 07:57 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-15 07:57 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-15 07:57 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-15 07:57 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-15 07:57 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-14 16:50 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-14 16:50 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-14 16:50 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-14 16:50 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-14 16:50 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-14 16:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-14 16:50 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-14 16:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-14 16:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-14 16:50 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-14 16:50 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-14 16:50 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-14 16:50 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-14 16:50 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-14 16:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-14 16:50 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-14 16:50 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-14 16:50 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-14 16:50 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-14 16:50 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-14 16:50 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-14 16:50 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-14 16:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-14 16:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-14 16:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-14 16:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-14 16:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-14 16:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-14 16:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-14 16:46 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-14 16:46 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-14 16:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-14 16:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-14 16:46 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-14 16:46 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-14 16:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-14 16:46 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-14 16:46 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-14 16:46 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-14 07:38 - 2014-11-14 07:38 - 00001935 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-14 07:37 - 2014-11-14 07:37 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-14 07:37 - 2014-11-14 07:37 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-07 22:29 - 2014-11-27 11:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-06 14:28 - 2014-11-15 06:32 - 00000000 ____D () C:\Users\Petr\Desktop\Kamera 2014
2014-11-06 11:50 - 2014-11-06 11:50 - 00002271 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\Users\Petr\AppData\Local\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-11-06 11:49 - 2014-11-06 11:50 - 00000000 ____D () C:\Program Files\WinZip
2014-11-06 11:48 - 2014-11-06 11:48 - 00000000 ____D () C:\Program Files\File Association Helper
2014-11-06 11:31 - 2014-11-06 11:31 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-11-04 13:03 - 2014-11-04 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 13:03 - 2013-02-04 15:10 - 00321536 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_BUL.dll
2014-11-04 13:03 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\SysWOW64\CNC1771D.TBL
2014-11-04 13:03 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG5500 series
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\CanonIJWSpt
2014-11-04 13:00 - 2014-11-04 13:00 - 00000000 ___HD () C:\Program Files\CanonBJ
2014-11-04 13:00 - 2013-04-04 05:00 - 00391168 _____ (CANON INC.) C:\Windows\system32\CNMLMBU.DLL
2014-11-04 13:00 - 2013-02-04 15:12 - 00367104 _____ (CANON INC.) C:\Windows\system32\CNC_BUL.dll
2014-11-04 13:00 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\system32\CNC1771D.TBL
2014-11-04 13:00 - 2012-11-08 13:04 - 00282624 _____ (CANON INC.) C:\Windows\system32\CNC_BUC.dll
2014-11-04 13:00 - 2012-11-08 13:03 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_BUI.dll
2014-11-04 13:00 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2014-11-04 12:51 - 2014-11-04 12:51 - 00000000 ___HD () C:\ProgramData\CanonIJETV
2014-11-04 12:48 - 2014-11-04 13:03 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-11-01 02:07 - 2014-11-16 04:50 - 00000000 ____D () C:\Users\Petr\Desktop\Sud_Tirol-Petr_JPG
2014-11-01 00:52 - 2014-11-16 05:29 - 00000000 ____D () C:\Users\Petr\Desktop\Love songs nové
2014-11-01 00:52 - 2014-11-16 04:45 - 00000000 ____D () C:\Users\Petr\Desktop\fotky do telefonu
2014-11-01 00:52 - 2014-11-16 04:42 - 00000000 ____D () C:\Users\Petr\Desktop\fotky special Samík
2014-10-30 20:27 - 2014-11-11 13:04 - 00000000 ____D () C:\Users\Petr\Desktop\Letiště Praha ofiko
2014-10-30 20:20 - 2014-11-23 21:14 - 00016818 ____H () C:\Users\Petr\Desktop\~WRL0006.tmp
2014-10-30 20:20 - 2014-11-21 07:37 - 00017842 ____H () C:\Users\Petr\Desktop\~WRL0004.tmp
2014-10-30 20:20 - 2014-11-07 17:35 - 00016448 ____H () C:\Users\Petr\Desktop\~WRL0003.tmp
2014-10-30 19:38 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 19:38 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 19:38 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-30 19:38 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-30 19:38 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 19:38 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 19:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 19:37 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 19:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 19:37 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 19:37 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-28 10:55 - 2014-11-16 06:27 - 00000000 ____D () C:\Users\Petr\Desktop\Trance a relaxační muzika na přebrání
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-27 13:41 - 2014-02-02 14:36 - 00000000 ____D () C:\Users\Petr\uTorrent
2014-11-27 12:30 - 2014-01-19 15:33 - 01081878 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 11:59 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-11-27 11:08 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 11:08 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 11:01 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-11-27 10:57 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 10:41 - 2014-01-21 10:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-27 10:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-27 10:26 - 2014-01-19 16:36 - 00001631 _____ () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-27 10:10 - 2011-04-12 09:34 - 00668790 _____ () C:\Windows\system32\perfh005.dat
2014-11-27 10:10 - 2011-04-12 09:34 - 00141418 _____ () C:\Windows\system32\perfc005.dat
2014-11-27 10:10 - 2009-07-14 06:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-26 13:40 - 2014-02-01 20:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 13:40 - 2014-02-01 20:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 13:40 - 2014-02-01 20:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 11:45 - 2014-01-27 21:35 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-23 11:45 - 2014-01-21 09:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Adobe
2014-11-23 07:51 - 2014-05-13 13:27 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 08:03 - 2014-05-13 13:27 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-19 22:12 - 2014-06-23 12:59 - 00000000 ____D () C:\Windows\Minidump
2014-11-19 22:12 - 2014-03-10 12:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Media Player Classic
2014-11-19 22:12 - 2014-01-19 15:29 - 00000000 ____D () C:\Windows\Panther
2014-11-19 21:20 - 2014-02-27 09:13 - 00003492 _____ () C:\Windows\System32\Tasks\Seagate_Install_Launch
2014-11-19 21:15 - 2014-01-27 21:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Seznam.cz
2014-11-19 21:09 - 2014-01-21 03:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-17 19:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-17 08:22 - 2014-05-22 05:52 - 00000000 ____D () C:\Users\Petr\Desktop\Filmy do telefonu do auta pro Samíčka
2014-11-16 20:04 - 2009-07-14 06:08 - 00032624 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-11-16 05:06 - 2014-09-20 18:12 - 00000000 ____D () C:\Users\Petr\Desktop\Proud nových léčivých metod
2014-11-16 04:58 - 2014-01-27 20:32 - 00000000 ____D () C:\Mandis disk
2014-11-16 04:56 - 2014-09-20 18:21 - 00000000 ____D () C:\Users\Petr\Desktop\kamera 2013
2014-11-16 04:43 - 2014-09-23 13:20 - 00000000 ____D () C:\Users\Petr\Desktop\Lifeisdrive best fotky 2014
2014-11-15 08:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-14 18:06 - 2009-07-14 05:45 - 00441080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 18:04 - 2014-05-14 19:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-14 17:18 - 2014-01-27 20:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-14 17:17 - 2014-01-27 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-14 17:03 - 2014-01-21 02:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-14 16:59 - 2014-01-21 02:07 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-14 07:37 - 2014-05-13 13:34 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-14 07:37 - 2014-05-13 13:34 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-14 07:37 - 2014-01-27 22:10 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-14 07:37 - 2014-01-27 22:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-11 13:05 - 2014-08-03 12:19 - 00000000 ____D () C:\Users\Petr\Desktop\fotky převod
2014-11-11 12:13 - 2014-01-28 12:10 - 00003696 _____ () C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2014-11-06 11:54 - 2014-10-24 09:47 - 00000000 ____D () C:\Users\Petr\Desktop\fotky pro Canon
2014-11-04 14:30 - 2010-11-21 04:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-04 13:03 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-11-04 11:49 - 2014-01-21 10:02 - 00113536 _____ () C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-02 22:02 - 2014-01-27 22:17 - 00000000 ____D () C:\ProgramData\AVG
Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\optprosetup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-25 00:53
==================== End Of Log ============================
Re: Stále vyskakují nové stránky ve firefoxu
Zdravim
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: Stále vyskakují nové stránky ve firefoxu
Přikládám AdwCleaner a děkuji:-)
# AdwCleaner v4.102 - Report created 27/11/2014 at 22:14:45
# Updated 23/11/2014 by Xplode
# Database : 2014-11-27.1 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Petr - MANDIS
# Running from : C:\Users\Petr\Downloads\adwcleaner_4.102.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : sbmntr
Service Deleted : SPBIUpd
Service Deleted : SPBIUpdd
[#] Service Deleted : Update Klip Pal
[#] Service Deleted : Util Klip Pal
Service Deleted : {5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\Program Files (x86)\DownLite
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\iWebar
Folder Deleted : C:\Program Files (x86)\Object Browser
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\SupTab
Folder Deleted : C:\Program Files (x86)\YTDownloader
[!] Folder Deleted : C:\Program Files (x86)\Klip Pal
[!] Folder Deleted : C:\Program Files (x86)\Klip Pal
Folder Deleted : C:\Users\Petr\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Petr\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Petr\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\Petr\AppData\LocalLow\Object Browser
Folder Deleted : C:\Users\Petr\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Petr\AppData\Roaming\DownLite
Folder Deleted : C:\Users\Petr\AppData\Roaming\omiga-plus
Folder Deleted : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\faststartff@gmail.com
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\ae44639e-43f2-4cd1-aa80-39d5d2e18fa9@gmail.com
File Deleted : C:\Windows\System32\\drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys
File Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\searchplugins\trovi-search.xml
***** [ Scheduled Tasks ] *****
Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SMupdate1
Task Deleted : SPDriver
Task Deleted : YTDownloader
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5_user
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-1
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-11
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-2
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-4
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-5
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-5_user
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5_user
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
***** [ Registry ] *****
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [faststartff@gmail.com]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update Klip Pal
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util Klip Pal
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622812253}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644514423}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644814453}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{26118726-ae46-4b8d-81c0-75dc986a7c1a}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611811153}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622812253}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611811153}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\ShopperPro
Key Deleted : HKCU\Software\YTDownloader
Key Deleted : HKCU\Software\Klip Pal
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\Object Browser
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\Object Browser
Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\YTDownloader
Key Deleted : HKLM\SOFTWARE\Klip Pal
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iWebar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omiga-plus uninstall
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Klip Pal
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\isearch.omiga-plus.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\omiga-plus.com
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Mozilla Firefox v
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.search.defaultenginename", "Trovi search");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.search.selectedEngine", "Trovi search");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "149f0b78c5adad2cb0de64c25cb114c0");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.quick_start.enable_search1", false);
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
*************************
AdwCleaner[R0].txt - [23912 octets] - [27/11/2014 22:11:02]
AdwCleaner[S0].txt - [20739 octets] - [27/11/2014 22:14:45]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [20800 octets] ##########
# AdwCleaner v4.102 - Report created 27/11/2014 at 22:14:45
# Updated 23/11/2014 by Xplode
# Database : 2014-11-27.1 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Petr - MANDIS
# Running from : C:\Users\Petr\Downloads\adwcleaner_4.102.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : sbmntr
Service Deleted : SPBIUpd
Service Deleted : SPBIUpdd
[#] Service Deleted : Update Klip Pal
[#] Service Deleted : Util Klip Pal
Service Deleted : {5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\Program Files (x86)\DownLite
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\iWebar
Folder Deleted : C:\Program Files (x86)\Object Browser
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\SupTab
Folder Deleted : C:\Program Files (x86)\YTDownloader
[!] Folder Deleted : C:\Program Files (x86)\Klip Pal
[!] Folder Deleted : C:\Program Files (x86)\Klip Pal
Folder Deleted : C:\Users\Petr\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Petr\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Petr\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\Petr\AppData\LocalLow\Object Browser
Folder Deleted : C:\Users\Petr\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Petr\AppData\Roaming\DownLite
Folder Deleted : C:\Users\Petr\AppData\Roaming\omiga-plus
Folder Deleted : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\faststartff@gmail.com
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
Folder Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\Extensions\ae44639e-43f2-4cd1-aa80-39d5d2e18fa9@gmail.com
File Deleted : C:\Windows\System32\\drivers\{5a28cc9c-8cff-4fb9-8594-f59fd357bfc5}Gw64.sys
File Deleted : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\searchplugins\trovi-search.xml
***** [ Scheduled Tasks ] *****
Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SMupdate1
Task Deleted : SPDriver
Task Deleted : YTDownloader
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-1
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-11
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-2
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-3
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-4
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5
Task Deleted : 62f8fbfa-3123-4bd7-b725-34bb13fb7f9c-5_user
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-1
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-11
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-2
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-4
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-5
Task Deleted : 6a772a71-1412-458a-8c77-5a20c3dcfd6d-5_user
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-1
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-11
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-2
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-3
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-4
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5
Task Deleted : e19fa197-5cfb-4abe-a8f3-17dcd125b5ed-5_user
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Petr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
***** [ Registry ] *****
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [faststartff@gmail.com]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update Klip Pal
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util Klip Pal
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622812253}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644514423}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644814453}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{26118726-ae46-4b8d-81c0-75dc986a7c1a}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{a13d85a3-d31a-4f34-b4cd-fce576dc079e}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311281150}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611511123}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611811153}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611811153}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622812253}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611811153}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\ShopperPro
Key Deleted : HKCU\Software\YTDownloader
Key Deleted : HKCU\Software\Klip Pal
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\Object Browser
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\Object Browser
Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\YTDownloader
Key Deleted : HKLM\SOFTWARE\Klip Pal
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iWebar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omiga-plus uninstall
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Klip Pal
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\isearch.omiga-plus.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\omiga-plus.com
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Mozilla Firefox v
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.search.defaultenginename", "Trovi search");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("browser.search.selectedEngine", "Trovi search");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "149f0b78c5adad2cb0de64c25cb114c0");
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.quick_start.enable_search1", false);
[gtx3j24j.default-1416036175748\prefs.js] - Line Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
*************************
AdwCleaner[R0].txt - [23912 octets] - [27/11/2014 22:11:02]
AdwCleaner[S0].txt - [20739 octets] - [27/11/2014 22:14:45]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [20800 octets] ##########
Re: Stále vyskakují nové stránky ve firefoxu
Poprosim nyni o Zoek
Re: Stále vyskakují nové stránky ve firefoxu
Děkuji, že jste se podíval, jen Zoek trochu déle trval, přidávám report a děkuji moc za zprávičku od Vás:-)
Zoek.exe v5.0.0.0 Updated 26-11-2014
Tool run by Petr on źt 27.11.2014 at 22:32:38,69.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Petr\Desktop\Programy proti virům a malware\zoek\zoek.com [Scan all users] [Script inserted]
==== System Restore Info ======================
27.11.2014 22:36:52 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Malwarebytes' Anti-Malware deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\Program Files\ProgDVB deleted successfully
C:\PROGRA~3\ProgDVB deleted successfully
C:\PROGRA~3\xml_param deleted successfully
C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite deleted successfully
C:\Users\Petr\AppData\Roaming\hpqLog deleted successfully
C:\Users\Petr\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Petr\AppData\Roaming\Wondershare Video Converter Pro deleted successfully
C:\Users\Petr\AppData\Local\Downloaded Installations deleted successfully
C:\Users\Petr\AppData\Local\MediaShow deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1cbd9c47-8994-4580-806d-ae46b5623216} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{272F684-D349-4A9A-828A-6381D627689C} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2940586B-38E2-4B20-BE5F-B02D7CA7B538} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B20F4D4-23DA-4BA5-88D4-201FD0321517} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{334c4611-aa97-4030-a7b4-aac093bd5653} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{401b8c97-69e1-4bfe-b288-3c120ee079cd} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44FA76FC-796-4FD4-B7BA-5A5DBE2DE4A2} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57ABF7CA-1CD7-42AE-99FC-789D4783DAB4} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C1FE2F-CE85-4E63-A1A5-631F34EE082} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BBE6CE5-93A7-4F26-95E7-F0AF3C299260} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66603DA4-CBEE-4F16-BACC-D3EA4757DF7D} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66C49FD-346D-4480-AE46-EC621F32373F} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C8F7001-9335-4953-86F2-7A70B8FDE62F} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fee58ae-034c-4641-95b0-d0838de6926c} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FFB88A6-3804-410A-B519-2E7F7588D0AC} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79E1954A-5187-432D-9FE0-85C6AE59B90} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CCA1B0C-409E-4476-A6F3-ADD29195576} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7e30aac9-cdda-4839-9a06-7c7c938600e2} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87C6E1C3-E7B5-42A9-9646-44FE5DD4117} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8c609465-cb5b-4101-92cf-b583bbd42d6a} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9ED2FD51-ABB1-4485-8396-FEEFD4B16871} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a29b304c-2ec1-47c7-ae99-31bed2e82d6a} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A345A651-E439-4700-B92B-584CD4FD329D} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1D562E-7CB2-493A-BBBA-623DD03A65F9} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{baf29c14-ebb6-4657-b2d0-920741cc9bcc} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C029139F-2A5F-47E6-B95C-BE7BF27E119} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c4c77cdd-d209-45c0-8762-75ca428f7dde} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF29AE8B-B479-4242-B815-F364A795186} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D479CFF6-4324-4D60-B56C-27FF4443384} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6668AC5-D2B6-457F-8ADA-B2F2CB4FC8} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dbe61e52-094a-4f45-821a-950eabb0705f} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e77448e8-2d80-41bd-ae48-b1318fc4ff5c} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0D9FCA0-C66B-4B9C-BAE3-3A2DBB7C4193} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4A6195A-78A7-426A-A187-701B284C475C} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f648c4c4-2c0a-4532-91ef-1d33731a1398} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6740D1C-754F-40AC-A378-1E116E2994A3} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1cbd9c47-8994-4580-806d-ae46b5623216} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{334c4611-aa97-4030-a7b4-aac093bd5653} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{401b8c97-69e1-4bfe-b288-3c120ee079cd} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fee58ae-034c-4641-95b0-d0838de6926c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7e30aac9-cdda-4839-9a06-7c7c938600e2} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8c609465-cb5b-4101-92cf-b583bbd42d6a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a29b304c-2ec1-47c7-ae99-31bed2e82d6a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{baf29c14-ebb6-4657-b2d0-920741cc9bcc} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c4c77cdd-d209-45c0-8762-75ca428f7dde} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dbe61e52-094a-4f45-821a-950eabb0705f} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e77448e8-2d80-41bd-ae48-b1318fc4ff5c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f648c4c4-2c0a-4532-91ef-1d33731a1398} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.useDBForOrder", true);
Added to C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
user.js not found
---- Lines Klip Pal removed from prefs.js ----
user_pref("extensions.Klip Pal.aul", "1417080347472");
user_pref("extensions.Klip Pal.irl", true);
user_pref("extensions.Klip Pal.is", "ad7CZ");
user_pref("extensions.Klip Pal.ug", "39F1F516-FA93-4067-BE16-E95F5F0641B3");
---- Lines a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850 removed from prefs.js ----
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.active", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.addressbar", "NA");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.addressbarenhanced", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.asyncdb.was_copied", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.asyncinternaldb.was_copied", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.backgroundver", 1);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.certdomaininstaller", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallationTime.value", "%221417081202%2
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallerParams.expiration", "Fri Feb 01
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallerParams.value", "%7B%22source_id%
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.uc.expiration", "Thu Dec 11 2014 11:06:50
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.uc.value", "%22%5C%22CZ%5C%22%22");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.description", "Browser enhancer");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.domain", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.enablesearch", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.homepage", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.changeprevious", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.iframe", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.InstallationThankYouPage", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.InstallationTime", 1417081202);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.__defualt_browser__.expiration", "Fri
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.__defualt_browser__.value", "%22ff%22
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParams.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParams.value", "%7B%22source
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_appVer.value", "234");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_nextCheck.expiration", "Thu
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_remote_resources.expiration
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.lastDailyReport", "1417082802743");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.lastUpdate", "1417082802110");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.manifesturl", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.name", "Object Browser");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.newtab", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.opensearch", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.pluginsurl", "http://js.newstaticclientstack.com
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.pluginsversion", 197);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.publisher", "Object Browser");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.searchstatus", 0);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.setnewtab", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.thankyou", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.updateinterval", 360);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.ver", 234);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.apps", "32850");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.bic", "149f0b78c5adad2cb0de64c25cb114c0");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.cid", 32850);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.firstrun", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.hadappinstalled", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.installationdate", 1417082801);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.modetype", "production");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.reportInstall", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.statsDailyCounter", 1);
---- FireFox user.js and prefs.js backups ----
prefs_18.11.2014_1636_.backup
prefs_27.11.2014_2302_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Mozilla Firefox\browser\searchplugins\omiga-plus.xml deleted
C:\Windows\tasks\OXQC.job deleted
C:\windows\SysNative\tasks\OXQC deleted
C:\Windows\tasks\QEDFJA.job deleted
C:\windows\SysNative\tasks\QEDFJA deleted
C:\Windows\tasks\QHD.job deleted
C:\windows\SysNative\tasks\QHD deleted
C:\Windows\tasks\SW.job deleted
C:\windows\SysNative\tasks\SW deleted
C:\windows\SysNative\Tasks\SPBIW_UpdateTask_Time_313638333535373833362d4a375b5a5a6c783245343741 deleted
C:\windows\SysNative\tasks\YTDownloaderUpd deleted
C:\windows\SysNative\tasks\Microsoft\Windows\Maintenance\SMupdate2 deleted
C:\windows\SysNative\tasks\Microsoft\Windows\Multimedia\SMupdate3 deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Users\Petr\Desktop\YTDownloader.lnk deleted
C:\Users\Petr\AppData\Roaming\OXQC.exe deleted
C:\Users\Petr\AppData\Roaming\QEDFJA.exe deleted
C:\Users\Petr\AppData\Roaming\QHD.exe deleted
C:\Users\Petr\AppData\Roaming\SW.exe deleted
C:\Users\Petr\AppData\Local\MSGBOX.EXE deleted
"C:\Users\Petr\AppData\Roaming\OXQC" deleted
"C:\Users\Petr\AppData\Roaming\QEDFJA" deleted
"C:\Users\Petr\AppData\Roaming\QHD" deleted
"C:\Users\Petr\AppData\Roaming\SW" deleted
==== Firefox Extensions ======================
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
- Undetermined - faststartff@gmail.com
- Undetermined - {746505DC-0E21-4667-97F8-72EA6BCF5EEF}
- Undetermined - 9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
==== Firefox Plugins ======================
Profilepath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
8303B3CEC05500F763B4FA75210598BB - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll - Shockwave Flash
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"
{2380B08A-4808-4B19-B6BE-496FC25B11DD} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_12454"
{69C80649-6ACA-48D2-A1D4-D2E86210EC8C} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_12454"
{6E8919D5-8D40-4885-859F-93D027F915B9} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_12454"
{792A4DBB-D834-44DF-87C1-72C6D52CE9D3} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454"
{86F29F0E-578D-40AE-B3DD-5342C2624F7D} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_12454"
{AC300793-F9A5-4B0D-9284-6A1B49A302CE} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
{B0BB8E1D-FEED-4370-A960-D1579DFE8822} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_12454"
{B5F41076-EE61-49F7-83F5-F592B036A44E} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_12454"
{BFFDEB38-3E47-453A-A0FE-79B59570266A} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
==== Reset Google Chrome ======================
Nothing found to reset
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=28 folders=1 6788047 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Petr\AppData\Local\Temp will be emptied at reboot
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Petr\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on źt 27.11.2014 at 23:11:27,89 ======================
Zoek.exe v5.0.0.0 Updated 26-11-2014
Tool run by Petr on źt 27.11.2014 at 22:32:38,69.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Petr\Desktop\Programy proti virům a malware\zoek\zoek.com [Scan all users] [Script inserted]
==== System Restore Info ======================
27.11.2014 22:36:52 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Malwarebytes' Anti-Malware deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\Program Files\ProgDVB deleted successfully
C:\PROGRA~3\ProgDVB deleted successfully
C:\PROGRA~3\xml_param deleted successfully
C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite deleted successfully
C:\Users\Petr\AppData\Roaming\hpqLog deleted successfully
C:\Users\Petr\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Petr\AppData\Roaming\Wondershare Video Converter Pro deleted successfully
C:\Users\Petr\AppData\Local\Downloaded Installations deleted successfully
C:\Users\Petr\AppData\Local\MediaShow deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1cbd9c47-8994-4580-806d-ae46b5623216} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{272F684-D349-4A9A-828A-6381D627689C} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2940586B-38E2-4B20-BE5F-B02D7CA7B538} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B20F4D4-23DA-4BA5-88D4-201FD0321517} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{334c4611-aa97-4030-a7b4-aac093bd5653} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{401b8c97-69e1-4bfe-b288-3c120ee079cd} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44FA76FC-796-4FD4-B7BA-5A5DBE2DE4A2} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57ABF7CA-1CD7-42AE-99FC-789D4783DAB4} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C1FE2F-CE85-4E63-A1A5-631F34EE082} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BBE6CE5-93A7-4F26-95E7-F0AF3C299260} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66603DA4-CBEE-4F16-BACC-D3EA4757DF7D} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66C49FD-346D-4480-AE46-EC621F32373F} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C8F7001-9335-4953-86F2-7A70B8FDE62F} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fee58ae-034c-4641-95b0-d0838de6926c} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FFB88A6-3804-410A-B519-2E7F7588D0AC} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79E1954A-5187-432D-9FE0-85C6AE59B90} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CCA1B0C-409E-4476-A6F3-ADD29195576} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7e30aac9-cdda-4839-9a06-7c7c938600e2} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87C6E1C3-E7B5-42A9-9646-44FE5DD4117} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8c609465-cb5b-4101-92cf-b583bbd42d6a} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9ED2FD51-ABB1-4485-8396-FEEFD4B16871} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a29b304c-2ec1-47c7-ae99-31bed2e82d6a} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A345A651-E439-4700-B92B-584CD4FD329D} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1D562E-7CB2-493A-BBBA-623DD03A65F9} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{baf29c14-ebb6-4657-b2d0-920741cc9bcc} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C029139F-2A5F-47E6-B95C-BE7BF27E119} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c4c77cdd-d209-45c0-8762-75ca428f7dde} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF29AE8B-B479-4242-B815-F364A795186} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D479CFF6-4324-4D60-B56C-27FF4443384} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6668AC5-D2B6-457F-8ADA-B2F2CB4FC8} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dbe61e52-094a-4f45-821a-950eabb0705f} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e77448e8-2d80-41bd-ae48-b1318fc4ff5c} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0D9FCA0-C66B-4B9C-BAE3-3A2DBB7C4193} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4A6195A-78A7-426A-A187-701B284C475C} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f648c4c4-2c0a-4532-91ef-1d33731a1398} deleted successfully
HKEY_USERS\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6740D1C-754F-40AC-A378-1E116E2994A3} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1cbd9c47-8994-4580-806d-ae46b5623216} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{334c4611-aa97-4030-a7b4-aac093bd5653} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{401b8c97-69e1-4bfe-b288-3c120ee079cd} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fee58ae-034c-4641-95b0-d0838de6926c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7e30aac9-cdda-4839-9a06-7c7c938600e2} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8c609465-cb5b-4101-92cf-b583bbd42d6a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a29b304c-2ec1-47c7-ae99-31bed2e82d6a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{baf29c14-ebb6-4657-b2d0-920741cc9bcc} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c4c77cdd-d209-45c0-8762-75ca428f7dde} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dbe61e52-094a-4f45-821a-950eabb0705f} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e77448e8-2d80-41bd-ae48-b1318fc4ff5c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f648c4c4-2c0a-4532-91ef-1d33731a1398} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.useDBForOrder", true);
Added to C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
user.js not found
---- Lines Klip Pal removed from prefs.js ----
user_pref("extensions.Klip Pal.aul", "1417080347472");
user_pref("extensions.Klip Pal.irl", true);
user_pref("extensions.Klip Pal.is", "ad7CZ");
user_pref("extensions.Klip Pal.ug", "39F1F516-FA93-4067-BE16-E95F5F0641B3");
---- Lines a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850 removed from prefs.js ----
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-32
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.active", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.addressbar", "NA");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.addressbarenhanced", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.asyncdb.was_copied", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.asyncinternaldb.was_copied", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.backgroundver", 1);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.certdomaininstaller", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallationTime.value", "%221417081202%2
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallerParams.expiration", "Fri Feb 01
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.InstallerParams.value", "%7B%22source_id%
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.uc.expiration", "Thu Dec 11 2014 11:06:50
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.cookie.uc.value", "%22%5C%22CZ%5C%22%22");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.description", "Browser enhancer");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.domain", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.enablesearch", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.homepage", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.changeprevious", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.iframe", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.InstallationThankYouPage", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.InstallationTime", 1417081202);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.__defualt_browser__.expiration", "Fri
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.__defualt_browser__.value", "%22ff%22
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParams.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParams.value", "%7B%22source
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_appVer.value", "234");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_nextCheck.expiration", "Thu
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_remote_resources.expiration
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.lastDailyReport", "1417082802743");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.lastUpdate", "1417082802110");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.manifesturl", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.name", "Object Browser");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.newtab", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.opensearch", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.pluginsurl", "http://js.newstaticclientstack.com
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.pluginsversion", 197);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.publisher", "Object Browser");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.searchstatus", 0);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.setnewtab", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.thankyou", "");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.updateinterval", 360);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.ver", 234);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.apps", "32850");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.bic", "149f0b78c5adad2cb0de64c25cb114c0");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.cid", 32850);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.firstrun", false);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.hadappinstalled", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.installationdate", 1417082801);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.modetype", "production");
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.reportInstall", true);
user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.statsDailyCounter", 1);
---- FireFox user.js and prefs.js backups ----
prefs_18.11.2014_1636_.backup
prefs_27.11.2014_2302_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Mozilla Firefox\browser\searchplugins\omiga-plus.xml deleted
C:\Windows\tasks\OXQC.job deleted
C:\windows\SysNative\tasks\OXQC deleted
C:\Windows\tasks\QEDFJA.job deleted
C:\windows\SysNative\tasks\QEDFJA deleted
C:\Windows\tasks\QHD.job deleted
C:\windows\SysNative\tasks\QHD deleted
C:\Windows\tasks\SW.job deleted
C:\windows\SysNative\tasks\SW deleted
C:\windows\SysNative\Tasks\SPBIW_UpdateTask_Time_313638333535373833362d4a375b5a5a6c783245343741 deleted
C:\windows\SysNative\tasks\YTDownloaderUpd deleted
C:\windows\SysNative\tasks\Microsoft\Windows\Maintenance\SMupdate2 deleted
C:\windows\SysNative\tasks\Microsoft\Windows\Multimedia\SMupdate3 deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Users\Petr\Desktop\YTDownloader.lnk deleted
C:\Users\Petr\AppData\Roaming\OXQC.exe deleted
C:\Users\Petr\AppData\Roaming\QEDFJA.exe deleted
C:\Users\Petr\AppData\Roaming\QHD.exe deleted
C:\Users\Petr\AppData\Roaming\SW.exe deleted
C:\Users\Petr\AppData\Local\MSGBOX.EXE deleted
"C:\Users\Petr\AppData\Roaming\OXQC" deleted
"C:\Users\Petr\AppData\Roaming\QEDFJA" deleted
"C:\Users\Petr\AppData\Roaming\QHD" deleted
"C:\Users\Petr\AppData\Roaming\SW" deleted
==== Firefox Extensions ======================
ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
- Undetermined - faststartff@gmail.com
- Undetermined - {746505DC-0E21-4667-97F8-72EA6BCF5EEF}
- Undetermined - 9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
==== Firefox Plugins ======================
Profilepath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
8303B3CEC05500F763B4FA75210598BB - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll - Shockwave Flash
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"
{2380B08A-4808-4B19-B6BE-496FC25B11DD} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_12454"
{69C80649-6ACA-48D2-A1D4-D2E86210EC8C} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_12454"
{6E8919D5-8D40-4885-859F-93D027F915B9} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_12454"
{792A4DBB-D834-44DF-87C1-72C6D52CE9D3} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454"
{86F29F0E-578D-40AE-B3DD-5342C2624F7D} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_12454"
{AC300793-F9A5-4B0D-9284-6A1B49A302CE} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
{B0BB8E1D-FEED-4370-A960-D1579DFE8822} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_12454"
{B5F41076-EE61-49F7-83F5-F592B036A44E} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_12454"
{BFFDEB38-3E47-453A-A0FE-79B59570266A} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_12454"
==== Reset Google Chrome ======================
Nothing found to reset
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=28 folders=1 6788047 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Petr\AppData\Local\Temp will be emptied at reboot
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Petr\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on źt 27.11.2014 at 23:11:27,89 ======================
Re: Stále vyskakují nové stránky ve firefoxu
Supr, Zoek nam to tez pekne procistil
Poprosim o FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100

Poprosim o FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
Re: Stále vyskakují nové stránky ve firefoxu
Je parádní, že mi již ty stále se otevírající reklamy a ještě maskující, že patří na stránky již nevyskakují.
Moooc děkuji a i ty programy navíc se smazaly, bezva!
Firefox si ale stále pamatuje to co si pamatoval jako mé
heslo pro přihlášení, které jsem si již změnil, takže plně odinstalovat zatím nešlo, ale pokud se i tam již jako naposled
nebudou vyskakovat ta 2 okna, tak je to parádní a klid... Děkuji moc:-)
Přikládám report, pokud byste ještě něco viděl:-)
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Petr (administrator) on MANDIS on 28-11-2014 11:33:27
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DeviceAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(BitTorrent Inc.) C:\Users\Petr\uTorrent\utorrent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2009-11-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [5226600 2014-11-21] (AVAST Software)
HKLM-x32\...\Run: [DBAgent] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1518664 2014-09-17] (Seagate Technology LLC)
HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [Uploader] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [127080 2014-09-17] (Seagate Technology LLC)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Retriever.lnk
ShortcutTarget: Image Retriever.lnk -> C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe (Nuance Communications, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {2380B08A-4808-4B19-B6BE-496FC25B11DD} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {69C80649-6ACA-48D2-A1D4-D2E86210EC8C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {6E8919D5-8D40-4885-859F-93D027F915B9} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {792A4DBB-D834-44DF-87C1-72C6D52CE9D3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {86F29F0E-578D-40AE-B3DD-5342C2624F7D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {AC300793-F9A5-4B0D-9284-6A1B49A302CE} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B0BB8E1D-FEED-4370-A960-D1579DFE8822} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B5F41076-EE61-49F7-83F5-F592B036A44E} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {BFFDEB38-3E47-453A-A0FE-79B59570266A} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
FF NewTab: hxxp://www.google.com/
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
Chrome:
=======
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [87336 2012-01-12] (CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [75048 2012-01-12] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [296232 2012-01-12] (CyberLink)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 Seagate Dashboard Services; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe [16000 2014-09-17] (Seagate Technology LLC)
R2 Seagate MobileBackup Service; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe [157776 2014-09-17] (Seagate Technology LLC)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-28] (Malwarebytes Corporation)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [82928 2011-10-27] (Cyberlink Corp.)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [146928 2012-01-11] (CyberLink Corp.)
U3 aolnm569; C:\Windows\System32\Drivers\aolnm569.sys [0 ] (Advanced Micro Devices)
S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-28 10:46 - 2014-11-28 11:00 - 1154959481 _____ () C:\Users\Petr\Downloads\detske-a-vanocni-pisnicky.part2.rar
2014-11-28 10:28 - 2014-11-28 10:47 - 1309231040 _____ () C:\Users\Petr\Downloads\detske-a-vanocni-pisnicky.part1.rar
2014-11-28 09:51 - 2014-11-28 10:08 - 671213568 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_02x03.avi
2014-11-28 09:51 - 2014-11-28 10:07 - 650977280 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_01x03.avi
2014-11-28 07:50 - 2014-11-28 08:36 - 1592034884 _____ () C:\Users\Petr\Downloads\Království-rostlin-4.mkv.part
2014-11-28 07:49 - 2014-11-28 08:37 - 1686953483 _____ () C:\Users\Petr\Downloads\Království--rostlin-3.mkv.part
2014-11-28 07:37 - 2014-11-28 07:37 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-28 07:37 - 2014-11-28 07:37 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-28 07:37 - 2014-11-28 07:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
2014-11-27 21:57 - 2014-11-27 22:07 - 00000000 ____D () C:\Users\Petr\Desktop\E-book
2014-11-27 21:57 - 2014-11-27 21:57 - 00000000 ___RD () C:\Users\Petr\Desktop\The Offspring
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ___RD () C:\Users\Petr\Desktop\Green Day
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\ostratní mix
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Nightwork
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Lucka Vondráčková - Fénix (CD 01)
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\linkin park
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Chinaski - Premium (Best of...1993-2003)
2014-11-27 21:53 - 2008-08-19 01:39 - 1466433536 _____ () C:\Users\Petr\Desktop\nikdy.to.nevzdavej.avi
2014-11-27 17:27 - 2014-11-27 21:52 - 00000000 ____D () C:\Users\Petr\Desktop\Katka
2014-11-27 17:26 - 2014-11-27 23:10 - 00000900 _____ () C:\Windows\setupact.log
2014-11-27 17:26 - 2014-11-27 17:26 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-27 14:27 - 2013-08-08 09:39 - 00000000 ____D () C:\Users\Petr\Downloads\1
2014-11-27 12:48 - 2014-11-27 13:05 - 659426120 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_03x03.avi
2014-11-27 12:30 - 2014-11-27 23:11 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Sun
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-27 10:46 - 2014-11-28 06:57 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-27 10:46 - 2014-11-27 10:46 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-27 10:44 - 2014-11-27 10:45 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\jxpiinstall.exe
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-27 10:25 - 2014-11-27 22:15 - 00000000 ____D () C:\Program Files (x86)\Klip Pal
2014-11-27 10:11 - 2014-11-27 10:13 - 2285057485 _____ () C:\Users\Petr\Downloads\Pozoruhodná cesta planety Země E02 Rotace Spin.mkv
2014-11-27 08:58 - 2014-11-27 10:31 - 3449090121 _____ () C:\Users\Petr\Downloads\Království--rostlin-2.mkv
2014-11-26 13:40 - 2014-11-28 10:40 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-25 16:42 - 2014-11-27 14:33 - 00000000 ____D () C:\Users\Petr\Downloads\Atlas mraků
2014-11-25 16:38 - 2014-11-25 16:39 - 00000965 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-25 07:09 - 2014-11-25 10:27 - 1827110690 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_2.zip
2014-11-25 02:49 - 2014-11-25 05:59 - 1826390791 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_1.zip
2014-11-23 11:39 - 2014-11-23 11:44 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon internet
2014-11-21 15:01 - 2014-11-23 11:45 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 22:13 - 2014-11-19 22:13 - 00041242 _____ () C:\Users\Petr\Documents\cc_20141119_221306záloha registrů.reg
2014-11-19 22:13 - 2014-11-19 22:13 - 00010322 _____ () C:\Users\Petr\Documents\cc_20141119_221343registr2.reg
2014-11-19 22:10 - 2014-11-19 22:10 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-19 22:10 - 2014-11-19 22:10 - 00000782 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
2014-11-19 21:54 - 2014-11-19 21:55 - 00000492 _____ () C:\DelFix.txt
2014-11-19 21:53 - 2014-11-19 21:53 - 00002717 _____ () C:\Users\Public\Desktop\Seagate Dashboard.lnk
2014-11-19 21:53 - 2014-11-19 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2014-11-19 21:52 - 2014-11-19 21:52 - 00000000 ____D () C:\ProgramData\Nero
2014-11-19 21:49 - 2014-11-19 21:49 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-11-18 16:24 - 2014-11-28 11:33 - 00000000 ____D () C:\FRST
2014-11-17 12:35 - 2014-11-17 14:04 - 00000000 ____D () C:\Users\Petr\Desktop\Písničky pro Samíčka
2014-11-17 11:47 - 2014-11-17 11:47 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1.exe
2014-11-17 11:46 - 2014-11-17 11:46 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-11-17 09:38 - 2014-11-28 11:33 - 00000000 ____D () C:\Users\Petr\Desktop\Programy proti virům a malware
2014-11-16 13:27 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-16 13:27 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-15 07:58 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-15 07:57 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-15 07:57 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-15 07:57 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-15 07:57 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-15 07:57 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-15 07:57 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-14 16:50 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-14 16:50 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-14 16:50 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-14 16:50 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-14 16:50 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-14 16:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-14 16:50 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-14 16:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-14 16:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-14 16:50 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-14 16:50 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-14 16:50 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-14 16:50 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-14 16:50 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-14 16:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-14 16:50 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-14 16:50 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-14 16:50 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-14 16:50 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-14 16:50 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-14 16:50 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-14 16:50 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-14 16:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-14 16:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-14 16:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-14 16:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-14 16:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-14 16:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-14 16:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-14 16:46 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-14 16:46 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-14 16:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-14 16:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-14 16:46 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-14 16:46 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-14 16:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-14 16:46 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-14 16:46 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-14 16:46 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-14 07:38 - 2014-11-14 07:38 - 00001935 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-14 07:37 - 2014-11-14 07:37 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-14 07:37 - 2014-11-14 07:37 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-07 22:29 - 2014-11-28 07:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-06 14:28 - 2014-11-15 06:32 - 00000000 ____D () C:\Users\Petr\Desktop\Kamera 2014
2014-11-06 11:50 - 2014-11-06 11:50 - 00002271 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\Users\Petr\AppData\Local\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-11-06 11:49 - 2014-11-06 11:50 - 00000000 ____D () C:\Program Files\WinZip
2014-11-06 11:48 - 2014-11-06 11:48 - 00000000 ____D () C:\Program Files\File Association Helper
2014-11-06 11:31 - 2014-11-06 11:31 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-11-04 13:03 - 2014-11-04 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 13:03 - 2013-02-04 15:10 - 00321536 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_BUL.dll
2014-11-04 13:03 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\SysWOW64\CNC1771D.TBL
2014-11-04 13:03 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG5500 series
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\CanonIJWSpt
2014-11-04 13:00 - 2014-11-04 13:00 - 00000000 ___HD () C:\Program Files\CanonBJ
2014-11-04 13:00 - 2013-04-04 05:00 - 00391168 _____ (CANON INC.) C:\Windows\system32\CNMLMBU.DLL
2014-11-04 13:00 - 2013-02-04 15:12 - 00367104 _____ (CANON INC.) C:\Windows\system32\CNC_BUL.dll
2014-11-04 13:00 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\system32\CNC1771D.TBL
2014-11-04 13:00 - 2012-11-08 13:04 - 00282624 _____ (CANON INC.) C:\Windows\system32\CNC_BUC.dll
2014-11-04 13:00 - 2012-11-08 13:03 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_BUI.dll
2014-11-04 13:00 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2014-11-04 12:51 - 2014-11-04 12:51 - 00000000 ___HD () C:\ProgramData\CanonIJETV
2014-11-04 12:48 - 2014-11-04 13:03 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-11-01 02:07 - 2014-11-16 04:50 - 00000000 ____D () C:\Users\Petr\Desktop\Sud_Tirol-Petr_JPG
2014-11-01 00:52 - 2014-11-16 05:29 - 00000000 ____D () C:\Users\Petr\Desktop\Love songs nové
2014-11-01 00:52 - 2014-11-16 04:45 - 00000000 ____D () C:\Users\Petr\Desktop\fotky do telefonu
2014-11-01 00:52 - 2014-11-16 04:42 - 00000000 ____D () C:\Users\Petr\Desktop\fotky special Samík
2014-10-30 20:27 - 2014-11-11 13:04 - 00000000 ____D () C:\Users\Petr\Desktop\Letiště Praha ofiko
2014-10-30 20:20 - 2014-11-23 21:14 - 00016818 ____H () C:\Users\Petr\Desktop\~WRL0006.tmp
2014-10-30 20:20 - 2014-11-21 07:37 - 00017842 ____H () C:\Users\Petr\Desktop\~WRL0004.tmp
2014-10-30 20:20 - 2014-11-07 17:35 - 00016448 ____H () C:\Users\Petr\Desktop\~WRL0003.tmp
2014-10-30 19:38 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 19:38 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 19:38 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-30 19:38 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-30 19:38 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 19:38 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 19:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 19:37 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 19:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 19:37 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 19:37 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-28 11:33 - 2014-02-02 14:36 - 00000000 ____D () C:\Users\Petr\uTorrent
2014-11-28 09:35 - 2014-01-19 15:33 - 01140604 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 23:18 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 23:18 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 23:10 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 23:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-11-27 22:15 - 2014-01-19 16:36 - 00000927 _____ () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-27 21:53 - 2014-03-10 12:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Media Player Classic
2014-11-27 21:53 - 2011-04-12 09:34 - 00668790 _____ () C:\Windows\system32\perfh005.dat
2014-11-27 21:53 - 2011-04-12 09:34 - 00141418 _____ () C:\Windows\system32\perfc005.dat
2014-11-27 21:53 - 2009-07-14 06:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-27 21:40 - 2014-05-13 13:27 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-27 11:01 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-11-27 10:41 - 2014-01-21 10:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-27 10:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-26 13:40 - 2014-02-01 20:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 13:40 - 2014-02-01 20:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 13:40 - 2014-02-01 20:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 11:45 - 2014-01-27 21:35 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-23 11:45 - 2014-01-21 09:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Adobe
2014-11-22 08:03 - 2014-05-13 13:27 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-19 22:12 - 2014-06-23 12:59 - 00000000 ____D () C:\Windows\Minidump
2014-11-19 22:12 - 2014-01-19 15:29 - 00000000 ____D () C:\Windows\Panther
2014-11-19 21:20 - 2014-02-27 09:13 - 00003492 _____ () C:\Windows\System32\Tasks\Seagate_Install_Launch
2014-11-19 21:15 - 2014-01-27 21:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Seznam.cz
2014-11-19 21:09 - 2014-01-21 03:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-17 19:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-17 08:22 - 2014-05-22 05:52 - 00000000 ____D () C:\Users\Petr\Desktop\Filmy do telefonu do auta pro Samíčka
2014-11-16 20:04 - 2009-07-14 06:08 - 00032624 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-11-16 06:27 - 2014-10-28 10:55 - 00000000 ____D () C:\Users\Petr\Desktop\Trance a relaxační muzika na přebrání
2014-11-16 05:06 - 2014-09-20 18:12 - 00000000 ____D () C:\Users\Petr\Desktop\Proud nových léčivých metod
2014-11-16 04:58 - 2014-01-27 20:32 - 00000000 ____D () C:\Mandis disk
2014-11-16 04:56 - 2014-09-20 18:21 - 00000000 ____D () C:\Users\Petr\Desktop\kamera 2013
2014-11-16 04:43 - 2014-09-23 13:20 - 00000000 ____D () C:\Users\Petr\Desktop\Lifeisdrive best fotky 2014
2014-11-15 08:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-14 18:06 - 2009-07-14 05:45 - 00441080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 18:04 - 2014-05-14 19:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-14 17:18 - 2014-01-27 20:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-14 17:17 - 2014-01-27 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-14 17:03 - 2014-01-21 02:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-14 16:59 - 2014-01-21 02:07 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-14 07:37 - 2014-05-13 13:34 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-14 07:37 - 2014-05-13 13:34 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-14 07:37 - 2014-01-27 22:10 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-14 07:37 - 2014-01-27 22:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-11 13:05 - 2014-08-03 12:19 - 00000000 ____D () C:\Users\Petr\Desktop\fotky převod
2014-11-11 12:13 - 2014-01-28 12:10 - 00003696 _____ () C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2014-11-06 11:54 - 2014-10-24 09:47 - 00000000 ____D () C:\Users\Petr\Desktop\fotky pro Canon
2014-11-04 14:30 - 2010-11-21 04:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-04 13:03 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-11-04 11:49 - 2014-01-21 10:02 - 00113536 _____ () C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-02 22:02 - 2014-01-27 22:17 - 00000000 ____D () C:\ProgramData\AVG
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-25 00:53
==================== End Of Log ============================
Moooc děkuji a i ty programy navíc se smazaly, bezva!

heslo pro přihlášení, které jsem si již změnil, takže plně odinstalovat zatím nešlo, ale pokud se i tam již jako naposled
nebudou vyskakovat ta 2 okna, tak je to parádní a klid... Děkuji moc:-)
Přikládám report, pokud byste ještě něco viděl:-)
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Petr (administrator) on MANDIS on 28-11-2014 11:33:27
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(CyberLink) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Seagate Technology LLC) C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DeviceAgent.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10c.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(BitTorrent Inc.) C:\Users\Petr\uTorrent\utorrent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2009-11-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [5226600 2014-11-21] (AVAST Software)
HKLM-x32\...\Run: [DBAgent] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1518664 2014-09-17] (Seagate Technology LLC)
HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [Uploader] => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [127080 2014-09-17] (Seagate Technology LLC)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Retriever.lnk
ShortcutTarget: Image Retriever.lnk -> C:\Program Files (x86)\Nuance\PaperPort\xdcla.exe (Nuance Communications, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {2380B08A-4808-4B19-B6BE-496FC25B11DD} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {69C80649-6ACA-48D2-A1D4-D2E86210EC8C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {6E8919D5-8D40-4885-859F-93D027F915B9} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {792A4DBB-D834-44DF-87C1-72C6D52CE9D3} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {86F29F0E-578D-40AE-B3DD-5342C2624F7D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {AC300793-F9A5-4B0D-9284-6A1B49A302CE} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B0BB8E1D-FEED-4370-A960-D1579DFE8822} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {B5F41076-EE61-49F7-83F5-F592B036A44E} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1000 -> {BFFDEB38-3E47-453A-A0FE-79B59570266A} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\gtx3j24j.default-1416036175748
FF NewTab: hxxp://www.google.com/
FF DefaultSearchUrl: hxxp://www.google.com/search?btnG=Google+Search&q=
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
Chrome:
=======
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-11-14] (AVAST Software)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [87336 2012-01-12] (CyberLink Corp.)
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [75048 2012-01-12] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [296232 2012-01-12] (CyberLink)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 Seagate Dashboard Services; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe [16000 2014-09-17] (Seagate Technology LLC)
R2 Seagate MobileBackup Service; C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe [157776 2014-09-17] (Seagate Technology LLC)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-14] ()
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-28] (Malwarebytes Corporation)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [82928 2011-10-27] (Cyberlink Corp.)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [146928 2012-01-11] (CyberLink Corp.)
U3 aolnm569; C:\Windows\System32\Drivers\aolnm569.sys [0 ] (Advanced Micro Devices)
S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-28 10:46 - 2014-11-28 11:00 - 1154959481 _____ () C:\Users\Petr\Downloads\detske-a-vanocni-pisnicky.part2.rar
2014-11-28 10:28 - 2014-11-28 10:47 - 1309231040 _____ () C:\Users\Petr\Downloads\detske-a-vanocni-pisnicky.part1.rar
2014-11-28 09:51 - 2014-11-28 10:08 - 671213568 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_02x03.avi
2014-11-28 09:51 - 2014-11-28 10:07 - 650977280 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_01x03.avi
2014-11-28 07:50 - 2014-11-28 08:36 - 1592034884 _____ () C:\Users\Petr\Downloads\Království-rostlin-4.mkv.part
2014-11-28 07:49 - 2014-11-28 08:37 - 1686953483 _____ () C:\Users\Petr\Downloads\Království--rostlin-3.mkv.part
2014-11-28 07:37 - 2014-11-28 07:37 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-28 07:37 - 2014-11-28 07:37 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-28 07:37 - 2014-11-28 07:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
2014-11-27 21:57 - 2014-11-27 22:07 - 00000000 ____D () C:\Users\Petr\Desktop\E-book
2014-11-27 21:57 - 2014-11-27 21:57 - 00000000 ___RD () C:\Users\Petr\Desktop\The Offspring
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ___RD () C:\Users\Petr\Desktop\Green Day
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\ostratní mix
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Nightwork
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Lucka Vondráčková - Fénix (CD 01)
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\linkin park
2014-11-27 21:56 - 2014-11-27 21:56 - 00000000 ____D () C:\Users\Petr\Desktop\Chinaski - Premium (Best of...1993-2003)
2014-11-27 21:53 - 2008-08-19 01:39 - 1466433536 _____ () C:\Users\Petr\Desktop\nikdy.to.nevzdavej.avi
2014-11-27 17:27 - 2014-11-27 21:52 - 00000000 ____D () C:\Users\Petr\Desktop\Katka
2014-11-27 17:26 - 2014-11-27 23:10 - 00000900 _____ () C:\Windows\setupact.log
2014-11-27 17:26 - 2014-11-27 17:26 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-27 14:27 - 2013-08-08 09:39 - 00000000 ____D () C:\Users\Petr\Downloads\1
2014-11-27 12:48 - 2014-11-27 13:05 - 659426120 _____ () C:\Users\Petr\Downloads\Orbita_pozoruhodna_cesta_Zeme_03x03.avi
2014-11-27 12:30 - 2014-11-27 23:11 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Sun
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-27 10:47 - 2014-11-27 10:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-27 10:46 - 2014-11-28 06:57 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-27 10:46 - 2014-11-27 10:46 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-11-27 10:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-27 10:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-27 10:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-27 10:44 - 2014-11-27 10:45 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\jxpiinstall.exe
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-27 10:25 - 2014-11-27 22:15 - 00000000 ____D () C:\Program Files (x86)\Klip Pal
2014-11-27 10:11 - 2014-11-27 10:13 - 2285057485 _____ () C:\Users\Petr\Downloads\Pozoruhodná cesta planety Země E02 Rotace Spin.mkv
2014-11-27 08:58 - 2014-11-27 10:31 - 3449090121 _____ () C:\Users\Petr\Downloads\Království--rostlin-2.mkv
2014-11-26 13:40 - 2014-11-28 10:40 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-25 16:42 - 2014-11-27 14:33 - 00000000 ____D () C:\Users\Petr\Downloads\Atlas mraků
2014-11-25 16:38 - 2014-11-25 16:39 - 00000965 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-25 07:09 - 2014-11-25 10:27 - 1827110690 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_2.zip
2014-11-25 02:49 - 2014-11-25 05:59 - 1826390791 _____ () C:\Users\Petr\Downloads\CRo_pohadky_mluvene_mp3_rozhlas_1.zip
2014-11-23 11:39 - 2014-11-23 11:44 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon internet
2014-11-21 15:01 - 2014-11-23 11:45 - 00000000 ____D () C:\Users\Petr\Desktop\Sreenshots telefon
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 22:13 - 2014-11-19 22:13 - 00041242 _____ () C:\Users\Petr\Documents\cc_20141119_221306záloha registrů.reg
2014-11-19 22:13 - 2014-11-19 22:13 - 00010322 _____ () C:\Users\Petr\Documents\cc_20141119_221343registr2.reg
2014-11-19 22:10 - 2014-11-19 22:10 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-19 22:10 - 2014-11-19 22:10 - 00000782 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-19 22:10 - 2014-11-19 22:10 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
2014-11-19 21:54 - 2014-11-19 21:55 - 00000492 _____ () C:\DelFix.txt
2014-11-19 21:53 - 2014-11-19 21:53 - 00002717 _____ () C:\Users\Public\Desktop\Seagate Dashboard.lnk
2014-11-19 21:53 - 2014-11-19 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2014-11-19 21:52 - 2014-11-19 21:52 - 00000000 ____D () C:\ProgramData\Nero
2014-11-19 21:49 - 2014-11-19 21:49 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2014-11-18 16:24 - 2014-11-28 11:33 - 00000000 ____D () C:\FRST
2014-11-17 12:35 - 2014-11-17 14:04 - 00000000 ____D () C:\Users\Petr\Desktop\Písničky pro Samíčka
2014-11-17 11:47 - 2014-11-17 11:47 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1.exe
2014-11-17 11:46 - 2014-11-17 11:46 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-11-17 09:38 - 2014-11-28 11:33 - 00000000 ____D () C:\Users\Petr\Desktop\Programy proti virům a malware
2014-11-16 13:27 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-16 13:27 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-15 07:58 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-15 07:57 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-15 07:57 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-15 07:57 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-15 07:57 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-15 07:57 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-15 07:57 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-15 07:57 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-15 07:57 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-15 07:57 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-15 07:57 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-14 16:50 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-14 16:50 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-14 16:50 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-14 16:50 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-14 16:50 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-14 16:50 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-14 16:50 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-14 16:50 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-14 16:50 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-14 16:50 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-14 16:50 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-14 16:50 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-14 16:50 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-14 16:50 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-14 16:50 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-14 16:50 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-14 16:50 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-14 16:50 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-14 16:50 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-14 16:50 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-14 16:50 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-14 16:50 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-14 16:50 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-14 16:50 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-14 16:50 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-14 16:50 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-14 16:50 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-14 16:50 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-14 16:50 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-14 16:50 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-14 16:50 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-14 16:50 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-14 16:50 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-14 16:50 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-14 16:50 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-14 16:50 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-14 16:50 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-14 16:50 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-14 16:50 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-14 16:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-14 16:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-14 16:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-14 16:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-14 16:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-14 16:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-14 16:49 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-14 16:49 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-14 16:49 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-14 16:49 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-14 16:46 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-14 16:46 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-14 16:46 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-14 16:46 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-14 16:46 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-14 16:46 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-14 16:46 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-14 16:46 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-14 16:46 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-14 16:46 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-14 16:46 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-14 16:46 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-14 07:38 - 2014-11-14 07:38 - 00001935 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-14 07:37 - 2014-11-14 07:37 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-14 07:37 - 2014-11-14 07:37 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-07 22:29 - 2014-11-28 07:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-06 14:28 - 2014-11-15 06:32 - 00000000 ____D () C:\Users\Petr\Desktop\Kamera 2014
2014-11-06 11:50 - 2014-11-06 11:50 - 00002271 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\Users\Petr\AppData\Local\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\WinZip
2014-11-06 11:50 - 2014-11-06 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2014-11-06 11:49 - 2014-11-06 11:50 - 00000000 ____D () C:\Program Files\WinZip
2014-11-06 11:48 - 2014-11-06 11:48 - 00000000 ____D () C:\Program Files\File Association Helper
2014-11-06 11:31 - 2014-11-06 11:31 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-11-04 13:03 - 2014-11-04 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-11-04 13:03 - 2013-02-04 15:10 - 00321536 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_BUL.dll
2014-11-04 13:03 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\SysWOW64\CNC1771D.TBL
2014-11-04 13:03 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG5500 series
2014-11-04 13:01 - 2014-11-04 13:01 - 00000000 ____D () C:\ProgramData\CanonIJWSpt
2014-11-04 13:00 - 2014-11-04 13:00 - 00000000 ___HD () C:\Program Files\CanonBJ
2014-11-04 13:00 - 2013-04-04 05:00 - 00391168 _____ (CANON INC.) C:\Windows\system32\CNMLMBU.DLL
2014-11-04 13:00 - 2013-02-04 15:12 - 00367104 _____ (CANON INC.) C:\Windows\system32\CNC_BUL.dll
2014-11-04 13:00 - 2012-11-26 12:24 - 00095744 _____ () C:\Windows\system32\CNC1771D.TBL
2014-11-04 13:00 - 2012-11-08 13:04 - 00282624 _____ (CANON INC.) C:\Windows\system32\CNC_BUC.dll
2014-11-04 13:00 - 2012-11-08 13:03 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_BUI.dll
2014-11-04 13:00 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2014-11-04 12:51 - 2014-11-04 12:51 - 00000000 ___HD () C:\ProgramData\CanonIJETV
2014-11-04 12:48 - 2014-11-04 13:03 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-11-01 02:07 - 2014-11-16 04:50 - 00000000 ____D () C:\Users\Petr\Desktop\Sud_Tirol-Petr_JPG
2014-11-01 00:52 - 2014-11-16 05:29 - 00000000 ____D () C:\Users\Petr\Desktop\Love songs nové
2014-11-01 00:52 - 2014-11-16 04:45 - 00000000 ____D () C:\Users\Petr\Desktop\fotky do telefonu
2014-11-01 00:52 - 2014-11-16 04:42 - 00000000 ____D () C:\Users\Petr\Desktop\fotky special Samík
2014-10-30 20:27 - 2014-11-11 13:04 - 00000000 ____D () C:\Users\Petr\Desktop\Letiště Praha ofiko
2014-10-30 20:20 - 2014-11-23 21:14 - 00016818 ____H () C:\Users\Petr\Desktop\~WRL0006.tmp
2014-10-30 20:20 - 2014-11-21 07:37 - 00017842 ____H () C:\Users\Petr\Desktop\~WRL0004.tmp
2014-10-30 20:20 - 2014-11-07 17:35 - 00016448 ____H () C:\Users\Petr\Desktop\~WRL0003.tmp
2014-10-30 19:38 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 19:38 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 19:38 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-30 19:38 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-30 19:38 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 19:38 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 19:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 19:38 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 19:37 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 19:37 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 19:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 19:37 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 19:37 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-28 11:33 - 2014-02-02 14:36 - 00000000 ____D () C:\Users\Petr\uTorrent
2014-11-28 09:35 - 2014-01-19 15:33 - 01140604 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 23:18 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 23:18 - 2009-07-14 05:45 - 00031104 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 23:10 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 23:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2014-11-27 22:15 - 2014-01-19 16:36 - 00000927 _____ () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-27 21:53 - 2014-03-10 12:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Media Player Classic
2014-11-27 21:53 - 2011-04-12 09:34 - 00668790 _____ () C:\Windows\system32\perfh005.dat
2014-11-27 21:53 - 2011-04-12 09:34 - 00141418 _____ () C:\Windows\system32\perfc005.dat
2014-11-27 21:53 - 2009-07-14 06:13 - 01583214 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-27 21:40 - 2014-05-13 13:27 - 00004184 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-27 11:01 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-11-27 10:41 - 2014-01-21 10:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-27 10:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-26 13:40 - 2014-02-01 20:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 13:40 - 2014-02-01 20:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 13:40 - 2014-02-01 20:15 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 11:45 - 2014-01-27 21:35 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-23 11:45 - 2014-01-21 09:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Adobe
2014-11-22 08:03 - 2014-05-13 13:27 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-19 22:12 - 2014-06-23 12:59 - 00000000 ____D () C:\Windows\Minidump
2014-11-19 22:12 - 2014-01-19 15:29 - 00000000 ____D () C:\Windows\Panther
2014-11-19 21:20 - 2014-02-27 09:13 - 00003492 _____ () C:\Windows\System32\Tasks\Seagate_Install_Launch
2014-11-19 21:15 - 2014-01-27 21:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Seznam.cz
2014-11-19 21:09 - 2014-01-21 03:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-17 19:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-17 08:22 - 2014-05-22 05:52 - 00000000 ____D () C:\Users\Petr\Desktop\Filmy do telefonu do auta pro Samíčka
2014-11-16 20:04 - 2009-07-14 06:08 - 00032624 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-11-16 06:27 - 2014-10-28 10:55 - 00000000 ____D () C:\Users\Petr\Desktop\Trance a relaxační muzika na přebrání
2014-11-16 05:06 - 2014-09-20 18:12 - 00000000 ____D () C:\Users\Petr\Desktop\Proud nových léčivých metod
2014-11-16 04:58 - 2014-01-27 20:32 - 00000000 ____D () C:\Mandis disk
2014-11-16 04:56 - 2014-09-20 18:21 - 00000000 ____D () C:\Users\Petr\Desktop\kamera 2013
2014-11-16 04:43 - 2014-09-23 13:20 - 00000000 ____D () C:\Users\Petr\Desktop\Lifeisdrive best fotky 2014
2014-11-15 08:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-14 18:06 - 2009-07-14 05:45 - 00441080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 18:04 - 2014-05-14 19:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-14 17:18 - 2014-01-27 20:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-14 17:17 - 2014-01-27 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-14 17:03 - 2014-01-21 02:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-14 16:59 - 2014-01-21 02:07 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-14 07:37 - 2014-05-13 13:34 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-11-14 07:37 - 2014-05-13 13:34 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-14 07:37 - 2014-05-13 13:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-14 07:37 - 2014-01-27 22:10 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-11-14 07:37 - 2014-01-27 22:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-11 13:05 - 2014-08-03 12:19 - 00000000 ____D () C:\Users\Petr\Desktop\fotky převod
2014-11-11 12:13 - 2014-01-28 12:10 - 00003696 _____ () C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2014-11-06 11:54 - 2014-10-24 09:47 - 00000000 ____D () C:\Users\Petr\Desktop\fotky pro Canon
2014-11-04 14:30 - 2010-11-21 04:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-04 13:03 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-11-04 11:49 - 2014-01-21 10:02 - 00113536 _____ () C:\Users\Petr\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-02 22:02 - 2014-01-27 22:17 - 00000000 ____D () C:\ProgramData\AVG
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-25 00:53
==================== End Of Log ============================
Re: Stále vyskakují nové stránky ve firefoxu
Ještě mi prosím vyskakují okna reklamy ve firefoxu, nevím jak ho celý dostat pryč i s nastaveními a nebo proč to dělá...
Děkuji vám!!
Děkuji vám!!
Re: Stále vyskakují nové stránky ve firefoxu

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start CloseProcesses: HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X] C:\Program Files (x86)\ShopperPro c:\Program Files (x86)\Optimizer Pro 3.11 2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe 2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log 2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup 2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log 2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner 2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro 2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk 2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk 2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082} 2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD 2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe 2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe 2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe Hosts: EmptyTemp: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: Stále vyskakují nové stránky ve firefoxu
Děkuji za Váš čas a práci, dávám fixlog:-)
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-11-2014 01
Ran by Petr at 2014-11-28 17:48:52 Run:1
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]
C:\Program Files (x86)\ShopperPro
c:\Program Files (x86)\Optimizer Pro 3.11
2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\YTDownloader => value deleted successfully.
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Windows\CurrentVersion\Run\\YTDownloader => value deleted successfully.
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
51cdb72 => Service deleted successfully.
SPDRIVER_1.37.0.1416 => Service deleted successfully.
"C:\Program Files (x86)\ShopperPro" => File/Directory not found.
"c:\Program Files (x86)\Optimizer Pro 3.11" => File/Directory not found.
C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\Common Files\ShopperPro => Moved successfully.
C:\Users\UpdatusUser\Desktop\YTD.lnk => Moved successfully.
C:\Users\Petr\Desktop\YTD.lnk => Moved successfully.
C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082} => Moved successfully.
C:\Program Files (x86)\YTD => Moved successfully.
C:\Users\Petr\Downloads\ytd-1.43.exe => Moved successfully.
C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe => Moved successfully.
C:\Users\Petr\Downloads\ccsetup419.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 60.2 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-11-2014 01
Ran by Petr at 2014-11-28 17:48:52 Run:1
Running from C:\Users\Petr\Desktop\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available profiles: Petr & UpdatusUser)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.exe
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
S2 SPDRIVER_1.37.0.1416; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1416\jsdrv.sys [X]
C:\Program Files (x86)\ShopperPro
c:\Program Files (x86)\Optimizer Pro 3.11
2014-11-28 07:34 - 2014-11-28 07:34 - 00244352 _____ () C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe
2014-11-27 23:08 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-11-27 22:36 - 2014-11-27 23:11 - 00031034 _____ () C:\zoek-results.log
2014-11-27 22:32 - 2014-11-27 23:03 - 00000000 ____D () C:\zoek_backup
2014-11-27 22:19 - 2014-11-27 23:10 - 00003588 _____ () C:\Windows\PFRO.log
2014-11-27 22:10 - 2014-11-27 22:15 - 00000000 ____D () C:\AdwCleaner
2014-11-27 10:39 - 2014-11-27 10:39 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\UpdatusUser\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:39 - 00000953 _____ () C:\Users\Petr\Desktop\YTD.lnk
2014-11-25 16:38 - 2014-11-25 16:38 - 00003114 _____ () C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082}
2014-11-25 16:38 - 2014-11-25 16:38 - 00000000 ____D () C:\Program Files (x86)\YTD
2014-11-25 16:37 - 2014-11-25 16:37 - 00644640 _____ (Igor Pavlov) C:\Users\Petr\Downloads\ytd-1.43.exe
2014-11-19 22:23 - 2014-11-19 22:26 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-19 21:56 - 2014-11-19 22:07 - 04976456 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup419.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\YTDownloader => value deleted successfully.
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Windows\CurrentVersion\Run\\YTDownloader => value deleted successfully.
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
51cdb72 => Service deleted successfully.
SPDRIVER_1.37.0.1416 => Service deleted successfully.
"C:\Program Files (x86)\ShopperPro" => File/Directory not found.
"c:\Program Files (x86)\Optimizer Pro 3.11" => File/Directory not found.
C:\Users\Petr\Downloads\Firefox Setup Stub 33.1.1 (1).exe => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\Common Files\ShopperPro => Moved successfully.
C:\Users\UpdatusUser\Desktop\YTD.lnk => Moved successfully.
C:\Users\Petr\Desktop\YTD.lnk => Moved successfully.
C:\Windows\System32\Tasks\{6ABD546F-1447-4F17-8719-217A60A08082} => Moved successfully.
C:\Program Files (x86)\YTD => Moved successfully.
C:\Users\Petr\Downloads\ytd-1.43.exe => Moved successfully.
C:\Users\Petr\Downloads\mbam-setup-2.0.3.1025.exe => Moved successfully.
C:\Users\Petr\Downloads\ccsetup419.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 60.2 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Re: Stále vyskakují nové stránky ve firefoxu
Jak se chova PC???
Re: Stále vyskakují nové stránky ve firefoxu
Neměl jsem možnost ho déle vyzkoušet, mám teď syna, nic nápadného to nedělá a to je moc dobře.
Když jsem to dopsal, tak mi jedno okno s reklamou práce vyskočilo, ale možná je to tím co si firefox
pamatuje, protože hesla zná pořád i při přeinstalaci...
Když jsem to dopsal, tak mi jedno okno s reklamou práce vyskočilo, ale možná je to tím co si firefox
pamatuje, protože hesla zná pořád i při přeinstalaci...
Re: Stále vyskakují nové stránky ve firefoxu

